PRIVACY POLICY

Last updated: September 6, 2026

EXECUTIVE SUMMARY & TRANSPARENCY NOTICE

This Privacy Policy outlines how Rhythmix OÜ ("we", "us", or "our") collects, processes, protects, and shares your personal data when you use Smart Printer App: iPrint ("Service").

By using the Service, you confirm that you are over 18 years of age and agree to the data practices described herein.

Key Highlights: Section 2 (Data Controller Info), Section 3 & 4 (Data Categories & Processing Purposes), Section 5 (Third-Party Cloud Storage Rules), Section 6 (Third-Party Vendors), and Section 10 (Your Regional Legal Rights - EEA, UK, US, Canada).

For any privacy inquiries or to exercise your rights, contact us at hello_app@rhythmix.tech.

1. ACCEPTANCE & LEGAL SCOPE

This Privacy Policy details the personal data we collect, how it is processed, and the legal rights available to you. By accessing or using the Service, you promise that (i) you have read, understood, and agreed to this Privacy Policy, and (ii) you are at least 18 years of age. If you do not agree, you must immediately cancel active subscriptions, request data deletion, and delete the Service from your devices.

Minors Policy: We do not knowingly process personal data from individuals under 18 years of age. If you suspect a minor has provided us with personal data, please report it immediately to hello_app@rhythmix.tech.

2. PERSONAL DATA CONTROLLER

Data Controller

Rhythmix OÜ

Legal Form & Country

Private limited company under the laws of the Republic of Estonia

Registry Code

17398001

Legal Address

Mäealuse 2/1, 12618 Tallinn, Harju maakond, Estonia

Privacy Contact

hello_app@rhythmix.tech

3. CATEGORIES & SOURCES OF PERSONAL DATA

3.1 Data Directly Provided by You

3.2 Data Collected Automatically

3.3 Data Received from Third Parties

3.4 Excluded Data & Data Minimization

We do NOT collect sensitive personal data regarding race, ethnicity, political opinions, religious beliefs, trade union membership, genetic/biometric data, health, sex life, or criminal history. We strictly adhere to data minimization, collecting only data necessary for stated processing purposes.

4. PROCESSING PURPOSES & LEGAL BASES

We process personal data based on four primary legal bases: (1) Performance of Contract, (2) Legitimate Interests, (3) Compliance with Legal Obligations, and (4) User Consent.

Processing Purpose

Data Categories Used

Lawful Bases

User Support & Privacy Requests

Identifiers, support correspondence, email details

Contract Performance; Consent

Service Analytics & Product Development

Device & Geolocation Data, Log & Usage Data

Contract Performance; Legitimate Interests

App Diagnostics & Crash Fixes

Performance & Diagnostics Data (Crashlytics)

Contract Performance; Legitimate Interests

Subscription Management & Tracking

Subscription transaction data, ID, terms

Contract Performance; Consent

Refund Review & Fraud Prevention

Consumption Information (Apple Store metrics)

Consent; Legitimate Interests

Marketing & User Acquisition

User acquisition data (referring URLs/ads)

Consent; Legitimate Interests

Document Camera Scanning

Images captured via device camera at request

Contract Performance; Consent

File Import, Editing & Printing

Access to user-selected device files/photos

Contract Performance; Consent

Legitimate Interest Scope: Our legitimate interests include: promoting our Service appropriately, analyzing user preferences to enhance UX, personalizing ad campaigns, defending against legal claims, and enforcing our Terms of Use.

5. CONNECTION TO THIRD-PARTY CLOUD STORAGE SERVICES

5.1. The Service allows you to connect your third-party cloud storage accounts, including Google Drive and Dropbox, in order to import files stored there and print or edit them. Connecting such an account is entirely optional and the Service remains usable without it.

5.2. Redirect and Authorization: When you connect such an account, you are redirected to the provider's own authorization page, where you grant the Service access. Passwords: We never receive, request or store the password to your third-party account. Revoking Access: You may revoke this access at any time in the settings of the relevant provider — for Google, at https://myaccount.google.com/permissions, and for Dropbox, in the connected applications section of your account — or by disconnecting the account within the Service.

5.3. We access only those files and folders that are necessary to display them to you within the Service and to carry out the action you request, such as opening, printing or editing a file. We do not browse, index or scan the remaining contents of your storage account.

5.4. Google API Services User Data Policy Compliance (Limited Use Disclosure): The Service's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. In particular:

5.5. Third-Party Governance: Your use of a connected third-party account remains governed by that provider's own terms and privacy policy. We are not responsible for the availability of such services, for changes to their functionality, or for the loss of data stored within them.

6. THIRD-PARTY VENDORS & DATA DISCLOSURES

We share data with trusted third-party service providers to support app functionality, analytics, infrastructure, and marketing. All vendors are strictly bound by data protection obligations.

Vendor / Service

Functional Purpose

Privacy Policy Reference

Apple Inc. (App Store)

App publishing & distribution

https://www.apple.com/legal/privacy/en-ww/

Google LLC (Firebase, Analytics)

Auth, analytics, event tracking

https://policies.google.com/privacy?hl=en-US

Amplitude, Inc.

Product analytics & event tracking

https://amplitude.com/privacy

Functional Software (Sentry)

App development & error logs

https://sentry.io/privacy/

AppsFlyer Ltd.

Product analytics & attribution

https://www.appsflyer.com/legal/processing-customer-data/

Meta Platforms (Meta Ads)

Marketing & ad management

https://www.facebook.com/privacy/policy/

TikTok, Snap, Microsoft (Bing)

Marketing management

Respective platform policies

AWS, Supabase, Upstash, CloudAMQP

Cloud infrastructure & data storage

Respective trust & privacy policies

Elastic, Fly.io, IP-API

Performance monitoring & analytics

Respective corporate privacy policies

Legal & Corporate Disclosures: We disclose data to public/law enforcement authorities when legally required to enforce our legal rights or comply with judicial orders. In corporate transactions (mergers, acquisitions, asset sales), user data may be transferred as a business asset.

7. CROSS-BORDER TRANSFERS & DATA SECURITY

When transferring personal data outside the EEA to countries lacking equivalent data protection laws, we deploy recognized safeguards including European Commission Standard Contractual Clauses (SCCs) or adequacy decisions.

Security Safeguards: We employ administrative, physical, and technical safeguards (including SSL encryption and restricted access controls) to prevent unauthorized data access, loss, or alteration. Suspected breaches will be notified to users and regulators as legally required.

Data Retention: Personal data is retained as long as reasonably required to fulfill operational purposes, maintain active accounts, satisfy legal obligations, and resolve disputes.

8. REGIONAL LEGAL PRIVACY RIGHTS

8.1 EEA & UK Resident Rights (GDPR / UK GDPR)

Residents of the EEA and UK enjoy specific statutory rights:

8.2 United States Consumer Privacy Rights

State-specific privacy rights apply across CA, CO, CT, IN, IA, MT, TN, TX, UT, VA, and other jurisdictions:

8.3 Canadian Resident Rights

Canadian residents hold privacy rights under federal (PIPEDA) and provincial laws, with the right to lodge complaints with the Office of the Privacy Commissioner of Canada.

9. AMENDMENTS & CONTACT INFORMATION

We reserve the right to update this Privacy Policy. Material revisions will be communicated in-app or via email prior to becoming effective. Continued use signifies acceptance.

Contact Us: For privacy inquiries, rights verification, or minor protection concerns, contact our privacy team at hello_app@rhythmix.tech.