ParaZeka is a personal-finance app for tracking income, expenses, debts, investments, and financial goals. This policy explains how your personal and financial data are processed and protected, and outlines your rights. ParaZeka aims to comply with KVKK (Turkish data protection) and GDPR principles.
1. Data Collected
ParaZeka collects and processes the following:
- Account info: email, name (via Google/Apple OAuth)
- Financial info: user-entered income, expense, debt, and investment records
- KKB credit-score report (if uploaded as PDF, processed temporarily for AI analysis)
- App activity: screen visits, feature usage frequency (for analytics)
- Device info: OS, app version (for troubleshooting)
2. Purpose of Use
- Account creation and authentication
- Storing your financial data in your account
- AI-powered budget analysis and suggestions
- Cross-device sync
- Service improvement and bug fixing
3. Storage Infrastructure
ParaZeka stores data on Supabase, an EU-based BaaS provider. Data is kept in a PostgreSQL database protected by Row Level Security (RLS) and encrypted in transit via SSL/TLS.
4. Third-Party Services
| Service | Purpose |
|---|---|
| Supabase (EU) | Account & financial data storage, authentication |
| Google OAuth | Sign in with Google |
| Apple Sign In | Sign in with Apple (iOS) |
| Google Gemini AI | AI-powered financial queries — sent at request time, not stored after response |
| TCMB API | Live FX/gold rates (no personal data sent) |
5. Data NOT Collected
- Location data
- Camera, microphone, or contacts access
- Advertising ID (AdId)
- Direct access to your bank — manual data entry only
6. Data Security
- Encryption in transit: SSL/TLS
- Row Level Security (RLS) on Supabase — users access only their own data
- Password handling delegated to OAuth providers (Google/Apple)
- Independent infrastructure security: Supabase is SOC 2 Type II compliant
7. Retention & Deletion
When you delete your account, all personal and financial data are removed from Supabase within 30 days. Use the in-app "Delete Account" option or email parazeka@gmail.com. Anonymous aggregate data (e.g. total user count) may be retained.
8. KVKK & GDPR Rights
- Right to access your data
- Right to correct inaccurate data
- Right to deletion ("right to be forgotten")
- Right to data portability (export)
- Right to object to processing
- Requests: parazeka@gmail.com
9. Children's Privacy
ParaZeka is not directed at children under 13 and we do not knowingly collect data from this age group.
10. Investment Disclaimer
ParaZeka does not provide investment advice. AI suggestions and analyses inside the app are for general information and are not a substitute for professional financial advice. ParaZeka is not liable for losses resulting from investment decisions.
11. Policy Changes
When this policy is updated, you will be notified inside the app. Significant changes will also be communicated by email.
Contact
For data-deletion requests, questions, or KVKK/GDPR rights: parazeka@gmail.com General support: vibedaveddeva@gmail.com