Privacy Policy

Last updated: 2025-09-16

This Privacy Policy explains how SharpDay (‘we’, ‘us’, or ‘our’) collects, uses, and protects your information when you use our website and services. SharpDay is operated by Krisztina Kiss, sole proprietor (egyéni vállalkozó), based in Hungary.

Business Name: Krisztina Kiss e.v.

Business Address: 2724 Újlengyel, Petőfi Sándor u. 48.

Tax Number: 91378781-1-33

Email: support@mysharpday.com

Krisztina Kiss acts as the Data Controller responsible for your personal data under GDPR. If you have any questions about this policy, you can contact us at support@mysharpday.com.

1. Who We Are

SharpDay is a productivity app focused on clarity, focus, and building lasting habits. We are committed to respecting your privacy and handling your data transparently.

2. What Information We Collect

2.1. Personal Information

We collect limited personal data to provide our service:

  • Google Sign-In: When you sign in with Google, we collect your email address and basic profile information (as provided by Google, e.g. name, profile image, email address).
  • Email/Password Registration: If you register using email, we collect your email address and password (securely hashed). A display name can be set by you.
  • Stripe Payments: When you subscribe, Stripe collects your billing address, payment method details (e.g., card type, expiry), transaction history, and fraud-prevention data such as IP address and device information. We do not store card data directly.

2.2. In-App Data

Tasks, projects, ideas, and focus data entered in the app are stored securely in our Supabase database.

2.3. Analytics and Technical Data

  • We use Vercel Analytics to understand general usage patterns. This data is anonymized and does not use cookies.
  • No third-party marketing trackers or advertising cookies are used.
  • Supabase automatically collects technical metadata during login such as IP address, device, and location information for authentication and security purposes.

2.4. Local Storage

  • We store app preferences (e.g., theme, layout, sound toggles, interface choices) in your browser's local storage. This information is functional only and not used for tracking.

3. How We Use Your Information

We use your data to:

  • Provide and maintain the SharpDay service
  • Customize your experience (e.g., themes, layouts, focus settings)
  • Offer smart task suggestions based on your interaction with the app
  • Send newsletters and occasional product updates or special offers (optional)
  • Manage subscriptions and billing via Stripe
  • Analyze anonymized usage trends to improve the product

You can opt out of marketing emails at any time via the unsubscribe link or manage your preferences in your account settings. Users must confirm they are at least 16 years old to consent to marketing communications.

4. Sharing Your Information

We only share your information with trusted service providers, specifically:

We do not sell or rent your personal information to any third parties.

5. Legal Basis for Processing (GDPR)

For users in the EU or subject to the GDPR, we process your data based on:

  • Contractual necessity: To deliver the service you signed up for
  • Legitimate interest: For product improvement and minimal analytics
  • Consent: For newsletters, product updates, special offers, and marketing communications

You have the right to:

  • Access the personal data we hold about you
  • Correct or update inaccurate or incomplete data
  • Request deletion of your data (right to be forgotten)
  • Object to or restrict certain types of processing
  • Withdraw consent at any time where processing is based on consent
  • Request a copy of your data in a portable format

To exercise these rights, contact us at support@mysharpday.com. We will respond within the timeframes required by applicable law.

6. Your Rights

Depending on your location, you may have the right to:

  • Access, correct, or delete your personal data
  • Withdraw consent for certain types of processing
  • Export your data upon request
  • Lodge a complaint with a supervisory authority (in Hungary: NAIH, https://naih.hu)

To exercise your rights, please contact support@mysharpday.com.

7. Cookies

SharpDay uses only essential cookies required for authentication. When you log in, Supabase stores authentication tokens in cookies to maintain your session. These cookies are strictly necessary for the service to function and cannot be disabled.

We do not use tracking cookies, advertising cookies, or third-party marketing cookies.

8. Data Retention

  • Your data is retained for as long as you have an active account.
  • If you cancel your subscription, your data will be preserved so you can resume use later.
  • If you delete your account via the profile page, all associated data (tasks, preferences, insights) will be permanently deleted. This action cannot be undone.
  • Marketing consent is stored until withdrawn.
  • Analytics data collected by Vercel is anonymized and typically retained for around 30 days (subject to Vercel's policies).

9. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • Secure database storage via Supabase
  • Encrypted connections (HTTPS)
  • Hashed passwords
  • Stripe PCI-compliant payment processing and fraud detection

Our infrastructure providers may include secure cloud services such as AWS or Google Cloud (via Supabase), all of which comply with industry best practices.

10. Children's Privacy

Our Services are intended for general audiences. Children under 16 may use the app itself without providing age information, as the legal basis is contractual. However, marketing emails require confirmation that the user is at least 16 years old. We do not knowingly send marketing communications to children under 16. If we become aware that we have collected data without legally valid parental consent, we will take reasonable steps to delete it as soon as possible. If you believe a child has provided us with personal information, please contact us at support@mysharpday.com and we will take appropriate steps to delete such data.

11. International Users

If you are accessing SharpDay from outside Hungary, please be aware that your data will be processed in the EU and may be transferred to or stored in other jurisdictions (e.g., United States) where our service providers operate. Such transfers are safeguarded through mechanisms like Standard Contractual Clauses (SCCs). You can learn more in each provider's Data Processing Agreement or privacy policy: Stripe DPA, Supabase DPA, Vercel DPA, Resend DPA

We may disclose your personal data if required to do so by law or in response to valid requests by public authorities.

12. Changes to This Policy

We may update this Privacy Policy from time to time. If we make significant changes, we will notify you via email or an in-app message.

13. Contact

If you have any questions about this policy or your data, you can reach out at: