Yasal
Gizlilik Politikası
Kısaca: Cupolog bir kahve günlüğüdür. Yalnızca uygulamayı çalıştırmak ve geliştirmek için gereken verileri saklarız. Reklam ağı kullanmaz, reklam kimliğinizi (IDFA) okumaz, sizi başka uygulamalarda izlemeyiz. Uygulamayı geliştirmek için anonim kullanım istatistiği ve çökme raporu topluyoruz; bunu Profil › Gizlilik'ten tek dokunuşla kapatabilirsiniz. Verilerinizi satmayız. Hesabınızı uygulama içinden silebilirsiniz — sildiğinizde her şey kalıcı olarak gider.
01 Bu politika kimi kapsar
Bu politika, Cupolog mobil uygulamasını ve cupolog.com web sitesini kapsar. Uygulamayı kullandığınızda verilerinizin sorumlusu (veri sorumlusu / data controller) Cupolog'dur.
Her türlü gizlilik sorusu ve talebi için: privacy@cupolog.com
02 Topladığımız veriler
Hesap bilgileri
- E-posta adresiniz. Hesabınızı oluşturmak ve giriş yapabilmeniz için gereklidir.
- Apple ile Giriş kullanırsanız, Apple size özel gizli bir yönlendirme adresi (
@privaterelay.appleid.com) verebilir. Bu durumda gerçek e-posta adresinizi hiçbir zaman görmeyiz. - Google ile Giriş kullanırsanız, Google'dan e-posta adresinizi ve adınızı alırız.
- Şifrenizi saklamıyoruz. Kimlik doğrulama altyapımız (Supabase) tarafından yönetilir; şifreler bizim sunucumuza hiç ulaşmaz.
Profil
- Görünen adınız
- Profil fotoğrafınız (isteğe bağlı)
- Değirmen tercihi, tema tercihi gibi uygulama ayarlarınız
Uygulamaya girdiğiniz içerik
- Kahveler: isim, marka, menşei, çiftlik, işleme yöntemi, kavurma ve satın alma tarihi, gramaj, fiyat, tat notları, kişisel notlarınız ve varsa paket fotoğrafı.
- Demlemeler: yöntem, kahve ve su miktarı, süre, sıcaklık, öğütüm ayarı, puanınız ve tat notlarınız.
- Tarifler, filtreler ve su ayarları.
Teknik kayıtlar
Sunucularımız her isteği güvenlik ve hata ayıklama amacıyla kaydeder. Bu kayıtlar şunları içerir: IP adresiniz, istek yolu, HTTP durum kodu, yanıt süresi, tarih/saat ve hesap kimliğiniz. Bu kayıtlar en geç 30 gün içinde otomatik olarak silinir (uygulamada bu süre daha da kısadır) ve reklam ya da profilleme için kullanılmaz.
03 Toplamadığımız veriler
Bunları açıkça belirtmek istiyoruz, çünkü birçok uygulamanın aksine Cupolog bunları yapmaz. (Topladığımız anonim kullanım istatistikleri için bkz. bölüm 04.)
- Reklam yok. Reklam ağı, reklam kimliği (IDFA) veya reklam SDK'sı kullanmıyoruz.
- Uygulamalar arası takip yok. Sizi başka şirketlerin uygulama ve sitelerinde izlemiyoruz.
- Konum verisi yok. Konum izni istemiyoruz ve konumunuzu toplamıyoruz.
- Rehber, takvim, sağlık veya finansal veri yok.
- Ses kaydı yok. Uygulama yalnızca demleme zamanlayıcısının uyarı sesini çalar; mikrofonu hiçbir zaman kullanmaz.
- Veri satışı yok. Verilerinizi kimseye satmıyor, kiralamıyor veya pazarlama amacıyla paylaşmıyoruz.
04 Analitik ve çökme raporlama
Uygulamanın hangi bölümlerinin kullanıldığını anlamak ve çökmeleri düzeltebilmek için Google Firebase (Google Analytics for Firebase ve Firebase Crashlytics) kullanıyoruz.
İstemiyorsanız kapatabilirsiniz. Uygulamada Profil › Gizlilik › Anonim kullanım verisi paylaş anahtarını kapattığınızda toplama tamamen durur — veri gönderilmediği gibi cihazınızda da biriktirilmez. Çökme raporları da bu anahtara bağlıdır.
Toplananlar
- Açtığınız ekranlar ve bunların sırası.
- Demleme kaydetme, tarif oluşturma, abonelik ekranını görüntüleme gibi eylem türleri (içerik değil).
- Uygulama çökerse hata kaydı, yığın izi ve çökmeden önceki adımlar.
- Cihaz modeli, işletim sistemi sürümü, uygulama sürümü, dil ve ülke.
- Google tarafından üretilen, uygulamaya özgü rastgele bir cihaz kimliği (app instance ID). Uygulamayı silerseniz bu kimlik de kaybolur.
- Çökmeleri kaç kullanıcının etkilediğini görebilmek için hesap kimliğiniz (rastgele bir UUID). Bu kimlik e-postanızı veya adınızı içermez.
Toplanmayanlar
- Kahve isimleriniz, tadım notlarınız, puanlarınız veya fotoğraflarınız.
- Adınız, e-posta adresiniz veya profil fotoğrafınız.
- Reklam kimliği (IDFA). Google'ın reklam özelliklerini açmadık; bu yüzden uygulama iOS'un izleme izni penceresini de göstermez.
Bu veriler yalnızca ürünü geliştirmek için kullanılır; reklam için kullanılmaz, satılmaz ve başka veri kümeleriyle birleştirilmez.
05 Abonelik ve satın alma
Cupolog Pro aboneliği App Store üzerinden satılır. Ödeme bilgilerinizi biz görmeyiz ve saklamayız — kart bilgileriniz yalnızca Apple'a gider.
Sunucularımızda aboneliğinizle ilgili şunları saklarız: hangi planı aldığınız, aboneliğin başlangıç ve bitiş tarihi, otomatik yenilemenin açık olup olmadığı, aboneliğin durumu ve Apple'ın verdiği işlem kimliği. Bu kayıt, Pro özelliklerini açabilmemiz ve satın almanızı doğrulayabilmemiz için gereklidir.
Aboneliğinizin durumunu takip etmek için RevenueCat adlı bir servis kullanıyoruz. Apple'dan gelen satın alma, yenileme ve iptal bilgileri bu servis üzerinden sunucumuza ulaşır. RevenueCat'e yalnızca hesap kimliğiniz (adınız ya da e-postanız değil, rastgele bir kimlik) ve Apple'ın satın almayla ilgili bilgileri iletilir. Kahve kayıtlarınız, notlarınız, fotoğraflarınız ya da e-posta adresiniz bu servise hiç gönderilmez.
Bir promo kodu kullanırsanız, kodun hangi hesap tarafından ve ne zaman kullanıldığını saklarız; böylece aynı kodun tekrar kullanılmasını engelleriz. Promo kodları Apple'dan geçmez, ücretsizdir ve RevenueCat'e iletilmez.
06 Verileri neden işliyoruz
| Amaç | Veri | Hukuki dayanak (KVKK / GDPR) |
|---|---|---|
| Hesabınızı oluşturmak ve giriş yapmanızı sağlamak | E-posta, hesap kimliği | Sözleşmenin ifası |
| Kahve ve demleme kayıtlarınızı saklamak, cihazlar arası eşitlemek | Girdiğiniz içerik | Sözleşmenin ifası |
| İstatistik, stok takibi ve önceki demlemeye göre öneri üretmek | Demleme kayıtlarınız | Sözleşmenin ifası |
| Kötüye kullanımı önlemek, hataları gidermek, hizmeti güvende tutmak | Teknik kayıtlar (IP dâhil) | Meşru menfaat |
| Aboneliğinizi doğrulamak ve Pro özellikleri açmak | Abonelik kaydı, Apple işlem kimliği | Sözleşmenin ifası |
| Uygulamayı geliştirmek, çökmeleri gidermek | Anonim kullanım istatistikleri, çökme raporları | Açık rıza (Profil › Gizlilik'ten geri alınabilir) |
| Yasal yükümlülüklere uymak | Gerekli asgari veri | Hukuki yükümlülük |
07 Fotoğraflar ve kamera
Uygulama, yalnızca siz bir fotoğraf eklemeyi seçtiğinizde galerinize veya kameranıza erişim ister. Yalnızca seçtiğiniz tek fotoğraf yüklenir; galerinizin geri kalanına erişimimiz olmaz.
Konum verisi otomatik silinir. Yüklediğiniz her fotoğraf sunucumuzda yeniden kodlanır. Bu işlem sırasında fotoğrafın içine gömülü EXIF verileri — GPS konumu, cihaz modeli ve çekim zamanı dâhil — kalıcı olarak kaldırılır. Saklanan görüntüde bu bilgiler bulunmaz.
Fotoğraflar Cloudflare R2 üzerinde tahmin edilemez rastgele adreslerle saklanır. Bir fotoğrafı sildiğinizde depolamadan da silinir.
08 Bildirimler
Demleme zamanlayıcısı bildirimleri tamamen cihazınızda oluşturulur ve zamanlanır. Sunucularımıza bildirim jetonu (push token) gönderilmez ve size uzaktan bildirim göndermeyiz. Bildirim iznini istediğiniz zaman telefon ayarlarından kapatabilirsiniz.
09 Verilerinizi kimlerle paylaşıyoruz
Verilerinizi satmıyoruz. Hizmeti çalıştırmak için yalnızca aşağıdaki altyapı sağlayıcılarını (veri işleyenleri) kullanıyoruz:
| Sağlayıcı | Ne için | Nerede |
|---|---|---|
| Supabase | Kimlik doğrulama ve veritabanı | Avrupa Birliği |
| Hetzner Online GmbH | Uygulama sunucusu | Almanya (Falkenstein) |
| Cloudflare | Fotoğraf depolama, DNS, web sitesi | Küresel dağıtık ağ |
| Expo (EAS) | Uygulama güncellemelerinin dağıtımı | ABD |
| Apple / Google | Yalnızca bu yöntemle giriş yaparsanız kimlik doğrulama | ABD |
| Google (Firebase) | Anonim kullanım istatistikleri ve çökme raporları — kapatılabilir | ABD |
| Apple | Abonelik satışı ve ödeme; ödeme bilgileriniz bize hiç ulaşmaz | ABD |
| RevenueCat | Abonelik durumunun takibi; yalnızca hesap kimliğiniz ve Apple'ın işlem bilgileri iletilir | ABD |
Bunlar dışında verilerinizi yalnızca yasal olarak zorunlu olduğumuz hâllerde (mahkeme kararı vb.) paylaşırız.
10 Verileriniz nerede saklanıyor
Hesap ve içerik verileriniz Avrupa Birliği'nde barındırılır. Uygulama sunucumuz Almanya'dadır. Fotoğraflar Cloudflare'in küresel ağında saklanır. Uygulama güncelleme altyapısı (Expo) ABD merkezlidir ve bu servise kişisel içerik verisi gönderilmez — yalnızca uygulama sürüm bilgisi iletilir.
Yurt dışına aktarım. Analitik ve çökme raporları Google'ın ABD'deki altyapısında işlenir. Abonelik satın alımları Apple tarafından, abonelik durumu ise RevenueCat tarafından ABD'de işlenir. Bu aktarımlar standart sözleşme hükümleri gibi uygun güvenceler kapsamında gerçekleşir. Analitik aktarımını istemiyorsanız Profil › Gizlilik'ten kapatabilirsiniz; abonelik verisi ise satın alma yaptığınızda zorunlu olarak oluşur.
11 Ne kadar süre saklıyoruz
- Hesap ve içerik verileriniz: hesabınız açık kaldığı sürece.
- Teknik kayıtlar (IP dâhil): 30 gün, ardından otomatik silinir.
- Analitik verileri: Google Analytics kullanıcı düzeyindeki kayıtları varsayılan olarak 2 ay sonra siler; yalnızca kimseye bağlanamayan toplu istatistikler kalır.
- Çökme raporları: Firebase Crashlytics'te 90 gün.
- Abonelik kaydı: hesabınızı sildiğinizde diğer verilerinizle birlikte silinir. RevenueCat'teki kayıt da hesap kimliğinize bağlıdır ve talep üzerine silinir. Satın almanın resmi kaydı Apple'da kalır; ona yalnızca Apple'ın kuralları uygulanır.
- Promo kodu kullanımı: aynı kodun tekrar kullanılmasını engellemek için saklanmaya devam eder. Bu kayıt yalnızca kodun kimliğini, opak bir hesap kimliğini ve tarihi içerir; hesabınız silindikten sonra hiçbir kişiye bağlanamaz.
- Hesabınızı sildiğinizde: hesabınız, kahveleriniz, demlemeleriniz, tarifleriniz ve fotoğraflarınız anında ve kalıcı olarak silinir. Yedeklerdeki kopyalar en geç 30 gün içinde döngüden çıkar.
12 Hesabınızı ve verilerinizi silme
Hesabınızı istediğiniz zaman, kimseye sormadan, doğrudan uygulama içinden silebilirsiniz:
- Uygulamada Profil sekmesini açın.
- Hesabı Sil seçeneğine dokunun.
- Onaylayın. Hesabınız ve tüm verileriniz kalıcı olarak silinir.
Uygulamaya erişemiyorsanız privacy@cupolog.com adresine hesabınızın e-postasından yazın; talebinizi en geç 30 gün içinde sonuçlandırırız. Ayrıntılar: Hesap silme sayfası.
13 Haklarınız
KVKK (6698 sayılı Kanun) ve GDPR kapsamında şu haklara sahipsiniz:
- Kişisel verilerinizin işlenip işlenmediğini öğrenme ve bunlara erişme
- Eksik veya yanlış işlenmişse düzeltilmesini isteme
- Silinmesini veya yok edilmesini isteme
- Verilerinizi yapılandırılmış bir formatta alma (taşınabilirlik)
- İşlemeye itiraz etme ve işlemenin sınırlandırılmasını isteme
- Zararınız doğmuşsa tazminat talep etme
Başvurularınızı privacy@cupolog.com adresine iletebilirsiniz. En geç 30 gün içinde yanıt veririz. Sonuçtan memnun kalmazsanız Türkiye'de Kişisel Verileri Koruma Kurumu'na, AB'de ise bulunduğunuz ülkenin veri koruma otoritesine şikâyette bulunma hakkınız saklıdır.
14 Çocukların gizliliği
Cupolog 13 yaşın altındaki çocuklara yönelik değildir ve bilerek 13 yaş altı kullanıcılardan veri toplamayız. Böyle bir verinin toplandığını fark edersek derhâl sileriz. Çocuğunuzun bize veri verdiğini düşünüyorsanız lütfen bize yazın.
15 Güvenlik
- Tüm veri aktarımı TLS (HTTPS) ile şifrelenir.
- Her istek imzalı bir kimlik jetonu ile doğrulanır; yalnızca kendi verilerinize erişebilirsiniz.
- Veritabanı düzeyinde satır bazlı erişim denetimi uygulanır.
- Yüklenen fotoğraflar sunucuda yeniden kodlanarak zararlı içerik ve gömülü konum verisi temizlenir.
Hiçbir sistem %100 güvenli değildir; bir güvenlik açığı fark ederseniz lütfen privacy@cupolog.com adresinden bize bildirin.
16 Bu politikadaki değişiklikler
Bu politikayı zaman zaman güncelleyebiliriz. Önemli bir değişiklik olduğunda yürürlük tarihini güncelleriz ve uygulama içinden sizi bilgilendiririz. Güncel sürüm her zaman bu sayfada yayımlanır.
17 İletişim
- Gizlilik ve veri talepleri
- privacy@cupolog.com
- Genel destek
- support@cupolog.com
- Web
- cupolog.com
Legal
Privacy Policy
In short: Cupolog is a coffee journal. We store only what the app needs to work and improve. We use no ad networks, never read your advertising identifier (IDFA), and never track you across other apps. We do collect anonymous usage statistics and crash reports to improve the app, and you can switch this off with one tap in Profile › Privacy. We never sell your data. You can delete your account from inside the app, and when you do, everything is permanently removed.
01 Who this policy covers
This policy covers the Cupolog mobile app and the cupolog.com website. Cupolog is the data controller for the personal data described here.
For any privacy question or request: privacy@cupolog.com
02 Data we collect
Account information
- Your email address, needed to create your account and sign you in.
- If you use Sign in with Apple, Apple may give you a private relay address (
@privaterelay.appleid.com). In that case we never see your real email address. - If you use Sign in with Google, we receive your email address and name from Google.
- We do not store your password. Authentication is handled by our provider (Supabase); passwords never reach our server.
Profile
- Your display name
- Your profile photo (optional)
- App preferences such as grinder setting and theme
Content you enter
- Coffees: name, roaster, origin, farm, process, roast and purchase dates, weight, price, tasting notes, your personal notes, and an optional bag photo.
- Brews: method, coffee and water amounts, time, temperature, grind setting, your rating and tasting notes.
- Recipes, filters and water settings.
Technical logs
Our servers log each request for security and debugging. These logs contain your IP address, request path, HTTP status, response time, timestamp, and your account ID. They are automatically deleted within 30 days at most (in practice sooner) and are never used for advertising or profiling.
03 Data we do not collect
We state these explicitly because, unlike many apps, Cupolog does none of them. (For the anonymous usage statistics we do collect, see section 04.)
- No advertising. No ad networks, no advertising identifier (IDFA), no ad SDKs.
- No cross-app tracking. We do not follow you across other companies' apps or websites.
- No location data. We never request location permission and never collect your location.
- No contacts, calendar, health or financial data.
- No audio recording. The app only plays the brew timer alert sound; it never uses the microphone.
- No data sales. We do not sell, rent or share your data for marketing.
04 Analytics and crash reporting
To understand which parts of the app are used and to fix crashes, we use Google Firebase (Google Analytics for Firebase and Firebase Crashlytics).
You can turn this off. Switching off Profile › Privacy › Share anonymous usage data in the app stops collection entirely — nothing is sent, and nothing is buffered on your device either. Crash reporting follows the same switch.
What is collected
- Which screens you open and in what order.
- Types of action such as saving a brew, creating a recipe or viewing the subscription screen — not their content.
- If the app crashes: the error, its stack trace and the steps leading up to it.
- Device model, operating system version, app version, language and country.
- A random, app-specific device identifier generated by Google (app instance ID). Deleting the app also destroys this identifier.
- Your account identifier (a random UUID) so we can see how many users a crash affects. It contains neither your email nor your name.
What is not collected
- Your coffee names, tasting notes, ratings or photos.
- Your name, email address or profile photo.
- The advertising identifier (IDFA). We have not enabled Google's advertising features, which is why the app never shows the iOS tracking permission prompt.
This data is used only to improve the product. It is never used for advertising, never sold, and never combined with other datasets.
05 Subscriptions and purchases
The Cupolog Pro subscription is sold through the App Store. We never see or store your payment details — your card information goes only to Apple.
On our servers we store the following about your subscription: which plan you bought, its start and end dates, whether auto-renewal is on, its status, and the transaction identifier issued by Apple. We need this record to unlock Pro features and to verify your purchase.
We use a service called RevenueCat to keep track of your subscription status. Purchase, renewal and cancellation information from Apple reaches our server through this service. Only your account identifier (a random identifier, not your name or email) and Apple's purchase data are shared with RevenueCat. Your coffee records, notes, photos and email address are never sent to it.
If you redeem a promo code, we store which account redeemed it and when, so that the same code cannot be used twice. Promo codes do not go through Apple, are free of charge, and are not shared with RevenueCat.
06 Why we process your data
| Purpose | Data | Legal basis (GDPR / KVKK) |
|---|---|---|
| Create your account and sign you in | Email, account ID | Performance of a contract |
| Store and sync your coffee and brew records | Content you enter | Performance of a contract |
| Produce statistics, stock tracking and suggestions from your last brew | Your brew records | Performance of a contract |
| Prevent abuse, fix errors, keep the service secure | Technical logs incl. IP | Legitimate interest |
| Comply with legal obligations | Minimum necessary data | Legal obligation |
07 Photos and camera
The app requests access to your photo library or camera only when you choose to add a photo. Only the single photo you pick is uploaded; we never gain access to the rest of your library.
Location data is stripped automatically. Every photo you upload is re-encoded on our server. During that step the embedded EXIF metadata — including GPS location, device model and capture time — is permanently removed. The stored image does not contain it.
Photos are stored on Cloudflare R2 under unguessable random paths. When you delete a photo, it is deleted from storage too.
08 Notifications
Brew timer notifications are created and scheduled entirely on your device. No push token is sent to our servers and we do not send you remote notifications. You can revoke notification permission at any time in your phone's settings.
09 Who we share data with
We do not sell your data. We use only the following infrastructure providers (data processors) to run the service:
| Provider | Purpose | Location |
|---|---|---|
| Supabase | Authentication and database | European Union |
| Hetzner Online GmbH | Application server | Germany (Falkenstein) |
| Cloudflare | Photo storage, DNS, website | Global edge network |
| Expo (EAS) | Delivering app updates | United States |
| Apple / Google | Authentication, only if you sign in that way | United States |
| Google (Firebase) | Anonymous usage statistics and crash reports — can be switched off | United States |
| Apple | Subscription sales and payment; your payment details never reach us | United States |
| RevenueCat | Subscription status tracking; only your account identifier and Apple's transaction data are shared | United States |
Beyond these, we disclose data only where legally required (for example a valid court order).
10 Where your data is stored
Your account and content data are hosted in the European Union. Our application server is in Germany. Photos are stored on Cloudflare's global network. Our app-update infrastructure (Expo) is US-based and receives no personal content data — only the app version identifier.
International transfers. Analytics and crash reports are processed on Google's infrastructure in the United States. Subscription purchases are processed by Apple, and subscription status by RevenueCat, in the United States. These transfers take place under appropriate safeguards such as standard contractual clauses. If you would rather not have analytics transferred, switch it off in Profile › Privacy; subscription data is created only when you actually make a purchase.
11 How long we keep data
- Account and content data: as long as your account exists.
- Technical logs (incl. IP): 30 days, then automatically deleted.
- Analytics data: Google Analytics deletes user-level records after 2 months by default; only aggregate statistics that cannot be linked to anyone remain.
- Crash reports: 90 days in Firebase Crashlytics.
- Subscription record: deleted together with the rest of your data when you delete your account. The record held by RevenueCat is tied to your account identifier and is deleted on request. The authoritative record of the purchase stays with Apple and is governed by Apple's own rules.
- Promo code redemption: retained so the same code cannot be redeemed twice. The record contains only the code's identifier, an opaque account identifier and a date; after your account is deleted it cannot be linked to any person.
- When you delete your account: your account, coffees, brews, recipes and photos are deleted immediately and permanently. Copies in backups roll out within 30 days at most.
12 Deleting your account and data
You can delete your account at any time, without asking anyone, directly in the app:
- Open the Profile tab in the app.
- Tap Delete Account.
- Confirm. Your account and all your data are permanently erased.
If you cannot access the app, email privacy@cupolog.com from your account address and we will complete the request within 30 days. Details: account deletion page.
13 Your rights
Under the GDPR and Turkey's KVKK (Law No. 6698) you have the right to:
- Know whether we process your data and access it
- Have inaccurate or incomplete data corrected
- Request erasure of your data
- Receive your data in a structured format (portability)
- Object to processing and request that it be restricted
- Seek compensation for damage caused by unlawful processing
Send requests to privacy@cupolog.com. We respond within 30 days. If you are not satisfied, you may lodge a complaint with your national data protection authority in the EU, or with the Personal Data Protection Authority (KVKK) in Turkey.
14 Children's privacy
Cupolog is not directed at children under 13 and we do not knowingly collect data from them. If we learn that we have, we delete it promptly. If you believe your child has given us data, please contact us.
15 Security
- All data in transit is encrypted with TLS (HTTPS).
- Every request is verified with a signed identity token; you can only reach your own data.
- Row-level access control is enforced at the database layer.
- Uploaded photos are re-encoded server-side, removing malicious content and embedded location metadata.
No system is 100% secure. If you find a vulnerability, please report it to privacy@cupolog.com.
16 Changes to this policy
We may update this policy from time to time. When a change is material we update the effective date and notify you in the app. The current version is always published on this page.
17 Contact
- Privacy and data requests
- privacy@cupolog.com
- General support
- support@cupolog.com
- Web
- cupolog.com