This Privacy Policy describes how OnayApp ("we", "us", or "our") collects, uses, and shares your personal information when you use our mobile application and related services.
Data Collection
We collect information that you provide directly and information generated through your use of our services:
- Account Information: Email address, display name, and authentication credentials when you create an account.
- Transaction Data: Records of coin purchases, number requests, and SMS verification activities.
- Device Information: Device type, operating system version, unique device identifiers, and push notification tokens.
- Usage Data: App interaction patterns, feature usage frequency, and session duration.
- Support Communications: Messages and attachments you send through our support system.
Data Usage
We use your personal information for the following purposes:
- Providing and maintaining our SMS verification services.
- Processing coin purchases and managing your account balance.
- Sending push notifications about SMS delivery and account activity.
- Responding to support requests and resolving issues.
- Improving our services through aggregated usage analytics.
- Preventing fraud, abuse, and unauthorized access to accounts.
- Complying with legal obligations and enforcing our terms of service.
Data Sharing
We do not sell your personal information. We may share data with the following parties:
- SMS Providers: We share minimal necessary information with third-party SMS providers to fulfill number requests. This includes only the service and country selection, not your personal identity.
- Payment Processors: Purchase transactions are processed through Apple App Store or Google Play Store. We do not directly handle payment card information.
- Firebase (Google): We use Firebase for authentication and push notifications. Google's privacy policy applies to data processed by Firebase services.
- Legal Requirements: We may disclose information when required by law, court order, or to protect our legal rights.
Data Retention
We retain your data for as long as necessary to provide our services and fulfill the purposes described in this policy:
- Account Data: Retained while your account is active. You may request deletion at any time.
- Transaction Records: Retained for 3 years after the transaction date for financial compliance purposes.
- SMS Messages: Verification codes are automatically deleted 24 hours after delivery.
- Support Tickets: Retained for 1 year after resolution for quality assurance.
- Usage Analytics: Aggregated and anonymized data may be retained indefinitely.
User Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data and account.
- Portability: Request your data in a structured, machine-readable format.
- Objection: Object to processing of your data for specific purposes.
- Withdrawal of Consent: Withdraw consent for data processing where consent is the legal basis.
To exercise any of these rights, please contact us using the information provided below.
Cookies
Our mobile application does not use browser cookies. However, our website (onayapp.co) may use the following:
- Essential Cookies: Required for basic website functionality such as session management on the admin panel.
- Local Storage: The mobile app uses device local storage to save preferences such as language selection and theme settings.
We do not use third-party tracking cookies or advertising cookies on our website or application.
Contact Information
If you have questions about this Privacy Policy or wish to exercise your data rights, you can reach us at:
- Email: support@onayapp.co
- Support: In-app support system or our support page
We aim to respond to all privacy-related inquiries within 30 days.