At No Fallo (hereafter, "we") we take our users’ privacy seriously. This policy describes what data we collect, how we use it, with whom we share it and the rights you have over it. It applies both to the mobile application and the website, as well as any related service.
Data controller
No Fallo is a project operated by José M. P. J, a self-employed professional in Spain. For any privacy enquiries or to exercise your rights, contact us at hola@nofallo.com.
Controller details:
- Controller: José M. P. J
- Tax ID: ES43165202-K
- Professional address: Carrer Jordi Villalonga i Velasco, 07010 Palma de Mallorca, Balearic Islands (Spain)
- Email: hola@nofallo.com
Data we collect
Data you provide to us
- Account: email address and, optionally, public name and avatar when you sign up via email or an OAuth provider (Google).
- Profile: biography and custom avatar if you edit them.
- Challenge content: missions you accept or create, commitment text, check-ins (including date, mood, note and photo if you upload one).
- Groups: when you create or join a group, your membership and join date are stored.
Data collected automatically
- Usage data: interactions with the app, check-in events, frequency of use (for product purposes, not advertising).
- Device data: operating system, app version, anonymous identifier.
- Technical logs: errors and traces for troubleshooting.
Purposes of processing
- Create and manage your account.
- Enable you to use the features of the service (challenges, check-ins, groups, streaks).
- Improve the product and diagnose errors.
- Send you relevant service communications.
- Comply with applicable legal obligations.
Legal basis
We process your data on the basis of the performance of the contract you accept when signing up (Terms of Service), your consent where required (e.g. non-essential cookies), our legitimate interest in improving the service and preventing abuse, and to comply with legal obligations.
Sharing with third parties
We do not sell your data. We share strictly necessary information with the following providers acting as data processors:
- Supabase: database hosting, authentication and photo storage. EU-based servers.
- Transactional email service: sending one-time access codes (OTP) and essential service communications. By default we use the email service integrated into Supabase Auth.
- Push notifications: if notifications are enabled on your device, we send them via the Expo Push Service to remind you of your check-ins. You can disable them from your operating system settings.
- Authorities: when required by a court order or applicable law.
Storage and security
Data is stored on infrastructure provided by Supabase (Postgres + Storage). We apply encryption in transit (HTTPS), role-based access control (RLS) and periodically review accesses.
We retain data while your account is active. If you delete it, we remove your personal information except minimal records required by law.
Your rights
As a user you have the right to access, rectify, erase, object to and port your data, as well as to restrict its processing. To exercise these rights, contact us at hola@nofallo.com.
If you believe your right to data protection has not been respected, you may file a complaint with the Spanish Data Protection Agency (aepd.es).
Minors
No Fallo is not intended for children under 14 years old. If we detect a minor’s account, we will delete it.
International transfers
Some of our providers may process data outside the European Economic Area. In those cases we require equivalent safeguards (e.g. standard contractual clauses adopted by the European Commission).
Changes to this policy
We may update this policy. If changes are substantial we will notify you before they take effect. The current version is always available at this URL.
Contact
For any privacy-related question, write to hola@nofallo.com.