Download

Privacy Policy

Applies to the Witto app and the witto.tech website.
Revision #1 dated 7 September 2026

The current version is always available at: witto.tech/privacy.html

1. Who is responsible for your data

The controller of the data described below is Dravoss LLC («ԴՐԱՎՈՍՍ» ՍՊԸ), a company registered in the Republic of Armenia. Registration number 999.110.1603874, taxpayer number (TIN) 08331738, registered address: N. Zaryan St. 22A, Arabkir, Yerevan 0051, Armenia.

Contact: support@witto.tech

Representative in the EU and the UK (Article 27 GDPR): [name, address, contact — to be filled in once appointed]

2. The short version

Witto is built to work on your device. Your answers, your exercise results and your scores are written to local storage on the device.

Two things do go to our server, under two different conditions:

There is no third-party analytics, no crash reporter, no advertising and no ad tracking in the app.

3. What is stored on your device

In the app's local database:

In the app's settings: chosen theme, chosen language, game sound on or off, favourite exercises, chosen avatar, which tutorials and awards you have already seen, whether a one-time offer has been shown, subscription status, your consent flag for usage events, the installation identifier, internal sync bookkeeping, and markers for scheduled reminders.

In the device's secure storage: the name and email address received at sign-in, your account identifier at the sign-in provider, and your session token.

In app files: a queue of usage events not yet sent, and up to two backups of the local database, no older than 30 days.

4. What is sent to our server, and when

Both categories land in the same Supabase project — a hosted PostgreSQL service.

4.1. Usage events — sent without an account

Once you have accepted this policy in the app, Witto sends usage events to the analytics_events table. No account is needed for this. Events are queued on the device and uploaded in batches; the upload is gated on your acceptance, not on having an account.

Every event carries:

FieldWhat it is
Event identifiera random identifier the app assigns to each event so that the same event is not recorded twice if a batch is sent again
Installation identifiera random identifier created on first launch and kept in the app's settings. It is not your app store identifier, not your device identifier and not an advertising identifier — but it does persist across launches and lets events from this installation be grouped together.
Account identifierpresent only if you are signed in, absent otherwise
Session identifieridentifies one run of the app
Event namewhat happened: app opened, lesson started, subscription screen shown, purchase completed
Parametersa small set of structured values: which screen, which exercise variant, which plan, how many games were done. Free text is not permitted here.
Time of the eventwhen it happened
App version and buildwhich version it happened in
Platform and languagethe operating system, and the interface language

What is deliberately kept out: your name, your email address, your age, your screen-time answer and your self-ratings. For the onboarding questions the app records that a question was answered, never the answer itself. A filter in the app enforces this — it accepts only a fixed list of parameter keys, rejects keys such as name, email, age and answer outright, and rejects values that look like free text or contain an "@".

The app can only insert rows into this table. It cannot read, update or delete them. Events are deleted automatically 180 days after they occurred.

4.2. Your progress — only if you sign in

If you sign in, the app keeps a copy of your progress so a replacement device can pick it up. Six tables are synced, each row tied to your account:

TableWhat it holds
Profiledisplay name, subscription status and its expiry
Progressexperience, level, streak, modules, awards
Training statedifficulty, accuracy, play counts, personal bests, library choices
Scoresbrain-age value, when it was computed, per-skill breakdown
Test snapshotstest date, brain-age range, per-skill values
Daily totalsexperience, sessions, accuracy totals and minutes per day

Your individual exercise results never leave the device. The per-round records are deliberately excluded from sync and have no table on the server.

Every row is tied to your account identifier, and the database enforces row-level security: a request can only read or write rows whose owner matches the signed-in user. Without a session, no rows are returned at all.

5. Where the data physically sits

Our Supabase project runs in the eu-north-1 region (Stockholm, Sweden) on Amazon Web Services infrastructure. This is inside the European Economic Area, so no transfer outside the EEA takes place over this channel.

Supabase acts as our data processor under its data processing agreement.

6. How long we keep it

7. Legal bases for processing

What we processBasis
Local data and running the appperformance of our contract with you — Article 6(1)(b) GDPR
The copy of your progress on the server when signed inperformance of our contract with you — Article 6(1)(b) GDPR
Usage eventsyour consent — Article 6(1)(a) GDPR
Website server logs, abuse preventionour legitimate interest in the security of the service — Article 6(1)(f) GDPR
Payment and subscription recordscompliance with a legal obligation — Article 6(1)(c) GDPR
Handling support requestsperformance of our contract and our legitimate interest

8. Signing in

Signing in is optional; the app is fully usable without an account. When you sign in with Apple, Witto asks for exactly two things: your name and your email address. Nothing else. If you choose Apple's private relay address, that relay address is what we receive, not your real one. The app also periodically checks whether the sign-in is still valid, so it can tell you if access was revoked.

9. Account and data deletion

This section explains how to delete your Witto account and how to request deletion of the data associated with it.

How to request deletion

There are two ways. The second does not require the app to be installed.

We delete the account and the associated data on the server within 10 business days of receiving the request. Before we proceed, we may write to your registered address to confirm that the request came from the account owner.

Important. The button in the app erases the data on your device, but the copy of your progress on the server remains. To have that and the account itself deleted, send the request by email as described above. We say this directly rather than promising more than the button does.

Before you delete your account: active subscriptions

Deleting your Witto account does not cancel a paid subscription and does not by itself result in a refund. Subscriptions are billed by the app store you bought them from, and only you can cancel them:

Please cancel your subscription before requesting deletion of your account. If you have already deleted your account and are unsure whether your subscription is still active, write to support@witto.tech and we will help you check its status and direct your refund request to the appropriate store.

What is deleted

When your account is deleted, we permanently delete from our systems:

The button in the app additionally erases on the device: onboarding profile, exercise results, scores, test snapshots, daily totals, progress and training state, unfinished sessions, settings and preferences, backups, and the stored name, email and sign-in link.

Deletion is irreversible. Once done, the data cannot be restored, and you lose access to the history of your results.

Deleting the app without deleting your account removes the local database along with the app, but leaves the server copy untouched.

What is retained and for how long

After your account is deleted we retain, in the minimum volume necessary:

Changing your data

At any time you can view, change or delete individual details in your account — directly in the app, or by writing to support@witto.tech.

10. Your rights

If you are in the EEA or the UK, you have the following rights:

To exercise any of these, write to support@witto.tech from the address associated with your account. Deletion requests are completed within 10 business days; other requests within one month at the latest.

How to withdraw consent for usage events

There are currently two ways:

We state plainly that there is no separate toggle inside the app yet.

Complaints

If you believe we are processing your data unlawfully, you have the right to complain to the data protection supervisory authority in your country of residence. The list of EEA authorities is published by the European Data Protection Board. In the UK, it is the Information Commissioner's Office.

11. Data security

We take organisational and technical measures to protect your data against unlawful or accidental access, destruction, alteration, blocking, copying and disclosure:

No system is perfectly secure, and we cannot guarantee absolute safety for data transmitted over the internet.

12. What Witto does not do

13. Payments

Subscriptions are sold and billed by the app store you installed Witto from — the Apple App Store or Google Play. Witto never sees or handles your card details, and they never reach our servers. The app stores only a flag saying whether a subscription is active and when it expires.

14. Age

Witto is intended for people aged 16 and over. We deliberately do not collect data from children below that age. If you believe a child under 16 is using the app with an account, write to support@witto.tech and we will delete that account and the data associated with it.

The age-range question in onboarding includes an "under 18" option — it is used only to interpret the result, and it neither grants nor restricts access to anything.

15. For California residents

We do not sell personal information and do not share it for targeted advertising — neither for money nor on any other terms. The categories of information collected and the purposes are described above. You have the right to request details of the information collected, to request its deletion and correction, and we will not discriminate against you for exercising those rights. Requests: support@witto.tech.

16. This website

witto.tech is a set of static pages. It sets no cookies, embeds no fonts, scripts or images from other domains, and runs no analytics. Requests are handled by our hosting provider Beget, which keeps standard server logs including IP addresses. The provider does not publicly disclose how long those logs are retained.

17. Changes

If this policy changes materially, we update the revision number and the date at the top of this page and tell you about significant changes in the app. The current version is always available at witto.tech/privacy.html

18. Contact

Privacy questions: support@witto.tech