Privacy Policy

Last updated: June 03, 2026

This Privacy Policy describes how BirthMark collects, uses, stores and discloses Your information when You use the Service. It also explains Your privacy rights and how UK GDPR, EU GDPR and other applicable privacy laws protect You.

Data Controller

For the purposes of UK GDPR and EU GDPR, the data controller is:

Patryk Węgrzyński
Operating the BirthMark application as an independent developer.
Email: support@birthmark.app

Interpretation and Definitions

Interpretation

Words with initial capital letters have meanings defined under the following conditions. These definitions apply whether the words appear in singular or plural.

Definitions

  • Account means a unique account created for You to access Our Service or parts of Our Service.
  • Application refers to BirthMark, the software program provided by Us.
  • Company, We, Us or Our refers to BirthMark.
  • Country refers to the United Kingdom.
  • Device means any device that can access the Service, such as a phone, tablet or computer.
  • Personal Data means any information relating to an identified or identifiable individual.
  • Service refers to the Application.
  • Service Provider means any third party that processes Personal Data on Our behalf.
  • Usage Data means data collected automatically when using the Service.
  • You means the individual accessing or using the Service.

Types of Data We Collect

Personal Data

While using Our Service, We may collect certain Personal Data, including:

  • Email address
  • First name and last name
  • Username or profile name
  • Profile photo, if You choose to provide one
  • Authentication identifiers provided by Supabase, Google Sign-In or Sign in with Apple
  • Information You choose to add to the Application, such as birthdays, notes, contacts, labels and related event details

Contacts, Camera and Photo Library

With Your permission, the Application may access:

  • Your contacts list, to help You create birthday or event entries from Your contacts
  • Your camera, to allow You to take or upload photos
  • Your photo library, to allow You to select images for use in the Application

You can enable or disable these permissions at any time through Your Device settings.

Usage Data

Usage Data may be collected automatically when using the Service. This may include:

  • Device type and operating system
  • App version
  • IP address
  • Crash logs and diagnostic data
  • Usage statistics and interaction data
  • Date and time of requests

How We Use Your Personal Data

We may use Personal Data for the following purposes:

  • To provide, operate and maintain the Service
  • To create and manage Your Account
  • To authenticate You using email login, Google Sign-In or Sign in with Apple through Supabase
  • To save and display birthdays, events, contacts, notes and related information
  • To provide app features that use contacts, camera or photo library permissions
  • To respond to support requests
  • To improve, debug and secure the Service
  • To analyse usage and improve the user experience
  • To detect, prevent and address technical issues, fraud or misuse
  • To comply with legal obligations

Legal Basis for Processing Personal Data

Under UK GDPR and EU GDPR, We process Personal Data using the following legal bases:

  • Performance of a contract: to provide accounts, authentication and core Application features.
  • Consent: where You grant access to contacts, camera, photo library, analytics or other optional features where consent is required.
  • Legitimate interests: to maintain, improve, secure and debug the Service, respond to support requests, prevent abuse and understand general usage.
  • Legal obligation: where processing is required to comply with applicable laws.

Service Providers

We use trusted third-party Service Providers to operate and improve the Service:

  • Supabase: authentication, database, storage and backend services.
  • Google Sign-In: account authentication through Supabase.
  • Sign in with Apple: account authentication through Supabase.
  • Firebase Analytics: analytics and usage statistics.
  • Firebase Crashlytics: crash reporting and diagnostics.

These providers may process Personal Data on Our behalf in accordance with their own privacy policies and applicable data protection laws.

Sharing of Your Personal Data

We may share Your Personal Data:

  • With Service Providers that help Us operate the Service
  • When required by law or valid legal request
  • To protect the rights, safety or security of users, the public or the Service
  • In connection with a business transfer, such as a merger, acquisition or sale of assets
  • With Your consent

We do not sell Your Personal Data.

Retention of Your Personal Data

We retain Personal Data only for as long as necessary for the purposes described in this Privacy Policy.

  • Account information: retained for the duration of Your account relationship plus up to 24 months after account closure.
  • Support data: retained for up to 24 months after the support request is closed.
  • Usage analytics: retained for up to 24 months.
  • Server logs and diagnostic data: retained for up to 24 months unless longer retention is required for security, fraud prevention or legal compliance.

We may retain certain data for longer where required by law, to resolve disputes, enforce agreements, defend legal claims, or where data remains in encrypted backups until routine deletion.

International Data Transfers

Some of Our Service Providers may process Personal Data outside the United Kingdom or European Economic Area.

Where such transfers occur, We rely on appropriate safeguards, such as adequacy decisions, Standard Contractual Clauses, the UK International Data Transfer Addendum, or other mechanisms recognised under UK GDPR and EU GDPR.

Your GDPR Rights

If You are located in the United Kingdom, European Economic Area or another jurisdiction with similar privacy rights, You may have the right to:

  • Access Your Personal Data
  • Correct inaccurate or incomplete Personal Data
  • Request deletion of Your Personal Data
  • Restrict processing of Your Personal Data
  • Object to processing of Your Personal Data
  • Request a copy of Your Personal Data in a portable format
  • Withdraw consent at any time where processing is based on consent
  • Lodge a complaint with a supervisory authority

To exercise these rights, contact Us at: support@birthmark.app

Deleting Your Account and Personal Data

You may request deletion of Your Personal Data by contacting Us. Where available, You may also delete Your account or certain information directly within the Application.

Please note that We may need to retain certain information where We have a legal obligation or lawful basis to do so.

Security of Your Personal Data

We use reasonable technical and organisational measures to protect Your Personal Data. However, no method of transmission over the Internet or method of electronic storage is 100% secure, and We cannot guarantee absolute security.

Children's Privacy

Our Service is not intended for anyone under the age of 16. We do not knowingly collect Personal Data from anyone under 16.

If You are a parent or guardian and believe that a child has provided Us with Personal Data, please contact Us. If We become aware that We have collected Personal Data from anyone under 16 without appropriate consent, We will take steps to delete that information.

Links to Other Websites

Our Service may contain links to websites or services not operated by Us. We are not responsible for the content, privacy policies or practices of third-party websites or services.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify You of changes by posting the updated Privacy Policy on this page and updating the "Last updated" date.

Where required, We may also notify You by email or through a notice in the Application before changes become effective.

Right to Lodge a Complaint

If You believe that We have not handled Your Personal Data correctly, You have the right to lodge a complaint with the Information Commissioner's Office (ICO) in the United Kingdom or with the relevant supervisory authority in Your country of residence.

ICO website: https://ico.org.uk

Contact Us

If You have any questions about this Privacy Policy, You can contact Us by email: support@birthmark.app

Back to Birthmark