PRIVACY POLICY
Last Updated: September 2, 2026
This Privacy Policy explains how Hanova (“we,” “us,” or “our”) collects, uses, processes, and protects information when you use the Eduroid AI mobile application (“Eduroid AI” or the “App”).
By accessing or using the App, you agree to the practices described in this Privacy Policy.
1) COMPANY INFORMATION
Company Name: Hanova
Application Name: Eduroid AI
Support Contact: tunahandilercan@gmail.com
2) SCOPE OF THIS POLICY
This Privacy Policy applies to:
- The Eduroid AI mobile application;
- Associated services required to operate the App;
- Our informational website (which does not provide AI processing or account services).
This policy does not apply to third-party services that operate independently under their own privacy policies.
3) INFORMATION WE COLLECT
We collect only the data necessary to operate and improve the App.
3.1 Account Information (Firebase Authentication)
Depending on your sign-in method:
- Email or Google Sign-In:
- Email address
- Display name (if provided by Google) - Sign in with Apple:
- The email address Apple shares with us (which may be a private, Apple-generated relay address if you chose to hide your email)
- Display name, if you chose to share it
- An Apple-issued user identifier for your account - Anonymous Sign-In:
- A randomly generated, non-identifying User ID (UID)
We do not collect unnecessary personal profile data.
3.2 Subscription Information (Apple App Store, Google Play, RevenueCat)
Premium subscriptions are sold and processed by the platform you installed the App from:
- Apple App Store (StoreKit) for iOS and iPadOS;
- Google Play Billing for Android.
We use RevenueCat as our subscription infrastructure provider. RevenueCat receives purchase receipts and subscription events from Apple and Google on our behalf and tells the App whether your account is entitled to premium features.
We do NOT:
- Access or store credit card or bank information
- Process payment data directly
We may receive limited purchase metadata such as:
- Subscription and entitlement status
- Product identifiers
- Purchase, renewal, trial and expiration dates
- Store-issued transaction identifiers and an app-specific user identifier
This data is used solely to unlock and maintain premium features, to prevent fraudulent or duplicated entitlements, and to answer billing support requests.
3.3 Usage & Analytics Data (Firebase)
To maintain service quality and enforce daily AI credit limits, we may collect:
- App usage and feature interaction events
- Diagnostic logs and performance data
- Crash reports
- Device model and operating system version
- Device language and app version
- Session counts and daily AI usage counters
Some of these diagnostic values are stored together with your account identifier so that daily usage limits can be applied correctly to your account. We do not use them to build advertising profiles.
3.4 Push Notification Identifiers
If you allow notifications, Firebase Cloud Messaging generates a device token (an APNs or FCM registration token). This token is stored under your user account so that we can deliver notifications to your device. It is deleted when your account is deleted.
3.5 User Content
User content includes:
- PDFs and other documents you upload
- Images and photos
- Audio recordings
- Notes, prompts and topic text you type
- Generated summaries, quizzes, flashcards and AI chat history
Study materials are kept on your device. In addition, items that are tied to your account — such as your AI chat history, notes, quizzes, flashcards and recording metadata — are stored in our Firebase Firestore database under your user identifier so that they remain available to you.
Content you submit to an AI feature is transmitted to our backend (Firebase Cloud Functions) and from there to Google’s Gemini API for processing, as described in Section 4.
Deleting an item in the App, or deleting your account, removes the corresponding cloud records. Deleting the App or clearing its data removes the local copy.
4) AI PROCESSING (FIREBASE CLOUD FUNCTIONS + GOOGLE GEMINI API)
When you use AI features (such as summarization, question generation, flashcard creation, OCR, chat, or audio processing):
- The content you selected — including note text, prompts, text extracted from PDFs, images and audio — is sent to our Firebase Cloud Functions backend.
- Our backend forwards that content to Google’s Gemini API and returns the result to the App.
- We do not retain the transmitted content on our backend beyond what is required to complete the request and to store the result in your own account records.
- We do not use your content to train our own AI systems.
AI-generated results may contain inaccuracies. Users remain responsible for verifying information before relying on it.
Google processes AI data under its own service terms and policies.
5) HOW WE USE DATA
We use collected data to:
- Provide account access and authentication
- Provide AI features and store your study materials
- Manage subscriptions and premium entitlements
- Enforce daily AI usage limits
- Deliver push notifications you opted into
- Improve app performance, stability and reliability
- Prevent abuse or fraudulent activity
- Respond to support requests
We do not display advertising in the App, and we do not track you across other companies’ apps or websites.
6) DATA SHARING
We share data only with the service providers necessary to operate the App:
- Google Firebase – Authentication, Firestore database, Cloud Functions, Cloud Messaging, Analytics, Crashlytics
- Google Gemini API – AI processing
- RevenueCat – Subscription and entitlement management
- Apple – App Store / StoreKit payment processing and Sign in with Apple
- Google Play – Payment processing on Android
We do not sell personal information and we do not share it with data brokers.
We may disclose information if legally required or to protect rights and safety.
7) DATA RETENTION AND DELETION
7.1 Account Data
We retain your account data for as long as your account exists. When you delete your account, the deletion is executed on our servers and removes your authentication record, your user document, your subcollections (chats, quizzes, flashcards, notes, recording metadata), your notification tokens and the files stored for your account. Where you signed in with Apple, your Sign in with Apple authorization token is revoked as part of the same process.
We do not automatically delete inactive accounts. Your data remains available until you request deletion.
7.2 How to Delete Your Account
- In the App: Settings → Account → Delete Account.
- On the web: eduroid-ai.web.app/delete
- By email: tunahandilercan@gmail.com
Account deletion is permanent and cannot be undone.
7.3 Subscription Metadata
Purchase records held by Apple, Google and RevenueCat are retained by those providers as required for billing, tax and fraud-prevention purposes, independently of our own deletion process.
7.4 Analytics and Diagnostic Data
Retained for operational and diagnostic purposes in accordance with the retention settings of Firebase Analytics and Crashlytics. Crash and performance reports are not linked to your identity.
7.5 Local Device Data
Content stored on your device can be removed at any time by deleting individual items, clearing App storage, or uninstalling the App.
8) INTERNATIONAL DATA TRANSFERS
Service providers may process data on servers located outside your country of residence.
By using the App, you acknowledge that data may be transferred internationally under applicable safeguards.
9) AGE POLICY
Eduroid AI has no minimum age restriction.
However, users under the age of majority in their jurisdiction should use the App under parental supervision.
We do not knowingly collect sensitive personal data from children.
10) USER RIGHTS
Depending on your location, you may have rights including:
- Access to your personal data
- Correction of inaccurate data
- Deletion of account data
- Restriction of processing
- Objection to certain uses
- Data portability (where technically feasible)
To request deletion, use in-app deletion (Settings → Account → Delete Account), the web form at eduroid-ai.web.app/delete, or contact tunahandilercan@gmail.com. See Section 7 for what is deleted.
11) AUTOMATED PROCESSING
AI-generated content is produced automatically by machine learning systems.
No legally binding decisions are made solely by automated systems.
12) SECURITY
We implement reasonable administrative, technical, and organizational safeguards.
However, no system is 100% secure.
13) BUSINESS TRANSFERS
If Hanova undergoes merger, acquisition, or asset transfer, data may be transferred subject to confidentiality obligations.
14) CHANGES TO THIS POLICY
We may modify this Privacy Policy at any time.
We reserve the right to:
- Update terms
- Modify practices
- Adjust retention periods
- Introduce new features affecting data usage
Material changes will update the “Last Updated” date.
Continued use of the App constitutes acceptance of the updated policy.
15) CONTACT
For questions or data-related requests:
Hanova – Eduroid AI
Email: tunahandilercan@gmail.com