Privacy Policy
1. Controller
Osman Duysak
Emmerichshohl 8
61352 Bad Homburg
Germany
Email: [email protected]
2. Data We Collect
We collect and process the following categories of personal data:
Account Data
- Name
- Email address
- Authentication provider (e.g. Google)
User Content
- Tasks
- Habits
- Tracking events
- Intents
- Preferences and settings
Technical Data
- IP address
- Browser type
- Device information
- Server logs
Analytics Data
We use Google Analytics to understand general usage patterns and improve the product experience. Google Analytics may collect anonymized usage and device information.
3. Purpose of Processing
We process personal data for the following purposes:
- Providing and maintaining the Remid service
- User authentication and account management
- Synchronization and backup of user data
- Improving usability and product stability
- Security, fraud prevention, and abuse detection
- Sending transactional emails (e.g. login or account-related emails)
We do not sell personal data and do not use personal data for advertising profiling.
4. Legal Basis (GDPR)
Under the General Data Protection Regulation (GDPR), we process data based on:
- Art. 6(1)(b) GDPR — performance of a contract
- Art. 6(1)(f) GDPR — legitimate interests in operating and securing the service
- Art. 6(1)(a) GDPR — consent, where required (e.g. analytics or optional integrations)
5. Authentication
Users may register using:
- Email and password
- Google Sign-In
Authentication credentials are securely processed. Passwords are hashed and never stored in plain text.
6. Third-Party Services
We use the following service providers to operate Remid:
Hosting & Infrastructure
- Vercel
Authentication
- Google OAuth
Email Delivery
- Resend
Analytics
- Google Analytics
These providers may process personal data on our behalf in accordance with applicable data protection laws.
7. Data Storage & Security
Data is stored securely using industry-standard technical and organizational security measures.
We use:
- HTTPS encryption
- Secure authentication mechanisms
- Restricted access controls
- Password hashing
8. Cookies & Sessions
Remid uses essential cookies required for authentication and secure session management.
We do not use advertising cookies or cross-site tracking cookies.
Google Analytics may use cookies for anonymous usage statistics.
9. Data Retention
We retain personal data only as long as necessary to provide the service and fulfill legal obligations.
Users may delete their account and associated data at any time.
10. Your Rights Under GDPR
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Restrict or object to processing
- Receive a copy of your data (data portability)
- Withdraw consent where processing is based on consent
To exercise your rights, contact: [email protected]
You also have the right to lodge a complaint with a supervisory data protection authority.
11. Data Deletion
Users can delete their data through the Profile section of the application or by contacting us directly.
Upon deletion request, associated personal data is permanently removed unless legal retention obligations apply.
12. International Data Transfers
Some service providers may process data outside the European Union.
Where applicable, appropriate safeguards such as Standard Contractual Clauses (SCCs) are used to ensure GDPR-compliant data protection.
13. Changes to This Policy
We may update this Privacy Policy from time to time.
Material changes will be communicated through the application or website.
Last updated: May 2026