Zurück zum Projekt

Vocation: Purpose Finder

Datenschutzerklärung

Privacy Policy for Vocation: Purpose Finder

Effective Date: June 1, 2026

Developer: Thinkbyte SRL

Contact: info@thinkbyte.tech

Privacy Policy URL: https://thinkbyte.tech/en/portfolio/vocation/privacy

Bundle ID: com.thinkbyte.vocationpurposeai

Introduction

Thinkbyte SRL ("we", "us", "our") operates the mobile application Vocation: Purpose Finder (the "App"), available on iOS and Android. This Privacy Policy explains what information we collect, how we use it, who we share it with, and what choices you have.

By using the App, you agree to this Privacy Policy. If you do not agree, do not use the App.

App outputs are informational signals, not professional career counseling, psychological assessment, or guaranteed employment outcomes.

Summary (plain language)

  • We collect account and usage data to run the App — sign-in, save your answers, build your vocation map, send optional notifications, and manage subscriptions.
  • We use AI on our servers (OpenAI) to generate your next question; we do not put API keys in the app.
  • We do not sell your data, do not use it for third-party advertising, and do not track you across other companies' apps or websites for ads.
  • You can delete your account in the App; we remove your stored vocation data from our database.
  • App results are signals and possibilities, not fixed labels or guarantees.

Who we are

  • Data controller: Thinkbyte SRL
  • App name: Vocation: Purpose Finder
  • Package / bundle ID: com.thinkbyte.vocationpurposeai

Information we collect

Information you provide

  • Account credentials: Sign in via Apple or Google (OAuth). We receive an account identifier and may receive email and name if the provider shares them. Apple may provide a private relay email.
  • Question answers: Structured choices you select and confirm (not free-text chat). Used to update your vocation map and generate the next question.
  • Language preference: App UI and AI question language (EN, DE, FR, ES, RO).
  • Notification preferences: Whether reminders, streak alerts, and milestone notifications are enabled; preferred time and timezone.

Information collected automatically

  • User ID: Internal Supabase user UUID linking your data to your account.
  • App interactions: Quota usage, progress counters, notification open events when you tap a notification.
  • Device / push token: Expo push token, platform (iOS/Android), optional app version — to deliver notifications.
  • Subscription status: Premium/free tier via RevenueCat (purchase history is processed by Apple/Google).
  • Local device storage: Auth session, language, notification prefs cache (AsyncStorage on device).

Information we derive

  • Vocation probability map: Aggregated signals across ten vocation clusters.
  • AI assessment memory: Server-side summary of your answer patterns, uncertainties, and strongest/weakest signals.
  • Probability snapshots: Historical snapshots of your map over time.
  • Progress notes: Short AI-generated notes about your progress.

Information we do NOT collect

We do not collect precise or approximate location; photos, videos, audio, or files from your device; contacts, calendar, SMS, or call logs; health or medical data; browsing history outside the App; advertising identifiers (no ad SDKs); or payment card numbers (payments are handled entirely by Apple App Store / Google Play).

How we use your information

We use collected information to:

1. Provide the App — authentication, saving answers, syncing quota, displaying your vocation map. 2. Personalize your experience — generate the next adaptive question and update probabilities based on your history. 3. Process subscriptions — verify Premium access and daily limits. 4. Send notifications — only if you opt in: daily reminders, streak nudges, milestones, and question-generation status when you background the app. 5. Improve reliability — retry failed saves, recover stuck sessions (operational, not marketing analytics). 6. Comply with law — if required by applicable legal process.

We do not use your data for third-party advertising, selling or renting personal information, or cross-app tracking for ad targeting.

Legal bases (GDPR, if applicable): performance of a contract (providing the App), legitimate interests (security, reliability), and consent (push notifications).

AI and automated processing

When you confirm an answer, our servers may send to OpenAI recent question-and-answer context, current probability values, and a compact long-term assessment summary. OpenAI generates the next question and updated assessment fields. OpenAI API keys are stored only on our servers, never in the mobile app.

Automated outputs influence which question you see next and how your map is described. They do not produce legally significant decisions about employment, education, or benefits. You may delete your account and associated AI-derived data at any time.

We recommend reviewing OpenAI's privacy policy.

How we share information

We share data only with service providers who help us operate the App:

  • Supabase — database, authentication, serverless functions (account ID, answers, vocation state, notifications, push tokens)
  • OpenAI — AI question generation server-side (recent Q&A context, probabilities, assessment summary)
  • RevenueCat — subscription management (app user ID, entitlement/purchase status)
  • Apple — Sign in with Apple, App Store billing, APNs push
  • Google — Google Sign-In (Android), Play billing, FCM
  • Expo (EAS) — push notification delivery
  • Google Firebase — Android push delivery (FCM)

We do not sell personal information. We may disclose information if required by law or to protect rights, safety, and security.

Data retention

  • Account data is kept while your account is active.
  • Deleted accounts: when you delete your account in Profile, we remove user-owned rows (questions, answers, vocation state, assessment memory, snapshots, notification data, push tokens) and delete the auth user.
  • Local device data is cleared on sign-out or account deletion where applicable.
  • Apple/Google may retain purchase records per their policies.
  • Service providers may retain data per their retention schedules and our agreements.

Security

We use encryption in transit (HTTPS/TLS), encryption at rest on our database host (Supabase), Row Level Security so users can only access their own data, and server-side AI keys not embedded in the app. No method of transmission or storage is 100% secure.

Your choices and rights

Depending on your location, you may have the right to access, correct, delete, restrict, or port your personal data, withdraw consent for notifications, object to certain processing, or lodge a complaint with a supervisory authority (EEA/UK).

  • Delete: Profile → Delete Account in the App.
  • Notifications: Profile → Notifications and iOS/Android system settings.
  • Subscriptions: Manage or cancel via App Store or Google Play. Deleting the App account does not automatically cancel a subscription.

To exercise rights not available in the App, contact info@thinkbyte.tech.

Children's privacy

The App is not directed at children under 13 (or 16 in the EEA where applicable). We do not knowingly collect personal information from children. Contact us to request deletion if you believe a child has provided data.

International transfers

Our service providers may process data in the United States and other countries. Where required, we rely on appropriate safeguards (e.g. Standard Contractual Clauses) for transfers from the EEA/UK.

Changes to this policy

We may update this Privacy Policy from time to time. We will post the new version at https://thinkbyte.tech/en/portfolio/vocation/privacy and update the effective date. Continued use after changes constitutes acceptance where permitted by law.

Contact us

Thinkbyte SRL

Email: info@thinkbyte.tech

For App Store / Google Play privacy inquiries, you may also use the contact information listed on the store listing.

App permissions (reference)

iOS

  • Sign in with Apple
  • Push notifications (optional)
  • Live Activities (optional, during question generation)

Android

  • POST_NOTIFICATIONS (optional)
  • POST_PROMOTED_NOTIFICATIONS (Live Updates on supported devices)
  • Internet access (standard)

No location, camera, microphone, or contacts permissions.