Saltar al contenido

Privacidad

Effective date: 31 August 2026.

Contact: [email protected]

This policy explains what the Soberya iOS app and the soberya.com website do with your information. The short version: your drink diary lives on your phone. Our server never receives your detailed drink logs. Everything that leaves your device is optional, off by default, and listed below.

1. The app without an account (the default)

You can use all core features of Soberya — logging, streaks, statistics, badges, mascots, widgets, reminders — without creating an account. In that mode:

  • Everything you enter (drinks, day check-ins, notes, goal, weekly limit, prices, display name, avatar photo) is stored only on your device.
  • Daily reminders are scheduled locally on your phone.
  • We run no analytics or advertising SDKs. The app sends us no usage statistics, no crash reports, no identifiers. We cannot see how you use it.

Two pieces of Apple infrastructure still apply, as with almost every iOS app: the App Store provides subscription prices and processes payments (we never see your payment details), and if you allow notifications, iOS registers the device with Apple’s push service. That push token stays on your device and is not sent to us unless you later sign in.

Your iPhone’s own backup (iCloud device backup) may include the app’s data, under Apple’s terms and your device settings.

2. Optional features on your device

  • iCloud backup (off by default). If you turn it on, your Soberya data is mirrored to your private iCloud database (container iCloud.com.soberya), owned by your Apple ID. We cannot read it. Turning the toggle off stops mirroring; deleting your data while backup is on also removes the iCloud copy. If you turned backup off before deleting, a copy may remain in your iCloud until you enable backup again and delete, or manage it via iOS settings.
  • Apple Health (off by default). If you enable it, Soberya writes the number of drinks you log into Apple Health. It never reads anything from Health. Turning it off removes the samples Soberya wrote.

3. Optional account, friends, and cheering

Signing in (with Apple or Google) is needed only for social features. When you sign in, our server stores:

  • your name and email address as provided by Apple/Google, an internal account ID, and your sign-in provider;
  • a random 8-character friend code;
  • your device’s push token, so friends’ cheers and invites can reach you;
  • your app language (to send push notifications in your language) and a coarse “last seen” timestamp;
  • your shared snapshot — the small summary your friends see. You choose its contents with per-item switches: streak and total days are the base; weekly chart and 30-day calendar colours and badges are on by default; money saved, drink types, and notes are OFF by default and each can be enabled by you. Items you don’t enable are never uploaded — the server never receives them at all;
  • your avatar picture, if you set one;
  • friendship records, cheers, blocks, and reports you send or receive;
  • if you subscribe to Plus: your subscription status (product and expiry date), used to show your crown to friends and enable the public page. Payment itself is handled entirely by Apple.

What the server never receives, signed in or not: your individual drink logs, timestamps of drinks, prices you paid, or day-by-day diary. Friends see only the summary items you enabled.

Sign-in with Google exchanges tokens directly with Google (scopes: openid, email, profile). Sign-in with Apple works under Apple’s privacy terms; we store the token needed to disconnect your Apple account when you delete yours.

4. Optional public page (Plus)

If you choose a username and press Publish, a public page at soberya.com/u/<username> shows the items you selected with a separate set of switches (enabling something for friends never puts it on the web). The page is marked “noindex” to discourage search engines. You can unpublish at any time; the page stops being served (a cached copy may persist for a minute or two).

5. What we don’t do

  • No advertising, no ad networks.
  • No analytics or tracking SDKs.
  • We do not sell or share your personal information for advertising or any commercial purpose. We share data only with the processors listed below, as needed to run the service.
  • No contact-list access, no location, no reading from Apple Health.

6. Processors and recipients

PartyRole
AppleSign in with Apple, push notifications (APNs), App Store payments, iCloud/CloudKit, Apple Health (on-device)
GoogleOptional Google sign-in (openid, email, profile)
Cloudflare, Inc. (US)Hosts our API and avatar storage (Workers, D1 database, R2 storage) on its global network
Our hosting providerHosts the soberya.com website (standard server logs: IP address, page, time)

Our server infrastructure runs on Cloudflare’s global network, which may process data outside your country, including in the United States. We rely on standard contractual safeguards offered by our processors for such transfers.

7. Retention

  • On your device: until you delete the app’s data or the app itself.
  • On our server: until you delete your account. We keep no automatic long-term copies. When you delete your account, we remove your profile (name, email), friend code, push tokens, snapshot, public page, avatar, friendships, and cheers; we revoke the Apple sign-in token; reports you filed are kept in anonymized form (moderation record about the reported account); an anonymous deletion marker (no personal data) is retained for statistics.
  • Sessions expire after 90 days.
  • Contact-form emails are deleted when the conversation is done.

8. Your rights and controls

Everything below is available directly in the app:

  • Delete everything: Settings → Erase all data (two-step confirmation). This wipes the device data and, if you are signed in, deletes your server account as described above. If you are offline at that moment, the server deletion may not complete — contact us at [email protected] and we will remove it.
  • Delete account only: Settings → Soberya Account → Delete account.
  • Export: Settings → Export data (CSV, JSON, or XLSX) — a full copy of your data (data portability).
  • Sharing controls: per-item switches for friends and, separately, for the public page; block and report; signing out removes your push token from our server.

Depending on where you live (e.g., the EU/EEA under GDPR, or California under CCPA/CPRA), you also have legal rights to access, rectify, erase, restrict, object, and port your data, to withdraw consent, and to complain to your data-protection authority. Write to [email protected] to exercise any right; we respond within the legally required time. We do not discriminate against you for exercising privacy rights.

Where consent is the basis (optional account, iCloud, Health, notifications, sharing switches), you can withdraw it at any time with the same toggle you used to give it. Operating the account and friend features is based on our contract with you; minimal fraud/abuse protection (e.g., rate limits, moderation of reports) is our legitimate interest.

9. Age

Soberya is intended for adults of legal drinking age, and in any case for persons 17+. It is not directed at children, and we do not knowingly collect children’s data.

10. The website

soberya.com stores two things in your browser only: your theme choice and your cookie decision. Fonts are self-hosted (no font CDN sees your visit). The contact form sends your name, email, and message to our support inbox. There is currently no analytics on the site; if any is added, it will load only after you accept it in the cookie banner.

11. Changes

We will update this policy when the app changes what it does with data, and note the effective date above. Material changes will be announced in the app or on this site.

12. Contact

Privacy questions and requests: [email protected]