Privacy Policy — Trackili
Last updated:
1) Who we are & scope
Data Controller: SEKLAB Nadjim (individual developer), trading as “Trackili”.
Contact for any requests: [email protected]
This policy applies to the Trackili app and website. We collect the minimum data needed to provide the service, we are transparent about how we use it, and we do not sell your personal data.
2) What we collect and why (and the legal basis)
Account data (required): your email (required for sign-up and sign-in),
your Firebase user ID (UID), a display name/username (required — you
can choose any name), and
session tokens (JWT) used to authenticate requests.
If you sign in with Google, we also receive your Google display name
and
profile photo URL to populate your in-app profile (we do not modify your Google
account).
Purpose: create and manage your account, sign you in, secure your session, support
communications, and confirm sensitive requests (e.g., account deletion).
Legal basis: Contract performance (Art. 6(1)(b)).
Parcel tracking numbers: the shipment numbers you add to view status and updates.
Purpose: fetch and display your shipment status, and help you restore your list when changing
devices.
Legal basis: Contract performance.
User preferences: language, notification settings (opt-in/opt-out), country/currency to
display regional prices for AliExpress.
Purpose: customize your experience.
Legal basis: Contract performance / Legitimate interests (Art. 6(1)(f)), as applicable.
Diagnostics & performance (Firebase Crashlytics and Firebase Analytics):
Technical information such as Android version, device model, app version/build, crash logs and stack
traces, and aggregated usage metrics.
These diagnostics are essential for stability and safety and cannot be disabled from within the
app.
We do not use this data for behavioral advertising and we do not
collect precise location.
Purpose: detect/fix issues, improve stability, security, and quality.
Legal basis: Legitimate interests (Art. 6(1)(f)). If you do not agree with these diagnostics,
please refrain from using the app; if you already have an account, you may delete it (see Section 6).
Previously collected crash data may remain for the limited retention period managed by Firebase.
Push notification tokens (FCM): a device token generated by Firebase Cloud
Messaging.
Purpose: send the notifications you enable (e.g., parcel progress, deals).
Legal basis: Consent (withdrawable at any time in the app or device settings).
Your control: you can withdraw consent at any time in the in-app settings or your device
settings. We stop sending notifications and delete your FCM token when you disable
notifications or delete your account.
Advertising identifiers: We do not use the Android Advertising ID, and we do not link it to FCM or other features.
Support communications: the content of your messages and your contact details when you
contact us.
Purpose: respond to your requests and improve the service.
Legal basis: Contract performance / Legitimate interests.
We do NOT collect: full legal name, postal address, phone number, payment information, precise location, or access to camera/microphone/contacts for tracking purposes.
Plain-language notice:
Using the app requires an email address for sign-in. If you prefer not to share this or
disagree with the data practices described above, you may choose not to use the app. If you already have
an account, you can delete it at any time (see Section 6).
3) How we use your data
Account & authentication
We use your email, Firebase UID, and session tokens (JWT) to create and operate your account, sign you
in, and keep your session secure (e.g., preventing unauthorized access).
Legal basis: Contract performance (Art. 6(1)(b)).
Parcel tracking
We process the tracking numbers you add to query shipping providers and show you the latest shipment
status. We keep your list available so you can restore it when moving to a new device.
Legal basis: Contract performance.
Preferences & personalization (non-sensitive)
We apply your language, notification opt-in/out, and country/currency settings to tailor the UI and
display regional prices where applicable.
Legal basis: Contract performance / Legitimate interests (Art. 6(1)(f)).
Notifications (FCM)
If you opt in, we use your FCM device token to send the categories you enabled (e.g., parcel progress,
deals). You can turn notifications off at any time in the app or device settings; when you do, we stop
sending notifications and delete the FCM token. We do not link
notifications to the Android Advertising ID.
Legal basis: Consent.
Diagnostics & performance (Firebase Crashlytics & Firebase Analytics)
We use crash reports, stack traces, app version/build, device model/OS version, and aggregated usage
metrics solely to detect/fix issues and improve stability and security. These
diagnostics are essential to the service and cannot be disabled from within the
app. We do not use them for behavioral advertising and we do
not collect precise location.
Where processed: exclusively in Firebase (we do not export raw analytics/crash events
to our own database; we view aggregated dashboards only).
Legal basis: Legitimate interests (Art. 6(1)(f)). If you do not agree with these diagnostics,
please refrain from using the app; if you already have an account, you may delete it (see Section 6).
Affiliate links & external content
We may show affiliate banners/links and product details fetched from external providers. Clicking a link
opens the third party’s site/app, where their terms and privacy policy apply. We do not
sell your data.
What we do not do
- We do not store or maintain server-side behavioral profiles (e.g., clickstream histories) tied to your identity.
- We do not use behavioral or personalized ads.
- We do not sell personal data or share it with data brokers.
- We do not allow user-generated content or user-to-user communication inside the app.
- We do not request precise location, camera, microphone, or contacts for tracking purposes.
Limited operational logs (server-side)
Our backend may generate temporary operational logs (e.g., error traces, request IDs, abuse/rate-limit events) only to troubleshoot incidents, ensure security, and operate the service. These logs are rotated and minimized, are not used to build profiles, and are kept separate from Firebase analytics/crash data.
5) Ads & affiliate links
No ad SDKs / no behavioral ads.
The app does not integrate third-party ad SDKs (e.g., AdMob) and does
not show personalized/behavioral advertising.
Affiliate disclosures.
We may display affiliate banners/links to third-party products or stores. If you
purchase through these links, we may earn a commission at no additional cost to you.
Prices and availability are set by the third party; please verify the final price and terms at checkout.
Data sharing for affiliates.
We do not share your personal data (e.g., email, UID) with affiliate partners. Links
may include standard referral parameters so the partner can attribute a purchase. We do
not track your browsing on third-party sites/apps.
Third-party policies.
When you open an affiliate link, you are subject to the third party’s terms and privacy
policy. Please review them before purchasing.
Android Advertising ID.
We do not use the Android Advertising ID and do not link it to
notifications or affiliate content.
Changes.
If we later introduce an ad SDK or personalized ads, we will update this policy and our Google Play Data
Safety declarations before enabling such features.
6) Retention & deletion
General principle.
We retain personal data only for as long as necessary to provide the service and
fulfill the purposes set out in this policy. When data is no longer needed, we delete it from our
operational systems or anonymize it.
Account, tracking numbers, preferences, and FCM token.
Kept while your account is active. When you delete your account, we delete:
- your account record (email, UID, display name),
- your tracking numbers and preferences,
- your FCM device token (so you no longer receive notifications).
Support messages.
Retained for up to 12 months from your last contact (or deleted earlier upon request).
Diagnostics & performance (Firebase Crashlytics / Firebase Analytics).
Crash reports, stack traces, app/device metadata, and aggregated usage metrics are stored by
Firebase for a limited operational period under Firebase’s own retention
policies. These diagnostics are used solely for stability and performance and are not
exported to our own database. We do not control or extend Firebase’s retention periods.
Data already collected may remain until Firebase’s retention period expires.
Operational logs (server-side).
Our backend may create temporary, minimized logs (e.g., timestamps, error codes,
request IDs) strictly for troubleshooting, security, and abuse prevention. These logs are rotated on a
short cycle, kept separate from analytics/crash data, and are not used to build
behavioral profiles.
Backups.
If system backups exist, deleted items are removed through the routine backup rotation
cycle. Backups are not used to restore individually deleted data.
Account & data deletion
- In-app: Settings → Delete Account (removes your data from our operational systems without undue delay).
- Account deletion assistance: If you are unable to delete your account from within the app, you may submit a request via our support page: https://www.trackili.app/terms/data-deletion.html.
- Scope: deleting your account removes your account data, tracking numbers, preferences, and FCM token from our operational systems. Diagnostics previously sent to Firebase may persist until Firebase’s retention period ends.
- Identity verification: we may request reasonable information to verify that the deletion request is made by the account owner.
7) Your choices & controls
- Notifications (FCM): you can turn parcel/deal notifications on or off at any time in the app or in your device settings. When you disable notifications or delete your account, we delete your FCM device token and pushes stop.
- Diagnostics & performance (Crashlytics / Analytics): processed under legitimate interests to ensure stability, security, and quality. These diagnostics are essential and there is no in-app toggle. We do not use them for behavioral advertising. To object (Art. 21 GDPR), contact [email protected]. Honoring an objection may require deactivation and deletion of the account (see Section 6).
- Manage your data (in-app): add, edit, or delete the shipment numbers you save; set a custom label/name for shipments. Display name/username: set during registration and not editable at this time.
- Email requirement: an email address is required to create an account and sign in.
8) Your rights (especially in the EEA/UK)
If you are located in the EEA or the UK, you have the following rights under the GDPR/UK GDPR, subject to legal limits and exemptions:
- Access
- Rectification
- Erasure (“right to be forgotten”)
- Restriction
- Objection to processing based on legitimate interests (including diagnostics/analytics)
- Portability
- Withdraw consent (e.g., push notifications)
- Complaint to your data protection authority
How to exercise your rights. Email [email protected]. We normally respond within one month (extendable by up to two months for complex/multiple requests).
Verification & fees. We may verify your identity before acting. Requests are free unless manifestly unfounded or excessive.
Scope & limitations. Rights are not absolute. Diagnostics sent to Firebase may persist until Firebase’s retention period ends. Where feasible, we will inform relevant processors of deletions or corrections.
9) Security
- Trusted infrastructure (Firebase): core authentication, messaging, diagnostics, and analytics are processed within Google Firebase. We rely on platform-level security controls.
- Data minimization & isolation: we collect only what is necessary; we do not maintain server-side behavioral profiles tied to your identity.
- Access control & admin safeguards: least-privilege, MFA, periodic reviews.
- Secrets & keys: stored securely and not embedded in the app or source.
- Vulnerability & patch management: we monitor and apply updates; crash/error reviews improve stability/security.
- Operational logging (limited): minimal, temporary logs rotated regularly; separated from analytics/crash data; not used to profile.
- Processors & safeguards: contracts and technical safeguards; see Section 10 for transfers.
Incident response. If we become aware of a breach affecting personal data, we will notify affected users and regulators without undue delay where required by law.
No absolute security. No method is 100% secure; we continually improve controls.
10) International transfers
Your data may be processed outside your country (including outside the EEA/UK) via our processors (e.g., Google Firebase).
Transfer mechanisms (EEA/UK). Where required, we rely on Standard Contractual Clauses (SCCs) (and UK Addendum/IDTA) plus additional safeguards. Adequacy decisions may apply for specific destinations.
Firebase as processor. Firebase processes authentication, messaging, diagnostics, and analytics; we do not export raw analytics/crash events to our own databases.
Third-party recipients (independent controllers). When you follow links to carriers or stores, those third parties act under their own policies and jurisdictions.
Copies and further information. You may contact [email protected] to request information about transfer safeguards (including SCCs) subject to confidentiality/legal limits.
11) Children
Service intent. Trackili is intended for individuals who have the legal capacity to shop online and manage shipments. The service is not directed to children.
Age thresholds. Users under 13 (or below the local age of digital consent, 13–16 in some countries) must not create an account without verifiable parental/guardian consent.
No knowing collection. We do not knowingly collect personal data from children and we do not show behavioral ads.
Parental/guardian requests. Contact [email protected] to request account/data deletion (see Section 6).
Enforcement. Where we determine an account is used by a child without required consent, we may restrict or delete it consistent with legal obligations.
Legal references. We endeavor to comply with COPPA (where applicable) and GDPR/UK GDPR Article 8.
13) External links
Our app and website may include links or redirects to third-party services (e.g., shipping carriers, online stores, affiliate destinations). These third parties act as independent controllers and process personal data under their own privacy policies and terms.
No control / no endorsement. We do not control or endorse third-party sites, their content, availability, or security practices.
Data sent when following a link. Opening a link may disclose limited technical information (e.g., referrer or affiliate parameters). We do not transmit your email, Firebase UID, or account identifiers when you simply click a link.
Your responsibility. Review third-party privacy notices, cookie notices, and terms of sale before sharing information or purchasing.
Issues with third-party services. Contact the third party directly for orders, shipping, refunds, or data handling issues. You may also inform us; we may remove or update links at our discretion.
Security notice. Be cautious of phishing or look-alike domains. If you suspect a malicious link, avoid proceeding and notify us at [email protected].
14) Disclaimer (important)
Nature of the service. Trackili is not a shipping carrier, logistics provider, payment processor, or online store. We do not generate tracking data and we do not fulfill, ship, or sell products. The app aggregates and displays information obtained from external providers for your convenience.
Source & accuracy of information. Shipment statuses, product details, prices, and deals are provided by third-party services and may be delayed, incomplete, or inconsistent across systems. Information is shown “as is / as available.” We do not guarantee accuracy, completeness, or timeliness, and we may cache data briefly for performance.
Prices, availability, and terms. Prices, taxes, shipping costs, availability, delivery estimates, and seller terms are set by the third party and may change at any time without notice. Before purchasing, verify the final price, taxes/fees, shipping, and seller terms at checkout.
No endorsement / no party to transactions. Links (including affiliate links) are for convenience only. We do not endorse sellers/products and we are not a party to your transactions. For order/refund/warranty/shipping issues, contact the merchant/seller or carrier directly.
Service availability & dependencies. Our service depends on third-party APIs and infrastructure (e.g., carriers, marketplaces, Firebase). We do not warrant uninterrupted availability and may modify, suspend, or discontinue features at any time.
Limitation of liability. To the maximum extent permitted by law, we are not liable for indirect, incidental, special, consequential, or punitive damages, or for loss arising from reliance on third-party information, service interruptions, delays, customs/duty assessments, or issues outside our reasonable control. Nothing limits liability where it cannot be limited under applicable law (e.g., fraud).
Your responsibility. Always verify shipment status with your carrier and final price/terms with the merchant before purchasing.
Consumer rights. This disclaimer does not affect any non-excludable consumer rights you may have under applicable law.
15) Changes to this policy
We may update this policy. We will show the “Last updated” date at the top and may send an in-app notice for material changes. Your continued use of Trackili means you accept the updated version.
16) Contact
Email: [email protected]
Policy page: https://www.trackili.app/terms/privacy.html
Appendix — Google Play Data Safety summary (for transparency)
Data collected
- Personal info: email (required), display name/username (required), Firebase UID. Profile photo (Google Sign-In only): URL provided by Google to populate the in-app profile.
- App info & performance / App activity: crash logs and stack traces, device/OS, app version/build, and aggregated usage metrics (no precise location).
- Device or other IDs: FCM device token (push notifications).
- User content: parcel tracking numbers you add.
- Preferences: language, country/currency, notification opt-in/out.
Purposes
- App functionality: account/authentication, parcel tracking, preferences.
- Notifications (consent): parcel progress / deals (when enabled).
- Diagnostics & performance (legitimate interests): stability, security, quality (Crashlytics/Analytics; not for behavioral ads).
- Developer communications: support and responding to your requests.
- (If applicable) Fraud prevention & security: rate-limit/abuse prevention in limited operational logs.
Data sharing & selling
- Not sold.
- Processors (not “sharing” for Data Safety): Firebase (Auth, FCM, Crashlytics, Analytics) processes data on our behalf.
- Limited sharing for functionality (Recipients):
- To carriers/track providers: we send tracking numbers (and courier code if needed) only to retrieve status (no email/UID).
- To price/deals providers: we send product identifiers and region parameters to fetch details/prices (no personal identifiers).
- No sharing for behavioral advertising and no data brokers.
Security
- Data is encrypted in transit; access is least-privilege.
- Invalid/disabled FCM tokens are deleted.
- We do not maintain server-side behavioral profiles tied to your identity.
User control & deletion
- Notifications: disable in app/device settings → FCM token deleted and pushes stop.
- Account/data deletion: in-app Settings → Delete Account (or via our web page). Account data, tracking numbers, preferences, and FCM token are removed from operational systems; diagnostics already sent to Firebase persist until Firebase’s retention period ends.
Additional disclosures
- Android Advertising ID: not used and not linked to notifications or affiliate content.
- Children: service not directed to children; see Section 11.