Privacy policy
In short
- The app needs no account, shows no ads and contains no tracking or analytics tools.
- Your counters, log and emergency card stay on your iPhone and Apple Watch. I never get to see them.
- I only receive data if you submit a skill, send feedback or write to me yourself – and only what you enter.
- The website sets no cookies and loads nothing from third-party servers.
1. Controller
Matteo L. Müller
Von-Kobell-Str. 2, 85570 Markt Schwaben, Germany
Email: info@sirenenstille.de
2. The app
2.1 Data on your device
Everything you enter in the app – counters, resets, log entries with craving and mood, your emergency card with reasons, message and photos, and your settings – is stored only locally on your iPhone. Widgets and the Apple Watch app access this data directly on your devices; data reaches the Watch directly from your iPhone. The data is not sent to me or to anyone else.
If you have iCloud Backup turned on in iOS, Apple backs up the app’s data together with your other device data in your iCloud account. I have no access to it; Apple’s privacy policy applies. Deleting the app deletes all of its data on the device.
2.2 Notifications
Reminders and milestone notifications are scheduled and shown on your iPhone. There is no server sending them. You can turn them off at any time in the app or in iOS Settings.
2.3 Siri and Shortcuts
If you use Sirenenstille with Siri or Shortcuts, Apple processes your voice input under its own privacy policy. The app itself answers the request on your device.
2.4 Submitting a skill
With “Submit a Skill” you can send me a suggestion for a new skill. The information you enter in the form (name, description, steps, craving level and optionally source, note and contact), together with the app’s language and version, is sent to and stored in Apple’s CloudKit service. Apple assigns a random identifier that I cannot link to your name or Apple Account. Other users cannot see submissions.
I use submissions only to review new skills for the app. The legal basis is your consent (Art. 6(1)(a) GDPR), which you give by submitting and can withdraw at any time by email. I delete submissions once I have reviewed them, at the latest after 12 months. Please only enter contact details you want to share.
If no iCloud account is available, you can send your suggestion by email instead; section 3.3 then applies.
2.5 Sending feedback
With “Send feedback” you can report bugs, wishes or anything else to me. The type of feedback, your message and optionally a contact, together with the app’s language and version, the iOS version and the device model (e.g. “iPhone17,1”), are sent to and stored in Apple’s CloudKit service. Counters, log and emergency card are not included. Apple assigns a random identifier that I cannot link to your name or Apple Account. Other users cannot see feedback.
I use feedback only to fix bugs and improve the app. The legal basis is your consent (Art. 6(1)(a) GDPR), which you give by sending and can withdraw at any time by email. I delete feedback once I have dealt with it, at the latest after 12 months. If no iCloud account is available, you can send an email instead; section 3.3 then applies.
2.6 Links to other websites
The app links to sources, support services and a price search on idealo. These pages open in your browser and are subject to the privacy policies of their providers. The app does not send any data about you.
2.7 App Store and crash reports
Apple’s privacy policy applies to downloads and updates. If you have agreed in iOS Settings to share app analytics with developers, Apple provides me with aggregated usage statistics and crash reports that do not identify you.
3. The website
3.1 Hosting
The website is provided via Azure Static Web Apps by Microsoft Ireland Operations Limited, One Microsoft Place, South County Business Park, Leopardstown, Dublin 18, Ireland. When you visit, Microsoft processes technically necessary data such as your IP address, date and time, the requested page and browser information in order to deliver the site and protect it from attacks. I do not analyse this data myself. The legal basis is my legitimate interest in a secure, working website (Art. 6(1)(f) GDPR). Microsoft processes the data as a processor under the Microsoft Products and Services Data Protection Addendum. The site is delivered via Microsoft’s global network so that it loads quickly everywhere; your request may therefore also pass through servers outside the EU, for example in the USA. Microsoft is certified under the EU-US Data Privacy Framework and has agreed to the EU Standard Contractual Clauses as additional safeguards.
3.2 No cookies, no tracking
The website sets no cookies, uses no analytics or advertising services and loads no fonts, scripts or content from third-party servers.
3.3 Contact by email
If you write to info@sirenenstille.de, I process your address and the content of your message in order to reply (Art. 6(1)(b) or (f) GDPR). Emails are stored with Microsoft 365 (Microsoft Ireland Operations Limited) with data residency in the European Union/EEA; Microsoft processes them as a processor. I delete them once they are no longer needed.
4. Your rights
You have the right of access (Art. 15 GDPR), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20) and objection (Art. 21). You can withdraw consent at any time with effect for the future. Just write to info@sirenenstille.de.
You can also lodge a complaint with a data protection authority. The competent authority is the Bayerisches Landesamt für Datenschutzaufsicht, Promenade 18, 91522 Ansbach, Germany, www.lda.bayern.de.