Effective: 21 August 2026
Privacy Policy
Kassnap keeps solo data on the device by default. Only when you explicitly enable a team event is the required data synchronized between invited devices through Apple iCloud and CloudKit.
Summary
- No proprietary Kassnap user account and no data-storage server operated by the developer.
- No advertising, tracking, or proprietary analytics SDKs.
- Solo events, products, and transactions remain on your iPhone.
- Team data is synchronized through the private/shared iCloud database only after explicit activation.
- Apple processes the free trial, purchases, restorations, and Offer Codes through StoreKit.
1. Controller and contact
Sebastian HopfaufIm Rittergut 3
02699 Königswartha
Germany
Phone: +49 172 4225206
Email: sebastian.hopfauf@icloud.com
The provider information is also available in the contact section of the support page.
2. Scope and purpose
This policy describes data processing in the Kassnap iPhone app and on the related support and privacy pages. Kassnap is a sales and settlement aid for events. The app does not process card payments and receives no guest card or bank information.
3. Local processing on the iPhone
When used in solo mode, Kassnap processes and stores entered information only in the local app area of the iPhone being used. This may include:
- product names, symbols, colors, prices, deposits, and order,
- event names, start and closing times, and optional cash balances,
- transactions with time, items, quantities, totals, voids, and correction information,
- the internally selected payment method such as Cash, Card, or Other, but no payment or card data,
- app preferences, appearance settings, and an optional cashier name.
This information is used solely for the sales assistance, settlement, restoration, and presentation requested by you. Kassnap does not transmit solo register data to a server operated by the developer.
4. Keychain, trial, and Cashier Mode
Kassnap uses the protected iOS Keychain for a small number of local security attributes:
- Cashier Mode stores only a salted cryptographic verifier for the administrator PIN. The PIN itself is not stored.
- When updating from an older Kassnap version, an existing local trial start and plausibility state may continue to be used for migration. On a new Version 3 installation, the trial starts only from a verified Apple transaction; Kassnap creates no new local trial-start record for it.
Keychain data can survive removal of the app on the same device. The Cashier Mode credential is removed when Cashier Mode is disabled. A historical trial state may remain for migration and misuse prevention.
5. Optional team sharing through iCloud and CloudKit
The team feature is optional. It requires an Apple Account with iCloud on every participating iPhone, plus an internet connection for initial setup and later synchronization. The organizer invites participants using Apple’s private sharing interface.
When team sharing is enabled, Kassnap processes through Apple CloudKit in particular:
- the frozen product catalog and event information,
- device slots, roles, and freely assigned device or register labels,
- shared or separate cash-drawer settings and related cash amounts,
- transaction ledgers, voids, corrections, device seals, and synchronization status,
- technical identifiers, sequences, and checksums used to detect conflicts and duplicate transactions.
Transactions recorded offline remain on the respective iPhone first and are uploaded after reconnection. Data is stored in the private/shared iCloud database of the participating Apple Accounts. Invited participants receive access according to the Apple share. Kassnap receives neither Apple credentials nor iCloud passwords.
The developer operates no server for this purpose and does not access this private/shared register data during normal operation. Apple’s Privacy Policy also applies to Apple’s processing.
6. Free trial, purchase, and Apple Offer Codes
The 14-day trial is activated as a free Apple In-App Purchase; its verified purchase date determines the start of the one-time 14 × 24-hour period. Permanent access, purchase restoration, and free lifetime Offer Codes are also processed through the App Store and StoreKit. Apple provides Kassnap only with product and transaction information required to verify access. Payment information, billing address, and payment method remain with Apple and are not disclosed to Kassnap.
The entitlement is tied to the Apple Account that redeems the trial, purchase, or code. Apple’s purchase and transaction history is subject to Apple’s retention and deletion rules.
7. Legal bases, recipients, and international transfers
Where processing falls within the developer’s responsibility, providing requested app functions, StoreKit entitlements, and contract-related support is based on Article 6(1)(b) GDPR. Legally required documentation is based on Article 6(1)(c) GDPR. Security measures, abuse prevention, technical website delivery, and support unrelated to a contract are based on Article 6(1)(f) GDPR. The legitimate interests are the secure, reliable, and economical operation of Kassnap and the prevention of misuse or repeated unauthorized access.
Recipients or categories of recipients may include:
- Apple and service providers used by Apple for iCloud, CloudKit, StoreKit, the App Store, and iCloud Mail,
- GitHub and its service providers for technical delivery of this static website,
- team participants you invite to the configured CloudKit share,
- recipients you select when exporting data.
Apple and GitHub may process data outside the EU and EEA, including in the United States. Both providers describe international transfer mechanisms and safeguards, including Standard Contractual Clauses; GitHub also refers to the EU–US Data Privacy Framework. Details and information about obtaining the safeguards are available in the privacy statements linked above for Apple and GitHub.
8. Exports and backups
You can create PDF reports, CSV files, and JSON backups. These files leave the protected app area only when you save or share them through Apple’s share or file interface. From that point, you control the destination, recipients, retention, and deletion. Exports can contain detailed event and transaction information and should be protected accordingly.
9. Retention and deletion
Local solo data
Local transactions and events can be deleted in the app subject to its displayed safeguards and confirmations. Voiding preserves the audit trail; permanent deletion removes it. Removing the app deletes its local app area unless exports or device backups created by you remain elsewhere. Keychain attributes may remain as described above.
Team data
Archiving a completed team event locally ends only the active binding on that iPhone. It does not automatically delete the organizer’s CloudKit database or revoke access for other participants. The organizer manages participants and sharing through Apple’s sharing interface. CloudKit data and local copies on invited devices may remain until the share or iCloud data is ended or deleted using available Apple controls and local app data is removed from the devices.
Purchases and support
Apple manages StoreKit transactions. Support email is retained only as long as needed to respond, document necessary steps, or meet legal obligations.
10. No advertising, tracking, or proprietary analytics
Kassnap contains no advertising, tracking technology, or analytics/advertising SDK integrated by the developer. The app does not combine user profiles for advertising or cross-app tracking.
11. Website and email contact
These static pages are hosted by GitHub Pages. When a page is requested, GitHub may process the IP address, request time, requested file, browser information, and security logs for technical delivery. The Kassnap pages set no proprietary analytics cookies and load no advertising or tracking content. See the GitHub General Privacy Statement for details.
If you contact support by email, the sender address, message content, and technical delivery information are processed to respond. The published contact address uses Apple’s iCloud Mail service.
12. Your rights
Where the applicable legal requirements are met, you may request access, correction, deletion, restriction, portability, or object to processing, and you may lodge a complaint with a data-protection authority. Send requests to sebastian.hopfauf@icloud.com.
Note that the developer generally has no direct access to data stored only locally or in a private CloudKit database. You manage this information in the app, on participating devices, and through available Apple/iCloud controls.
13. Providing data and automated decisions
Entering product, event, and transaction information is voluntary but required for the respective app function you request. An Apple Account with iCloud is required only for the team feature and for purchases or restorations managed by Apple. Contacting support is voluntary; an inquiry cannot be answered without contact information.
Kassnap makes no solely automated decisions that produce legal or similarly significant effects and performs no profiling within the meaning of Article 22 GDPR.
14. Changes to this policy
This policy will be updated if features, data flows, or legal requirements change. The effective date above identifies the current version.