Release details
Current published document
- Version
- 1
- Published
- August 23, 2026
- Effective
- August 23, 2026
Privacy Notice
This notice explains what personal information Planique handles, why we use it, who receives it, how long we keep it and what choices you have.
Planique is operated by Cropol Labs d.o.o., Ulica sv. Ane 30A, 31000 Osijek, Croatia, company number 030322161. In this notice, Planique, we, us and our mean Cropol Labs d.o.o.
This notice applies to people with a Planique account. It also explains what happens when a user adds information about someone else to their private vault. Depending on where you live, local law may give you additional privacy rights or require us to provide additional notices or choices.
At a glance
- Planique is a private life-planning service for people aged 18 or older.
- Your private-vault content is available only through your account. Planique does not currently provide vault sharing with other users.
- We do not sell personal information or use your vault content for advertising, behavioural targeting, marketing profiles, research datasets or AI training.
- Push notifications contain only the generic message, “You have a Planique reminder.” Your private details appear after you open the authenticated app.
- Health is optional and designed for personal or household organisation. It is not medical advice or a professional health-record system.
- You choose which optional modules and records to use. Planique provides controls to edit, export and delete eligible information.
1. What information does Planique handle?
Your account and settings
We handle your email address, internal account ID, sign-in method, the supported profile fields you choose to complete, language, time zone, account status and security or session information.
If you use Google or Apple to sign in, that provider may give us a provider ID and the minimum account details needed to connect the sign-in to Planique.
Planique accounts are for people aged 18 or older. We normally record only that you confirmed you meet the age requirement, when you confirmed it and which policy version applied. We do not routinely ask for your date of birth, identity document or selfie to check account eligibility.
Subscriptions and purchases
We handle your subscription tier, selected Standard modules, product and entitlement status, store or provider transaction IDs, and renewal, cancellation or expiry events. Apple or Google handles your payment method. We do not receive your full payment-card details.
Information in your private vault
The content depends on the modules and fields you choose. It can include:
- Calendar and Tasks: titles, notes, dates, recurrence, reminders and status;
- Journal: diary, learning, people and other free-text notes;
- Work: projects, contacts, meetings, files, notes and time records;
- Budget: income, spending, loans, savings, amounts, dates and notes;
- Household: home and room labels, chores, assets, appliances, vehicles, maintenance, providers, pets and household notes;
- Meals and Shopping: private recipes, products, plans, restaurants, inventory, prices, images, lists and loyalty-card details; and
- Health: profile labels, physical characteristics, insurance, emergency contacts, clinicians, appointments, diagnoses, symptoms, vital measurements, tests, medication, prescriptions, adherence, pregnancy, reproductive and cycle information, sexual-activity records and other Health notes.
Free-text fields can contain sensitive information even when they are outside Health. We treat all vault content as private and do not use it for independent content analytics.
Information Planique creates for you
When you ask us to, Planique creates repeated items, reminders, totals, schedules, account views, search results, temporary working copies and exports.
If you separately turn on cycle estimates, Planique uses only completed period dates and the method explained in the Optional Cycle Estimates notice. It does not use symptoms, sexual-activity records, tests, notes, other Health information or artificial intelligence for those estimates.
Device, notification and service information
We handle your notification token, device platform, app version, notification settings, delivery status and a random reference that opens a reminder securely.
For security and reliable operation, we may also handle authentication events, network and application failures, rate-limit events, short-lived logs, build and operating-system details, and coarse screen information. Diagnostics must not contain content you entered in your private vault.
Legal, privacy, support and safety information
We keep the legal-document versions shown to you and the choices you made. We may also handle privacy requests, support correspondence, complaint or misuse decisions, incident facts and information needed to comply with law or deal with legal claims.
Please do not copy private-vault content into an ordinary support message. If we need evidence to handle an exceptional case, we will ask for the minimum needed through a controlled follow-up process.
Website and contact form
Our website and contact form are hosted on Vercel. Website delivery may involve your IP address, request headers, browser or device details and brief security or runtime metadata. The form accepts basic contact details, an inquiry category and a non-sensitive message. It does not accept attachments.
Do not use the form to send health, financial, identity-document, private-vault or other sensitive information. We will arrange a safer follow-up if evidence is needed.
Information we do not intentionally collect
We do not intentionally collect advertising IDs, precise location, your address book, wearable or medical-device feeds, cross-service browsing activity, microphone recordings or content for AI training. A device permission used for a feature, such as choosing or taking a photo, is limited to the action you request.
What is required and what is optional
To create and manage an account, we need an email or other authentication ID, required account settings, acceptance of the Terms, acknowledgement of this notice and confirmation that you are at least 18. Planique cannot create an account without that information. Store transaction and entitlement information is needed only if you buy or restore a paid subscription.
Private-vault modules and individual records are optional. If you do not activate Health, it remains locked. If you do not activate cycle estimates, you can still track periods but Planique will not calculate or display estimated dates. If you turn off notifications, Planique will not deliver remote reminders, but the underlying planner record remains until you delete it. When a field is required to save a specific record, the app identifies it at the point of entry.
2. Where does the information come from?
Information comes from you, your device and the Planique features you use. It can also come from Google or Apple when you choose their sign-in service, from Apple, Google or RevenueCat when you make or restore a purchase, from service providers performing their assigned function, or from someone involved in a support, privacy, misuse, legal or security matter.
Planique does not routinely contact or verify a person described in another user's private vault.
3. Why does Planique use information?
We use account and platform information to:
- create and secure your account;
- provide sign-in, recovery and the features you request;
- manage subscriptions and entitlements;
- record legal choices and respond to privacy requests;
- deliver necessary account, security, subscription, legal, export or deletion messages;
- keep the service reliable and prevent fraud or misuse;
- respond to support requests and incidents; and
- meet accounting, regulatory and other legal obligations.
We use private-vault content only to provide the personal or household function you choose—for example, to store a record, display it to you, calculate a total, schedule a reminder, prepare an export or delete the content.
EEA legal bases for account and platform operations
When Planique decides why and how account or platform information is used, the following GDPR legal bases apply:
| Purpose | Legal basis |
|---|---|
| Create an account, authenticate you and provide requested core access | Contract, Article 6(1)(b); security may also rely on legitimate interests, Article 6(1)(f) |
| Enforce the 18+ account rule | Contract, Article 6(1)(b), and limited eligibility evidence under legitimate interests, Article 6(1)(f) |
| Manage subscriptions and entitlements | Contract, Article 6(1)(b) |
| Keep legal choices and release evidence | Contract, Article 6(1)(b); legal obligation, Article 6(1)(c), when required; otherwise legitimate interests, Article 6(1)(f) |
| Secure the service and prevent fraud or abuse | Legitimate interests, Article 6(1)(f) |
| Use scrubbed reliability diagnostics | Legitimate interests, Article 6(1)(f), subject to any device or ePrivacy requirement |
| Deliver the website and handle contact inquiries | Legitimate interests, Article 6(1)(f); contract or requested pre-contract steps, Article 6(1)(b), when relevant |
| Respond to support | Contract when needed to provide the service; otherwise legitimate interests, Article 6(1)(f) |
| Handle privacy rights and regulatory duties | Legal obligation, Article 6(1)(c); limited evidence may rely on legitimate interests, Article 6(1)(f) |
| Handle misuse, disputes and legal claims | Legal obligation when required; otherwise legitimate interests, Article 6(1)(f), including establishing, exercising or defending legal claims |
| Keep accounting and tax records | Legal obligation, Article 6(1)(c) |
| Respond to incidents and breaches | Legal obligation, Article 6(1)(c), and legitimate interests, Article 6(1)(f) |
Our legitimate interests are to operate a secure, reliable and legally defensible consumer service and prevent misuse. We limit this processing to what is necessary and proportionate.
In Canada, we seek meaningful consent unless the law permits another basis. We separate conditions needed to provide the service from optional choices. Sensitive or unexpected processing receives an appropriate express choice, including the separate choice to activate Health.
Depending on where you live, local law may require additional privacy or consumer-health notices, choices, consent, authorization, complaint or appeal processes. We will provide any legally required information and choices before carrying out the relevant processing.
If you use Health in Washington, Nevada or California, also read the applicable state notice:
- Washington Consumer Health Data Privacy Policy;
- Nevada Consumer Health Data Privacy Policy; and
- California Health Information Notice.
4. How does private-vault processing work?
Planique has different privacy roles for different activities.
For account administration, subscriptions, security, support, legal records and similar platform operations, we decide why and how information is used and act as a controller.
For private-vault content, you choose the modules, records, information, reminders, calculations, edits and deletions. When we process that content only to provide those choices, we act on your instructions under the Private Vault Processing Terms. This does not assume that a person using Planique at home is legally a GDPR controller.
If we ever use vault content for a purpose of our own, we would have a different privacy role for that activity and would need an appropriate legal basis and notice. Planique prohibits using vault content for advertising, cross-user analytics, research, profiling, model training, risk scoring or commercial datasets.
5. What about Health and other sensitive information?
Health, reproductive, sexual-activity, financial and some free-text information may be sensitive or special-category information. Routine storage, display, reminders, calculations, export and deletion happen only to provide the personal or household action you choose. Planique does not choose a medical, advertising, employment, insurance, credit, research or profiling purpose.
Activating Health records your instructions, your express agreement to the sensitive-information processing described in the Health Module Notice and your household-use declaration. That agreement applies to the processing you request through your account. It is not presented as consent given on behalf of every person described in a profile.
If Planique must access, disclose or retain sensitive content for an exceptional purpose of its own, we first identify a valid legal basis. Where GDPR Article 9 applies, we also identify an Article 9 condition, such as one needed to establish, exercise or defend a legal claim. Security by itself is not an Article 9 condition. Any access must be necessary, authorized, logged, minimized and deleted under the relevant retention schedule.
6. What if you add information about someone else?
You may add information about a family member, dependant, friend or another person you personally care for. Planique does not require that person to have an account and does not routinely verify identity, relationship, guardianship or authority. When creating every Health profile, you must make one of two profile-specific choices: “This profile is about me”; or “I confirm that I have this person's permission or appropriate legal authority to manage this information.” The second choice applies only to personal or household use. Enter only necessary information and respect that person's privacy and other rights. If the permission or authority you rely on ends, stop adding or updating information and delete the profile.
Planique records the selected basis, the applicable Household-use Declaration version, the language shown, the time of the choice and limited app metadata in an immutable profile-authorization event. This records what the account holder declared; it does not prove identity, relationship, permission, guardianship, legal authority or consent given by the represented person.
If you believe someone has added information about you, please contact support. Alternatively, you can write to us at planique.planner@gmail.com. Do not send unnecessary health or identity documents. To protect everyone involved, we will not confirm whether a profile exists until we have assessed identity, entitlement, the user's confidentiality and other people's rights. Where appropriate, we may restrict or require deletion of the content, delete it, or suspend the relevant access.
7. Who receives information?
We limit each provider to the information needed for its assigned function:
- Supabase provides database, authentication, file storage and server functions and processes private-vault content as required infrastructure;
- Expo and, downstream, Apple Push Notification Service or Firebase Cloud Messaging deliver generic notifications;
- Google and Apple provide the sign-in option you choose;
- Apple App Store, Google Play and RevenueCat handle purchases and entitlements;
- Resend may deliver approved account and service email that does not contain vault content; it does not deliver private data-copy archives;
- Sentry may receive strictly scrubbed reliability diagnostics when enabled; and
- Vercel hosts our website and routes the minimum non-sensitive contact-form information.
We do not intentionally send vault content to any provider in this list other than Supabase.
We may disclose the minimum necessary information to professional advisers, auditors, courts, regulators, law enforcement or another recipient when the disclosure is legally authorized and necessary. We assess requests and do not provide voluntary bulk access.
We do not sell personal information, share it for cross-context behavioural advertising or use it for targeted advertising.
8. Is information processed outside your country?
Our production Supabase database uses an EU region, but some providers, approved subprocessors or authorized support staff may process information in the United States or other countries.
When GDPR transfer rules apply, we use a valid safeguard. Depending on the recipient, this may be an adequacy decision, valid EU–US Data Privacy Framework participation, Standard Contractual Clauses with supplementary measures, or another lawful mechanism.
9. How long do we keep information?
| Information | Retention |
|---|---|
| Private-vault content | Until you delete it, delete the relevant module or account, or a disclosed inactive-account process applies |
| Content deleted from live systems | Removed from ordinary use when deletion completes |
| Residual encrypted database backups | Designed to expire within 7 days; deletion instructions are reapplied if a backup is restored |
| Routine security logs | 7 days |
| Scrubbed Sentry events, when Sentry is enabled | 30 days |
| Vercel contact-form data | Routed transiently; no durable form-submission store on Vercel. Runtime logs use the shortest production period in our provider disclosure |
| Generic notification operational records | 7 days after final delivery status |
| Revoked push-token installations | 30 days, then deleted when no longer referenced |
| Detailed RevenueCat subscription events | Scrubbed 30 days after successful handling |
| Account and profile information | For the life of the account, the deletion process and any limited legal exception |
| Latest account-activity timestamp | For the life of the account; deleted with the account |
| Legal, accounting, complaint and incident evidence | The period required for the specific purpose under our detailed schedule |
| Ordinary privacy-request metadata | 3 years after the request closes |
| Prepared export files | Up to 48 hours after approval or readiness; each download link lasts about 60 seconds |
Cancelling a subscription does not delete your account or vault content. Deleting your account does. A binding retention duty or legal hold may preserve a limited, separated record, but it does not permit continued ordinary use.
Planique records one server-generated timestamp showing the latest successful authenticated account activity. It is updated when the signed-in app connects at startup, session refresh or foreground return. We do not retain a behavioral history of screens, actions or private-vault content for this purpose.
After 24 consecutive months without recorded activity, we may schedule the account and its private-vault content for deletion. We warn the account email approximately 60 and 30 days before the planned deletion. Opening Planique while signed in and online, or contacting us to keep the account, cancels the process.
The Privacy Officer manually rechecks activity, subscription, request, complaint, incident, dispute, legal-hold and warning-delivery information before approving deletion. Current account data is then removed through the controlled account-deletion process, subject to the backup period and limited legal retention described above.
10. What choices and rights do you have?
Inside Planique, you can edit or delete many records, delete a Health profile, turn off cycle estimates, deactivate and delete Health, request an available data copy, manage notifications and delete your account.
Turning off cycle estimates deletes estimated dates and related reminders but keeps your period history. Deactivating Health deletes all Health profiles and information saved in Health—including cycle history and estimates, reminders and Calendar entries—from active systems. It does not delete your account or other modules.
You can request a data copy from the protected screen in Planique. We prepare and review the copy, then make it available from the same authenticated screen. Each secure download link lasts about 60 seconds and the prepared file remains available for up to 48 hours. We do not send the archive as an email attachment or permanent email link. The first successful authenticated download records completion. You can request another short link while the file is still available.
Depending on your location and our role for the relevant activity, you may have the right to:
- know how your information is used and access it;
- correct inaccurate information;
- request deletion or restriction;
- receive eligible information in a structured, commonly used, machine-readable format and transfer it to another provider;
- object when processing relies on legitimate interests;
- withdraw consent when processing relies on consent, without affecting earlier lawful processing;
- receive human review of a solely automated decision with a legal or similarly significant effect;
- use an authorized agent or appeal a refusal when local law provides that right;
- complain to a regulator; and
- exercise a right without unlawful discrimination.
These rights are not absolute. Our response depends on the law, Planique's role, verification, the scope of the request and other people's rights.
To make another privacy request, please contact support. Alternatively, you can write to us at planique.planner@gmail.com. We may ask for proportionate verification, but we do not use answers from Health, Budget, Journal or another vault module to authenticate you.
For GDPR requests, we respond without undue delay and normally within one month, subject to any lawful extension. Other legal timeframes apply where relevant. If we cannot fulfil a request, we explain why and identify an available complaint or appeal route unless the law prevents us from doing so.
11. Does Planique make automated decisions about you?
No. Planique does not use private content for solely automated decisions that produce legal or similarly significant effects. Cycle estimates and planner schedules are organisational results you request. They are not decisions about treatment, eligibility, credit, insurance, employment or legal rights.
12. How do we protect information?
We use access restrictions, authentication, encryption in transit and at rest, protected file storage, generic notifications, limited diagnostics, deletion controls and testing designed for the risks involved. No service can guarantee absolute security. Keep your account and device secure. If you suspect unauthorized access, please contact support. Alternatively, you can write to us at planique.planner@gmail.com.
13. Can children use Planique?
No. Planique accounts are not available to anyone under 18. A profile about a child is not a child account; it is private content managed by an adult user. Planique does not routinely contact the child or verify parental authority.
14. How can you complain?
Please contact support first if you want us to investigate a privacy concern. Alternatively, you can write to us at planique.planner@gmail.com. This does not limit your right to contact a regulator.
If the GDPR applies, you may complain to the supervisory authority where you live or work, or where you believe an infringement happened. Our Croatian supervisory authority is:
Croatian Personal Data Protection Agency (AZOP)
Ulica Metela Ožegovića 16, HR-10000 Zagreb, Croatia
Email: azop@azop.hr
Website: https://azop.hr/
Canadian and US residents may also contact the privacy, consumer-protection or attorney-general authority responsible for their location.
15. How will we tell you about changes?
We display the current version and effective date. If we make a material change, we provide appropriate notice and ask for a new action or consent when the law requires it before the new processing starts.
16. How can you contact us?
Cropol Labs d.o.o.
Ulica sv. Ane 30A, 31000 Osijek, Croatia
Company number: 030322161
Please contact support if you have any questions or concerns not already addressed in this Privacy Notice. Alternatively, you can write to us at planique.planner@gmail.com.
Planique's designated Privacy Officer is the Chief Executive Officer of Cropol Labs d.o.o. The Privacy Officer is accountable for overseeing our privacy practices. You may use the company address or privacy email above for privacy inquiries, requests and complaints. We will make the name of the individual holding this role known on request where applicable law requires it.
Planique has not appointed a Data Protection Officer under the GDPR. The Privacy Officer designation above is an accountability role and is not a GDPR DPO appointment.