Privacy Policy
Last updated: August 28, 2026
Who This Covers
This policy covers ZANTŌ wherever you use it: the website at zanto.app and the ZANTŌ Android application. They are one service and one record — the app is a client for the same account.
What We Collect
When you use ZANTŌ, we collect the minimum data needed to run the service:
Your email address: used to sign you in. The normal way in is the sign-in email, which carries a magic link and an eight-digit code, either of which signs you in. A password sign-in also exists. If you set a password, our authentication provider stores it as a hash, and we never see or store the password itself.
Session data: the domain you logged the work to (BUILD, TRAIN or LEARN), the start time, the end time and the duration. This is the core of your personal record.
Anything you write: the optional note attached to a session, and the caption that turns a session into a milestone. This is free text. Whatever you type there, we store.
Payment data: handled entirely by Stripe. We do not see or store your card details. Payment happens on the website; the Android app contains no purchase of any kind.
Crash and diagnostic reports: if the app crashes or hits an error, it sends a report — the technical stack trace, the app version, and your device model and OS version — to Sentry, so we can find and fix the problem. These reports are not linked to your identity: the app attaches no email, IP address, or account to them, and account identifiers are stripped from each report before it leaves the device. Sentry keeps them for a limited period and then deletes them automatically. How long that period is depends on our Sentry plan at the time a report arrives, and changing plans later does not re-scope reports already received. This runs in the released app only.
Nothing else. The app does not collect your location, your contacts, your photos, your device identifiers or your advertising ID, and it serves no advertising and does not track you across other apps or websites.
Why We Collect It
To provide the service: your session data is what ZANTŌ exists to store and return to you.
To process payments: Stripe needs billing information to handle subscriptions.
To sign you in: your email address identifies your account when you sign in.
That is the whole list. We do not profile you, we do not build advertising audiences, and none of your data is used to make decisions about you.
Where We Store It
Your data is stored in Supabase, hosted in the EU region. Payment data is stored by Stripe. The application is hosted by Vercel, which also provides the website's usage analytics. Crash reports are processed by Sentry, in the EU region. App updates are delivered through Expo. These providers process data on our instructions as service providers, and maintain their own security and compliance standards.
On launch, the app asks Expo whether an update is available. That request carries the app version and the platform, and nothing about you or your record.
Like any internet service, our hosting providers record ordinary technical request logs, which include the IP address your device connects from. We do not read these logs to build a profile of you, and we do not link them to your record.
On Your Device
The Android app keeps a small amount of data on the phone itself, including your sign-in session; a marker for a session that is currently running; work that has not yet reached the server; a cache of the wheel and the reference figures it derives from, such as your first session date, so it draws instantly on open; the last domain you logged to; and your subscription status, cached so the app opens correctly when offline. This stays on your device and is removed when you uninstall the app.
Email Provider
We send only one email: the sign-in email, delivered by Supabase Auth. It carries a link and an eight-digit code — either one signs you in. We do not send marketing emails or newsletters.
What We Do Not Do
We do not sell your data. We do not share your data with advertisers. We do not use your data for advertising of any kind. We do not track you across other apps or websites. Your record is yours.
Cookies
ZANTŌ does not use tracking cookies. The only cookie-like mechanism is a session token for authentication. The website measures aggregate usage, such as page views, through Vercel Analytics, which sets no cookies and does not track you across other sites. Because nothing here sets a tracking or advertising cookie, there is no cookie banner.
How Long We Keep It
Your record is kept for as long as your account exists. That is the point of it: a record that is deleted after a year is not a record. If your subscription lapses, your record stays readable — you simply cannot log new work until it is active again.
When you delete your account, your record goes with it. See below.
Deleting Your Account
You can delete your account and everything in it at any time. In the Android app: Settings → Delete account. It asks once to confirm, and then it is done — every session, every milestone, every note, and the account itself are erased, and any active subscription is cancelled. This cannot be undone.
If you would rather not do it from the app, or no longer have it installed, email privacy@zanto.app from the address the account uses and ask for deletion. We will action it and confirm within 30 days.
Children
ZANTŌ is not directed at children. It is a paid instrument for adults keeping a record of their own work, and we do not knowingly collect data from anyone under 16.
Your Rights
Under GDPR, you have the right to access, correct, delete, and export your personal data, to object to processing, and to lodge a complaint with a supervisory authority — in Sweden, Integritetsskyddsmyndigheten (IMY). To exercise any of these rights, email privacy@zanto.app and we will respond within 30 days.
Governing Law
This privacy policy is governed by the laws of Sweden and the General Data Protection Regulation (GDPR).
Contact
ZANTŌ is operated by Stefan Lundquister, Göteborg, Sweden.
For questions about your data or this policy, contact privacy@zanto.app.