Privacy Policy
Last updated: 30 June 2025
1. Overview
This policy explains what personal data we collect when you visit our websites or use our mobile applications (together the “Services”), why we collect it, how we use it and which choices you have. “Personal data” means any information that directly or indirectly identifies you.
2. Controller
Controller: Sebastian Schmitt, c/o Block Services,
Stuttgarter Str. 106, 70736 Fellbach, Germany
E-mail: [email protected]
2.1 Data-Protection Officer
According to § 38 BDSG we are not obliged to appoint a data-protection officer.
3. Data We Collect
- Data you provide (e.g. names, e-mail addresses, messages, purchase details).
- Data collected automatically when you use the Services
(e.g. IP address, browser/device information, time-stamps, in-app events). - Purchase and subscription metadata from Google Play (purchase token, product ID,
purchase time, price, renewal status). - Advertising identifiers and usage statistics collected by Google AdMob and
Google Analytics for Firebase (approximate location, device information, in-app behaviour).
4. Purposes and Legal Bases
- Performance of a contract (Art. 6 (1)(b) GDPR) – providing and billing in-app
purchases and subscriptions, delivering customer support. - Legitimate interests (Art. 6 (1)(f) GDPR) – safeguarding IT security,
preventing fraud, measuring reach and improving the Services. - Consent (Art. 6 (1)(a) GDPR & § 25 TTDSG) – placing non-essential cookies or
delivering personalised ads. Consent can be withdrawn at any time. - Legal obligations (Art. 6 (1)(c) GDPR, HGB, AO) – bookkeeping, tax and consumer-protection duties.
5. Cookies and Similar Technologies (§ 25 TTDSG)
We use strictly necessary cookies to operate the website and Matomo (self-hosted) cookies to obtain anonymous statistics. All other cookies or comparable identifiers are set only after you have given explicit consent via the cookie banner. You can withdraw or change this consent at any time.
6. Server Log Files
Our hosting provider stores access logs (IP address, request URL, date/time, referrer,
user-agent) for up to 30 days and then deletes or anonymises them. The data is required
to ensure server stability and trace misuse.
7. Mobile Apps, Subscriptions and In-App Purchases
7.1 Subscriptions & Billing
Our Android apps use Google Play Billing. When you buy a subscription or consumable item, Google sends us a unique purchase token plus product ID, price, currency and purchase timestamp. We do not receive your name, address or payment-card details. The token is stored until 60 days after the subscription ends and then deleted automatically.
7.2 Advertising (AdMob)
Free apps display ads delivered by Google AdMob.
AdMob may collect your advertising identifier (AAID), approximate location, device information
and in-app events to serve and measure ads. You can reset or disable the identifier in your
device settings at any time. Google retains ad-interaction data for up to 26 months.
8. Sharing of Data
- Service providers (hosting, customer support, analytics, advertising, payment processing).
- Public authorities where required by law or to protect legal rights.
- Other third parties only with your explicit consent.
Where recipients are outside the EEA we rely on the EU Standard Contractual Clauses and additional safeguards.
9. Retention
We keep personal data only as long as necessary for the purposes above or to comply with statutory duties. Commercial and fiscal records (e.g. invoices, contracts, e-mails) are stored for 10 years (§§ 257 HGB, 147 AO); other business correspondence for 6 years. Purchase tokens are erased 60 days after expiry; analytics data after 26 months; server logs after 30 days.
10. Your Rights
You have the rights of access, rectification, erasure, restriction of processing, data portability and to object to processing based on legitimate interests (Art. 15-21 GDPR and § 34 BDSG). You may withdraw any consent at any time.
11. Right to Complain
You can lodge a complaint with any supervisory authority, in particular the one competent
for your habitual residence. Our lead authority is:
Landesbeauftragter für den Datenschutz und die Informationsfreiheit Baden-Württemberg
Lautenschlagerstraße 20, 70173 Stuttgart, Germany
Phone: +49 711 615541-0 · E-mail: [email protected]
A full list of German authorities is available at bfdi.bund.de/anschriften.
12. Security
We use TLS encryption for all transfers and maintain technical and organisational measures to safeguard your data against unauthorised access, alteration or deletion.
13. Children’s Privacy
Our Services are not directed to children under 16. If we become aware that a child has provided personal data, we will delete it immediately.
14. Changes to This Policy
We may update this policy from time to time. Material changes will be announced in-app and on our website. Continued use of the Services after the effective date constitutes acceptance of the updated terms.
15. Contact
For any questions about this policy, write to [email protected].