Privacy Policy
Last Updated: February 2, 2026
Effective Date: February 2, 2026
1. Introduction
Welcome to Pauso. This Privacy Policy explains how Moka IT Engineering Kft. ("we," "us," or "our") collects, uses, discloses, and protects your information when you use the Pauso mobile application ("App").
We are committed to protecting your privacy and ensuring you understand how your data is handled. Please read this Privacy Policy carefully before using our App.
Data Controller:
Moka IT Engineering Kft.
Orosházi út 17/8
5600 Békéscsaba
Hungary
Contact Email: danielmoka@mokaie.com
2. Information We Collect
2.1 Information Stored Locally on Your Device
The majority of your data is stored locally on your device and never leaves it unless you choose to enable cloud sync. This includes:
- User Settings: Your preferences for notifications, haptics, sounds, breathing patterns, color themes, and appearance mode
- Protected Apps Configuration: The list of apps you've chosen to protect with Pauso, including per-app settings for Gentle and Strict modes
- Usage Statistics: Breathing exercise counts, blocked attempts, "don't open" decisions, minutes saved, and daily/cumulative statistics
- Attempt Records: Timestamps and outcomes of your interactions with protected apps
- Intentions: Any intentions you enter when using the Intention Check feature (Pro)
- Achievements: Milestones and badges you've earned
- Weekly Insights: Generated reports about your usage patterns
2.2 Information Collected When You Sign In (Optional)
If you choose to sign in with Apple, we collect and sync the following to our cloud service:
- Account Information: A unique identifier from Apple Sign-in (we do not receive your actual Apple ID email unless you choose to share it)
- Profile Data: Your subscription status, streak information, and account creation date
- Synced Settings: Your preferences and protected apps configuration
- Daily Statistics: Up to 365 days of usage statistics for cross-device sync
- Achievement Records: Your earned milestones
2.3 Information Collected Automatically
- Device Activity Data: When you grant Screen Time/Family Controls permission, we access information about which protected apps you attempt to open, solely to provide the blocking functionality. This data is processed locally and not transmitted to our servers.
- Subscription Status: We receive information from Apple about your subscription status through RevenueCat to manage your Pro features.
2.4 Information We Do NOT Collect
- We do not collect your name, email address, phone number, or other personal identifiers (unless you choose to share your email via Apple Sign-in)
- We do not collect your location data
- We do not collect your contacts or photos
- We do not access the content of your messages or other apps
- We do not use third-party analytics or tracking SDKs
3. How We Use Your Information
We use the information we collect to:
- Provide App Functionality: Enable breathing exercises, app blocking, usage tracking, and insights
- Sync Your Data: If you sign in, synchronize your settings and progress across devices
- Process Subscriptions: Manage your Pro subscription status and entitlements
- Improve the App: Understand general usage patterns to improve features (using only aggregated, non-personal data)
- Send Notifications: If you enable notifications, send timer alerts, wind-down reminders, and weekly insight notifications
4. Third-Party Services
We use the following third-party services:
4.1 RevenueCat
- Purpose: Subscription and in-app purchase management
- Data Shared: Anonymous user identifier, subscription status, purchase transactions
- Privacy Policy: https://www.revenuecat.com/privacy
4.2 Supabase
- Purpose: Cloud data storage and authentication (only when you sign in)
- Data Shared: Account data, synced settings, and statistics as described in Section 2.2
- Data Location: European Union
- Privacy Policy: https://supabase.com/privacy
4.3 Apple
- Purpose: Sign in with Apple authentication, App Store payments, Screen Time API
- Data Shared: Authentication tokens, payment processing (handled entirely by Apple)
- Privacy Policy: https://www.apple.com/legal/privacy
4.4 Apple iTunes API
- Purpose: Fetching app icons for display in the App
- Data Shared: App bundle identifiers only (no personal data)
5. Data Storage and Security
5.1 Local-First Architecture
Pauso is designed with a local-first approach. Your data is stored primarily on your device using iOS secure storage mechanisms. Cloud sync is entirely optional and only activated when you explicitly sign in.
5.2 Security Measures
- All data transmitted to our cloud services uses HTTPS encryption
- Authentication is handled through Apple's secure Sign in with Apple service
- We do not store passwords or sensitive authentication credentials
- Cloud data is stored in secure, EU-based data centers
5.3 Data Retention
- Local Data: Remains on your device until you delete the app or clear app data
- Cloud Data (if signed in): Retained while your account is active
- After Account Deletion: Cloud data is permanently deleted within 30 days
- Subscription Data: RevenueCat retains subscription records as required for payment processing
6. Children's Privacy
Pauso is rated 4+ and may be used by children. We take children's privacy seriously and comply with the Children's Online Privacy Protection Act (COPPA) and applicable EU regulations regarding children's data.
6.1 Data Collection for Children Under 13
- Local-Only Mode: Users under 13 are restricted to local-only mode and cannot create accounts or use cloud sync features
- No Personal Data Collection: We do not knowingly collect personal information from children under 13
- Parental Supervision: We recommend that parents supervise their children's use of the App
6.2 Parental Rights
Parents or guardians may:
- Review the data their child has stored locally by accessing the app on their child's device
- Delete their child's local data by uninstalling the app
- Contact us at danielmoka@mokaie.com with any questions or concerns about their child's data
If we discover that we have inadvertently collected personal information from a child under 13 without proper consent, we will delete that information promptly.
7. Your Rights
7.1 Rights Under GDPR (EU Users)
If you are located in the European Union, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Restrict Processing: Request limitation of how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing of your data
- Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent
7.2 Rights Under UK GDPR (UK Users)
Users in the United Kingdom have the same rights as listed above under UK data protection law.
7.3 Rights Under CCPA (California Users)
If you are a California resident, you have the following rights:
- Right to Know: Request disclosure of personal information collected, used, and shared
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt out of the "sale" of personal information (note: we do not sell your personal information)
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights
7.4 How to Exercise Your Rights
To exercise any of these rights:
- For local data: Access, modify, or delete your data directly within the App settings
- For cloud data: Use the "Delete Account" feature in the App, or contact us at danielmoka@mokaie.com
- For subscription data: Contact Apple directly for App Store purchase records
We will respond to your request within 30 days (or sooner as required by applicable law).
8. International Data Transfers
If you sign in and use cloud sync, your data may be transferred to and processed in the European Union, where our cloud services (Supabase) are located.
For users outside the EU, these transfers are protected by:
- Standard Contractual Clauses approved by the European Commission
- Supabase's compliance with applicable data protection regulations
9. Do Not Track
Our App does not respond to "Do Not Track" signals because we do not track users across third-party websites or services.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make changes:
- We will update the "Last Updated" date at the top of this policy
- For material changes, we will notify you through the App or via email (if you have provided one)
- Continued use of the App after changes constitutes acceptance of the updated policy
We encourage you to review this Privacy Policy periodically.
11. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Moka IT Engineering Kft.
Orosházi út 17/8
5600 Békéscsaba
Hungary
Email: danielmoka@mokaie.com
We will respond to your inquiry within a reasonable timeframe.
12. Supervisory Authority
If you are located in the European Union and believe we have not adequately addressed your concerns, you have the right to lodge a complaint with your local data protection supervisory authority.
For Hungary, this is:
Nemzeti Adatvédelmi és Információszabadság Hatóság (NAIH)
Website: https://www.naih.hu