Privacy Policy for the "Lustra" App
Last Updated: August 10, 2025
This is a Privacy Policy. I know these texts can be long and complicated, so I've done my best to write it in simple terms.
Your privacy and trust are my absolute priorities. In this policy, I will explain what data I collect, why I do it, and how I protect it.
1. Who Takes Care of Your Data? (Data Controller)
I, Jacek, acting through my company FO&WO VENTURES SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ (ul. Wapienna 13/7, 50-518 Wrocław, Poland, NIP: 6343002817), am the controller of your personal data.
If you have any questions about your data, please email me directly at: jacek@lustra.dev.
2. What Data Do I Collect and Why?
I only collect data that is necessary for the app to function or for which you give separate, voluntary consent. Here is a detailed list:
-
When you create an Account:
- Your email address: I need it to create and securely manage your Account, allow you to log in, and let you reset your password if you forget it.
- A unique user identifier (UID): This is a random string of characters automatically assigned by the Firebase system, which allows me to securely link your data to your Account.
-
When you use the app's features (as a logged-in user):
- Your votes in polls ("support" / "oppose"): I record them to create aggregate, fully anonymous statistics of support for individual bills, which you see in the app. Your individual vote is never shown publicly anywhere.
- Your list of followed bills: I store this so you can easily access it and (in the future) so I can send you notifications about their progress.
- Your chosen parliament: I save this information so you can participate in the correct polls and (in the future) receive notifications for the right country.
-
When you join the Lustra Supporters Club (completely voluntary):
- Information about your consent (true/false): I save this to know if you want to receive additional messages from me. I write more about the Club in section 5.
-
When you report a data error:
- If you decide to send a report about an error in the data, I will save the content of your report to analyze and fix the problem.
What I DO NOT collect: I do not use any third-party analytics tools (like Google Analytics) to track your activity in the app.
3. Who Do I Entrust Your Data To? (My Technology Partners)
For Lustra to work, I use services from trusted technology partners, to whom I entrust the processing of some data. They are:
- Google (as part of the Firebase service): This is the technological backbone of the entire app. Google provides me with the infrastructure for:
- Authentication (Firebase Authentication): Secure login and management of your Account.
- Database (Cloud Firestore): Storing data related to your Account (e.g., poll votes, list of followed bills).
- Google (as part of the Gemini AI service): This is the tool I use to analyze legislative texts. I want to be absolutely clear: I only send publicly available texts of bills and documents to the AI. Your personal data (like email or UID) is never sent there.
All data is stored on Google's servers located within the European Economic Area.
4. How Long Do I Store Your Data?
Simply put: I store your data for as long as you have an Account with me. If you decide to delete it, all your personal data will be permanently erased.
5. The Lustra Supporters Club – What Is It?
This is a special space for people who want to be closer to the project. Joining is completely voluntary and requires separate consent. If you join, it means you agree to me occasionally sending you emails about:
- the app's development and planned new features,
- special events, e.g., discussion panels about the future of Lustra,
- other, similar mission-driven projects I might create in the future,
- requests for financial support if the project faces difficulties.
You can withdraw your consent at any time in the app's settings.
6. Your Rights – You Have Full Control
GDPR gives you a range of rights, and I want you to be able to exercise them easily. You have the right to:
- Access your data: To know what data I store about you.
- Rectify (correct) your data.
- Erase your data (right to be forgotten): You can do this at any time using the "Delete Account" option in the app's settings. More information can be found in the section below.
- Restrict the processing of your data.
- Data portability.
- Object to the processing of your data.
- Withdraw consent (e.g., for being in the Lustra Supporters Club).
- Lodge a complaint with the President of the Personal Data Protection Office (UODO) if you believe I am processing your data unlawfully.
To exercise most of these rights, simply email me at jacek@lustra.dev.
7. Account and Data Deletion
I respect your right to be forgotten. You can permanently delete your account and all associated data at any time.
How to delete your account?
Method 1: Directly in the app (recommended)
- Open the Lustra app.
- Go to the "Settings" tab.
- Find and tap the "Delete Account" button.
- Confirm your decision. Your account and data will be immediately and permanently deleted.
8. Security of Your Data
I take security very seriously. I use solutions provided by Google Firebase, which apply modern security standards, including data encryption both during transmission (SSL protocol) and at rest on the servers.
9. Children's Data
As mentioned in the Terms of Service, the app is intended for individuals who are at least 16 years old. I do not knowingly collect or process data from younger individuals.
10. Changes to This Policy
I may update this policy in the future. I will inform you in advance of any significant changes within the app.
Thank you for your trust.
Jacek