Privacy Policy

Effective date: 18 July 2026

This policy covers the Attendlr app (Android, iOS and the web version at app.attendlr.com) and the attendlr.com website.

Attendlr is a record-keeping app for trainers: attendance, passes, payments and client management. This policy explains in plain language what data we handle, why, and what rights you have.

1. Who is responsible for your data?

Service provider (data controller):

Attila Tóth, sole proprietor (registered in Hungary)
Registered address: Bartók Béla út 98/F, 1115 Budapest, Hungary
Registration number: 50144734
Email: support@attendlr.com

Two kinds of data appear in Attendlr, and different rules apply to each:

2. What data do we collect about you?

When you create an account and use the app, we process the following:

DataRequired?What we use it for
Name (display name)YesIdentifying your account, addressing you in the app
Email addressYesSign-in, account management, password reset, support
PasswordYes (email sign-up)Sign-in — stored only in encrypted form by Firebase Authentication; we never see it
Phone numberNoContacting you, if you provide it
Timezone and languageYes (automatic)Showing times and the interface correctly
User ID (UID)Yes (automatic)Technically linking your data to your account
Subscription tier and statusYes (paid plans)Unlocking the features you purchased
Push notification tokenNo (only if you enable notifications)Delivering push notifications to your phone
Crash reports (mobile app only)Yes (automatic)If the app crashes, we receive the technical error report — the stack trace, your device model, OS and app version, plus your user ID (UID) so we can connect the crash to a support request. It contains no name, email or client data. Used solely to fix the fault.
Usage statisticsYes (automatic — you can switch it off)Which screens you open and which core actions you take (e.g. an attendance was recorded), together with your user ID (UID) and your subscription tier. It contains no name, email, client data or amounts — only anonymous counts and labels. We use it solely to understand which features are used, so we can improve the app. You can switch it off at any time: Settings → Account → Privacy.
Support chat messagesNo (Premium plan, only if you write to us)If you use the in-app support chat, we store your messages and our replies so we can help you and keep the conversation history. Visible only to you and our support staff.

If you sign in with Google or Apple, we receive your name and email address from them — nothing else.

We never handle card details. Subscriptions are billed through Google Play or the App Store; your payment details go to them, never to us.

3. What we deliberately do NOT do

4. Purposes and legal bases

PurposeLegal basis (GDPR)
Providing the service: account, storage, syncPerformance of a contract — Art. 6(1)(b)
Subscription management, entitlementsPerformance of a contract — Art. 6(1)(b)
Sending push notificationsConsent — Art. 6(1)(a) (withdrawable any time in your phone settings)
Support, troubleshootingLegitimate interest — Art. 6(1)(f)
Legal obligations (e.g. invoicing)Legal obligation — Art. 6(1)(c)

5. Who has access to the data? (processors)

Attendlr is built on trusted, contracted data processors. They act on our instructions only and may not use the data for their own purposes:

ProcessorWhat it doesWhere it stores data
Google Cloud / Firebase (Google Ireland Ltd.)Database (Cloud Firestore), sign-in (Authentication), server-side functions, web hosting, push notifications (Cloud Messaging), crash reporting (Crashlytics — mobile app only), usage statistics (Google Analytics for Firebase)The database is located in the European Union (eur3 multi-region). Crash reports and usage statistics are processed on Google's infrastructure.
RevenueCat, Inc.Subscription tracking (which plan is active)USA — under the EU–US Data Privacy Framework and Standard Contractual Clauses
Google Play / Apple App StoreProcessing subscription paymentsUnder their own privacy policies
Cloudflare, Inc.Visit statistics for the attendlr.com website (cookieless Cloudflare Web Analytics) and the domain's DNSUSA — under the EU–US Data Privacy Framework; measurement uses no cookies and no individual identification, and IP addresses are processed only transiently

Beyond these, we share your data with no one, unless required by law (e.g. an official request from an authority).

6. Your clients' data — your responsibility

You enter data about your students, leads and their contact persons into the app: names, contact details, birthdays, gender, notes, attendance, payments.

For this data, you are the data controller under the GDPR, and Attendlr stores and processes it as your data processor. In practice this means:

We store and display this data solely to provide the service to you; we never use it for any other purpose, analyse it, or pass it on.

7. How long do we keep data?

8. Data security

9. Your rights

Under the GDPR you have the right at any time to:

To exercise any of these, email support@attendlr.com — we respond within 30 days.

If you believe we process your data unlawfully, you may lodge a complaint with the supervisory authority:

Hungarian National Authority for Data Protection and Freedom of Information (NAIH)
Falk Miksa utca 9–11, 1055 Budapest, Hungary · www.naih.hu · ugyfelszolgalat@naih.hu

You may also bring the matter before the competent court of your place of residence.

10. Children

Attendlr accounts are intended for professionals (trainers) aged 18 or over. We do not knowingly collect data from children. (Minors recorded as students are covered by section 6 — there, you are the data controller.)

11. Cookies and local storage

12. Changes to this policy

If the app's data handling changes (e.g. a new feature needs new data), we will update this policy and notify you of the change in the app or by email. The current version is always available on this page.

13. Contact

For any privacy question, write to us:

Email: support@attendlr.com