Overview
Günaydın App Studio ("we", "us", "our") operates the No Ex (No Contact Tracker) mobile application available on the Apple App Store. This Privacy Policy explains in detail how we collect, use, store, share, and protect your information when you use our app.
We believe in minimal, purposeful data collection. We only collect what is strictly necessary to deliver our services. We do not sell your personal data. We do not serve ads. We do not build behavioral profiles for advertising purposes.
1. Information We Collect
1.1 Account & Device Information
We use anonymous, device-based authentication. You do not need to create an account with a username, email, or password.
- Device Identifier (UUID): A random unique identifier generated on your device and stored in your iOS Keychain. This is your only identity in our system. It is not linked to your Apple ID, phone number, or any other personal identifier.
- Authentication Token (JWT): A temporary session token (30-day expiry) used to authenticate API requests. Stored encrypted in your iOS Keychain.
1.2 Profile Information (User-Provided, Optional)
You may optionally provide:
| Data | Purpose | Required? |
| Display name | Shown to other users in community features | Optional |
| Profile photo | Visible to other users | Optional |
| Personal mantra | Displayed on your home screen for motivation | Optional |
| Contact name | The name of the person you are maintaining no-contact with (for personal reference) | Optional |
1.3 Recovery Journey Data
To provide the core no-contact tracking experience, we collect:
- Streak start date — When your no-contact period began
- Goal duration — Your target (e.g., 30 days, 90 days, or indefinite)
- Daily check-ins — Whether you maintained no-contact today ("yes", "no", or "almost"), with an optional personal note
- Mood entries — Daily mood score (sad, neutral, happy) with optional note
- Daily task completions — Which wellness tasks you completed each day
1.4 Personal Journaling Content
The app offers private journaling tools. This content is created entirely by you:
- Diary entries — Free-text personal reflections with optional mood tags
- Red flags — Behavioral observations about your past relationship, with severity levels
- Unsent letters — Messages you write but choose not to send, intended as an emotional processing tool
1.5 Community Content (User-Generated)
If you choose to participate in the community features:
- Posts — Text content you share publicly (questions, confessions, polls). You can post anonymously.
- Comments — Replies you write on other users' posts
- Reactions — Heart/like interactions on posts
- Poll votes — Responses to community polls
- Direct messages — Private text messages between you and other users
- Reports — Content you flag for moderation, with an optional reason
- Block list — Users you choose to block, so we can hide their content and messages from you
1.6 Chat Analysis Data (AI Feature)
Our AI-powered chat analysis feature lets you analyze exported WhatsApp conversations to gain relationship insights.
How it works:
- You manually export a WhatsApp conversation on your device
- The app parses the messages locally on your device and computes statistical patterns (message counts, response times, word frequencies)
- Before anything leaves your device, the app automatically anonymizes message content: participant names are replaced with neutral labels ("User" / "Other"), and phone numbers and e-mail addresses are masked
- You are shown a consent prompt; nothing is transmitted unless you explicitly approve
- The anonymized messages and your locally computed statistics are transmitted securely to our server, which forwards a representative sample (approximately 200 messages) to an AI language model for analysis
- The AI returns relationship insights (effort scores, communication patterns, attachment styles)
- Chat data is NOT permanently stored on our servers. It is processed in memory only and discarded after the analysis is complete.
Data involved:
- Message content (anonymized as described above)
- Neutral sender labels ("User" / "Other" — real names are not transmitted)
- Message timestamps
- Relationship type you select
- Locally computed statistics (message counts, average response times, word frequencies, emoji usage)
Important: The AI model receives the anonymized text content of your messages to perform meaningful analysis. We do not store this data after processing is complete.
1.7 Feedback & Support
When you send feedback through the app, we collect:
- Your feedback message
- App version
- Current streak day count (for context)
1.8 Voice Diary (Microphone & Speech)
If you use the voice diary feature, the app requests access to your microphone and speech recognition. Your speech is transcribed by Apple's on-device speech recognition and is not sent to our servers. Only the resulting text — if you choose to save it — is stored as a diary entry. You can deny these permissions without affecting other app functionality.
1.9 Technical & Configuration Data
Collected automatically to ensure the app functions correctly:
- Language preference (Turkish or English)
- Timezone (for accurate streak calculations and notification scheduling)
- Push notification token (if you grant notification permission)
- Premium subscription status (active/inactive)
1.10 Usage Analytics (First-Party)
To understand how the app is used and improve it, we collect first-party usage events tied to your device identifier:
- Feature-usage events (e.g., app opens, onboarding progress, which tools you open, paywall interactions, purchases)
- Session duration (total time spent in the app)
- App version, device model, and iOS version
- Approximate location (city-level), derived server-side from your IP address at the time of a request. We never access GPS or precise location, and your IP address itself is not stored.
This data is used solely to improve the app and is never used for advertising, sold, or shared with advertising networks. It is stored on our own infrastructure (not sent to third-party analytics companies) and is deleted when you delete your account. Event data never includes the content of your messages, diary entries, or notes — only metadata such as event names and counts.
1.11 What We Do NOT Collect
- Email address (unless you contact us directly)
- Real name, phone number, or Apple ID
- Precise location (GPS)
- Contacts or address book
- Browsing history
- Data from other apps
- Advertising identifiers (IDFA)
- Third-party advertising or tracking SDKs
2. How We Use Your Information
| Purpose | Data Used |
| Provide the no-contact tracking experience | Streak data, check-ins, mood entries, tasks |
| Store your personal journal securely | Diary entries, red flags, unsent letters |
| Enable community interactions | Posts, comments, reactions, DMs, profile info |
| Deliver AI chat analysis | Anonymized chat messages (processed, not stored) |
| Send motivational push notifications | Push token, timezone, streak data |
| Manage your subscription | Device ID, premium status |
| Improve the app | First-party usage analytics (Section 1.10); user feedback |
| Moderate community content | Reports, user-generated content |
| Prevent abuse | Rate limiting, ban enforcement, block lists |
We do not use your data for:
- Advertising or ad targeting
- Selling to third parties
- Building advertising profiles
- Cross-app tracking
3. Third-Party Services
Our app integrates with the following third-party services. Each has its own privacy policy:
3.1 Adapty (Subscription Management)
- Purpose: Manages in-app subscriptions and premium access
- Data shared: Device identifier, subscription status, product identifiers
- Privacy Policy: https://adapty.io/privacy
3.2 OneSignal (Push Notifications)
- Purpose: Delivers push notifications (daily reminders, new message alerts)
- Data shared: Device identifier, push subscription ID, language, timezone, subscription status tags
- Privacy Policy: https://onesignal.com/privacy_policy
- Note: Non-premium users receive generic notification text ("You have a new message") rather than actual message previews, to protect privacy.
3.3 OpenRouter + Anthropic Claude (AI Analysis)
- Purpose: Powers the AI chat analysis feature
- Data shared: Sampled, anonymized chat messages (participant names replaced with neutral labels; phone numbers and e-mail addresses masked), message timestamps, local analysis statistics
- Processing: Data is sent through OpenRouter's API to Anthropic's Claude AI model for analysis
- Data retention: Messages are processed in real-time and are not stored on our servers after the API call completes. OpenRouter and Anthropic process data according to their respective privacy policies.
- OpenRouter Privacy Policy: https://openrouter.ai/privacy
- Anthropic Privacy Policy: https://www.anthropic.com/privacy
3.4 Cloudflare (Backend Infrastructure)
- Purpose: Hosts our backend API, database, file storage, and rate limiting
- Services used: Workers (compute), D1 (database), R2 (photo storage), KV (rate limiting)
- Data stored: All server-side data described in this policy
- Privacy Policy: https://www.cloudflare.com/privacypolicy/
3.5 Apple (StoreKit / App Store)
- Purpose: Payment processing for subscriptions and in-app purchases
- Data shared: We do not receive or store your payment information. All transactions are handled entirely by Apple.
- Privacy Policy: https://www.apple.com/legal/privacy/
4. Data Storage & Security
4.1 On-Device Storage
- iOS Keychain (encrypted by the operating system): Device ID, authentication token, purchase records
- UserDefaults (local app storage): Cached streak data, mood history, check-in state, onboarding progress, app preferences
- Local cache (UserDefaults, JSON-encoded): Diary entries, red flags, mood data for offline access
4.2 Server-Side Storage
- Cloudflare D1 (encrypted SQLite database): User profiles, streak data, check-ins, mood entries, diary, red flags, letters, community posts, messages, feedback, usage analytics events, block lists
- Cloudflare R2 (encrypted object storage): Profile photos (JPEG, max 5 MB)
- Cloudflare KV (key-value store): Rate limiting counters (temporary, auto-expiring)
4.3 Security Measures
- All data transmitted over HTTPS/TLS (encryption in transit)
- Server-side data encrypted at rest by Cloudflare
- Sensitive credentials stored in iOS Keychain (hardware-backed encryption)
- JWT tokens expire after 30 days
- API rate limiting to prevent abuse
- Origin validation on admin endpoints
- Community content moderation, reporting, and user blocking systems
4.4 What Is NOT Stored on Our Servers
- Chat messages submitted for AI analysis (processed in memory, not persisted)
- Payment information (handled entirely by Apple)
- Precise location (GPS) or your IP address
- Device hardware details beyond device model and OS version
5. Data Sharing
We do not sell, rent, or trade your personal data.
We share limited data with third-party service providers only as described in Section 3, and only to the extent necessary to provide our services:
| Recipient | Data Shared | Purpose |
| Adapty | Device ID, subscription events | Subscription management |
| OneSignal | Device ID, push token, language, timezone | Push notifications |
| OpenRouter / Anthropic | Anonymized chat messages (temporary) | AI analysis |
| Cloudflare | All server-side data | Infrastructure hosting |
| Apple | Purchase transactions | Payment processing |
We may also disclose information if required by law, legal process, or to protect the rights, property, or safety of our users.
6. Data Retention
| Data Type | Retention Period |
| Account data | Until you delete your account |
| Recovery journey data (streak, check-ins, mood) | Until you delete your account |
| Personal journaling content (diary, red flags, letters) | Until you delete your account |
| Community content (posts, comments) | Until you delete your account or content is moderated |
| Direct messages | Until you delete your account |
| Chat analysis data | Not retained — processed in real-time only |
| Usage analytics events | Until you delete your account |
| Block list | Until you unblock or delete your account |
| Profile photo | Until you remove it or delete your account |
| Push notification token | Until you disable notifications or delete your account |
| User feedback | Until you delete your account |
| Rate limiting data | Auto-expires (typically within 1 hour) |
7. Your Rights & Choices
7.1 Access Your Data
You can view all your personal data directly within the app (profile, diary, mood history, posts, messages).
7.2 Modify Your Data
You can edit your profile, diary entries, red flags, and other content at any time through the app.
7.3 Delete Your Data
You can permanently delete your account and all associated data via Settings → Delete Account. This action:
- Removes your user profile, all check-ins, mood entries, diary entries, red flags, letters, posts, comments, messages, feedback, usage analytics events, and block lists from our servers
- Deletes your profile photo from storage
- Clears local device data
- This action is irreversible. We do not maintain backups of deleted accounts.
7.4 Notification Preferences
You can disable push notifications at any time through iOS Settings or by revoking notification permission within the app.
7.5 Community Privacy
- You can post anonymously in the community
- You can report inappropriate content
- You can block other users — their posts, comments, and messages are hidden from you, and neither of you can message the other
- You can choose not to participate in community features
7.6 Chat Analysis
- AI chat analysis is entirely opt-in and requires your explicit confirmation before each analysis
- You choose which conversations to analyze
- Names, phone numbers, and e-mail addresses are anonymized on your device before transmission
- Chat data is not stored after analysis
7.7 Data Portability
If you wish to receive a copy of your data, please contact us at the email address below.
8. Children's Privacy
Our app is not directed at children under 13 (or under 16 in the European Economic Area). We do not knowingly collect personal information from children.
If you believe a child has provided us with personal information, please contact us immediately and we will take steps to delete such information.
9. International Data Transfers
Our servers are operated by Cloudflare and may process data in various locations worldwide. By using our app, you consent to the transfer of your information to Cloudflare's global infrastructure. Cloudflare complies with applicable data protection frameworks.
AI analysis requests are processed by OpenRouter and Anthropic, which may process data in the United States. This processing is temporary and data is not retained after the analysis is complete.
10. California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know what personal information we collect and how it is used
- Request deletion of your personal information
- Not be discriminated against for exercising your privacy rights
We do not sell personal information as defined by the CCPA.
11. European Privacy Rights (GDPR)
If you are in the European Economic Area, you have rights under the General Data Protection Regulation including:
- Right of access — Request a copy of your data
- Right to rectification — Correct inaccurate data
- Right to erasure — Delete your account and data
- Right to restrict processing — Limit how we use your data
- Right to data portability — Receive your data in a structured format
- Right to object — Object to certain processing activities
Our legal basis for processing your data is:
- Contract performance — To provide the app's core features
- Legitimate interest — To improve our services and prevent abuse
- Consent — For optional features like push notifications and AI analysis
12. Microphone & Speech Recognition
Our app requests access to your device's microphone and speech recognition for the voice diary feature, allowing you to speak your thoughts instead of typing. Audio is processed by Apple's on-device speech recognition and is not sent to our servers. You can deny these permissions without affecting other app functionality.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of material changes through the app. The "Last updated" date at the top reflects the most recent revision.
We encourage you to review this policy periodically. Continued use of the app after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:
Email: hello@gunaydinappstudio.com
Developer: Günaydın App Studio
This privacy policy applies to the No Ex (No Contact Tracker) application distributed via the Apple App Store.