Privacy Policy
This policy explains what Tinkrite collects, why, who it is shared with, how long it is kept and how to get rid of it. It is written to be read, not filed. If anything here is unclear, write to contact@tinkrite.com and we will answer in plain language.
1. Who we are
Tinkrite is published by C-GENIE-TECH, Full details are in section 13.
C-GENIE-TECH is the data controller for the personal data described below. We are not required to appoint a Data Protection Officer, so contact@tinkrite.com is the single channel for anything in this policy, including all of your rights under section 9 — it reaches a person, not a queue.
2. Our approach
Tinkrite is a learning app. It is not an advertising product, and the way it handles data reflects that:
- No advertising. No ads, no ad SDK, no ad network.
- No tracking. No analytics SDK, no attribution SDK, no advertising identifier, no cross-app or cross-site tracking, no device fingerprinting.
- No profiling. Nothing about you is used to make automated decisions with legal or similarly significant effects.
- We never sell or rent your data, and we never share it for anyone else's marketing.
- We do not ask for what we do not need. Tinkrite has no age field, no birth date, no school, no class, no address, no phone number and no location. The app requests exactly one device permission — the camera — and explicitly gives up the ability to read your photo library.
These are properties of the product, applied to every account. There is no mode in which any of them relax.
3. What we collect
Everything Tinkrite holds about you is in these tables. There is nothing else.
Your account
| What | Why | Notes |
|---|---|---|
| Email address | Signing in; it is your username | Held by our sign-in system and by the app's own database |
| First name | Shown when you sign in | Whatever you typed at registration |
| Password | Signing in | Stored only as a cryptographic hash. Nobody at C-GENIE-TECH can read it |
| Display name | Shown on the leaderboard to other users | You choose it — see section 6 |
| Practice languages and level | Choosing exercises at the right difficulty | A CEFR level (A1–C2) you set yourself |
What you create
| What | Why | Notes |
|---|---|---|
| Photographs of handwritten work | Transcribing and grading a dictation | The most sensitive thing we handle. See sections 5 and 7 |
| Text you write | Producing the next turn of a story | Story turns, story titles, Story Spinner answers |
| Transcription of your handwriting | Showing you which words were right and which were not | Produced from the photograph, word by word |
| Scores, streaks, points, level history | Your progress, and the leaderboard |
Diagnostics and product signals
| What | Why | Notes |
|---|---|---|
| Crash reports | Finding and fixing crashes | See section 5. They carry a meaningless account number and nothing else about you |
| Taps on an “I'd want this” prompt | Learning which limits people run into | Recorded on our own server. Nothing is for sale — see the Terms of Service, section 7 |
What we do not collect
We are explicit about this because the absences are what make the rest of the list credible. Tinkrite does not collect: your age or date of birth, your school or class, your postal address, your phone number, your location (neither precise nor approximate — not even a country), your contacts, photographs from your device's gallery, audio or microphone input, or any advertising identifier.
You can check the permission claims yourself: the published app declares the camera permission alone, and explicitly blocks the media-library permissions.
4. Why we are allowed to hold it, legally
Under the GDPR, every use of your data needs a legal basis. Ours:
- Performing our contract with you (Art. 6(1)(b)) — your account, your exercises, your photographs and text, your progress and the leaderboard. This is Tinkrite doing what you asked it to do.
- Our legitimate interests (Art. 6(1)(f)) — keeping the service secure and available, preventing abuse, and fixing crashes. We have weighed these against your interests: the data involved is minimal, it is stripped of anything identifying before it leaves the device, and none of it is used to build a picture of you. You can object at any time (section 9).
We do not rely on consent, because we do no marketing and no tracking. There is nothing to consent to.
5. Who your data is shared with
Tinkrite runs on our own servers. A small number of specialist companies process data on our behalf, under contract, and only for what is described here. None of them is allowed to use your data for their own purposes.
| Who | What they receive | What for |
|---|---|---|
| AI Model Providers (OpenAi, Gemini, Mistral Ai, Groq..) | The photograph of your handwriting, sent directly to their transcription service | Turning handwriting into text so it can be graded |
| AI Model Providers (OpenAi, Gemini, Mistral Ai, Groq..) | Dictation text, the transcription of your handwriting, and your story turns | Generating exercises, grading them, and writing the next turn of a story |
Two things worth being precise about:
- None of these companies receives anything that identifies you. What we send them carries an internal reference number for the exercise or the story, and nothing else — no name, no email, no account number.
- Sentry receives an opaque account number so that several crashes can be recognised as coming from the same session. It is a random string with no meaning outside our system. Crash reports never include screenshots, screen contents, or anything you wrote or photographed. Sentry processes this in the European Union (Germany).
Transfers outside the EU. AI model providers process data on infrastructure that may be located outside the European union. These transfers are covered by the European Commission's Standard Contractual Clauses (GDPR Art. 46). We tell you this plainly rather than burying it: if a photograph of handwriting leaving the EU is not acceptable to you, Tinkrite's dictation feature is not something you should use.
Beyond that, we disclose data only where the law obliges us to.
6. What other people can see
- The leaderboard shows your display name, along with your rank and points, to every other Tinkrite user. Choose a nickname rather than your real name. You can change your display name at any time in the app.
- Nothing you write is shown to other users. Story writing is between you and the app. The story library you can browse contains prepared example stories, not other people's work, and nothing you write is sent to another user.
If that ever changes, this policy will change first, and we will tell you before it does.
7. How long we keep it
| What | How long |
|---|---|
| Photographs of handwritten work | 7 days after the work is graded, then permanently erased |
| A dictation you started but never finished | 30 days, then it and any photograph are erased |
| A story you started but never finished | 14 days |
| The working copy used to generate story text | 14 days |
| Your account, progress and results | Until you delete your account |
Each of these is enforced by a scheduled job, not by a promise. The photograph is the one that matters most: nothing in Tinkrite ever shows it back to you — there is no screen and no link that displays it — so once your correction report exists, the image has done its job and is deleted. Your report, your score and the word-by-word corrections stay.
8. Deleting your account
In the app: Settings → your account → Delete account.
This is immediate and irreversible. There is no grace period and no way to restore it. It erases your sign-in identity, every row of data about you, and every photograph you have ever submitted. You do not need to email anyone or explain yourself.
9. Your rights
You can ask us to:
- give you a copy of your data, or a portable machine-readable export (Arts. 15, 20);
- correct anything wrong (Art. 16);
- erase your data (Art. 17) — section 8 does this instantly, but you can also write to us;
- restrict or object to how we use it (Arts. 18, 21).
Write to contact@tinkrite.com. We answer within one month. There is no charge.
If you are not satisfied, you can complain to the French data protection authority, the CNIL: 3 place de Fontenoy, TSA 80715, 75334 Paris Cedex 07 — www.cnil.fr. If you live in another EU country, you can complain to your own national authority instead.
Where the account holder is below the age of digital consent in their country, a parent or guardian may exercise all of the rights above on their behalf.
10. How your data is protected
- Everything travels over encrypted connections (HTTPS/TLS), with HSTS enforced.
- Sign-in uses OAuth 2.0 with PKCE, in your device's own browser — never an in-app browser window that could read what you type. Your password is never handled by the Tinkrite app.
- Access tokens are stored in your device's secure keychain (iOS Keychain / Android Keystore), not in ordinary app storage.
- Photographs are reachable only through short-lived signed links that expire after five minutes. There is deliberately no way for any app screen to download one.
- Passwords are stored only as hashes, with brute-force protection on sign-in.
For honesty, the limits: Tinkrite runs on a single server that we manage ourselves, and the photographs awaiting their 7-day expiry are stored on its filesystem without additional at-rest encryption. No system is perfectly secure. This is why the retention window in section 7 is short.
11. Where your data is processed
Your account data, your results and your text are stored on our own server, located in the European Union (France). The exceptions are the transfers described in section 5.
12. Changes to this policy
If we change something that matters — a new recipient of your data, a new kind of data, a longer retention period — we will update this page and change the effective date at the top, and we will tell you in the app before the change takes effect.
13. Legal notices and contact
- Publisher
- C-GENIE-TECH
- Registered office
- 5 rue Fenelon 33000 Bordeaux
- SIREN
- 800 460 974
- Contact
- contact@tinkrite.com