1. Introduction
Welcome to GezApp ("the App", "we", "us", "our"). This Privacy Policy describes how we collect, use, store, and protect your personal information when you use the GezApp mobile application — a catalog of places and events in Azerbaijan.
By using GezApp, you agree to the terms of this Privacy Policy. If you do not agree with any terms — please do not use the App.
2. What data we collect
2.1. Data you provide directly
When you register and use the App, we may collect the following information:
- Email address — to create and identify your account
- First and last name — to display on your profile (optional)
- Profile photo (avatar) — if you choose to upload one
- Reviews and ratings of establishments — text you leave about places
- Place submission requests — information you send via the "Suggest a place" form
- Selected interest categories — to personalize recommendations
2.2. Automatically collected data
When you use the App, we automatically collect:
- Device identifier — anonymous technical identifier to prevent spam and abuse
- Push notification token — if you allow notifications, to send messages about new places and events
- Interaction events — which places you opened, which buttons you clicked (call, route, website). This data is anonymous and used only for statistics
- Technical data — app version, device type, operating system
2.3. Geolocation
GezApp does not collect your precise geolocation. When you request a route to a venue, you are redirected to Apple Maps or Google Maps, and geolocation is used by those services in accordance with their own privacy policies.
3. How we use your data
We use the collected data exclusively to:
- Provide you with App functionality (display places, events, recommendations)
- Identify your account and ensure login security
- Send push notifications about new arrivals and events (with your consent)
- Protect against fraud, spam, and rating manipulation
- Improve the quality of the App through anonymous analytics
- Contact you if necessary (e.g., respond to your submission)
- Comply with our legal obligations
We do not use your data for:
- Selling to third parties
- Sending advertising from partners without your consent
- Profiling for behavioral manipulation
4. Data storage
Your data is stored on Supabase servers (Amazon Web Services infrastructure, EU-Frankfurt region) with TLS 1.3 encryption in transit and AES-256 encryption at rest.
Retention periods:
- Account data (email, name, avatar) — stored until account deletion
- Reviews — stored until you delete them or your account
- Analytics events — stored for 12 months, then automatically deleted
- Push tokens — deleted when you disable notifications
- Backups — stored for 30 days, then overwritten
5. Data sharing with third parties
We share limited data with the following services necessary for the App to function:
| Service | Data | Purpose |
|---|---|---|
| Supabase (AWS) | All user data | Database storage, avatar files |
| Apple Push Notification | Push token | Push notification delivery on iOS |
| Mapbox | Place coordinates | Map display with pin |
| Google AdMob * | Anonymous device data | Ad serving |
* if enabled
We do not sell your data to third parties for commercial purposes.
6. Your rights
In accordance with GDPR (for EU users) and the legislation of the Republic of Azerbaijan on personal data protection, you have the right to:
- Access — request a copy of your data
- Rectification — change inaccurate data in your profile
- Erasure — completely delete your account and all associated data ("Delete Account" function in the "Security" section)
- Restriction of processing — request to stop certain types of processing
- Data portability — receive your data in a machine-readable format
- Object — withdraw consent for push notifications and analytics at any time
- Lodge a complaint — contact the supervisory authority in your country
To exercise any of these rights, write to us at support@gezapp.app — we will respond within 30 days.
7. Account deletion
You can delete your account directly in the App:
- Open Profile → Security & Account
- Tap Delete Account
- Confirm the action
After deletion:
- Your profile data, avatar, reviews, and interaction history are deleted immediately
- The account cannot be restored
- Backups are overwritten within 30 days
8. Security
We apply technical and organizational measures to protect your data:
- Data transmission encryption (HTTPS/TLS 1.3)
- Encryption at rest (AES-256)
- Row Level Security (RLS) at the database level — each user sees only their own data
- Protection against injections and automated attacks (rate limiting)
- Regular security audits
Despite our efforts, no system is absolutely secure. By using the App, you accept a reasonable level of risk.
9. Users under 13
GezApp is not intended for children under 13 years of age. We do not knowingly collect data from minors. If you are a parent or guardian and believe your child has provided us with personal data — please write to support@gezapp.app, and we will delete that data immediately.
10. Use of cookies and trackers
The GezApp mobile application does not use cookies in the traditional sense. Instead:
- Local settings (language, dark theme) are stored in the app — only on your device
- An anonymous device identifier is used to prevent spam
- When AdMob is activated (optional), Google may use advertising identifiers (IDFA) in accordance with your device settings
11. Changes to this Policy
We may update this Privacy Policy. We will notify you of significant changes:
- Via push notification in the App
- Via email to your account address
- Via banner the next time you log in
The "Last updated" date at the beginning of the document always reflects the current version.
12. Applicable law
This Policy is governed by the legislation of the Republic of Azerbaijan. Any disputes are resolved in the courts of Baku city, unless otherwise provided by law.
For users from EU countries, GDPR (General Data Protection Regulation) provisions also apply.
13. Contact us
If you have questions about the processing of personal data, please write to us:
📧 Email: support@gezapp.app
🌐 Website: https://gezapp.app
📍 Address: Baku, Azerbaijan
We strive to respond to all inquiries within 5 business days.
Last updated: May 11, 2026 • Version 1.0