CCafOS

Privacy Policy

Last updated: 31 May 2026

This Privacy Policy explains how CafOS collects, uses, and protects your personal data when you use the CafOS app and website (the "Service"). We are committed to handling your data in accordance with the EU General Data Protection Regulation (GDPR).

1.Who is responsible for your data

The data controller is Jonathan Rashed, a sole proprietor established in the European Union, operating CafOS. For any privacy question or to exercise your rights, contact us at [email protected].

2.Data we collect

CategoryExamples
Account dataEmail address and basic profile information from your sign-in provider (e.g. Google).
Caffeine & wellness dataDrinks you log, timestamps, sleep and wake times, caffeine sensitivity, and onboarding answers used to personalize your model.
Usage & device dataApp interactions, device type, operating system, and crash diagnostics.
Payment dataSubscription status. Payment card details are handled directly by the app stores or payment processor — we do not store your card number.

Health-related information. Some inputs (such as sleep patterns and caffeine sensitivity) may be considered health-related. We process this data only to provide the core features you request, on the basis of your explicit consent, and you can withdraw that consent at any time by deleting your account.

3.Why we use your data and our legal bases

4.Who we share data with

We do not sell your personal data. We share it only with service providers ("processors") who help us run CafOS, under appropriate data-processing agreements:

We may also disclose data where required by law or to protect our rights and users.

5.International transfers

Where a provider processes data outside the European Economic Area, we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses or an adequacy decision.

6.How long we keep your data

We keep your personal data for as long as your account is active. When you delete your account, we delete or anonymize your personal data within a reasonable period, except where we must retain certain records to comply with legal obligations.

7.Your rights under the GDPR

You have the right to: access your data; correct inaccurate data; request erasure; restrict or object to processing; data portability; and withdraw consent at any time. You also have the right to lodge a complaint with your local data protection supervisory authority. To exercise any of these rights, email [email protected] and we will respond within the time limits set by the GDPR.

8.Cookies

Our website uses only essential cookies needed for it to function. We do not use advertising or third-party tracking cookies on the marketing site. The app uses local storage on your device to keep you signed in and store preferences.

9.Children

CafOS is not directed at children under 16. We do not knowingly collect data from children under the age of digital consent. If you believe a child has provided us data, contact us and we will delete it.

10.Security

We use technical and organizational measures — including encryption in transit, access controls, and secure authentication — to protect your data. No method of transmission or storage is completely secure, but we work to protect your information and review our practices regularly.

11.Changes to this policy

We may update this Privacy Policy from time to time. We will post the updated version here and revise the date above. Significant changes will be communicated through the app.

12.Contact

For any privacy request or question, email [email protected].