A transparent overview of what data Hocus Focus collects, how it is protected, and how you can delete your account or specific data — in compliance with Google Play Data Safety requirements and GDPR.
1. Overview
| Question | Answer |
|---|---|
| Does the app collect or share required user data types? | Yes |
| Is all collected data encrypted in transit? | Yes — HTTPS / TLS |
| Account creation methods supported | OAuth (Google Sign-In), Email + Firebase password, or no account required |
| Do you sell personal data to third parties? | No |
| Can users delete their account? | Yes — see below |
| Can users delete specific data without deleting account? | Yes — see below |
2. Data Collected & Why
| Data Type | Requirement | Purpose | Shared With |
|---|---|---|---|
| Email address | Optional | Account auth & recovery | Firebase / Google |
| Display name & photo | Optional | Profile personalisation | Firebase / Google |
| App content (routines, journals, streaks) | Core function | Tracking, scheduling, in-app analytics | Firebase (if cloud sync enabled) |
| Voice notes / audio | Optional | Audio journal entries | Firebase Storage (if sync enabled) |
| Photos & verification | Optional | Activity images; accountability verification | Firebase Storage; Google AI |
| Location & movement | Optional | Movement tracking sessions | Mapbox; Firebase (if sync enabled) |
| Calendar data | Optional | Scheduling integration | Not shared externally |
| Crash & diagnostic logs | Required | Stability, debugging | Firebase Crashlytics / Google |
| Subscription & billing | Required for premium | Purchase validation, entitlements | Google Play; RevenueCat |
| Google Drive Backup | Optional | Personal backup in private app-only Drive folder (drive.appdata) | Google Drive (your account only) |
3. Security Practices
| Measure | Applied |
|---|---|
| All data encrypted in transit | Yes — HTTPS / TLS |
| Local database encryption | Yes — SQLCipher where implemented |
| Private app storage sandbox | Yes |
| Firebase Security Rules | Yes |
| Advertising ID used for tracking | No |
| Personal data sold | No |
4. Third-Party Providers
| Provider | Purpose | Privacy Policy |
|---|---|---|
| Google / Firebase | Auth, database, storage, analytics, crash reporting, AI | policies.google.com |
| Google Play | App distribution, billing | policies.google.com |
| RevenueCat | Subscription & entitlement management | revenuecat.com |
| Mapbox | Map rendering, movement tracking display | mapbox.com |
5. Data Retention
| Data Category | Retention Period |
|---|---|
| Local app data (on-device) | Until deleted in-app or app is uninstalled |
| Cloud-synced data | Until you delete it or delete your account |
| Google Drive backup | Until you revoke access or disable the feature |
| Crash & diagnostic logs | Up to 90 days (Firebase Crashlytics standard) |
| Billing & subscription records | As required by law (typically up to 7 years in the EU) |
6. Your Rights
You may access, correct, export, restrict, or delete your data at any time. Most actions are available directly in the app. For anything else, email privacy@hocusfocus.life — we respond within 30 days (GDPR requirement).
| Right | How to Exercise |
|---|---|
| Access your data | View in-app; email us for a full export |
| Correct your data | Edit directly in the app |
| Export your data | Settings → Data → Export (CSV) |
| Delete specific data | Delete in-app, or see the section below |
| Delete account & all data | See the section below |
| Withdraw consent / disable tracking | Settings → disable sync, analytics, location, camera, microphone |
| Lodge a complaint (GDPR) | dataprotection.ro (Romanian supervisory authority) |
7. Delete Your Account
Deleting your account permanently erases your profile and all cloud-synced content. If you only want to remove specific data while keeping your account, see Delete My Data below.
Option 1 — In the app (instant):
- 1 Settings Tap ⚙️ Settings in the bottom navigation bar.
- 2 Account & Privacy Scroll to the Account section and tap it.
- 3 Delete Account Tap "Delete Account" and confirm. Your cloud data is erased immediately.
Option 2 — Email request:
Also revoke the Google Drive backup at myaccount.google.com/permissions and uninstall the app to remove local on-device data.
| Data Category | After Deletion |
|---|---|
| Profile, app content, voice notes, photos, movement data | Deleted within 30 days |
| Authentication tokens | Deleted immediately |
| Crash & diagnostic logs | Auto-deleted within 90 days |
| Billing & subscription records | Retained (legal obligation) |
8. Delete My Data (Keep Account)
You can delete specific personal data without closing your account. Most data can be removed directly in the app. For anything else, email us.
Delete directly in the app:
- Activities, Sessions & Journals: Long-press or swipe any activity, session, journal entry, or voice note → Delete
- Movement sessions: Open session details → Delete
- Photos: Open attached photo → Delete
- Google Drive backup: Settings → Data → Backup → Disable, or revoke at myaccount.google.com/permissions
- Stop further collection: Settings → disable sync, analytics, location, microphone, or camera
Formal email request:
| Data Category | On Request |
|---|---|
| App content, journals, voice notes, photos, movement data, profile | Deleted within 30 days |
| Crash & diagnostic logs | Auto-deleted within 90 days |
| Account credentials (email, auth tokens) | Retained — needed to keep your account active |
| Billing & subscription records | Retained (legal obligation) |
9. Privacy Contact
- Privacy & Data Rights: privacy@hocusfocus.life
- Support & General Inquiries: support@hocusfocus.life
- Developer: Marian Cocota · Street Nicolae Titulescu, nr. 8, Hațeg, Hunedoara, 335500, Romania
- Supervisory Authority (GDPR): dataprotection.ro