SD Logo Nightshift Studio

App Privacy Policy

Smarte BeetIdeen – Last updated: June 2026

Data minimization as a principle

We only collect the data that is strictly necessary to operate the app. By default, all your garden projects, photos, and beds are stored exclusively locally on your device until you actively decide to create a user account.

Protecting your personal data is important to us. This Privacy Policy explains the nature, scope, and purpose of processing personal data within our "Smarte BeetIdeen" app. The controller for data processing is SD Nightshift Studio (see Legal Notice for details).

1. Data collection and storage

Local use (guest mode)

If you use the app without signing in, all the beds, plant lists, and diagnosis history you create remain in a local database on your smartphone. We have no access to this data.

User account and cloud sync

If you sign in via Google or Apple, we collect your email address and name to create your account. If you enable the optional "cloud sync" feature (Premium), your projects and images are encrypted and backed up on our servers (Supabase) so you can restore them on other devices.

2. Data processing through app features

To offer you the app's smart features, specific data must be temporarily processed:

Artificial intelligence (images & diagnoses)

If you photograph a bed or a sick plant, that image is sent via an encrypted connection to our AI partners (OpenAI / Fal.ai). It is processed there only for the duration of the analysis, is not used to train AI models, and is immediately deleted afterward.

In-app purchases (subscription & Garden Pass)

All payments are processed securely through the Apple App Store or Google Play Store. We use the service RevenueCat to manage unlocks. We never have any insight into your bank or credit card details; we only process anonymized purchase IDs.

Usage analytics (strict opt-in)

We use Google Analytics for Firebase to detect crashes and improve the app. This happens only if you have explicitly consented during onboarding. You can withdraw this consent at any time with a single tap in the app settings.

3. Third-party providers used

Hosting and infrastructure

We work exclusively with carefully vetted service providers who have committed to GDPR compliance. Our core infrastructure includes:

  • Supabase: Database hosting, authentication, and cloud storage.
  • RevenueCat: Validation of subscriptions and in-app purchases.
  • OpenAI & Fal.ai: Provision of AI interfaces for text and image generation.
  • Google Firebase: Error and usage analytics (only with active consent).

All data transfers between the app and the servers use current security standards (SSL/TLS encryption).

4. Your rights under the GDPR

You have the right at any time to access, rectify, restrict, and erase your personal data. Full control: You can independently, completely, and irrevocably remove your account, along with all associated images and cloud data, from our servers at any time directly in the app under "Profile -> Delete account". If you use "Sign in with Apple", the authentication token with Apple is automatically revoked upon deletion as well.