Privacy Policy

Migrant Support Book

Effective date: 2026-09-23

This policy explains how this application handles information and how to contact us about privacy.

Information we process

Migrant Support Book stores the guide content, chosen interface language, optional region and migration status, recently viewed items, saved items, and document checklist progress on your device. The app creates a random installation secret and stores it in the iOS Keychain. When sync is available, the server stores a hash of that secret together with your saved item IDs and completed checklist IDs; it does not receive your name, email address, document scans, or the secret in readable database form. Guide requests can include the requested language and region. Railway, which hosts the service, receives network requests and may process technical information such as IP addresses, request times, and service logs.

How we use information

We use local information to show guides in your selected language, filter useful content, remember what you viewed or saved, and display checklist progress. The server sends current guide content and its version to the app, and uses the installation secret to restrict sync and deletion of saved items and checklist progress to that installation. Technical request information is used by the hosting infrastructure to deliver and operate the service. We do not use this app for advertising, analytics, account creation, or email delivery.

Service providers and sharing

Guide requests and encrypted connections to the API pass through Railway, our hosting provider. Railway hosts the application service and persistent storage and may process infrastructure logs needed to operate them. We do not send app data to advertising networks, analytics providers, map providers, or email services. If you open a source website from a guide, your browser connects to that external site under its own privacy practices; the app does not send your checklist or saved-item record to the site. Emergency telephone actions use the iPhone's standard calling capability; your mobile carrier handles the call, and the app does not receive call content.

Data retention

Local settings, recently viewed items, saved items, and checklist progress remain on your device until you clear them in the app or remove the app, subject to iOS storage behavior. The server keeps the active installation record until you delete it through the app or the service is retired. Published guide revisions remain on the server for content version history. This application does not create a separate backup of personal sync records. Railway may retain infrastructure logs or storage copies under its own operational practices; we do not claim a fixed retention period for them, and deleting an active record may not immediately remove residual infrastructure copies.

Deleting your information

You can clear local saved items and checklist progress in the app. The app can send an authenticated deletion request that removes the active server sync record for its installation secret. Removing the app removes its local data under iOS behavior, but may not send a server deletion request; use the in-app deletion control first if you want the server record removed. If the installation secret is lost, the app cannot identify or recover that server record through an account. For privacy questions or assistance with a deletion request, contact vadymmalyi140@gmail.com. Infrastructure copies may remain until removed through the hosting provider's normal processes.

Permissions and your choices

The guide and emergency numbers are available without location access, contacts access, or a map permission. The app may request notification permission only if you choose to enable a local reminder for unfinished checklist steps; you can change this in iOS Settings, and guide use does not depend on granting it. Tapping an emergency number opens the iPhone's standard telephone action. Network access is used to check for guide updates and sync saved item IDs and checklist progress when a connection is available.

Your privacy rights

You can view and change your saved items, checklist progress, language, region, and migration status in the app. You can delete local progress and request deletion of the active server record from the app. For questions about access, correction, deletion, or this policy, contact vadymmalyi140@gmail.com. Because there is no account or identity record, we can only act on a server installation record when its secret is available; we cannot restore data after that secret is lost.

Security

The API uses HTTPS in deployment. A random installation secret is held in the iOS Keychain and sent in an authorization header for private requests; the server stores only its SHA-256 hash and checks it before reading, replacing, or deleting that installation's sync record. Personal sync records are kept in persistent storage attached to the Railway service. These safeguards reduce risk but cannot guarantee absolute security. Do not put sensitive document contents into saved item names or checklist data; the app syncs only predefined IDs.

Children’s privacy

The app is intended for adults arranging life in Italy and is not directed to children. Some guides help adults with school and family services, but the app does not ask for children's names, documents, or accounts. If you believe personal information about a child has been sent to the service, contact vadymmalyi140@gmail.com.

Changes to this policy

We may update this policy when the app, server processing, or hosting practices change. The current version and effective date will be published at this page. Review this page when an app update changes how your data is handled; privacy questions can be sent to vadymmalyi140@gmail.com.