Legal
Privacy Policy
At Daily Capsule we believe learning something new every day shouldn't cost you your privacy. We collect the minimum data needed for the app to work, we show no ads, we don't sell your data, and we use no advertising-tracking SDKs. This policy explains what information we process, why, and what control you have over it.
01Data controller
Daily Capsule ("the app") is a mobile application owned and operated by its data controller, Manuel Reboredo Diaz, based in A Coruña, Spain.
For any question about privacy or your personal data, contact privacy@mydailycapsule.com.
02What data we collect
We collect only the data needed to provide the service:
Account and identity
- User identifier (UID) generated by Firebase Authentication.
- Email address, when you sign in with an email magic link, Google or Apple.
- Name, if your sign-in provider (Google or Apple) supplies it.
- Sign-in method used (magic link, Google, Apple or anonymous guest).
Preferences and personalization
- Time zone, to deliver your capsule on your local day and at the time you choose.
- Topics, learning goal and language you pick during onboarding and in Settings.
- Interest profile: an internal model that adjusts to your reactions to choose capsules more relevant to you.
Activity in the app
- Reactions (like / dislike), saved capsules and your history of received capsules.
- Streak: your current streak and your best streak.
Technical data
- Notification token (FCM), so we can send your daily reminder if you enable notifications.
- Purchase history and Premium access status, including subscriptions and Lifetime purchases, managed through RevenueCat and the app store (App Store or Google Play).
- Diagnostic data when a crash or technical error occurs: error type, technical stack trace, app version, operating-system version, device model, technical installation or session identifiers, and the app's technical state at the time of the failure.
We do not collect your device advertising identifier (IDFA on iOS, AAID on Android), your precise location, or your browsing activity outside the app.
03How we use your data
- Create and maintain your account and session.
- Select and deliver your daily capsule based on your topics, language and time zone.
- Store your saved capsules, history, reactions and streak.
- Send the notifications you have set up.
- Manage your subscriptions, Lifetime purchases and purchase restoration.
- Keep the service secure, prevent abuse and fix errors.
- Comply with our legal obligations.
04Legal basis
Where the General Data Protection Regulation (GDPR) or equivalent laws apply to you, we process your data on the following bases:
- Performance of a contract: to provide the service you request (your account, the daily capsule, your saves and, where applicable, your paid plan).
- Consent: for push notifications, which we only enable with your permission and which you can withdraw at any time.
- Legitimate interests: to keep the service secure, prevent fraud and improve how the app works.
- Legal obligation: where we must retain or disclose data by law.
05Push notifications
If you enable notifications, we use Firebase Cloud Messaging (FCM) and your device token to send your daily capsule reminder at the times you set. You can turn them off at any time from Settings or from your device settings; when you do, we stop using the token for that purpose.
06Subscriptions and payments
Daily Capsule may offer optional subscriptions and, where available, a one-time Lifetime plan. Payments are processed entirely through the Apple App Store or Google Play; we never see or store your card details.
To determine whether a subscription, Lifetime purchase or other Premium access is active, we use RevenueCat, which manages access entitlements and purchase history tied to your user identifier and store purchase identifiers. See the detail in the providers section and in our Terms of Use.
07Who we share it with
We do not sell your personal data. We share it only with the providers we need to run the app, acting as processors under contract:
- Google Firebase (Authentication, Cloud Firestore, Cloud Functions, Cloud Messaging, App Check and Crashlytics): account infrastructure, database, backend, notifications and failure diagnostics. Crashlytics receives the technical data described under “What data we collect” to help us locate and fix errors.
- RevenueCat: management of subscriptions, Lifetime purchases, Premium access entitlements and purchase history.
- Apple and Google: process payments and subscriptions when you make a purchase, and provide Sign in with Apple and Google sign-in.
We may also disclose data where required by law or to protect our rights and those of our users.
08What we don't do
- We do not show ads in the app.
- We do not integrate advertising-tracking SDKs, advertising analytics or ad networks.
- We do not collect the IDFA (iOS) or the AAID (Android).
- We do not sell or rent your personal data to third parties.
- We do not build advertising profiles or track you across other apps or websites.
09Data retention
We keep your data while your account is active. When you delete your account, we remove your data from Firebase Authentication and Cloud Firestore, and we request deletion of the associated subscriber record in RevenueCat.
Technical logs that may contain identifiers are kept for a short period (30-day retention) and then deleted automatically. Some data may be retained longer where a legal obligation requires it.
10International transfers
Our providers (Google, Apple and RevenueCat) may process data on servers located outside your country, including the United States. In those cases, the transfer relies on the safeguards required by applicable law, such as the European Union's Standard Contractual Clauses.
11Your rights
Depending on your jurisdiction, you may have the right to:
- Access the data we hold about you.
- Rectify inaccurate data.
- Delete your account and data.
- Object to or restrict certain processing.
- Request portability of your data.
- Withdraw consent at any time, without affecting the lawfulness of prior processing.
You can exercise most of these rights directly in the app (for example, editing your preferences or deleting your account) or by writing to privacy@mydailycapsule.com. If you believe we haven't addressed your request, you have the right to lodge a complaint with your local supervisory authority.
12How to delete your account
You can delete your account at any time from Settings → Account → Delete account. Deletion is permanent: it removes your authentication record and your Firestore data (profile, preferences, saves, history, reactions and streak) and requests removal of your subscriber record in RevenueCat.
If you have an active paid subscription, note that deleting your account does not automatically cancel the subscription in the store. Cancel it as well from your App Store or Google Play account settings.
13Children
Daily Capsule is not directed at children, and we do not knowingly collect data from users below the minimum age required in your country (typically 13 or 16 depending on the jurisdiction). If you believe a child has provided us with personal data, contact us and we will delete it.
14Security
We apply reasonable technical and organizational measures to protect your data: encryption in transit, database access rules, app integrity verification (App Check) and administrative access control. No system is infallible, but we work to keep your data safe.
15Changes to this policy
We may update this policy to reflect changes in the app or the law. We'll post the revised version on this page with a new "Last updated" date and, when changes are significant, let you know within the app.
16Contact
Questions about privacy or your data?
Write to us at privacy@mydailycapsule.com.
See also our Terms of Use.