Effective: 21 August 2026

Privacy Policy

Kassnap keeps solo data on the device by default. Only when you explicitly enable a team event is the required data synchronized between invited devices through Apple iCloud and CloudKit.

Summary

1. Controller and contact

Sebastian Hopfauf
Im Rittergut 3
02699 Königswartha
Germany
Phone: +49 172 4225206
Email: sebastian.hopfauf@icloud.com

The provider information is also available in the contact section of the support page.

2. Scope and purpose

This policy describes data processing in the Kassnap iPhone app and on the related support and privacy pages. Kassnap is a sales and settlement aid for events. The app does not process card payments and receives no guest card or bank information.

3. Local processing on the iPhone

When used in solo mode, Kassnap processes and stores entered information only in the local app area of the iPhone being used. This may include:

This information is used solely for the sales assistance, settlement, restoration, and presentation requested by you. Kassnap does not transmit solo register data to a server operated by the developer.

4. Keychain, trial, and Cashier Mode

Kassnap uses the protected iOS Keychain for a small number of local security attributes:

Keychain data can survive removal of the app on the same device. The Cashier Mode credential is removed when Cashier Mode is disabled. A historical trial state may remain for migration and misuse prevention.

5. Optional team sharing through iCloud and CloudKit

The team feature is optional. It requires an Apple Account with iCloud on every participating iPhone, plus an internet connection for initial setup and later synchronization. The organizer invites participants using Apple’s private sharing interface.

When team sharing is enabled, Kassnap processes through Apple CloudKit in particular:

Transactions recorded offline remain on the respective iPhone first and are uploaded after reconnection. Data is stored in the private/shared iCloud database of the participating Apple Accounts. Invited participants receive access according to the Apple share. Kassnap receives neither Apple credentials nor iCloud passwords.

The developer operates no server for this purpose and does not access this private/shared register data during normal operation. Apple’s Privacy Policy also applies to Apple’s processing.

6. Free trial, purchase, and Apple Offer Codes

The 14-day trial is activated as a free Apple In-App Purchase; its verified purchase date determines the start of the one-time 14 × 24-hour period. Permanent access, purchase restoration, and free lifetime Offer Codes are also processed through the App Store and StoreKit. Apple provides Kassnap only with product and transaction information required to verify access. Payment information, billing address, and payment method remain with Apple and are not disclosed to Kassnap.

The entitlement is tied to the Apple Account that redeems the trial, purchase, or code. Apple’s purchase and transaction history is subject to Apple’s retention and deletion rules.

Where processing falls within the developer’s responsibility, providing requested app functions, StoreKit entitlements, and contract-related support is based on Article 6(1)(b) GDPR. Legally required documentation is based on Article 6(1)(c) GDPR. Security measures, abuse prevention, technical website delivery, and support unrelated to a contract are based on Article 6(1)(f) GDPR. The legitimate interests are the secure, reliable, and economical operation of Kassnap and the prevention of misuse or repeated unauthorized access.

Recipients or categories of recipients may include:

Apple and GitHub may process data outside the EU and EEA, including in the United States. Both providers describe international transfer mechanisms and safeguards, including Standard Contractual Clauses; GitHub also refers to the EU–US Data Privacy Framework. Details and information about obtaining the safeguards are available in the privacy statements linked above for Apple and GitHub.

8. Exports and backups

You can create PDF reports, CSV files, and JSON backups. These files leave the protected app area only when you save or share them through Apple’s share or file interface. From that point, you control the destination, recipients, retention, and deletion. Exports can contain detailed event and transaction information and should be protected accordingly.

9. Retention and deletion

Local solo data

Local transactions and events can be deleted in the app subject to its displayed safeguards and confirmations. Voiding preserves the audit trail; permanent deletion removes it. Removing the app deletes its local app area unless exports or device backups created by you remain elsewhere. Keychain attributes may remain as described above.

Team data

Archiving a completed team event locally ends only the active binding on that iPhone. It does not automatically delete the organizer’s CloudKit database or revoke access for other participants. The organizer manages participants and sharing through Apple’s sharing interface. CloudKit data and local copies on invited devices may remain until the share or iCloud data is ended or deleted using available Apple controls and local app data is removed from the devices.

Purchases and support

Apple manages StoreKit transactions. Support email is retained only as long as needed to respond, document necessary steps, or meet legal obligations.

10. No advertising, tracking, or proprietary analytics

Kassnap contains no advertising, tracking technology, or analytics/advertising SDK integrated by the developer. The app does not combine user profiles for advertising or cross-app tracking.

11. Website and email contact

These static pages are hosted by GitHub Pages. When a page is requested, GitHub may process the IP address, request time, requested file, browser information, and security logs for technical delivery. The Kassnap pages set no proprietary analytics cookies and load no advertising or tracking content. See the GitHub General Privacy Statement for details.

If you contact support by email, the sender address, message content, and technical delivery information are processed to respond. The published contact address uses Apple’s iCloud Mail service.

12. Your rights

Where the applicable legal requirements are met, you may request access, correction, deletion, restriction, portability, or object to processing, and you may lodge a complaint with a data-protection authority. Send requests to sebastian.hopfauf@icloud.com.

Note that the developer generally has no direct access to data stored only locally or in a private CloudKit database. You manage this information in the app, on participating devices, and through available Apple/iCloud controls.

13. Providing data and automated decisions

Entering product, event, and transaction information is voluntary but required for the respective app function you request. An Apple Account with iCloud is required only for the team feature and for purchases or restorations managed by Apple. Contacting support is voluntary; an inquiry cannot be answered without contact information.

Kassnap makes no solely automated decisions that produce legal or similarly significant effects and performs no profiling within the meaning of Article 22 GDPR.

14. Changes to this policy

This policy will be updated if features, data flows, or legal requirements change. The effective date above identifies the current version.