Privacy Policy — Proof

Effective date: 18 August 2026

Last updated: 18 August 2026

1. Who we are

Proof is a mobile application for habit commitment and partner accountability, published by Liberty Tech.

Liberty Tech is the data controller for the personal data described in this policy.

Contact: privacy@libertytech.fr

2. What we collect

We collect only what the app needs to work. There is no analytics SDK, no advertising SDK, no crash-reporting SDK, and no tracking of you across other apps or websites.

Account and sign-in

What you create in the app

Notifications

Security

We do not collect your location, your contacts, your photos, your phone number, your browsing history, or any biometric or health data.

3. Why we collect it, and our legal basis

WhatWhyLegal basis (GDPR)
Email, first name, sign-in identifiersTo create your account, sign you in, and show your partner who you arePerformance of a contract
Goals, completions, misses, reactions, pairingTo provide the service — this is the servicePerformance of a contract
Time zoneTo judge your day in your own local timePerformance of a contract
Push tokenTo send you reminders and tell you about your partner's activityPerformance of a contract
Session tokens, rate-limitingTo keep your account secureLegitimate interest

We do not use your data for advertising or profiling, and we do not sell it.

4. What your partner can see

Proof exists to make your commitments visible to one other person. When you pair with someone, that person can see:

They cannot see your email address, your sign-in method, or anything about any other person you may have been paired with. Pairing is mutual and requires an invite code — nobody can add you without your action.

5. Who else processes your data

ProcessorWhat forWhere
HostingerHosting for our servers and databaseEU data centre
ResendSending sign-in codes and account emailsEU / US, under Standard Contractual Clauses
Google (Firebase Cloud Messaging)Delivering push notifications, on both iOS and AndroidGoogle Cloud
Google / AppleVerifying your identity if you choose Sign in with Google or AppleGoogle / Apple

We do not share your data with advertisers, data brokers, or anyone else.

Firebase Cloud Messaging receives only the push token and the notification content needed to deliver a message. We use no other Firebase product — no Firebase Analytics, no Crashlytics, no Firebase Authentication.

6. How long we keep it

7. Your rights

Under the GDPR you may:

Email privacy@libertytech.fr and we will respond within one month.

8. Children

Proof is not directed at children and is not intended for anyone under 13 (or the minimum age of digital consent in your country, where that is higher). We do not knowingly collect data from children. If you believe a child has given us personal data, email us and we will delete it.

9. Security

Traffic between the app and our servers is encrypted with TLS. Sign-in tokens are stored in the operating system's secure storage — Keychain on iOS, Keystore on Android. Our database is not reachable from the public internet.

No system is perfectly secure, and we do not claim otherwise. If a breach affects your personal data, we will notify you and the relevant supervisory authority as the GDPR requires.

10. International transfers

Our servers are in the EU. Some processors listed in section 5 may process data outside the EU; where they do, transfers rely on the European Commission's Standard Contractual Clauses or an adequacy decision.

11. Changes to this policy

If we change this policy materially, we will update the date at the top and notify you in the app before the change takes effect.

12. Contact

privacy@libertytech.fr

Liberty Tech — France