Your Privacy in Three Points
- Your data stays in Europe. Everything you enter in the application is hosted on secure servers in Germany (DigitalOcean) and Belgium (Brevo). Nothing travels to dubious third countries.
- Private messages are truly private. We don't read, sell, or use your conversations and answers to questions for advertising. They exist exclusively for your growth.
- Complete control. If you decide you no longer want to use the application, you can delete your account and all data with the click of a button in the mobile app settings or send a deletion request to info@epicouple.com. No questions asked.
At NajinEp d.o.o. (hereinafter "Company", "we", "us" or "our"), we understand that by using the Epicouple application ("Application"), you are entrusting us with precious pieces of your marriage. This document explains how we collect, store and protect your data in the Application and on the website epicouple.com. Our guiding principle is transparency: we want you to know exactly which of your data is stored and where.
We may update this Privacy Policy at any time. If the changes are significant, we will notify you via email or in the Application.
-
Personal Data Controller
NajinEp d.o.o.
Ulica Anke Salmičeve 49
8273 Leskovec pri Krškem
SloveniaContact for privacy questions: info@epicouple.com.
-
What Data is Collected and Why
Data You Provide Directly
- Identification data: name, email address, gender, date of birth and profile picture. We use them to create your profile, enable access to the Application and personalize your experience.
- Demographic data (optional): data about marital status and children. We use them as guidelines for developing new content and in the future also as a basis for an individualized content recommendation system based on your life circumstances.
- Private communication: content of messages you exchange in the "Conversation Question" activity. These messages are private and we do not use them for any other purpose.
Important notice: Although we use advanced security technologies, no digital system is 100% safe from abuse. The application is designed as a tool and encouragement for your relationship, so we advise you to share extremely sensitive or deeply intimate content in person.Automatically Collected Data
- Device data: operating system type (iOS/Android), device identifier, time zone and language.
- Usage data: time of first login, time of last activity and progress in completing content in the Application.
- Partner connection: 6-digit code that links your profile with your partner's profile.
- Cookies and web analytics: on the website epicouple.com with your explicit consent we use cookies for web analytics (Google Analytics).
-
Legal Basis for Processing
- Contract performance
We process data to provide you with the service (login, partner connection, content interaction tracking). - Legitimate interest
Sending automated system messages, usage instructions and activity prompts that are essential for the full user experience. - Explicit consent
Sending monthly newsletters with news, articles, reflections, educational and marketing content.
- Contract performance
-
Where Your Data is Stored (Processors)
Your data never leaves the secure environment of our contractual partners, all of whom operate in accordance with GDPR.
- Server infrastructure - DigitalOcean
The entire database and backend system run on servers in Germany (Frankfurt region). The database is encrypted at rest, and data is also encrypted in transit. - System notifications - AWS SES
For sending essential security codes (OTP) and technical alerts (e.g., email change) we use Amazon Web Services. This data is limited to the bare minimum. - Communication platform - Brevo
For sending tips, encouragements and news we use the Brevo platform. Data in Brevo is stored exclusively in the EU (France, Germany and Belgium on Google Cloud infrastructure). We transfer your name, email, gender, date of birth, device operating system type and Application activity data to Brevo. We do not transfer private messages between partners to Brevo. - Subscription management - RevenueCat
For managing and verifying the status of your subscriptions we use the RevenueCat platform, which operates as a data processor under GDPR. They receive only essential device or Application identifiers and your payment status from the App Store or Google Play stores (without your personal and financial data).
Disclosure of Data to Government Authorities
We will disclose your data to third parties (e.g., police, courts) only when explicitly and legally required by applicable law.
- Server infrastructure - DigitalOcean
-
App Stores and Payments
App Stores (Apple App Store and Google Play Store)
You download the Application through the App Store or Google Play platforms. These platforms collect certain data (e.g., device identifier, download information, IP address, crash reports and user experience). Apple Inc. or Google Ireland Limited are responsible for this processing in accordance with their privacy policies.
Payment Processing and Subscription Management
All subscription payments are made directly through Apple's or Google's payment system. NajinEp d.o.o. does not have access to your credit card numbers or other financial data.
For subscription management we use the RevenueCat service. For questions regarding the processing of this data or deletion requests, you can contact us or directly at compliance@revenuecat.com.
-
Data Security
We implement strict technical and organizational measures to protect your data:
- Encryption in transit
All communication between the Application and the server takes place via a secure HTTPS (SSL/TLS) connection. - Security at rest
All data on servers is stored in encrypted form. - Access restriction
Access to databases is strictly limited. Although system administrators technically maintain the database, protocols are in place to prevent unauthorized viewing of your private message content.
- Encryption in transit
-
Storage and Deletion
We store data as long as you have an open user account.
- You can delete your account at any time in the Application settings.
- Upon account deletion, your personal data and private messages are permanently deleted from our databases within seven days at the latest.
-
Your Rights
You have the right to access, correct, completely delete and transfer your data. You can also revoke consent for marketing messages at any time (unsubscribe link). For all requests, write to us at info@epicouple.com.
If you believe that the processing of your personal data violates the law, you have the right to file a complaint with the Information Commissioner of the Republic of Slovenia (ip-rs.si).
-
Children's Privacy
The Application is not intended for persons under 18 years of age. We do not knowingly collect personal data of children and minors. If we discover that we have collected such data, we will delete it immediately.