Privacy Policy
Last Updated: July 19, 2026
1. Who We Are
This Privacy Policy describes how 100 Days 100 Books (the “App”) collects, uses, stores, and shares information.
This Policy explains our processing practices. Analytics and attribution services may start automatically when the App starts, as described below. Available privacy controls are provided in the App settings and by your device.
Delete Your Account and Data
Users of 100 Days 100 Books, including guest users, can request deletion of their app account and associated cloud data at any time.
Go to account deletion instructions ↓
2. Summary
- You may continue as a guest or sign in with Google. Guest mode uses a pseudonymous Firebase account so purchases can be restored and linked safely.
- Reading progress and preferences are primarily stored locally. Account, device-installation, and entitlement records may be stored in Firebase.
- We do not sell your personal information.
- Payments are processed by Google Play or the Apple App Store; we do not receive your full payment card details.
- Analytics and attribution SDKs may start automatically when the App starts. You can use available in-app and device privacy controls.
3. Information We Collect
3.1 Information stored on your device (local data)
This data stays on your device unless you contact us or use a feature that sends data to a third party:
- Reading progress — completed books, challenge day, reading position
- Saved insights — insights you choose to save
- App settings — theme, language, onboarding answers
- Anonymous user ID — a random number shown in your profile (not your name or email)
- Subscription cache — local copy of whether you have active access after a store purchase
3.2 Account and authentication information
The App uses Firebase Authentication. Depending on how you continue, we may process:
- Guest account — a Firebase anonymous user identifier
- Google sign-in — Firebase user identifier and basic Google account information made available during sign-in, such as email address, display name, and profile image
- Device installation identifier — a random pseudonymous identifier used to associate a guest session, prevent duplicate entitlement records, and support account recovery
3.3 Information collected automatically (device and usage data)
When the App starts, configured analytics, attribution, paywall, and diagnostics providers may collect:
- Device information (model, operating system version, language, time zone)
- App version and session information (e.g. app opens, screens viewed)
- Diagnostic and performance data related to app stability
- Identifiers used for analytics, attribution, fraud prevention, or billing (such as app instance ID, device installation ID, or advertising ID where available and permitted by device settings and law)
3.4 Purchase and entitlement information
If you buy a subscription or lifetime access:
- Google Play or Apple processes payment
- We receive and may store in Firebase the product ID, purchase token or transaction identifier, purchase and subscription state, verification timestamps, expiry, refund, revocation, and restore status
- Entitlement records may be associated with your Firebase user ID, guest account, and pseudonymous device installation ID so a valid purchase is not lost when you continue as a guest or later sign in
3.5 Information we do not collect directly
- Postal address or phone number (unless you include them in an email to us)
- Payment card or bank account details
- Precise GPS location
- Contacts, photos, microphone, or SMS content
4. How We Use Information
We use information to:
- Provide the App — daily books, challenge progress, saved insights, settings
- Verify subscriptions and restore purchases through Google Play / App Store
- Create and operate guest or signed-in accounts and associate verified entitlements with those accounts and installations
- Understand usage and improve the App (analytics)
- Display and manage subscription paywalls
- Respond to support and privacy requests
- Comply with legal obligations and protect against fraud or abuse
5. Legal Bases (EEA / UK users)
Where GDPR or UK GDPR applies, we rely on:
- Contract — to provide the App and paid features you request
- Legitimate interests — essential security, fraud prevention, and product reliability (balanced against your rights)
- Consent — where consent is required by applicable law for analytics, attribution, or device identifiers
- Legal obligation — where we must retain or disclose data by law
6. Sharing of Information
We do not sell your personal information. We may share data with:
6.1 Google / Firebase
- Firebase Authentication — guest and Google account authentication
- Cloud Firestore and Cloud Functions — account, installation, verified entitlement, purchase-validation, and deletion-request processing
- Firebase Analytics — app usage and device data to understand how the App is used
- Policy: Google Privacy Policy
- Firebase: Firebase Privacy and Security
6.2 Superwall
6.3 AppsFlyer
- Mobile attribution and analytics — may collect device, app, event, and campaign-related data when the SDK starts
- Policy: AppsFlyer Privacy Policy
6.4 Meta App Events
- App-use events and related device/app identifiers may be sent to Meta when its SDK starts. Advertising identifier availability remains subject to App configuration, device settings, and applicable law.
- Policy: Meta Privacy Policy
6.5 App stores
- Google Play and Apple App Store — payment processing and subscription management under their own policies
6.6 Legal and safety
We may disclose information if required by law, court order, or to protect rights, safety, and security of users or the public.
7. Data Retention, Account Deletion, and Data Deletion
- Local app data — kept on your device until you clear app storage or uninstall the App
- Account and entitlement data — kept while your account is active and then deleted or anonymized after a valid deletion request, except limited records that must be retained for legal, accounting, security, refund, or fraud-prevention reasons
- Analytics and attribution data — retained according to the configured retention periods and each provider’s policy
- Support emails — kept as long as needed to handle your request and comply with law
How to delete your account and associated cloud data:
- In the App: Profile → Settings → Delete account and data. This deletes the Firebase account and requests deletion of associated cloud profile, installation, and entitlement linkage data.
- Without the App: email apptimur7@gmail.com with subject “100 Days 100 Books Account Deletion Request”. Include the User ID shown in the App if available. We will verify and process the request within 30 days.
- Local-only data: clear app data in Android Settings or uninstall the App.
- Subscription cancellation is separate: deleting an account or the App does not cancel billing. Cancel in Google Play → Payments & subscriptions → Subscriptions, or in Apple subscription settings.
Deletion covers data associated with both signed-in and guest accounts. Store transaction records controlled by Google Play or Apple are handled under their policies. We may retain the minimum data required to document purchases, refunds, fraud, or legal compliance and will disclose that limitation when responding to a request.
8. Security
We use reasonable technical and organizational measures, including:
- Local storage provided by the operating system on your device
- Encrypted connections (HTTPS/TLS) when the App communicates with third-party services
- Limiting access to data we control
No method of transmission or storage is 100% secure. We cannot guarantee absolute security.
9. Your Rights and Choices
Depending on your country, you may have the right to access, correct, delete, restrict, or object to processing of your personal information, and to data portability.
- Android — use Android’s privacy and advertising controls to delete or reset the advertising ID where available
- iOS — Settings → Privacy & Security → Tracking
- Subscriptions — manage in Google Play or Apple ID settings
- California (CCPA/CPRA) — right to know, delete, and opt out of “sale”/“sharing” (we do not sell personal information)
To exercise rights, contact apptimur7@gmail.com. You may also lodge a complaint with your local data protection authority.
10. Children's Privacy
The App is not directed to children under 13 (or the minimum age in your country). We do not knowingly collect personal information from children. If you believe a child provided us data, contact us and we will delete it.
11. International Transfers
Third-party providers (Google, Superwall, AppsFlyer, and Meta when enabled) may process data in the United States and other countries. Where required, they use appropriate safeguards such as standard contractual clauses.
12. In-App Purchases
The App may offer:
- Weekly subscription with a free trial period, and/or
- One-time lifetime purchase
Price, trial length, renewal, and cancellation terms are shown in the App and on the store listing before purchase. Trials convert to paid subscriptions unless cancelled before the trial ends in your store account.
13. Google Play Data Safety
We maintain Google Play’s Data safety declaration to match the App, its SDKs, and the practices described here. The declaration must be reviewed whenever data handling, authentication, payments, or an SDK changes.
14. Changes to This Policy
We may update this Privacy Policy. We will post the new version on this page and update the “Last Updated” date. Material changes may also be communicated in the App where appropriate. Continued use after changes means you accept the updated policy.
15. Contact Us
This Privacy Policy applies to the 100 Days 100 Books mobile application on Android and iOS.
See also: Seller & Legal Information (subscriptions & seller contact).