You stay in control of your data.
Last updated: August 26, 2026. This notice explains data processing in Dode Yazılım's Andante app.
1. Scope and age
The app is a wellness tool for adults aged 18 and over who want to notice drinking patterns and follow a personal reduction goal. It is not a medical device or healthcare service and is not directed to children.
2. Data kept on your device
Your display name, reduction plan, drink and trigger logs, craving notes, daily intentions and reflections, practice progress, reminder setting, chat history, and AI data-sharing consent stay in app storage on your device by default.
If you enable reminders, the operating system asks for notification permission and schedules the reminder on the device. The app does not request location, contacts, photos, camera, or microphone access. It does not include ads, advertising identifiers, or behavioral tracking.
3. Optional AI Coach
The cloud AI Coach, powered through Supabase and OpenAI, works only after you explicitly accept the transfer. Before consent, the app does not create an anonymous cloud session or send content to OpenAI. You can revoke consent in Settings to stop future cloud AI requests.
Data shared in an AI request
- Your current message and up to the previous 10 messages in the coach conversation
- App language
- Numeric summaries of your weekly goal, typical weekly amount, and amount logged that week
- A yes/no flag indicating that you requested healthcare-professional guidance during onboarding
- Consent version and acceptance time
Messages are checked for input safety, and responses are checked before display. Requests pass through Dode Yazılım's Supabase Edge Function to the OpenAI API. API secrets are not embedded in the mobile app.
4. Cloud data and retention
- Supabase: A random anonymous user ID, UTC date, request count, and update time are stored to enforce the daily quota. Message content is not written to the quota table.
- AI response reports: If you report a response in-app, the selected reason, reported AI response, app language, anonymous user ID, and report time are stored in Supabase for safety review. Your original prompt is not added separately. The report is removed when the anonymous account is deleted.
- OpenAI: Responses requests use
store: false. Under OpenAI's current API data controls, API data is not used for model training unless the customer opts in; default abuse-monitoring logs may retain content and safety metadata for up to 30 days, or longer where legally required. - Local: Device data remains until you delete it or uninstall the app. The anonymous account and linked records are removed after in-app all-data deletion succeeds.
Supabase and OpenAI infrastructure may process data outside Türkiye. The AI consent screen identifies the transferred fields before you choose.
5. Anonymous usage measurement and crash reporting
Two services help us understand which screens are used and fix crashes: PostHog (anonymous product analytics) and Sentry (error and crash reporting).
- No health data is sent. Drink logs, unit counts, triggers, urge notes, daily intention text and AI Coach conversation content are never transmitted to these services.
- Events are a fixed list covering feature usage only (for example "a practice was completed" plus its category, "a coach message was sent" plus whether the reply was demo or cloud, language changes).
- The analytics identifier is a random value generated on your device and is not linked to your anonymous Supabase identity. No name, e-mail or IP-based profile is built.
- Crash reports drop fields that could carry your content (extra data, tapped text, screenshots, view hierarchy) before they are sent.
- This data is never used for advertising or behavioural targeting and is not sold.
- You can turn it off: Settings → "Anonymous usage data". While off, no events are sent and queued events are discarded.
6. Purposes and sharing
Data is processed only to provide requested features, generate AI responses, perform safety checks, and manage abuse prevention and the daily quota. Personal data is not sold, disclosed to advertisers, or used for behavioral advertising. If you choose cloud AI, data is shared with Supabase and OpenAI as service providers for the purposes described above.
7. Export, deletion, and choices
In Settings, you can export a copy of local data, clear the coach chat, revoke AI consent, or use “Delete all data” to remove device data, the anonymous Supabase account, and linked quota/report records. If cloud deletion fails, the app does not claim success and asks you to retry.
Uninstalling removes device data but does not by itself guarantee deletion of a previously created anonymous cloud account. Use in-app deletion before uninstalling.
8. Security
Server secrets are not shipped in the app. AI functions validate the user token, enforce a daily quota, and do not expose raw server errors to the client. No internet transmission or storage system can provide absolute security.
9. Rights and contact
For access, information, correction, deletion, objection, or other applicable privacy requests, email [email protected]. We may request only the information needed to verify a request. Product support: [email protected].
OpenAI API data controls · Personal Data Protection Law
This notice may be updated when the product or legal requirements change. Material updates will show a new date.