Last updated: August 20, 2026
This Privacy Policy describes how Rovia FZE LLC ("we", "us", or "our") collects, uses, and protects your information when you use the SOLYN application ("App"). By using the App, you consent to the data practices described in this policy.
SOLYN stores recovery data on your device using encrypted storage and may sync it to your Supabase account so it can be restored across devices. This can include quiz and assessment results, symptoms, goals, streaks, settings, chat history, and your plan. If you use our web assessment, your answers and name are stored temporarily in that browser for up to 24 hours and then sent securely to your account. We collect your name and email when you provide them to create or use an account. We do not ask for your phone number.
We use Supabase to authenticate accounts through Apple Sign-In, Google Sign-In, or email and password. Social providers may share your name and email when you permit it. For email accounts, Supabase processes and securely hashes the password; SOLYN does not receive or store the readable password. Authentication data links progress and subscription access across devices and supports password recovery.
We use a unique Supabase account identifier to manage subscription access and sync recovery data. We also share that identifier with RevenueCat and Stripe as a subscription-management reference. It is not sent with assessment answers to advertising platforms.
We use RevenueCat to manage subscription entitlements. Purchases in the App are processed by Apple App Store or Google Play. Purchases after the SOLYN web assessment are processed by Stripe Checkout and may be imported into RevenueCat so access works across devices. SOLYN does not receive your full payment card number. Stripe may process billing contact, payment method, tax, invoice, and transaction information. We store the Stripe identifiers and status needed to provide and manage access. Review RevenueCat's Privacy Policy and Stripe's Privacy Policy.
We use Sentry for crash and performance diagnostics, Mixpanel for product analytics, AppsFlyer and Meta for advertising attribution, and Customer.io for product communications and push delivery. Depending on permissions and platform settings, these services may process device or advertising identifiers, app version, platform, campaign parameters, and non-sensitive product events. Session replay runs only when enabled for production and after explicit runtime consent. The web funnel records first-party milestones and allowlisted campaign parameters, but analytics events never include assessment answers, names, email addresses, or passwords. We do not use assessment answers for ad targeting.
When you use the AI chat feature, your messages are sent to a third-party AI provider for processing. Conversations are stored locally on your device in encrypted form and, when you are signed in, may be synced to your Supabase account so they can be restored across devices. Depending on the App's configuration, your messages may be processed by one of the following providers:
Only one provider is active at a time. Messages are sent over encrypted (HTTPS) connections. Do not share sensitive personal information, medical details, or information that could identify you in chat messages.
We do not sell, rent, or trade your personal data. We share information only as needed with:
We do not share assessment answers with advertising or product analytics services.
We implement industry-standard security measures to protect your information. Sensitive data stored on your device is encrypted using AES-256 encryption and secure storage mechanisms. However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your data, we cannot guarantee its absolute security.
Device data remains until you delete it, delete your account, or uninstall the App. A web assessment draft is kept in that browser for up to 24 hours and removed after verified activation. Privacy-safe web funnel milestones are retained for up to 90 days. Synced account and assessment data remains until account deletion, subject to backup and legal-retention requirements. Stripe, RevenueCat, app stores, analytics providers, and other processors retain billing, security, diagnostic, and transaction records under their own policies and legal obligations.
You have the right to:
Uninstalling the App removes local data but does not by itself delete cloud or billing records.
Depending on your jurisdiction, you may have additional rights under GDPR, CCPA, or other privacy laws.
SOLYN is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we discover that a child under 13 has provided us with personal information, we will delete such information from our systems.
Your information may be transferred to and processed in countries other than your country of residence, including the United States, where our service providers operate. These countries may have data protection laws that differ from those in your jurisdiction. By using the App, you consent to such transfers. We ensure appropriate safeguards are in place to protect your information in compliance with applicable law.
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy within the App and updating the "Last Updated" date. Your continued use of the App after such modifications constitutes your acknowledgment and agreement to the updated Privacy Policy.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact Rovia FZE LLC at hello@solyn-app.com. You may also write to us at: Rovia FZE LLC, Dubai, United Arab Emirates. We will respond to your inquiry within a reasonable timeframe.