This policy explains how the OZYM application and its connected services process personal data.

1. Data controller and contact

For privacy questions, data requests, and account deletion requests, contact support@ozym.net.

2. Information we process

3. How we use information

4. Identity provider data

Sign in with Google uses the basic openid, email, and profile scopes. Sign in with Apple may supply an Apple account identifier, name, and email address. Apple may provide name and email only during the first authorization, and users may choose to hide their real email address.

OZYM uses provider data for authentication, account creation, and profile display. It does not use this data for advertising, sell it, or share it for an independent purpose outside the requested service.

5. Children's information

OZYM may contain child profiles in household and education scenarios. An adult who creates an account or profile for a child confirms that they have the required parental, guardian, or other legal authorization. The service is designed to restrict this information to authorized users.

6. Service providers

Identity providers and Google Firebase services may be used for authentication, database, file storage, and notification infrastructure. Due to technical infrastructure, information may be processed on systems located outside the user's country.

7. Retention and security

Information may be retained while it is needed to operate the account and relevant features, and for longer where legal or security requirements apply. We use access controls and secure connections, but no digital system can guarantee absolute security.

8. Permissions

Camera and gallery access is requested only when the user chooses to take or select a photo. Notification permission is requested when a notification feature is used. Permissions can be withdrawn through device settings.

9. Rights and deletion

Subject to applicable law, users may request access to, correction of, deletion of, or objection to the processing of their information. In-app deletion and the fallback request method are described on the Delete Account page. In-app deletion normally completes during the same session; email requests are processed within 30 days after account ownership is verified.

10. Changes

This policy may be updated when features or legal requirements change. The current revision date is displayed on this page.