Privacy Policy
Effective from 27 September 2026
1. General provisions
1.1. ФОП Коток І.М. (the “Controller”) processes the data of users of Erinneriq (erinneriq.com) as described in this policy.
1.2. We comply with the Law of Ukraine “On Personal Data Protection” and the EU General Data Protection Regulation (GDPR).
1.3. By using the service, you agree to this policy, the Terms of Use and the Public Offer.
2. What data we receive
2.1. Data you provide yourself:
- email address;
- name — upon registration;
- content: notes, lists, drawings, canvases, attached files and images;
- settings: language, theme, pets and others.
2.2. Data generated while you use the service:
- IP address — to protect sign-in (limiting the number of attempts) and in server logs;
- browser and operating system — we mention them in the email with your code so that you can recognize who is signing in;
- time of sign-in and of recent activity;
- country based on your IP address — determined on our server using a local database solely to select the interface language, and not stored.
2.3. We do not collect payment data and do not use third-party advertising, analytics or trackers.
3. Why we use it
3.1. We process data in order to:
- give you access to the service and your data — this is the performance of a contract;
- protect sign-in and the service against abuse — this is our legitimate interest;
- send sign-in codes and important notices, for example about changes to the terms or prices;
- respond to your requests.
3.2. We do not sell your data or share it for advertising purposes. We do not view your notes — except when you yourself ask for help or when required by law.
4. Who else is involved in processing
4.1. Data is stored on servers in Germany. We engage providers that process data solely on our behalf and on our instructions:
- Hetzner Online GmbH (Germany) — servers and backup storage;
- Cloudflare, Inc. — website protection and delivery: requests and IP addresses pass through it;
- Microsoft (OneDrive) — an additional backup copy.
4.2. Emails with codes are sent by our own mail server.
4.3. Data is disclosed to public authorities only upon a lawful request.
5. Security
5.1. What we do:
- encrypt connections (HTTPS/TLS);
- use sign-in with a one-time code, without passwords;
- restrict access to servers;
- make backups every day.
5.2. No protection is absolute, but we do everything reasonably possible to keep your data safe.
6. Cookies and browser storage
6.1. We use only cookies without which the service cannot work:
- erinneriq — sign-in, 30 days;
- erinneriq_2fa — awaiting the code from the email, 10 minutes;
- erinneriq_email — remembered email address for sign-in, 1 year;
- erinneriq_lang — interface language, 1 year.
6.2. Browser storage (localStorage) holds the interface settings on this device. There are no analytics or advertising cookies.
7. How long we keep data
7.1. Content and account data — for as long as the account exists.
7.2. Deleted items stay in the trash for 30 days and are then permanently deleted; files that are no longer referenced are deleted within 24 hours.
7.3. Server logs are kept for up to several weeks.
7.4. Backups are kept for 7 days and are used only to recover from failures. A week after your data is deleted, it is no longer in the backups either.
8. Your rights
8.1. You may:
- find out what data we hold about you;
- have it corrected;
- obtain a copy of it;
- delete your account and data;
- restrict processing or object to it.
8.2. Write to [email protected] — we will reply within 30 days.
8.3. You have the right to lodge a complaint with a supervisory authority: in Ukraine, with the Ukrainian Parliament Commissioner for Human Rights; in the EU, with the data protection authority of your country.
9. Changes to this policy
9.1. The new version is published on this page. We will notify you of material changes by email.