1. Introduction
Welcome to Pivio ("the App", "we", "us", or "our"). This Privacy Policy explains how we collect, use, and protect your personal information when you use the Pivio mobile application and website at pivio.club.
Pivio is operated by Gabor Csecsetka, based in Spain. As a data controller, we process personal data in compliance with applicable Spanish and EU data protection laws, including the General Data Protection Regulation (GDPR).
By using Pivio, you agree to the terms of this Privacy Policy. If you do not agree, please do not use the App.
2. Information We Collect
2.1 Information You Provide Directly
- Account information: Username, email address, and profile picture (avatar) when you create an account.
- Group & event data: Names, descriptions, and details of groups, events, and venues you create or participate in.
- Messages: Content of messages you send in group and event chats.
- Confirmation responses: Your attendance status, guest count, and notes for events.
- Venue details: Venue names, text addresses, map share links (e.g. Apple Maps or Google Maps URLs), facility information, and pricing you enter manually.
- Contact form submissions: Your name, email address, and message if you contact us through the website.
2.2 Information Collected Automatically
- Push notification tokens: Device push tokens (via Expo's push notification service) to deliver notifications to your device.
- Language preference: Your selected app language.
- Error and crash data: If the app encounters an error or crash, we automatically collect diagnostic information including error messages, stack traces, device type, operating system version, and app version. This data is sent to our error tracking service (Sentry) to help us identify and fix bugs. Email addresses and other personal identifiers are automatically removed from error reports before they are sent. Your account is linked to error data only via an anonymised user ID (UUID).
2.3 Information We Do NOT Collect
- We do not collect your device's GPS location or any precise geolocation data. Venue locations are entered manually by users as text addresses or map share links.
- We do not access your device camera, photo library, contacts, microphone, or any other device sensor. When you select a profile picture or group image, the operating system's built-in photo picker handles the selection privately β the App only receives the specific image you choose, which is then uploaded to our servers.
3. How We Use Your Information
We use the information we collect to:
- Provide and operate the Pivio application and its features.
- Send you push notifications about events, attendance updates, and group activity (only with your permission).
- Respond to your enquiries and support requests.
- Improve the App's stability, performance, and user experience.
- Comply with legal obligations.
We do not sell your personal data. We do not use your data for advertising purposes.
4. Third-Party Services
Pivio uses the following third-party services, each with their own privacy policies:
- Supabase β Database, authentication, and file storage. Supabase Privacy Policy. Data is stored in EU-region servers.
- Expo (by Expo Inc.) β Mobile app framework and push notification delivery service (which uses Apple Push Notification Service (APNs) for iOS and Firebase Cloud Messaging (FCM) for Android). Expo Privacy Policy.
- Apple Push Notification Service (APNs) β For iOS push notifications. Subject to Apple's privacy policy.
- Firebase Cloud Messaging (FCM) by Google β For Android push notifications. Subject to Google's privacy policy.
- Web3Forms β Contact form submissions on our website. Web3Forms Privacy Policy.
- Cloudflare Web Analytics β Privacy-first, cookie-less website analytics. Cloudflare Privacy Policy.
- Sentry β Error and crash reporting for the mobile app. Error data is processed on EU servers (Germany). Email addresses, API keys, tokens, and other sensitive data are automatically scrubbed before transmission. Sentry Privacy Policy.
5. Data Retention
We retain your personal data for as long as your account is active or as needed to provide the service. If you delete your account, we will delete your personal data within a reasonable timeframe, except where we are required to retain it by law.
Groups and events you created or participated in may continue to exist if other members remain, to preserve shared resources for the group. All other personal data, including your messages, is permanently deleted.
For step-by-step instructions on how to delete your account, visit our Account Deletion page.
6. Your Rights (GDPR)
If you are located in the European Economic Area (EEA), you have the following rights under GDPR:
- Right of access: Request a copy of your personal data.
- Right to rectification: Request correction of inaccurate data.
- Right to erasure ("right to be forgotten"): Request deletion of your personal data.
- Right to restriction of processing: Request that we limit how we use your data.
- Right to data portability: Request your data in a machine-readable format.
- Right to object: Object to processing based on legitimate interests.
To exercise any of these rights, please contact us at contact@pivio.club.
7. Data Security
We take reasonable technical and organisational measures to protect your data, including encrypted data storage via Supabase, encrypted device storage via Expo Secure Store, and HTTPS for all data in transit. However, no method of transmission over the internet is 100% secure.
8. Children's Privacy
Pivio is not directed at children under the age of 18. We do not knowingly collect personal information from children under 18. If you believe we have inadvertently collected such information, please contact us immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by updating the "Last updated" date at the top of this page. We encourage you to review this policy periodically.
10. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
- Email: contact@pivio.club
- Website: pivio.club
- Data Controller: Gabor Csecsetka, Spain