1. Who we are and the scope of this Policy
eu.Espírita is a Codeeze Apps product operated by Leonardo Bilia, an independent developer. Codeeze Apps is the umbrella brand for his software projects and is not a separate incorporated company. Leonardo Bilia is the controller for data processing determined by eu.Espírita.
This Policy covers the eu.Espírita hotsite, apps, accounts, community, support, content and subscriptions.
Apple, Google and other providers may act as independent controllers for their own purposes, such as stores, payments, advertising or operating-system services.
Back to top ↑2. Data processed by the website
The hotsite does not use analytics, marketing pixels, advertising, forms or tracking cookies. Clicking the support address opens your email app and the message is sent by you.
Hostinger and network infrastructure may log technical data needed to deliver and secure the site, such as IP address, date and time, requested URL, browser user agent and security events. Those logs follow provider settings and retention.
Back to top ↑3. Data processed by the apps
The data actually processed depends on the features you use, permissions you grant, your platform and your choices.
- Account and profile: identifier, name, email, photo and authentication managed through Firebase Authentication.
- Personal content: journal entries, reflections, habits, reminders, preferences, family progress and other records you choose.
- Community: posts, comments, reactions, polls, saved items, reports, images and public profile information.
- Support: topic, message, attachments, technical information and contact details needed to respond.
- Notifications: device token, preferences, reminders and data needed to deliver requested messages.
- Purchases: products, subscription status, receipts or identifiers supplied by stores and RevenueCat. We do not receive the full card number.
- Technical and usage data: versions, device, language, usage events, crashes, diagnostics, integrity, performance and permitted identifiers.
- Advertising: consent, privacy status and advertising identifiers when available and permitted.
4. Permissions and how we use data
The app may request photos, camera or notification access when you start a feature that needs it. You may deny or withdraw permissions in system settings.
We use data to create and protect accounts, sync content, provide journal, community, support, notification and family features, deliver purchases, adapt language, measure stability, fix errors, prevent abuse, display ads according to your choices and comply with law.
Back to top ↑5. Legal bases
Where GDPR, LGPD or similar law applies, we rely on appropriate bases: contract performance for requested features; consent for permissions, notifications or advertising where required; proportionate legitimate interests in security, support and improvement; and legal obligations.
You may withdraw consent through available settings or by contacting us. Withdrawal does not affect processing already carried out lawfully and may prevent optional features from working.
Back to top ↑6. On-device processing and AI
On compatible Apple devices, certain reflections and journal assistance may be generated using Apple's Foundation Models on the device. We do not send that interaction to an external AI provider to generate the response.
Some Android features may use Google ML Kit components. When a component operates locally, analysis remains on the device; behavior may vary by feature and version.
If you save or share a result, it is then processed as the corresponding content you chose to create.
Back to top ↑7. Providers and sharing
We do not sell personal data. We share information only when needed to operate the service, fulfil your request, protect people or comply with law.
- Google Firebase: authentication, database, storage, functions, messaging, remote configuration, integrity checks, analytics and diagnostics.
- RevenueCat: subscriptions and premium access; it may receive identifier, email, display name and tokens required by the integration.
- Google Mobile Ads and User Messaging Platform: advertising, consent, fraud prevention and measurement according to your choices.
- Apple App Store and Google Play: distribution, purchases, subscriptions, refunds and device services.
- Hostinger and infrastructure: website hosting, delivery, availability and security.
- Authorities or parties to a business transaction, only where required or permitted by law and with safeguards.
8. Advertising and international transfers
On Android and where available, the app may use Google Mobile Ads. We use the User Messaging Platform where consent is required. Non-personalized ads may still use context, limited technical data, frequency, fraud prevention and measurement.
Providers may process data in other countries. Where required, we rely on recognized mechanisms, contracts and commitments intended to protect transfers under GDPR, LGPD and applicable laws.
Back to top ↑9. Retention
We keep data only as long as reasonably necessary to provide the service, preserve account and content, answer support, administer purchases, maintain security, prevent fraud, resolve disputes and comply with law.
Periods vary. Account content generally remains while the account is active or until you delete it. Technical, financial and security records and backups may remain for limited periods after deletion where necessary and permitted.
Back to top ↑10. Account deletion
eu.Espírita and Codeeze Apps let you request deletion of your account and associated data we control. In the app, go to Profile → My Account → Delete Account, read the guidance, confirm your identity when requested and complete deletion.
Deletion covers the account, profile, journal, preferences and associated community content we control, subject to records retained for law, security, fraud prevention, accounting, disputes or technical backup cycles. Content shared by others or properly anonymized may no longer be attributable to you.
If you cannot access the app, email codeeze@codeeze.com, preferably from the account email address. We may ask only for information needed to locate the account and prevent unauthorized deletion.
- Open eu.Espírita and tap Profile.
- Open My Account.
- Choose Delete Account and follow the security confirmation.
11. Your rights and children's protection
Depending on applicable law, you may request confirmation, access, correction, portability, sharing information, objection, restriction, anonymization or deletion, withdraw consent and challenge certain automated decisions.
EEA residents may complain to the relevant authority. In Brazil, you may also contact the Autoridade Nacional de Proteção de Dados.
Accounts are intended for people aged 16 or older. Family and children's content should be used with a parent or guardian. Contact us if you believe a child supplied data without appropriate authorization.
Back to top ↑12. Security, changes and contact
We use reasonable technical and organizational measures, including authentication controls and provider security features. No system is entirely risk-free; protect your password and device.
We may update this Policy to reflect changes in the app, providers or law. To exercise rights or ask a privacy question, email codeeze@codeeze.com.
Back to top ↑Privacy questions or requests
Contact Leonardo Bilia, the independent developer and controller of data processed directly by eu.Espírita. Include enough information for us to understand and verify your request, but do not send passwords or unnecessary sensitive information.
Leonardo Biliacodeeze@codeeze.comThis Policy is available in English and Brazilian Portuguese. If the versions differ, the Portuguese version governs to the extent permitted by applicable law.