Welcome to Chrono ("we," "our," or "us"). We are based in Sri Lanka and are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services (collectively, the "Service"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the Service.
1. Information We Collect
We may collect information about you in a variety of ways. The information we may collect via the Service includes, but is not limited to:
1.1. Personal Data You Provide
Personally identifiable information that you voluntarily provide to us, such as when you register, update your profile, or use certain features. This may include your name, username, email address (encrypted), password (hashed), birthdate, time zone, city, state, education, profile image, cover image, bio, career, settings preferences (e.g., AI sharing, notifications, theme), and 2FA secrets (encrypted).
1.2. User-Generated Content (UGC)
Content you create or manage within Chrono. Many sensitive fields within UGC are encrypted, as detailed in our application's design (e.g., task descriptions, AI chat messages, note content, certain schedule details). This includes tasks, projects, schedule events, notes, AI chats, club posts, exam notes, user limit details, and messages.
1.3. Derivative Data & Usage Information
Information automatically collected or generated through your use of the Service. This includes IP address, browser type, operating system, access times, pages viewed, features used, actions taken (like task completions, logins), session durations, XP and hearts activity. Activity logs (UserLog, ClubLog) store activity messages, some ofwhich may be encrypted for privacy.
1.4. Financial Data (Subscription Related)
We use third-party payment processors (e.g., Buy Me a Coffee, potentially Stripe in the future). We do not directly store your full credit card numbers. When you subscribe, we receive information like your subscription tier, status, expiry date, and the email associated with your payment (e.g., `bmac_user_email`, encrypted).
1.5. Data From Social Networks (OAuth Logins)
If you use Google or GitHub to log in, we may collect your name, email address (encrypted), profile picture, and unique ID (`google_id` encrypted, `github_id`). This depends on your privacy settings with those services.
1.6. Cookies and Tracking Technologies
We use cookies and similar technologies for essential functionality, preferences, security, and basic analytics (e.g., CSRF protection, session management, theme preference). We also use Google AdSense, which uses cookies for ad personalization (see Section 4).
2. How We Use Your Information
We use your information to:
- Provide, operate, maintain, and improve Chrono and its features.
- Create and manage your account, and provide customer support.
- Personalize your experience (e.g., themes, tier-based features).
- Process subscriptions and send related communications.
- Communicate with you about service updates, security, and support.
- Monitor and analyze usage to improve Chrono.
- Administer promotions or surveys (with your consent).
- Prevent fraud and ensure security and compliance with our Terms.
- Facilitate user interactions (e.g., clubs, messaging).
- Enable gamification features (XP, levels, hearts).
- Power AI features, using context you consent to share.
- Send marketing communications if you've opted in.
- Display advertisements through services like Google AdSense (see Section 4).
3. How We Share Your Information
We do not sell your personal information. We may share it as follows:
- With Your Consent: When you explicitly agree to share (e.g., sharing a schedule with a partner).
- Publicly Visible Information: Your username, display name, profile picture, bio, XP, league, and public club activities may be visible depending on your settings.
- Service Providers: With trusted third parties who help us operate Chrono, such as:
- Payment processors (e.g., Buy Me a Coffee).
- Cloud hosting (Supabase, primarily in Singapore).
- AI providers (Google Gemini API, processing content you send).
- Email delivery services.
- Advertising partners like Google AdSense (see Section 4).
These providers are bound to protect your data. - Legal Requirements: If required by law, to respond to legal process, or to protect rights, property, or safety.
- Business Transfers: If Chrono is involved in a merger, acquisition, or asset sale, your information may be transferred. We'll notify you.
- Aggregated/De-Identified Data: For research or analytics, in a form that doesn't personally identify you.
4. Advertising (Google AdSense)
We plan to use Google AdSense to display advertisements on certain parts of the Service to help support our free tier. Google AdSense is an advertising service provided by Google Inc.
- Cookies and Web Beacons: Google AdSense uses cookies (including the DoubleClick DART cookie) to serve ads based on your prior visits to our Service and other websites on the Internet. Web beacons may also be used in conjunction with cookies to gather information about your use of the Service and your interaction with ads.
- Personalized Advertising: Google's use of advertising cookies enables it and its partners to serve ads to you based on your visit to our sites and/or other sites on the Internet. These ads may be personalized based on your interests, demographics, and other information inferred from your online activity.
- Opting Out: Users may opt out of personalized advertising by visiting Google Ad Settings. Alternatively, you can opt out of a third-party vendor's use of cookies for personalized advertising by visiting www.aboutads.info/choices or youronlinechoices.eu (for users in the EEA/UK).
- Information Collected by Google: Google may collect information such as your IP address, browser type, operating system, and information about your interaction with ads. For more information on how Google collects and uses data, please review Google's "How Google uses data when you use our partners' sites or apps" page and Google's general Privacy Policy.
By using Chrono, you consent to the processing of data about you by Google in the manner and for the purposes set out above and in Google's privacy policies. Some subscription tiers may offer an ad-free experience.
5. Data Security & Backups
We implement security measures like encryption for sensitive data (emails, specific UGC) and password hashing. We offer 2FA for account security. However, no system is 100% secure.
Important Beta Notice on Backups: Chrono is currently a beta service. Formal, regular backups of user data are NOT systematically created or maintained by Chrono itself, beyond any automated resilience features provided by our hosting provider (Supabase, primarily in Singapore). This means that in the event of a catastrophic data loss incident affecting our primary database, recovery of your specific User Content may not be possible. We strongly recommend you keep your own copies of any critical information you input into the Service. This practice may change as the Service matures out of beta.
6. Data Retention
We keep your Personal Data as long as your account is active or as needed for the purposes in this Policy, and to comply with legal obligations. Specific retention for UGC, logs, etc., may vary. Upon account deletion, data is removed from live systems, but due to the current lack of formal backups by Chrono (see Section 5), deleted data is generally considered permanently unrecoverable by us once removed from the live database.
7. Your Rights and Choices
Depending on your location (including Sri Lanka), you may have rights to access, correct, delete, or restrict processing of your personal data, and to data portability or withdraw consent. To exercise these rights, contact us at nate.walker.eni@gmail.com. You can also manage marketing email preferences via unsubscribe links or settings.
8. Cookies and Tracking Technologies
We use essential cookies for functionality, preferences, and security. As mentioned in Section 4, Google AdSense uses cookies for advertising. You can manage cookie preferences through your browser settings. Blocking some cookies may affect Service functionality.
9. Children's Privacy
Chrono is not for children under 13 (or a higher age if required by your local law). We don't knowingly collect data from them. If you believe your child has provided data, please contact us to remove it.
10. International Data Transfers
Your information is processed and stored on servers provided by Supabase, primarily located in Singapore. If you use Chrono from outside Singapore, your data will be transferred to, stored, and processed in Singapore. By using Chrono, you consent to this transfer.
11. Third-Party Links
Chrono may link to other sites. We're not responsible for their privacy practices. Please review their policies.
12. Changes to This Privacy Policy
We may update this Policy. We'll notify you by posting the new Policy here and updating the "Last Updated" date. Major changes might also be communicated via email or a notice on the Service. Please review it periodically.
13. Contact Us
If you have questions about this Privacy Policy, contact Nate Walker at:
Email: nate.walker.eni@gmail.com
As Chrono is a project by an individual developer based in Sri Lanka, email is the primary contact method.
