Privacy Policy
Last updated: 18 August 2026
Deengle (“we”, “us”) — the operator of deengle.com and the Deengle apps, reachable at support@deengle.com — is the data controller for personal data processed through the Service. This policy explains what we collect, why, and your rights under the UK GDPR and the Data Protection Act 2018.
1. What we collect
| Who | Data | Why |
|---|---|---|
| Business owners | Email address, password (hashed by our provider), business name and card content (logo, offers, prices) | To operate your account, publish your card, and contact you about the Service |
| Customers | A pseudonymous device identity (created automatically — no name, email or phone number is required), the businesses whose cards you save, and your check-ins: which business, date and time, stamps and rewards | To run the loyalty programme: count your visits, award stamps and rewards, credit referrals, and give the business visit statistics |
| Customers who enable backup (optional) | The email address from your Apple or Google account, and the list of businesses whose cards you saved | To let you restore your cards and stamps on a new device. Backup is optional — every feature works without it. Sign in with Apple lets you hide your real email. |
| Business owners | Your shop's location (the map pin you set when publishing) | Shown publicly on your card so customers can find you and discover you nearby |
| Everyone | Basic technical logs (IP address, browser type) generated by our hosting provider | Security, abuse prevention and service operation |
Your location in the app
The app can show shops near you and notify you when you are next to a shop with a live offer. This works by downloading a public list of shop locations and comparing it with your position on your device. Your location is never sent to Deengle, never stored by us, and never shared with businesses — we could not tell you where you have been, because we do not know. If you grant "Always" location access, this same on-device check can also run in the background so you can be notified with the app closed. Location access is optional, controlled by iOS permissions, and the feature can be switched off any time in the app's Settings under "Nearby offers".
2. What we don't do
- No advertising trackers, no analytics cookies, no selling of personal data — to anyone, ever.
- We use browser storage (localStorage) only for strictly necessary purposes: keeping your saved cards, drafts and sign-in state on your device. That is why there is no cookie banner.
- Customers can use loyalty cards without giving us their name or contact details.
3. Lawful bases
- Contract — operating the accounts, cards, check-ins and rewards you ask us to provide.
- Legitimate interests — service security, fraud prevention and improving the Service, balanced against your rights.
- Legal obligation — where we must retain or disclose information by law.
4. Who processes your data
Deengle runs on Google Firebase (Google Cloud). Our databases and functions are hosted in Google's London region (europe-west2) where available. Google acts as our processor under its Data Processing Addendum, which includes UK-approved safeguards for any international transfers. Businesses see visit statistics and pseudonymous member records for their own shop only — never your activity at other shops.
5. Other services involved
- Sign in with Apple / Google sign-in — if you choose them, Apple or Google confirm your identity to us; we receive only your email address (or Apple's private relay address). Their own privacy policies apply to their side of the sign-in.
- Email — account emails (verification, password reset) are sent via Google Workspace from noreply@deengle.com. We send no marketing email.
6. Retention
- Account and card data: kept while your account is active, deleted within 90 days of account deletion.
- Check-in codes: expire within minutes and are routinely purged.
- Visit records and statistics: kept while the related business account is active, as part of its loyalty ledger.
- Backup documents (your saved-card list): kept until you ask us to delete your account — email us and it goes within 30 days.
- Cards saved on your device stay on your device — clear your browser data or delete the app to remove them.
7. Your rights
You have the right to access, correct, delete and port your personal data, to object to or restrict processing, and to withdraw consent where processing is based on consent. Customers can delete their account and all associated data directly in the app (Settings → Account → Delete my account), or email support@deengle.com — we respond within one month. You can also complain to the Information Commissioner's Office at ico.org.uk.
8. Children
You must be at least 13 to use Deengle with a backup account or to hold a business account; we do not knowingly process personal data of children under 13, and we do not support parental-consent sign-ups. Customers who simply save cards and collect stamps are anonymous by design — we hold no name, contact details or date of birth for them, we do no profiling or marketing, and we serve no advertising. This data-minimised design is how we approach the ICO Children's Code.
9. Changes
We will post any changes to this policy here and update the date above. Material changes will be highlighted on the site.
10. Contact
Data controller: Deengle, United Kingdom · support@deengle.com