1. Scope of application
The policy applies to the SpoMess application, server services and features provided within the application. When using the service, you confirm that you have read this content.
2. Account information
The app can handle your email, account identifier, display name, profile picture, bio, and necessary login information. With Google or Facebook login, the application only receives information that the provider allows to share.
Email account passwords are saved in hashed form and are not displayed again to employees or other users.
3. Messages and content you send
Messages, images, videos, audio, attachments, moments, and searches are processed to send, sync, display, and protect your conversations.
Content is only made available to chat participants according to the feature's settings. You should not submit information that you do not have permission to share.
4. Device information
To maintain a login session, send notifications, and manage active sessions, the system may receive the platform, device name, device code provided by the operating system, or settings code generated by the application.
This information is not used to read private content beyond the scope of the features you have used.
5. Location
Location sharing only works when you grant permission and enable sharing for at least one conversation. Location is tied to the device and is only returned to members of the chat who are authorized to see it.
You can turn off location sharing at any time in your chat or device settings.
6. Notice
Apps can use FCM tokens and device information to send notifications according to your preferences. You can turn off notifications overall or turn off individual notifications for each conversation.
If you deny the operating system notification permission, the app can't turn it back on itself.
7. Cookies and technical data
Apps can save tokens, settings options, copies of data needed for offline operation, and basic diagnostic information. Local data is cleared when you log out or delete your account according to the corresponding flow.
8. Hosting and service providers
Data is stored on authorized database servers and repositories. Some infrastructure services such as notification sending, social login, file saving, and system monitoring can process data according to their functions.
We take appropriate measures to limit unauthorized access, but no method of transmission or storage can guarantee absolute security.
9. Data sharing
We do not sell personal data. Data is only shared when it is necessary to provide functionality, when you actively send it to others, when it is necessary to protect service safety, or when required by law.
10. Storage period
Information is retained for as long as necessary to provide services, resolve disputes, meet legal obligations and fulfill the stated purpose. Deleted content may take some time to remove from backups.
11. Your rights
You can view and edit your profile, manage your devices, change notification settings, turn off location sharing, request account deletion, or contact us about your data.
12. Children
The Services are not designed to intentionally collect children's data without appropriate guardian permission. If you think an account belongs to a child who provided data, please contact us to check.
13. Data from other features
To operate friends, groups and stranger matching, we process usernames, invite codes or links, friend relationships, join requests, block status, conversation membership, matching interests and a one-time location used to find a suitable nearby match. Matching does not continuously track you or show exact coordinates to the matched person.
Feature content includes message reactions, nicknames, Moments, schedules, schedule media and Spo Notes. We process it to synchronize content, enforce access, issue reminders and notify the appropriate members. Message text is analyzed on your device to suggest schedules and is not sent to an AI service.
When you use a paid plan, we process the product, entitlement status, transaction identifier or purchase evidence, and renewal status supplied by the App Store or Google Play. The store processes your payment method; SpoMess does not receive your full card details.
In applicable builds, Firebase Analytics processes the internal user identifier, screens, action categories, account or plan status and app information; Crashlytics processes the internal user identifier and limited crash and diagnostic data. Analytics does not receive message, note or schedule content, search terms, coordinates, invite codes, OTPs, login tokens or device notification tokens.
14. Policy changes
We may update our policy to reflect changes in functionality, law or operations. New versions will be announced within the app and may require you to read, scroll to the end, and accept before continuing to use.
15. Contact
If you have privacy-related questions or requests, please use the support channels provided in the app. Please clearly describe your request so we can process it accurately.