Privacy Policy
1. Controller
Miklós Hegybíró · c/o IP-Management #11238 · Ludwig-Erhard-Str. 18 · 20459 Hamburg, Germany
Email: support@feedfocus.app
No data protection officer has been appointed, as fewer than 20 persons are constantly engaged in the automated processing of personal data (§ 38 (1) BDSG).
2. Overview of data processing
FeedFocus processes personal data solely to provide the app's functions. We do not sell data, do not display advertising and do not carry out tracking.
3. Data collected and purpose
3.1 Google OAuth authentication
When signing in with Google OAuth, we receive:
- Google User ID, email address, profile name
- YouTube OAuth access token (scope: youtube.readonly) — read-only access to the list of subscribed channels
Purpose: user authentication and provision of the feed from subscribed channels. No write access to the YouTube account (e.g. likes, comments) takes place. The OAuth token is stored and used exclusively server-side; it does not leave our backend. Legal basis: Art. 6(1)(b) GDPR (performance of a contract).
3.2 YouTube data (feed)
To provide the distraction-free feed, the following data is retrieved:
- List of subscribed channels (YouTube Data API, read-only)
- New videos from subscribed channels via YouTube's public RSS feeds, as well as video metadata (title, channel, duration) via the YouTube Data API
This data is used exclusively to display the feed and for notifications about new videos. Legal basis: Art. 6(1)(b) GDPR.
3.3 Video transcripts
Video transcripts required for AI summaries are obtained via an external service provider: Supadata (Dumpling Software UG (haftungsbeschränkt), Berlin, Germany). Only the public YouTube video ID is transmitted to this provider — no personal data, no user identifier and no OAuth token.
Video transcripts are processed only transiently (read, process, discard): they are held in a temporary technical cache and automatically deleted after 24 hours at the latest. Permanent storage of full video texts does not take place. Legal basis: Art. 6(1)(b) GDPR.
3.4 User data stored in the app
The following data is stored in our database (Supabase, hosted at AWS, region eu-central-1):
- Dismissed videos (dismissed_videos), saved videos (saved_videos), channel groups
- Created digests (audio podcasts) as MP3 files — automatic deletion after 30 days
- Briefing rules (automatic digest creation according to user configuration)
- Usage statistics: number of summaries/day, audio productions/month, briefings/month, perspectives/month, Ask-Video usage/month
- User settings: AI provider, language, voice selection, theme, push token
To prevent circumvention of usage limits (e.g. by deleting and recreating an account), usage quotas are additionally tied to a pseudonymized identifier: a cryptographic hash (HMAC-SHA256) of the Google account ID. The plaintext identifier is not stored for this purpose; the hash cannot be reversed to the person. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in abuse prevention).
3.5 AI processing by third-party providers
To create AI summaries, podcast scripts and AI perspectives, video transcripts and metadata (title, channel name) are transmitted to the following AI providers:
a) Server-side processing (via Supabase Edge Functions, API keys stored with the provider):
- Anthropic Claude API — summaries, podcast scripts, AI perspective. Servers: USA.
- Google Gemini API — summaries, AI perspective, video analysis as a technical fallback. Servers: USA/EU.
- xAI Grok API — AI perspective (synthesis) as well as speech synthesis (see 3.6). Servers: USA.
The respective current model versions are used; the specific models used are disclosed in the AI Transparency Statement.
b) Optional user-side processing (user's API keys, encrypted in the iOS Keychain via SecureStore): Users can store their own API keys for supported AI providers in the settings. In this case, the data is transmitted directly from the device to the respective provider. By entering their own key, the user actively consents to this transmission.
No personal data of the user is transmitted to the AI providers — only video transcripts and metadata. Legal basis: Art. 6(1)(b) GDPR (performance of a contract).
3.6 Text-to-Speech (audio)
The speech output (MP3) for digests and briefings is generated primarily by xAI (Grok TTS, five synthetic voices). As a technical fallback if the primary service fails, ElevenLabs Inc. (UK/USA) may be used. Only the texts to be voiced (summaries, podcast scripts) are transmitted, no personal data. Processing takes place server-side via Supabase Edge Functions.
3.7 Payment processing
In-app purchases are processed via Apple StoreKit and managed by RevenueCat Inc. (USA). From RevenueCat we receive:
- Subscription status (free/pro), purchase date, expiry date, App User ID
- No payment data (credit card, bank details etc.) — these remain with Apple
RevenueCat stores the Supabase User ID as the App User ID for mapping. Legal basis: Art. 6(1)(b) GDPR.
3.8 Newsletter
When you sign up for the newsletter, we store the email address in our database. Dispatch takes place via Resend Inc. (USA). Double opt-in is implemented: dispatch only begins after confirmation via the link sent. Unsubscribing is possible at any time via the link in every email. Legal basis: Art. 6(1)(a) GDPR (consent).
3.9 Crash reporting and diagnostics
Sentry (Functional Software Inc., USA) records crash reports of the app as well as server-side error events of our Edge Functions for troubleshooting. These events contain technical context data (e.g. error codes, video IDs), but no plaintext data such as name or email address. In the development environment, Sentry is disabled. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in the stability of the app).
3.10 Push notifications
When push notifications are activated, an Expo Push Token is generated on the device and stored in our database. Dispatch takes place via the Expo Push Service (650 Industries Inc., USA). Legal basis: Art. 6(1)(a) GDPR (consent).
3.11 Data stored on the device
FeedFocus stores the following data locally on the user's iOS device:
- Optional own API keys for supported AI providers — encrypted in the iOS Keychain via SecureStore/LargeSecureStore
- Feed cache (AsyncStorage, 2-hour TTL), channel cache (4-hour TTL)
- Onboarding status, TTS usage counter, theme settings
4. Processors and third-country transfers
The following services process data on our behalf or receive data to provide their services:
| Service | Provider | Location | Purpose | Safeguard | Legal basis |
|---|---|---|---|---|---|
| Supabase | Supabase Inc. | USA (hosting: AWS eu-central-1) | Database, auth, storage, Edge Functions | EU SCCs, DPF | Art. 6(1)(b) |
| Supadata | Dumpling Software UG (haftungsbeschränkt) | Germany (EU) | Sourcing of video transcripts (only public video IDs transmitted) | no third-country transfer | Art. 6(1)(b) |
| Anthropic Claude | Anthropic PBC | USA | AI summaries, podcast scripts, AI perspective | EU SCCs, DPF | Art. 6(1)(b) |
| Google (YouTube) | Google LLC | USA/EU | OAuth, YouTube Data API (read-only), RSS feeds | EU SCCs, DPF | Art. 6(1)(b) |
| Google Gemini | Google LLC | USA/EU | AI summaries, AI perspective, video fallback | EU SCCs, DPF | Art. 6(1)(b) |
| xAI Grok | xAI Corp. | USA | AI perspective, text-to-speech (Grok TTS) | EU SCCs | Art. 6(1)(b) |
| ElevenLabs | ElevenLabs Inc. | UK/USA | Text-to-speech (technical fallback only) | EU SCCs, UK Adequacy | Art. 6(1)(b) |
| RevenueCat | RevenueCat Inc. | USA | Subscription management, entitlement check | EU SCCs, DPF | Art. 6(1)(b) |
| Resend | Resend Inc. | USA | Newsletter dispatch, double opt-in | EU SCCs | Art. 6(1)(a) |
| Sentry | Functional Software Inc. | USA | Crash reporting, error monitoring (app + server) | EU SCCs, DPF | Art. 6(1)(f) |
| Expo | 650 Industries Inc. | USA | Push notifications, build service | EU SCCs | Art. 6(1)(a) |
| Apple | Apple Inc. | USA/EU | In-app purchase, app distribution | EU SCCs, DPF | Art. 6(1)(b) |
For transfers to the USA, we rely on EU Standard Contractual Clauses (SCCs) and, insofar as the respective provider is certified, the EU-US Data Privacy Framework (DPF). Details of the individual safeguards can be requested from the controller.
Note: When users use their own API keys, a direct contractual relationship exists between the user and the respective AI provider. The privacy policy of the respective provider then applies additionally.
5. Storage period
- Account data: until account deletion by the user (account deletion in the app settings)
- Video transcripts: temporary cache, automatic deletion after 24 hours at the latest
- Digest MP3 files: automatic deletion after 30 days
- AI summaries: stored permanently (cross-user cache without personal data, video ID as key)
- Pseudonymized usage identifiers (hash, see 3.4): remain even after account deletion in order to prevent circumvention of usage limits by recreating an account; attribution to the person is not possible
- Newsletter data: until unsubscription (unsubscribe link in every email); upon account deletion, the subscription is automatically removed as well
- Crash reports (Sentry): 90 days
- Feed cache (device): 2 hours, channel cache: 4 hours (automatic)
6. Your rights
You have the following rights vis-à-vis us under the GDPR:
- Access (Art. 15 GDPR) — which data we store about you
- Rectification (Art. 16 GDPR) — correction of inaccurate data
- Erasure (Art. 17 GDPR) — Please use the account deletion in the app settings (Settings → Delete account). All user-related data is irrevocably removed; in addition, the granted Google authorization is revoked server-side.
- Restriction (Art. 18 GDPR) — restriction of processing
- Data portability (Art. 20 GDPR) — provision of your data in a machine-readable format
- Objection (Art. 21 GDPR) — objection to processing based on legitimate interests
- Withdrawal of consent (Art. 7(3) GDPR) — at any time with effect for the future (e.g. newsletter unsubscription, disabling push notifications, disconnecting the YouTube connection in the settings)
To exercise your rights, contact us at: support@feedfocus.app
You have the right to lodge a complaint with a data protection supervisory authority. Competent supervisory authority: Die Landesbeauftragte für den Datenschutz Niedersachsen, Prinzenstraße 5, 30159 Hannover, poststelle@lfd.niedersachsen.de
7. Changes
We reserve the right to adapt this privacy policy in the event of changes to the app's functions or the legal situation. The current version is always available at feedfocus.app/privacy.