Privacy Policy
Effective date: February 26, 2026
SmartPrime App ("we", "us", or "our") operates the SmartPrime application. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our service.
1. Data Controller
The data controller responsible for your personal data is Gabriel de Oliveira Carmo, operating as "SmartPrime App". For any privacy-related inquiries, contact us at: [email protected]
2. Data We Collect
| Data | Source | Purpose |
|---|---|---|
| Email address | Google/Apple Sign-In | Authentication |
| Display name | Google/Apple Sign-In | Personalization |
| Profile photo URL | Google/Apple Sign-In | UI display |
| Timezone | Device and profile settings | Date and time grouping |
| Firebase Auth user ID | Firebase Authentication | Session management and account data |
| Tasks (title, description, attributes) | User input | Core functionality |
| Energy profile & chronotype | User input | Personalization (Magic Plan) |
| Analytics (streaks, completion) | Derived from usage | Gamification |
| Product interaction data (screen views and app usage) | Firebase Analytics | Analytics and service improvement |
| Push notification device identifier | Firebase Cloud Messaging | Notification delivery and token management |
| Diagnostics and performance data (crashes, logs, traces, screenshots, view hierarchy) | Sentry and Firebase Crashlytics | App stability and error triage |
3. How We Use Your Data
- Core service delivery: task management, smart prioritization, and data synchronization across devices.
- AI-powered classification via Google Gemini API: task titles and descriptions are sent for automated categorization. Google does not store or use this data for training purposes under the Gemini API Terms of Service.
- Product analytics via Firebase Analytics: screen views and app interaction data may be collected to measure usage and improve the service. This data is linked to your Firebase user ID and is not used for advertising or tracking.
- Push notifications via Firebase Cloud Messaging: a device notification token and related delivery metadata are stored with your account to deliver notifications. The token is revoked when you sign out.
- Crash reporting via Sentry: error reports are collected to improve app stability. To enable faster issue resolution, your user ID and email address are associated with error reports. This data is used solely for debugging and is not shared with third parties beyond Sentry (Functional Software, Inc.).
- Diagnostics via Sentry and Firebase Crashlytics may include crash reports, performance data, logs, traces, screenshots, and view hierarchy data. These diagnostics are used for app stability and error triage and are linked to your account where the relevant SDK provides an authenticated identifier.
- We do not use your data for advertising, behavioral tracking, profiling, or sale to third parties.
4. Shared Task Groups
When you create or join a Shared Task Group, task data within that group is visible to all group members. Upon leaving a group, your assigned tasks within that group are unassigned. No chat, messaging, or user-generated content beyond task data is shared.
5. Legal Basis (GDPR Art. 6)
- Art. 6(1)(b) โ Contractual Necessity: Processing of core data (tasks, profile, synchronization) is necessary for the performance of the service you signed up for.
- Art. 6(1)(f) โ Legitimate Interest: Product analytics, crash reporting, and service improvement to maintain a functional, reliable application.
6. Your Rights
Under LGPD (Brazil), GDPR (EU), and CCPA (California), you have the following rights:
- Access: View all your data within the app at any time.
- Rectification: Edit your tasks and profile directly in the app.
- Deletion: Delete your account and all associated data immediately and permanently from Settings.
- Data Portability: Export your data directly from the app via Settings (instant JSON download). You may also request a manual export by emailing [email protected].
- Withdraw Consent: Stop using the service at any time.
- Object: Contact us at [email protected] to raise concerns.
7. Data Retention
Your data is retained while your account is active. Upon account deletion, all data is permanently and immediately deleted (hard delete). There is no grace period; deletion is irreversible.
8. Third-Party Services
| Service | Provider | Purpose |
|---|---|---|
| Firebase Authentication | Authentication | |
| Firebase Analytics | Product analytics (screen views and app interactions) | |
| Firebase Cloud Messaging | Push notification delivery and device token management | |
| Firebase Crashlytics | Crash reporting and diagnostic data | |
| Gemini API | AI task classification | |
| Sentry | Functional Software | Crash reporting & error triage (user ID, email) |
| Neon (PostgreSQL) | Neon Inc. | Database hosting |
| Google Cloud Run | API hosting |
9. Children's Privacy
SmartPrime is not directed at children under the age of 13. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via in-app notification or email. Continued use of SmartPrime after notification constitutes acceptance of the updated policy.
11. Contact
For any questions about this Privacy Policy or to exercise your rights, contact us at: [email protected]