← Legal documents Українська

Privacy Policy

Last updated: September 5, 2026

TupTup helps parents and caregivers organise routines on their own device. No account is required. Routine content is stored locally and, when available, in your private iCloud storage. Apple and RevenueCat process purchase and technical data to support subscriptions, including when you use the free version. There are no ads.

TupTup (“the App”) is developed and operated by Oleksii Haidai (CodePine Studio). This Privacy Policy explains what the App stores, what leaves your device, and what choices you have.

1. Information We Collect

There is no TupTup account, login, or child profile. We do not operate an application server or receive the content of your routines. However, we use RevenueCat to manage subscriptions and can access subscription records and reports through its dashboard. Not having our own server does not mean that no data is processed.

RevenueCat starts when the App launches, not only when you buy a subscription. Section 4 describes the identifiers, technical information, and purchase data it processes. If you contact support, we also receive your email address and whatever information you include in your message.

2. Information Stored on Your Device

To do its job, the App saves the following in its own storage on your device:

• your routines — the name you gave each one, its colour and icon, which step cards you chose, and their order

• which routine is in progress and which step it reached, so a routine survives the screen locking mid‑way

• whether Kid Lock is switched on, and the four‑digit PIN you chose to leave it, if you set one

• when each routine was started and how long it took — the last 500 runs, and a count of completed runs per routine — which is what the statistics on a routine’s page are drawn from

• your language preference, your theme preference, and whether animations and sound effects are switched on, both for the device and for any routine you set differently

• a flag noting whether a subscription is currently active, so the App works correctly when offline

You can enter routine names. The App does not ask for a child’s name, age, date of birth, or photograph. Please avoid including unnecessary personal information in routine names or support messages.

3. iCloud Sync

When iCloud is available for the App, it automatically syncs your routines through your private iCloud key‑value storage, so they can be available on your other devices or after reinstalling.

This sync includes routine names, colours, icons, steps, creation dates, and per‑routine effect settings. It does not include run history, the PIN, or device‑wide preferences. Separately, Apple’s device backup and restore features may include locally stored App data, depending on your settings.

The synced copy lives in your iCloud account and is handled by Apple. We cannot access your private iCloud routine content. See Apple’s privacy policy.

Without iCloud, routines work locally. There is no separate iCloud switch inside TupTup; availability depends on your Apple account and system settings. Disabling iCloud does not stop the subscription service described below.

4. Subscriptions and Purchases

TupTup is free to use with one routine. An optional annual subscription unlocks more routines. Apple processes payment through the App Store. We do not receive your payment card details or Apple account password.

We use RevenueCat, Inc. to check subscription status, validate and restore purchases, and provide subscription and revenue reports. Its SDK connects on App launch, including for people who have never subscribed. It processes:

• a generated App User ID and the Apple identifier for vendor (IDFV), when available; these are persistent identifiers, not your name, but should not be treated as fully anonymous data

• technical information such as device model, operating system, App and SDK versions, language settings, and App Store storefront when available

• purchase and subscription information, when present, such as transaction identifiers, products, purchase and expiry dates, and entitlement status

• service activity such as when the installation was last seen; network requests also expose your IP address to the receiving service

Our integration does not send RevenueCat routine names, selected cards, run history, or your parent PIN. We do not supply a name or email address to RevenueCat. RevenueCat processes App end‑user data on our behalf; contact us about that data. More information about its role and practices is available in RevenueCat’s privacy notice.

The purchase flow has a parent check intended to discourage accidental access by a child. This is not a guarantee that a child cannot pass it, and it is not consent to data processing. RevenueCat can connect before this check is shown.

5. Analytics, Tracking and Third Parties

The App has no advertising and does not use the Advertising Identifier (IDFA) or integrate advertising attribution services. We do not use App data for cross‑app advertising tracking. There is no separate analytics or crash‑reporting SDK, and we do not send routine activity to an analytics service. RevenueCat does provide subscription analytics, so this is not an App with no analytics of any kind.

Apple provides App Store, payment, and iCloud services. RevenueCat provides subscription infrastructure for both free and paid installations. Email providers process messages you send to support. These providers may process data outside your country. When you open an external page, its provider receives the web request and handles it under its own privacy terms.

6. Children’s Privacy

TupTup is a tool for parents and caregivers, intended to be installed and managed on their device. An adult creates and starts a routine and may hand the device to a child to view the cards and tap the button to advance or finish, with the adult’s guidance.

The App does not require a child account or request identifying details about a child. It has:

• no camera, microphone, or photo collection

• no chat, social network, or public sharing of routines

• no advertising

• parent checks before the purchase flow and external links in Settings

Routine names can contain information you enter, and local run history records routine activity. The subscription SDK described in section 4 remains part of the App regardless of who is holding the device. Parent checks and the routine lock do not disable that SDK or guarantee that every editing or settings screen is inaccessible to a child.

If you believe information about a child has been sent to us or our service provider and want it reviewed or deleted, please contact us. We will investigate and address the request in accordance with applicable law.

7. Data Retention and Deletion

Local data remains until you remove it or delete the App; run history is limited to the latest 500 runs, alongside completion counts. Deleting a routine removes its local record and associated statistics, and the updated routine list is synced to iCloud when available.

Deleting the App does not automatically remove existing iCloud copies, device backups, or RevenueCat records. Manage iCloud and backups through Apple’s settings and services. Synced deletion may take time to reach other devices. Restoring a backup can restore App data.

If you email us for support, we receive whatever you choose to put in that message, and we keep it only as long as needed to help you.

Subscription records may remain after a subscription ends to support purchase history, restoration, reporting, and applicable legal obligations. Uninstalling is not a deletion request to RevenueCat. Contact us to request access, correction, or deletion of data processed on our behalf; we may need limited information to locate the relevant record and verify your request. Do not send passwords or full payment card details.

Depending on applicable law, you may also have rights to restrict or object to processing, receive a copy of your data, withdraw consent where processing relies on it, or complain to a data protection authority. We will explain any legal reason that prevents us from fulfilling a request. There is no in‑App switch to disable RevenueCat; deleting the App stops its future App‑initiated requests but does not erase existing records.

Deleting data or the App does not cancel an App Store subscription. Manage or cancel it separately through your Apple subscription settings.

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. If we make material changes, we will update the “Last updated” date above.

9. Contact Us

If you have questions about this Privacy Policy, contact us at:

hello@codepine.studio