Privacy Policy
Privacy Policy explains how the Freezr app (package
si.smartklik.freezr) processes personal data. The data
controller is SmartKlik (“we”, “us”). By using the app,
you agree to this policy.
1. Who we are
Controller: Smartklik, computer programming and consulting, Marko Lovrić s.p.
Address: Goriče 30, 4204 Golnik, Slovenia
Company registration no.: 7508417000 · VAT ID: SI91312434
Register entry: Registered in the Business Register of Slovenia (AJPES)
Contact:
support@freezr.smartklik.si
Website: https://freezr.smartklik.si
2. Summary
- You can use Freezr without an account — inventory stays on your device.
- Account and cloud sync are optional (Pro/Business subscription).
- Sign-in is available with email and password or a Google account.
- We do not sell your data and do not show in-app ads.
- Barcode numbers are sent only to Open Food Facts to look up product names; we do not upload camera images to our servers.
3. Data we collect
3.1 Data you provide
- Food inventory: item names, quantities, units, locations, notes, expiry dates, shopping lists.
- Account (if created): email address and password (password is stored hashed by Firebase Authentication; we cannot read it), or sign-in with a Google account (email and account identifier from Google; you do not enter Freezr passwords).
- Household: household members (Firebase user IDs), invite codes, subscription metadata (plan, status, expiry).
3.2 Data collected automatically
- Local database: inventory stored in SQLite (Room) on your device.
- Firebase Analytics: basic usage data (e.g. events, device model, OS version) via Google services.
- Firebase Installations / Auth: technical identifiers for sign-in and sync.
- Google account sign-in: if you choose this option, Google Ireland Limited verifies your identity and provides a token for Firebase Authentication. We receive your email address and a technical account identifier from Google; we do not receive or store your Google password. Google’s Privacy Policy and Google account terms also apply.
- In-app purchases: Google Play processes payment; we receive purchase tokens and subscription data to enable access (via Firebase Cloud Functions and Google Play Developer API).
- Barcodes: when scanning, the barcode number is sent to
world.openfoodfacts.org. The camera is used on-device; images are not stored in our cloud.
3.3 What we use data for
- Display and manage your food inventory.
- Sync across devices in the same household (with an active subscription).
- Local expiry reminders (inventory content is not sent to our servers for notifications).
- Process subscriptions and verify payments.
- Security, troubleshooting, and app improvement.
4. Legal basis (GDPR)
- Contract — providing app and subscription features you requested.
- Legitimate interest — security, fraud prevention, basic analytics.
- Consent — camera (scanning) and notifications (Android 13+) when you grant them on your device.
5. Where data is stored and international transfers
- On device: local inventory, settings, per-user household ID.
- Google Cloud / Firebase (Firestore, Authentication, Cloud Functions, Analytics): synced household inventory, account data, and subscription metadata. Data is processed in Google infrastructure which may include servers in the EU and/or USA depending on service and project configuration.
- This website is hosted on Firebase Hosting (Google). Visits may generate technical server logs (IP address, access time) under Google’s hosting terms.
- Google Play: transaction and subscription records.
Transfers to third countries (especially the USA) rely on EU Standard Contractual Clauses and/or other GDPR safeguards. Google is certified under the EU–US Data Privacy Framework for certain services — see Google’s Privacy Policy.
6. Third parties
- Google LLC / Google Ireland Limited — Firebase (Authentication, Firestore, Cloud Functions, Analytics), Google Play Billing, Google account sign-in (Google Sign-In).
- Open Food Facts — product lookup by barcode (their privacy policy).
We do not sell data to advertisers.
7. Retention
- Local data remains until you delete it or uninstall the app.
- Cloud data is kept while you have an account and/or household membership. After account deletion we remove linked cloud account data and synced household inventory where you were the sole member or owner; local data on device remains unless you delete it.
- Purchase records are retained as required by law and Google Play policies.
8. Account and data deletion
You may request deletion of your account and synced data:
- Follow the steps on our Account deletion page, or
- Email support@freezr.smartklik.si from your registered address.
Important: Cancel any active subscription in Google Play before deletion (deleting the account does not stop auto-renewal). We then delete your Firebase Authentication account, related Firestore records, and household membership, usually within 30 days. Purchase data held by Google Play is retained by Google under its policies.
To request deletion of buyer data held by Google Play, also see Google Play data support.
9. Security
Server communication uses HTTPS. Cloud data access is restricted by Firestore security rules (household members with an active subscription only).
10. Your rights (GDPR)
If you are in the EU/EEA, you may request access, rectification, erasure, restriction, portability, or object to processing. Contact support@freezr.smartklik.si. You may lodge a complaint with your local supervisory authority.
11. Children
Freezr is not intended for users under 16. Contact us if you believe we collected a child’s data without parental consent.
12. Device permissions
- Internet — sync, sign-in, product lookup, subscriptions.
- Camera — barcode scanning (optional).
- Notifications — expiry reminders (optional).
13. Cookies and this website
This website is mostly static and does not use our own tracking or advertising cookies. Firebase Hosting may log technical access data on the server. The app may use Firebase Analytics — see above.
14. Android backup
If device backup is enabled, local app data may be included in your system backup provider (e.g. Google).
15. Changes
We may update this policy. The effective date will be shown on this page.