← Back

Privacy Policy

Last updated: March 24, 2026

Synaps ("we", "us", "our") is a sound frequency wellness application. We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share your information when you use the Synaps mobile application.

1. Information We Collect

a. Account Information

When you create a Synaps account, we collect:

We never store your password directly; authentication is handled securely through Supabase Auth with encrypted tokens.

b. Onboarding Preferences

During setup, you may optionally provide:

This data is stored locally on your device only and is used to personalize your experience. It is not transmitted to our servers.

c. Usage Data

When you use Synaps, we collect:

This data is synced to your account for cross-device access and to generate your weekly listening reports.

d. Location Data

With your permission, we access your approximate location to retrieve local weather conditions from the Open-Meteo API. This enables weather-based sound adaptation. Your coordinates are sent directly to Open-Meteo and are not stored on our servers.

e. Device and Motion Data

We may access your device's accelerometer to detect motion state (stationary, walking, running) for adaptive sound features. This data is processed entirely on-device and is never transmitted externally.

f. Automatically Collected Data

For crash reporting and stability improvements, we collect:

2. How We Use Your Information

DataPurposeLegal Basis (GDPR)
Email, nameAccount creation, authentication, password recoveryContract performance (Art. 6(1)(b))
Listening sessionsUsage statistics, weekly reports, cross-device syncContract performance (Art. 6(1)(b))
Mood ratingsPersonal progress trackingConsent (Art. 6(1)(a))
LocationWeather-based sound adaptationConsent (Art. 6(1)(a))
Motion dataActivity-based sound adaptationLegitimate interest (Art. 6(1)(f))
Crash logsApp stability and bug fixesLegitimate interest (Art. 6(1)(f))
Subscription dataAccess management, payment verificationContract performance (Art. 6(1)(b))

3. Third-Party Services

We use the following third-party services:

Supabase

Authentication, database, and file storage. Your account data and listening sessions are stored on Supabase's servers with row-level security.

Supabase Privacy Policy

RevenueCat

Subscription and purchase management. RevenueCat processes your anonymous user ID and purchase receipts from Apple/Google to verify your subscription status.

RevenueCat Privacy Policy

Sentry

Error and crash reporting. Sentry receives crash logs, device information, and your user ID to help us diagnose and fix issues. No personal content or listening data is sent to Sentry.

Sentry Privacy Policy

Open-Meteo

Weather data API. When you enable location-based sound adaptation, your coordinates are sent to Open-Meteo to retrieve weather conditions. Open-Meteo is an open-source, free API that does not require authentication and does not track users.

Open-Meteo Terms

Apple & Google Authentication

If you sign in with Apple or Google, your authentication token is processed through their respective services. We receive only your email and name (if provided).

Expo Updates

We use Expo's over-the-air update service to deliver app improvements. This service checks your app version and runtime version but does not collect personal data.

4. Data We Do NOT Collect

5. Data Storage & Security

Local storage: Preferences, onboarding data, favorites, and custom presets are stored on your device using encrypted local storage (AsyncStorage) and secure keychain/keystore (for authentication tokens).

Cloud storage: Account information and listening sessions are stored on Supabase servers with row-level security policies, ensuring you can only access your own data.

Encryption: All data in transit is encrypted using HTTPS/TLS. Authentication tokens are stored in your device's secure keychain (iOS) or keystore (Android).

6. Data Retention & Deletion

We retain your data for as long as your account is active. Listening sessions older than 90 days are automatically pruned from local storage.

Account deletion: You can delete your account at any time from Profile → Delete Account. This will:

Account deletion is irreversible and typically completes within 30 days.

7. Your Rights

Depending on your jurisdiction, you may have the following rights:

For California Residents (CCPA)

You have the right to know what personal information we collect, request deletion, and opt-out of any sale of personal information. We do not sell personal data.

For EU/EEA Residents (GDPR)

You may exercise your rights by contacting us. You also have the right to lodge a complaint with your local supervisory authority.

To exercise any of these rights, contact us at moguzbulbul@gmail.com.

8. Children's Privacy

Synaps is not intended for children under the age of 13 (or under 16 in the EU/EEA). We do not knowingly collect personal data from children. If we learn that we have collected data from a child without parental consent, we will promptly delete it. If you believe a child has provided us with personal data, please contact us immediately.

9. Push Notifications

With your permission, Synaps may send local push notifications including daily listening reminders, sleep session reminders, focus break suggestions, and weekly listening reports. These notifications are generated entirely on your device and are not sent from external servers. You can manage or disable notifications in your device settings or within the app at Settings → Notifications.

10. International Data Transfers

Your data may be processed in countries other than your own. Our service providers (Supabase, RevenueCat, Sentry) may store data in the United States or other jurisdictions. Where applicable, these transfers are protected by Standard Contractual Clauses or other legally recognized transfer mechanisms.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice in the app or by other appropriate means. Your continued use of Synaps after changes are posted constitutes acceptance of the updated policy.

12. Contact Us

If you have any questions about this Privacy Policy or our data practices:

Email: moguzbulbul@gmail.com

Developer: Muhammet Oğuz Bülbül