Privacy Policy

Last updated: January 1, 2025

1. Introduction

AppSpark GmbH ("we", "us", or "our") operates Thinxdone (the "Service"). This Privacy Policy informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service and the choices you have associated with that data.

We are committed to protecting your privacy and ensuring the security of your personal information. This policy complies with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

2. Information We Collect

2.1 Personal Information

While using our Service, we may ask you to provide certain personally identifiable information that can be used to contact or identify you. This may include:

  • Email address
  • First name and last name
  • Company name
  • Phone number (optional)
  • Billing address (for paid subscriptions)

2.2 Usage Data

We automatically collect certain information when you visit, use, or navigate the Service. This may include:

  • IP address
  • Browser type and version
  • Pages visited and time spent
  • Date and time of visit
  • Device information
  • Diagnostic data

2.3 Usage of Cookies

We use cookies and similar tracking technologies to track activity on our Service and store certain information. For detailed information, please see our Cookie Policy section below.

3. How We Use Your Information

We use the collected data for various purposes:

  • To provide and maintain the Service
  • To notify you about changes to our Service
  • To provide customer support
  • To gather analysis or valuable information to improve our Service
  • To monitor the usage of the Service
  • To detect, prevent, and address technical issues
  • To process payments for subscriptions
  • To send you marketing communications (with your consent)

4. Legal Basis for Processing

We process your personal data on the following legal grounds:

  • Contract: Processing is necessary for the performance of our contract with you
  • Consent: You have given consent for specific purposes
  • Legal obligations: Processing is necessary for compliance with legal obligations
  • Legitimate interests: Processing is necessary for our legitimate interests

5. Data Sharing and Disclosure

We may share your information in the following situations:

5.1 Service Providers

We may share your data with third-party service providers who assist us in operating our Service, including:

  • Cloud hosting providers (AWS)
  • Payment processors (Stripe)
  • Email service providers
  • Analytics providers

5.2 Legal Requirements

We may disclose your information if required to do so by law or in response to valid requests by public authorities.

5.3 Business Transfers

If we are involved in a merger, acquisition, or asset sale, your personal data may be transferred.

6. Data Security

We implement appropriate technical and organizational security measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. These measures include:

  • Encryption of data in transit and at rest
  • Regular security assessments and audits
  • Access controls and authentication mechanisms
  • Regular backups and disaster recovery procedures
  • Employee training on data protection

7. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for legal, accounting, or reporting requirements. When determining retention periods, we consider:

  • The duration of our relationship with you
  • Legal obligations to retain data
  • Legal positions (such as applicable statutes of limitations)

8. Your Data Protection Rights

Under GDPR, you have the following rights regarding your personal data:

  • Access: Request access to your personal data
  • Rectification: Request correction of inaccurate personal data
  • Erasure: Request deletion of your personal data
  • Restriction: Request restriction of processing your personal data
  • Portability: Request transfer of your data to another organization
  • Objection: Object to processing of your personal data
  • Withdraw consent: Withdraw consent at any time where we rely on consent

To exercise these rights, please contact us at support@thinxdone.com. We will respond to your request within 30 days.

9. International Data Transfers

Your information may be transferred to and maintained on servers located outside of your country. We ensure that such transfers are subject to appropriate safeguards as required by data protection laws, including Standard Contractual Clauses approved by the European Commission.

10. Children's Privacy

Our Service is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children under 18. If you become aware that a child has provided us with personal data, please contact us.

11. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. For material changes, we will provide a more prominent notice (including email notification for certain services).

12. Cookie Policy

12.1 What Are Cookies

Cookies are small text files that are placed on your device when you visit a website. They are widely used to make websites work more efficiently and provide information to website owners.

12.2 Our Use of Cookies

This website (www.thinxdone.com) currently does not use any cookies. We do not set any cookies, tracking pixels, or similar technologies on our landing page.

12.3 Application Cookies

Our web application (app.thinxdone.com) uses strictly necessary cookies for:

  • Authentication: To keep you logged in during your session
  • Security: To protect against Cross-Site Request Forgery (CSRF) attacks
  • Preferences: To remember your language and display preferences

12.4 Future Cookie Usage

If we implement cookies in the future (such as for analytics or marketing), we will:

  • Update this Cookie Policy
  • Implement a cookie consent banner
  • Allow you to manage your cookie preferences
  • Only use cookies with your explicit consent (except strictly necessary cookies)

12.5 How to Control Cookies

Although we don't currently use cookies on this site, you can control and delete cookies through your browser settings. Please note that removing or blocking cookies may impact your user experience on other websites.

12.6 Browser Cookie Settings

You can manage cookies in your browser through the following links:

13. Contact Information

If you have any questions about this Privacy Policy or our data practices, please contact us:

Data Controller: AppSpark GmbH
Email: support@thinxdone.com
Website: www.appspark.at

You also have the right to lodge a complaint with a supervisory authority if you believe your rights have been violated.