Privacy
Syrinx Privacy Notice
This notice covers the Syrinx iOS app and syrinxbirdsong.com. The data controller is Quentin Bacquelé, a micro-entrepreneur established in France. Questions and privacy requests can be sent to support@syrinxbirdsong.com.
Data Syrinx handles
- Pseudonymous account and identifiers. On first launch, Firebase creates a random anonymous user ID so learning progress can be synchronized. If you later create or access a permanent account, we also process the email address, display name, sign-in provider, and account ID supplied through email, Apple, or Google sign-in. Apple may provide a private relay address. We do not receive your Apple or Google password.
- Learning and gameplay. We store lesson and quiz results, answers, streaks, goals, unlocked content, mastery, currencies, cosmetic choices, notification settings, ranked rating, matchmaking information, match answers, and results. Most settings are also cached on your device.
- Profile and social features. We store the display name, public username, avatar region, friend relationships, blocks, likes, leaderboard entry, and community reports and reasons. A display name, username, avatar, community posts, likes, and ranked rating may be visible to other signed-in users. Friend and block lists and report identities are not public.
- Community media. When you choose to publish, we upload the selected photo or audio file, its species tag, your public profile details, and moderation results. Photos are checked by Google Cloud Vision for unsafe or off-topic material. Audio is checked by a bird-audio classifier and Google Cloud Speech-to-Text to reject recordings containing human speech. Speech recognition is used only for that moderation decision: no transcript is returned to Syrinx or retained by Syrinx. A rejected upload is removed; limited moderation results, such as whether speech was detected, and reports are available to the operator for safety review.
- Personal library. Card names, notes, species tags, and references to their media synchronize through Firebase. Media you add to your own card stays on that device. Community media you save is copied to a private Firebase Storage area linked to your account.
- Purchases. Apple processes payment details. RevenueCat receives the app user ID, purchase and subscription history, entitlement status, product identifiers, device and technical information, country inferred from the network connection, and last-use information to validate purchases, prevent fraud, deliver entitlements, and provide purchase analytics. Syrinx does not receive your card or bank details.
- Optional Analytics. Analytics is disabled by default. If you enable Share usage analytics, Google Analytics for Firebase processes a random app-instance identifier, feature and journey events, app and device information, and an approximate region inferred from the network connection. We do not set an Analytics user ID or use this information for advertising.
- Technical and security information. Firebase, Google Cloud, RevenueCat, and identity providers process information such as IP address, user agent, app version, timestamps, request logs, App Attest/App Check results, and error details to operate and secure the service and prevent abuse.
- Device permissions. Camera access is used only when you choose to take a community photo. The system photo picker and file picker give Syrinx only the item you select. Microphone recording starts only after you choose to record and stops when you finish. Notification permission is used for reminders scheduled on your device. These permissions can be changed in iOS Settings.
- Support and website. If you contact support, we process your message, address, and any information you include. The website does not use advertising cookies or Analytics. Its hosting provider may temporarily process ordinary request logs such as IP address, requested page, time, and browser information for delivery and security.
Community visibility and saved copies
Community posts are visible to signed-in users. Before each upload, the app asks you to confirm that you have the right to share it and that it may be moderated and saved to another user’s private Syrinx library. A saved copy may outlast the seven-day feed post. Deleting a still-active post or deleting your account removes server-held copies linked to you. Copies or screenshots that another person exported outside Syrinx cannot be recalled, so do not upload people, voices, location clues, or other personal information without permission.
Why we process data
- Contract: to provide accounts, synchronization, purchases, lessons, community features, personal libraries, friends, leaderboards, and matches you request.
- Legitimate interests: to keep the service secure and reliable, prevent fraud and abuse, moderate user content, investigate reports, and maintain non-identifying operational statistics. You may object to this processing where the law gives you that right.
- Consent: for optional Analytics and for access to the camera, microphone, photos, files, or notifications. You can withdraw permission at any time; doing so does not affect earlier lawful processing.
- Legal obligations: where records or disclosures are required for accounting, tax, consumer-protection, or lawful authority requests.
Providers and international transfers
We use Apple for App Store payments and Apple sign-in; Google for sign-in, Firebase Authentication, Firestore, Storage, Cloud Functions, App Check, optional Analytics, Cloud Vision, Speech-to-Text, Cloud Run, and Hosting; and RevenueCat for purchase validation and entitlements. Links to their notices are available at Apple Privacy, Firebase Privacy, and RevenueCat Privacy.
Some processing occurs outside the European Economic Area, including in the United States. Firebase Authentication is operated from US data centers, while other Firebase and Google Cloud workloads use their configured or global locations. Providers use their applicable data-processing terms and recognized transfer safeguards, such as adequacy decisions or Standard Contractual Clauses, where required.
Retention
- Account, profile, progress, friends, blocks, personal-library records, and saved media remain while the related anonymous or permanent account exists, unless you delete them sooner.
- Community posts leave the feed after seven days and are deleted by a daily sweep, normally within the following 24 hours. Likes and reports tied to the post are deleted with it. A private library copy may remain until the saving user deletes their account, or until the author deletes the original post or account.
- Completed and cancelled match records are deleted after 30 days. Waiting or active matches remain until they finish, are cancelled, or a participant deletes their account.
- Optional Analytics event-level data is retained for no more than 14 months. Turning Analytics off stops new collection and resets the identifier on the device; previously collected, unlinked events expire under the Analytics retention setting.
- Routine cloud logs are generally retained for up to 30 days unless needed longer to investigate a security or abuse incident. Support messages are kept only as long as needed to resolve the request and meet legal obligations.
- Account deletion requests erase the linked RevenueCat customer profile, but do not cancel an Apple subscription or remove records Apple must keep. Limited residual data may remain temporarily in provider backups until their normal overwrite cycle, without being used for other purposes.
Your choices and deletion
You can disable Analytics in Profile → Settings → Privacy, change system permissions in iOS Settings, delete an active community post from its menu, and delete either an anonymous profile or permanent account in Profile → Settings → Delete app data/account. Account deletion removes the Firebase account and server data, linked community copies, RevenueCat customer profile, local progress and personal-library media, cached responses, widget state, and the Analytics identifier. It does not cancel an Apple subscription; manage that separately in Apple’s subscription settings.
You may also email support@syrinxbirdsong.com. We may need to verify that a request concerns your account. We aim to complete verified deletion requests within 30 days, subject to any lawful retention requirement.
Your rights
Depending on where you live, you may have rights to access and receive a copy of your data, correct it, erase it, restrict its use, object to processing, withdraw consent, and obtain portable data. You may complain to your local data-protection authority; in France this is the CNIL. Exercising a right will not affect service quality except where the data is necessary to provide a requested feature.
Automated moderation
Automated tools decide whether an upload enters the community feed. They check for unsafe material, whether the media appears bird-related, and whether audio contains human speech. This decision does not produce legal or similarly significant effects. If an upload is incorrectly rejected or you want human review, contact support@syrinxbirdsong.com.
Children
Syrinx is not directed to children under 13, and they must not create an account or use community features. Where local law requires parental authorization for a minor’s consent-based processing—including for children under 15 in France—a parent or guardian must provide that authorization. Syrinx does not currently provide a parental-consent workflow, so a user who cannot consent independently must not enable Analytics or use account and community features. Contact us if you believe we hold a child’s data so we can delete it.
Security and changes
We use access controls, encryption in transit, provider encryption at rest, App Check, server-side authorization, and restricted administration. No online service can guarantee absolute security. We will update this notice when practices change, change the date above, and announce significant changes in the app where appropriate.