Legal

Privacy Policy

Effective date: September 16, 2026 · Applies to the Synaplay iOS app and the synaplay.toai.pro website

1. Who we are

"Synaplay" is a cognitive training application for iPhone, published by [operator legal entity or individual developer name], contactable at hello@toai.pro. This policy covers the Synaplay iOS app and our promotional website at synaplay.toai.pro. Where this policy says data is "on-device," we mean it is kept in your iPhone's local app storage, outside our reach.

2. At a glance

This architecture is what lets the app carry an App Store privacy label of "Data Not Collected."

3. What the app keeps, and where

The app creates data that exists only on your device, inside the app's sandboxed storage. A small shared container readable by the Synaplay Home Screen widget (an app group stored on your device) holds your streak value so the widget can display it.

Notifications are scheduled locally on the device (for example, a reminder to keep your streak alive). The app does not use push notifications and has no way to deliver content to you from a server.

4. AI coaching is on-device

When your device supports Apple Intelligence, the coach's replies are generated by Apple's on-device language model (Foundation Models). On other devices, the coach answers through a built-in offline mode. In both cases the entire conversation stays on your iPhone: no chat content, transcript, or derived profile is sent to us or to any AI provider. Apple's handling of on-device model processing is described in Apple's own privacy documentation.

5. Purchases

The version of Synaplay currently on the App Store is entirely free: it contains no subscriptions, no in-app purchases, and no paywall. If optional paid features are ever introduced, they will be sold through Apple's in-app purchase system, meaning any payment details would go to Apple and never to us, and this policy and the App Store privacy label would be updated before that version ships.

6. The website (synaplay.toai.pro)

The website is static: it sets no cookies on our behalf, runs no analytics, and has no login. Pages are served by our hosting provider, Cloudflare, which processes standard technical request data (such as IP address, user agent, and requested URL) as any internet host must, for security and abuse prevention, under Cloudflare's own privacy practices. Links from the site to the App Store leave our site and are governed by Apple.

7. What we never do

8. Legal bases (EEA/UK visitors)

Because the app transmits no personal data to us, our processing of personal data is limited to the website's technical request logs described in section 6, which our hosting provider processes on the basis of legitimate interest (site security and availability, GDPR Art. 6(1)(f)). Everything else described in this policy remains data under your sole control on your device.

9. Retention

App data: kept on your device until you delete the app or use the in-app erase. Website request logs: retained per Cloudflare's standard practices. We hold nothing else.

10. Your rights and choices

Delete everything: open Synaplay, go to Profile → Settings → erase all data. This wipes every local record including the widget's shared container, and the app restarts fresh. Because no copy exists elsewhere, deletion on your device is complete.

Access, correction, and portability: your data is visible in the app (Profile and reports) and exportable through the built-in share cards. Rights of access, correction, export, and erasure therefore operate directly on your device without our involvement.

Under GDPR, CCPA/CPRA, and similar laws you also have the right not to be discriminated against for exercising privacy rights, and the right to know what personal information is collected; for Synaplay the answer is "none by us." If you believe data about you has nonetheless reached us, write to hello@toai.pro and we will delete it and explain how it happened.

11. Children

Synaplay is a general-audience product, not directed at children under 13 (or under 16 in the EEA), and it collects no personal information from anyone of any age. Because nothing reaches us, a parent who prefers to remove a child's data simply erases it in the app as described in section 10.

12. Security

Your data benefits from iOS platform protections: app sandboxing, on-device encryption at rest, and the device-level protections you enable (passcode, Face ID). The app has no network pathway for user data, which shrinks the attack surface by design.

13. International transfers

We transfer no personal data across borders, because we receive none. The only infrastructure processing is the website's request logging by Cloudflare, described in section 6.

14. Do Not Track

The app does not track you, so browser-level Do Not Track signals are not applicable to it. The website sets no cookies of its own and runs no trackers.

15. Changes to this policy

If our practices ever change (for example, if an optional cloud AI mode were introduced), we will update this page with a new effective date, update the App Store privacy label before release, and disclose the change in the app before any new data flow begins.

16. Contact

Questions, deletion requests, or privacy complaints: hello@toai.pro. If you are in the EEA or UK and believe we have processed your data unlawfully, you may also complain to your local data protection authority.