Counter Timer Privacy Policy
1. What this policy covers
Sunday Nautica makes and runs Counter Timer (the "app"). This document explains how we handle your personal information — where the information created while you use the app is stored, what it is used for, and how you can delete it.
2. First things first: if you don't sign in, we collect no personal information
The app works fully without signing in. In that case your counters and records are stored only on your device. They are not sent to our server, and we cannot see them.
(Regardless of sign-in, we collect only anonymous usage statistics that cannot identify you, as described in section 3 (3).)
Collection begins only when you choose to sign in and turn on backup. Signing in has one purpose — keeping your records when you change phones or delete and reinstall the app.
3. What we collect, and why
Only if you sign in and turn on backup, the items below are stored on our server.
(1) Account information — received from your sign-in provider.
| Item | Where it comes from | Why it is needed |
|---|---|---|
| Email address | Sign in with Apple or Google | To tell whose backup it is |
| Account identifier (unique ID) | Sign in with Apple or Google | To recognize you when you sign in again |
⚠️ If you choose "Hide My Email" when signing in with Apple, we receive only the relay address Apple creates for us, not your real address. You can break that connection at any time in your Apple settings.
(2) The records you create in the app — things you enter yourself, or that are produced while you use the app.
| Type | What is stored |
|---|---|
| Counter | Name (e.g. Push-ups), target time, target reps (if you set one), time created |
| Session record | Which counter it belongs to, target time, actual time taken, number of taps, start time, date |
These are used for backup and restore, and nothing else. We do not use or analyze them for any other purpose.
(3) Anonymous usage statistics — collected whether or not you sign in, to make the app better.
| What we collect | Examples | What we do not collect |
|---|---|---|
| What happens in the app | App opened, counter created, session started/ended (taps, time taken, whether the target was reached), purchase screen viewed, purchase completed, sign-in attempted | Counter names, email address, account identifier |
| Device and app information | Device model, iOS version, app version, language, region setting (e.g. US), time zone | Location, advertising identifier (IDFA), IP address (not stored) |
| App errors | Where and what kind of error occurred | The contents of the screen at the time |
These statistics carry only a random number generated when the app is installed. That number is not connected to your account, and we cannot tell who it belongs to. Signing in does not link the statistics to your account either. The purpose is to learn which features are used and where people get stuck, so we can improve the app — not advertising or marketing.
Deleting the app deletes that number too; a fresh install counts as a new person.
4. What we do not collect
The app does not request, receive, or store any of the following.
- Location · Contacts · Photos · Camera · Microphone · Health data
- Advertising identifier (IDFA) or ad tracking — the app has no advertising
- Analysis of your behavior linked to you as a person — the statistics in section 3 (3) are anonymous, and we cannot tell which user they belong to. We do not track you across other apps or websites.
- Payment information (card numbers and the like) — in-app purchases are handled entirely by Apple's App Store. We never receive or store a payment method. Whether you purchased is recorded only against your Apple Account and your device.
- Name, date of birth, gender, phone number
⚠️ One exception: screenshots you attach yourself when you contact us. The app does not reach into your photo library — only the files you pick yourself on the contact form are sent. We use them solely to handle your inquiry, and delete them once it is resolved.
5. Where it is stored, and for how long
- On your device: your counters and records are stored on the device. They are deleted along with the app if you delete it.
- On the server: if you turn on backup, the information in section 3 (1) and (2) is stored with the cloud database service Supabase (server location: Seoul, South Korea).
- Retention: we keep it until you delete your account, and delete it immediately when you do. We do not set a separate retention period or keep a separate copy.
- Anonymous usage statistics (section 3 (3)) are stored with the analytics service PostHog (server location: United States) and deleted no later than one year after collection.
Because they cannot be tied to anyone, they follow that period regardless of account deletion.
6. Processors and third parties
We do not sell your personal information or provide it for advertising purposes. We use the systems of the companies below to operate the service.
| Company | What they handle |
|---|---|
| Supabase | Storing backup data, managing sign-in sessions |
| Apple | Sign in with Apple, in-app purchase payments |
| Sign in with Google | |
| PostHog Inc. (United States) | Collecting and storing anonymous usage statistics and error reports (section 3 (3)) |
Cross-border transfer: the anonymous usage statistics in section 3 (3) are sent to and stored on servers of PostHog Inc. (California, United States). The items transferred are those in the section 3 (3) table, the transfer happens while you use the app (over the internet), and retention is at most one year.
These statistics contain nothing that can identify you. Questions can be sent to the contact in section 11.
We do not provide your information to any third party except where required by law through lawful process, such as a request from an investigative authority.
7. Your rights and how to exercise them
You can do all of this yourself, immediately, inside the app.
- Turn off backup / sign out — Settings → Account → Sign out.
The records on your device stay as they are, and nothing more is uploaded to the server. - Delete your account — Settings → Account → Delete account.
Your account information and the records backed up on the server are all deleted immediately, and this cannot be undone.
⚠️ The records on your device are not deleted. Only the backup goes away, and the app returns to the state it was in before you signed in. - Access and correction — you can view, edit, and delete your counters and records directly in the app, and those changes are reflected in the backup.
- Get a copy · stop processing — if you want a copy of the records backed up on the server, or want us to stop collecting and using them, write to the contact below. We act on it without delay.
- For anything else, contact us at the address below and we will take care of it.
8. Security measures
- Row Level Security (RLS) is applied to all data on the server, so a signed-in user can read and write only their own rows. Other users' records cannot be reached.
- While signed out, the app has no permissions on the server at all.
- Communication between the app and the server is encrypted (HTTPS).
- Before sending anonymous usage statistics, the app code filters out names, email addresses, and counter names, and an automated check enforces that rule.
9. Children under 14
The app is not directed to children under the age of 14, and we do not knowingly collect personal information from children.
10. Changes to this policy
If anything changes, we will update this page and show the date of the change at the top.
Significant changes that are unfavorable to users will also be announced with an app update.
11. Contact
Questions or requests about privacy: sundaynautica@gmail.com
12. How we destroy personal information
Personal information is destroyed without delay once its retention period has passed or its purpose has been fulfilled.
- Procedure: destruction begins the moment you delete your account. We do not hold it for any additional period.
- Method: personal information stored as electronic files is deleted in a way that cannot be recovered.
On the server we delete the row in the database, and the counters and records attached to it are deleted with it.
We do not keep personal information on paper.
13. Data protection officer
We have designated the following contact to protect personal information and to handle any complaint about it.
- Role: Personal Data Protection Officer (Sunday Nautica)
- Contact: sundaynautica@gmail.com
You can send any privacy question that comes up while using the service to the address above.
We reply and act without delay.
14. How to seek remedy
The operator is based in the Republic of Korea. If your rights have been infringed, you can ask the following Korean bodies for dispute resolution or advice.
| Body | Phone | Website |
|---|---|---|
| Personal Information Dispute Mediation Committee (개인정보분쟁조정위원회) | +82-1833-6972 | kopico.go.kr |
| Privacy Infringement Report Center (개인정보침해신고센터) | +82-118 | privacy.kisa.or.kr |
| Supreme Prosecutors' Office (대검찰청) | +82-1301 | spo.go.kr |
| Korean National Police Agency (경찰청) | +82-182 | ecrm.police.go.kr |
Effective date: August 30, 2026 · Revised: September 5, 2026 (added section 3 (3), anonymous usage statistics) · Revised: September 21, 2026 (added sections 12–14; added copy and stop-processing to section 7)