Privacy Policy

PoopJob is a calm baby tracker. This page explains who we are, what personal data we process when you use the marketing site (poopjob.app) or the app (my.poopjob.app), why we process it, and what choices you have. We have tried to write it in plain English. If anything is unclear, write to us and we will explain it without lawyer-talk.

Who we are

MASTOROSTERGIOS VASILEIOS L.P. Napoleontos Zerva 10, 546 40 Thessaloniki, Greece VAT: EL802405222 · Γ.Ε.ΜΗ.: 175769406000 Email: [email protected]

We are the data controller for the data described below.

The competent supervisory authority for data protection in Greece is the Hellenic Data Protection Authority (HDPA / ΑΠΔΠΧ), Kifissias 1-3, 11523 Athens (www.dpa.gr). You can lodge a complaint with them at any time.

The short version

We collect the minimum data we need to make the app work and to keep it reliable. We do not sell your data. We do not run advertising. We do not share your data with anyone except a small number of carefully chosen service providers who help us host, monitor, and (with your consent) understand usage of the site. You can ask for a copy of your data or have your account deleted by emailing us.

1. Account data

When you create an account we store your email address and a one-way hash of your password (argon2id; we never see your password in clear text).

2. Service data: the things you log

The records you create in the app: diaper logs, feeding sessions, bottle feedings, timestamps, notes, your preferred locale, and measurement-unit preferences.

We treat this data as your records. It is not health data in the clinical sense and PoopJob is not a medical device, but we hold it with the same minimum-access discipline we would apply to anything sensitive.

3. Technical telemetry (error monitoring and operational logs)

When something breaks in the app or on the site we record a small amount of context through our processor Sentry: error message, stack trace, browser and OS version, the URL where the error happened, and a coarse session identifier. We use this only to find and fix bugs.

In addition, the server side of the app forwards its operational log lines — the structured one-line records produced by the API as it handles each request (for example: “request received”, “request completed”, login outcome, an internal warning) — to Sentry alongside the error reports. Each log line is associated with the IP address that made the request. We use these only to investigate problems (a 500 error, a stuck flow, a suspicious traffic pattern) and to keep the small set of moving pieces accountable; we do not browse them otherwise. The session cookie and Authorization header are stripped from these records before they leave the server, so the logs cannot be used to impersonate you.

If you accept the analytics category in the cookie banner, we use Amplitude to understand how people find and use the site and the app: which pages are popular, where people get stuck, which features get used. A small (~10%) sample of sessions includes a recording of page interactions; form inputs are masked in those recordings.

The full inventory of analytics cookies and exactly what reaches Amplitude is in the Cookie Policy. That page is the authoritative reference.

5. Support enquiries

When you fill in the form at /support, or write to [email protected] directly, we receive the email address you give us, your message, the lane you selected on the form (so we know whether it’s a bug, an idea, an account question, or something else), and a small set of operational headers — your IP address, browser user-agent, and approximate country — which are written into the email body so we can triage bug reports. If you choose the “Account or data” lane, you may also tell us the email you signed up with; that field is optional.

6. Donations

PoopJob offers an optional donation flow (the “Tip Jar”) inside the app. Donations are processed by Stripe, which receives the information needed to complete the payment: typically the donor’s email address, card details, billing postal code, and IP address. PoopJob itself never sees your card number. Stripe processes this data as an independent controller under its own privacy notice.

Donations are voluntary, non-recurring (one-time only — we will never debit you automatically), and not required to use the app.

Where your data is stored

The app and the database are hosted on Hetzner in Nuremberg, Germany. Your account data and your in-app records stay in the European Economic Area (EEA).

Four of our processors are based in the United States and store the data they process for us on US infrastructure: Sentry (error monitoring), Amplitude (product analytics, only with your consent), Cloudflare (DNS, edge network, the support-form Worker, inbound email routing, and the Turnstile bot-check on the support form), and ZeptoMail (outbound transactional email for support replies). Transfers to the US therefore happen for these limited purposes. We rely on:

as the legal basis for those transfers. The Amplitude transfer is additionally covered by your consent (Art. 49(1)(a) GDPR).

How long we keep it

DataRetention
Account data and your in-app recordsKept while your account is active. Deleted within 30 days of an account-closure request.
Encrypted backupsRotate out within 30 days of the underlying data being deleted.
Technical telemetry (Sentry)Per Sentry’s default retention; currently 90 days.
Analytics events (Amplitude)Stored under our Amplitude account’s retention defaults; aggregate data may be retained anonymised.
Cookie-consent record (cc_cookie)Up to 6 months from your last choice.

If law requires us to keep something longer (for example, accounting records related to a donation), we will keep only the records that the law requires, for only as long as it requires.

Security

No system is perfectly secure. If you believe your account has been compromised or you have found a security issue, please write to [email protected].

Sharing with third parties

We do not sell your data. We do not share it with advertisers or data brokers. We use a small set of data processors who act only on our documented instructions:

ProcessorRoleLocation
Hetzner Online GmbHHosting (app + database)Nuremberg, Germany (EEA)
Cloudflare, Inc.DNS, edge network, the support-form Worker (/api/support), inbound email routing for [email protected], and the Turnstile bot-check on the support formUnited States (global edge with EU presence)
Sentry (Functional Software, Inc.)Error monitoringUnited States
Amplitude, Inc.Product analytics (only with your consent)United States
Zoho Corporation Pvt. Ltd. (ZeptoMail)Outbound transactional email — currently used only to deliver replies to support-form submissionsUnited States (api.zeptomail.com region)

Each of these is bound by a data processing agreement under Art. 28 GDPR.

We will update this list if it changes. We will not introduce a new processor that handles your data in a meaningfully different way without first updating this page.

Your rights

As a data subject under the GDPR, you have the right to:

How to exercise them

Email [email protected] from the address attached to your account. We will respond within one month as required by Art. 12 GDPR. Self-serve export and deletion are on our roadmap; until then we will run the request manually.

We do not charge a fee for these requests except where they are manifestly unfounded or excessive, as permitted by Art. 12(5) GDPR.

Children

PoopJob is for adults: parents and caregivers tracking their own children. Users must be at least 16 years old to create an account.

The app stores data about infants on behalf of the account-holder. PoopJob does not collect data from children directly. The account-holder is responsible for the records they create about their child and may delete them at any time.

If you believe a child under 16 has created an account, please email us and we will close the account.

Changes to this policy

We will update this page when our processing changes: new processor, new data category, different retention. The Last updated date below reflects the most recent material change. For minor wording fixes we may not update the date.

If a change materially affects you, we will tell you (in-app or by email) before it takes effect.

Contact

Questions, requests, complaints: [email protected].

Last updated: June 9, 2026

← Back to home