Privacy & Security at reday.ch
Your privacy is not just a legal clause for us, but the foundation of this platform. You trust us with personal thoughts, goals, and health data. Here you can find out clearly and transparently how we protect this data like a vault.
1. Who owns your data?
You do. Exclusively you. All entries in your diary, your check-ins, notes, and tracker data are strictly tied to your personal user account.
2. How do we secure your data? (The technical vault)
reday.ch uses state-of-the-art cloud technology (Google Firebase). We have programmed strict, server-side security rules. This means:
- The system cryptographically checks with every single click whether you are logged in with your email and password.
- The database technically denies any access to your data by other users. Your data is strictly isolated from all other accounts.
- Our Administrators' Promise: Due to the hosting infrastructure, we as operators theoretically have the technical ability to look into the database. However, we hereby guarantee you that we will never read, manually evaluate, or pass on your personal diary entries, tracker values, or check-ins to third parties. Access only occurs if it is absolutely strictly necessary to fix a technical error following your explicit support request.
3. What data do we collect?
- Account data: To enable a secure login, we store your email address and an encrypted password. This email address is visible to the platform administrators purely for account management (e.g., support or protection against abuse).
- Usage data (App content): Everything you actively type into the modules (e.g., emergency kit, thought record) is stored on the secured servers of the database so you can access it from all your devices. As explained in point 2, our strict promise applies here: These contents are not read by us, manually evaluated, or passed on to third parties.
- Anonymous statistics: To improve reday.ch, we count system events (e.g., "How often was the 'WOOP' module opened globally today?"). These counters are 100% anonymized. Your User-ID will never be linked to these statistics.
4. Disclosure to third parties & Server location
We never sell, trade, or rent your personal data to third parties. The data is securely stored on servers of our hosting partner Google Cloud (the server locations are within the European Union / Switzerland), which is subject to strict European and Swiss data protection guidelines (DSG/GDPR).
5. Your right to information and deletion
You have the right at any time to receive information about your stored data or to request an export of your data. In addition, you have the right to have your account and all associated data irrevocably deleted. One click in the settings, and your data will be completely removed from the servers.
6. Use of Artificial Intelligence (AI)
For the intelligent analysis of your tracking thoughts and health values, we offer you an optional AI function (Google Gemini). This function only becomes active if you explicitly trigger it in the app.
A completely anonymized data package is transmitted to the Google Cloud servers for evaluation. This package exclusively contains numerical tracker values or free texts from your check-ins for which you have granted AI access. Your account data (email, name, user ID) is never transmitted to the AI model, ensuring no conclusions can be drawn about your person.
Important: Google does not use the data from your evaluations sent via this interface (API) to further train its own AI models. Your data remains private.
7. Android Health Connect & Vital Data
If you activate the optional Health Connect integration, the app reads the following data from your device at your explicit request:
- Schritte (READ_STEPS): To visualize your daily activity and movement goals.
- Schlaf (READ_SLEEP): To track your sleep quality and recovery.
- Herzfrequenz (READ_HEART_RATE): To recognize stress patterns and vitality trends.
Health Data Protection Promise: Your vital data retrieved via Health Connect is used solely within the app for your personal evaluations. It is never passed on to advertising networks, partners or data brokers, never used for advertising purposes, and never used to train generic AI models. You can revoke access at any time in the Android system settings or within the app.
8. Microphone & Audio Recordings (Voice Journal)
The app requests microphone permission (RECORD_AUDIO) exclusively for optional voice recording in the journal. The microphone only becomes active when you tap the recording button. The recording is transmitted to our secure cloud function for transcription and structuring and is not permanently stored as raw audio thereafter.
9. Digital Mindfulness & Usage Statistics
The optional evaluation of screen time and app usage data is done to support your mental health and identify digital habits. This data is processed locally on your device.
10. Complete Account & Data Deletion (Google Play Standard)
You have full control over your account. You can irrevocably delete your user account and all associated data (including entries, uploaded files, and settings) at any time as follows:
- Directly in the app: Navigate to Settings -> Security & Data -> Delete Account. All data will be deleted immediately.
- Online request (without app): Send an email to info@reday.ch with the subject "Account Deletion Request" specifying your registered email address. Your account will be completely deleted within 48 hours.
7. Imprint & Data Protection Officer
Sebastian Pejdah
Molliserstrasse 34
CH-8754 Netstal
E-Mail: info(at)reday.ch