GLOBAL PRIVACY POLICY
Last Updated: September 4, 2026
This Privacy Policy transparently outlines how db-grql ("we", "our", or "the Organization") collects, uses, processes, transfers, and safeguards the personal data of users ("you" or "the user") across all mobile applications and software solutions published on official application distribution stores (including Google Play Store and Apple App Store) built under the gRQL Engine architecture and development standard, as well as on our official website https://db-grql.com and associated backend services.
Global Privacy Commitment: Across the gRQL ecosystem, user privacy and data sovereignty are fundamental principles. We do not sell, rent, or trade your personal information to third parties. We handle all data under strict security controls in full compliance with Google Play Developer Policies, Apple App Store Review Guidelines, the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and applicable international data protection laws.
1. Data Controller & Developer Identity
The entity responsible for processing personal data across all applications and services powered by the gRQL standard is:
- Entity / Developer: db-grql Team
- Privacy & Support Email: devapp.delg@gmail.com
- Official Website: https://db-grql.com
2. Information and Data We Collect
We only collect data that is strictly necessary, relevant, and proportional to deliver the core functionalities of our applications and services:
A. Information You Provide Directly to Us
- Account & Profile Information: Full name, email address, contact phone number, access credentials (stored exclusively via salted one-way cryptographic hashing), avatar or profile picture.
- User-Generated Content: Listings, module and service descriptions, attached images, catalogs, user preferences, and messages sent via in-app forms or communication channels.
- Support & Communications: Messages, feedback, inquiries, or incident reports sent directly to our support team.
B. Geographic Location Data (Geolocation)
For applications within the gRQL ecosystem that incorporate location-based features:
- Foreground Location (Precise and Coarse): Requested explicitly and used strictly while the app is active in the foreground for purposes such as:
- Displaying interactive maps and discovering nearby resources, services, or points of interest relative to your position.
- Allowing users to pin exact geographic coordinates or define coverage areas.
- Calculating operational distances and routes within the application.
- Transparency: We do not track background location without explicit user permission and a clear functional justification. Geolocation data is never shared with third parties for behavioral advertising.
C. Camera and Media Storage Access (Photos, Gallery & Files)
- Camera: Requested only when the user decides to capture a live photo or scan codes in real-time for profile customization, post attachments, or in-app validations.
- Photo Library / Gallery / Storage: Access is limited exclusively to the specific media files that the user manually selects to attach to their profile or listings. Our apps do not access, scan, or index other private media files on your device.
D. Technical and Automatically Collected Data
- Device Specifications: Hardware manufacturer, device model, operating system version (Android / iOS), anonymous installation identifier, and system language settings.
- Push Notification Tokens: Tokens provided by notification dispatchers (such as Firebase Cloud Messaging or Apple Push Notification service) to deliver operational alerts, account notices, and essential updates.
- Diagnostic and Performance Logs: Anonymous crash reports (Crashlytics) and stability metrics used to detect technical bugs and optimize app reliability.
- IP Address & Security Logs: Temporarily recorded for network security, abuse prevention, session integrity, and fraud deterrence.
3. Device Permissions (Android & iOS)
Our applications request only the minimum system permissions necessary for their core operations:
| Permission (Android / iOS) | Purpose & Justification |
|---|---|
| ACCESS_FINE_LOCATION / ACCESS_COARSE_LOCATION NSLocationWhenInUseUsageDescription |
Allows locating the user on interactive maps to calculate distances, display geographic points of interest, and find nearby services. |
| CAMERA NSCameraUsageDescription |
Enables live image capture for profile personalization, content uploads, or camera-based features. |
| READ_MEDIA_IMAGES / READ_EXTERNAL_STORAGE NSPhotoLibraryUsageDescription |
Enables selecting existing photos or images from the device gallery to upload within the app. |
| POST_NOTIFICATIONS | Delivers real-time push alerts regarding account activity, messages, and important operational notices. |
| INTERNET / ACCESS_NETWORK_STATE | Allows establishing encrypted and secure network connections with the gRQL backend servers and APIs. |
4. Purposes of Data Processing
All data is processed under legitimate legal grounds strictly for:
- Service Provision: Account creation, user authentication, request handling, and executing core application features.
- Interaction & Notifications: Facilitating platform communication and delivering transactional and security notifications.
- Security & Abuse Prevention: Detecting fraudulent activities, preventing unauthorized access, and enforcing terms of service.
- Optimization & Quality Assurance: Monitoring technical performance, resolving software bugs, and continually enhancing application quality.
5. Third-Party Service Providers and SDKs
To provide high availability, reliable notification delivery, and secure cloud infrastructure, we integrate services from leading industry providers that adhere to international privacy regulations:
- Google Play Services & Apple Developer Services: Foundational operating system services for Android and iOS. (Google Privacy / Apple Privacy).
- Map Services (Google Maps SDK / Apple MapKit): For cartographic rendering and geolocation display.
- Firebase (Google LLC): Used for push notifications (FCM), crash diagnostics, and performance monitoring. (Firebase Privacy & Security).
We do not sell or share personal data with third-party advertising networks for cross-app tracking.
6. Account Deletion and Data Retention (Play Store & App Store Policies)
Universal Account & Data Deletion Mechanism
In full compliance with Google Play Store policies and Apple App Store Guideline 5.1.1(v), all users have the unconditional right to permanently delete their account and all associated personal data both from within the app and via the web:
- Option 1 (In-App Deletion): Sign into the app, go to Settings / Profile > Security / Account > select "Delete My Account" and confirm your request.
- Option 2 (Web / Email Request): If you cannot access the app or prefer an external request, send an email to devapp.delg@gmail.com with the subject "Account Deletion Request" from your registered email address.
Deletion Process: Upon confirmation, your profile, authentication credentials, uploaded media, device tokens, user-generated content, and location records are permanently purged from active databases within 30 business days. Only minimum records required by mandatory legal, financial, or regulatory compliance mandates will be retained as permitted by law.
7. Data Security
We implement robust organizational and technical security measures:
- Encryption in Transit: All communications between apps and backend servers are protected using industry-standard HTTPS / TLS 1.3 encryption.
- Credential Hashing: Passwords are never stored in plain text and are protected using irreversible salted cryptographic hashing.
- Controlled Infrastructure: Database access is strictly confined to authorized administrative personnel protected by multi-factor authentication.
8. Children's Privacy (COPPA & GDPR Compliance)
Our applications and services are NOT directed to children under 13 years of age (or 16 years of age where applicable by local law). We do not knowingly collect personal data from minors. If a parent or legal guardian discovers that a child has submitted personal information without verified consent, please contact us at devapp.delg@gmail.com for prompt removal of the data.
9. User Privacy Rights (GDPR, CCPA & Global Frameworks)
You may exercise the following rights regarding your personal data at any time:
- Access & Rectification: Review the personal data held about you and update inaccurate or incomplete information.
- Erasure (Right to be Forgotten): Request the permanent deletion of your personal data.
- Restriction & Objection: Object to specific data processing activities or request limitations on processing.
- Data Portability: Obtain a copy of your personal data in a structured, commonly used, machine-readable format.
To exercise any of these rights, please send an inquiry to devapp.delg@gmail.com.
10. Cookies and Web Technologies
Our official website db-grql.com uses essential and performance cookies to optimize browsing sessions and analyze aggregated traffic. You can adjust cookie preferences through your web browser settings at any time.
11. Third-Party Links
Our applications and web platforms may contain links to external websites or third-party services. Once you navigate away from our domain, interactions are governed by the respective external privacy policies.
12. Changes to this Privacy Policy
We may periodically update this Privacy Policy to reflect app enhancements, legal changes, or evolving guidelines from Google Play Store and Apple App Store. Any updates will be published on this page with an updated "Last Updated" timestamp.
13. Contact Information
For any questions, requests, or privacy inquiries, please contact our team at:
- Developer Email: devapp.delg@gmail.com
- Official Website: https://db-grql.com