Privacy Policy
This Privacy Policy applies to the mobile application SNIZ — Tagesgeld-Hopping ("SNIZ", the "App"), distributed under the package name app.sniz (Android) and the corresponding Bundle Identifier (iOS), as well as to the use of this website (sniz.app). Section 12 covers data processing specific to the website; all other sections refer to the App.
1. Data Controller
The controller in the meaning of the General Data Protection Regulation (GDPR) is:
Suther Kommunikationsdesign
Owner: Samuel Suther
Am Aschenkrug 72
41169 Mönchengladbach
Germany
E-mail: info@suther.de
Phone: +49 2161 277 18 99
VAT ID: DE230786495
Person responsible for content under § 18 MStV: Samuel Suther (address as above).
2. Principle: Local Data Processing
SNIZ is designed as a privacy-first application. All data you enter into the App is stored exclusively on your device in encrypted form. There is no automatic transmission to servers operated by the provider or to third parties.
Data is only transmitted when you actively use a specific feature (see section 4 "Feedback feature").
3. Data Processed on Your Device
The following data may be entered into SNIZ — all entries are voluntary and stored only locally:
- Savings account data: bank name, label, amount, interest rate, term/guarantee date, status, optionally IBAN, BIC, deposit insurance, notes
- Reference account: bank name, optionally IBAN
- Tax exemption order data: bank name, granted amount, tax year, optionally consumed amount
- Interest payment tracking: generated payment dates, status, actual amounts
- App settings: language, country of residence (DE/AT/CH), font size, reminder lead time, joint-assessment status
- Security data: PIN hash, PUK hash, biometric activation status
3.1 Encryption
The local database is fully encrypted with SQLCipher using AES-256. The database key is bound to your device and stored in the operating system's secure key storage (Android Keystore / iOS Keychain).
3.2 Legal Basis
Local processing is performed for the performance of the contract concluded by using the App (Art. 6(1)(b) GDPR). Since the data never leaves your device, the provider has no access to it at any time.
4. Feedback Feature (optional)
The App contains an optional feedback form within the settings screen. If you actively use this feature, the text you enter is transmitted to a server operated by the provider.
4.1 Transmitted Data
- Content of your message (free text, max. 500 characters)
- E-mail address — only if you voluntarily provide it in the optional field
- App version
- Platform (android / ios)
- Timestamp of submission
Without providing an e-mail address, the submission is fully anonymous.
4.2 IP Address / Rate Limiting
Your IP address is processed only short-term in server memory for rate-limiting (max. 3 requests per hour) and is not permanently linked to your message.
4.3 Storage Location and Retention
- Server location: Germany
- Retention: max. 24 months
4.4 Legal Basis
Art. 6(1)(a) GDPR (consent by actively submitting) and Art. 6(1)(f) GDPR (legitimate interest in product improvement).
4.5 Onboarding Feedback (optional, opt-out)
During onboarding, an optional free-text field is offered. If you enter text and leave the "Send as feedback to SNIZ" checkbox enabled, your input is transmitted anonymously (text + language setting only — no identifiers). You can opt out by unchecking the checkbox at any time.
Legal basis: Art. 6(1)(f) GDPR. As the data is fully anonymous, consent is not required.
5. App Lock, PIN and Biometrics (optional)
PIN and PUK are stored exclusively as cryptographic hashes. Biometric data is processed solely by your device's operating system — the App only receives a success/failure confirmation.
6. Push Notifications (optional)
SNIZ uses only local notifications. No push tokens are registered and no data beyond what is technically required is transmitted to third parties (Apple APN, Google FCM).
7. No Trackers, No Ads, No Analytics
SNIZ contains no tracking libraries, no advertising, no web analytics tools and no third-party crash reporting that transmits personal data to external servers.
8. App Permissions
| Permission | Purpose | Required? |
|---|---|---|
| Notifications | Local reminders about expiring interest guarantees | Optional |
| Biometrics | Convenient unlocking of the App lock | Optional |
| Internet access | Solely for the feedback feature | Only when actively used |
The App does not request access to location, camera, microphone, contacts or calendar.
9. Data Export and Deletion
- Export/Import: Via your operating system's standard device backup.
- Deletion: Uninstalling the App permanently removes all locally stored data.
- Feedback deletion: Contact info@suther.de.
10. Your Rights as a Data Subject
- Right of access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object (Art. 21 GDPR)
- Right to withdraw consent (Art. 7(3) GDPR)
You also have the right to lodge a complaint with a supervisory authority — in particular the LDI NRW (Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen, Germany).
11. Changes to This Privacy Policy
The current version is always available at sniz.app/privacy. Material changes will be communicated as part of an App update.
12. This Website (sniz.app)
The following subsections apply exclusively to visiting this website at sniz.app — not to the App itself (see the preceding sections for that).
12.1 Hosting and Server Log Files
This website is hosted with a hosting provider in Germany. On every visit, the web server automatically processes technically necessary information transmitted by your browser: IP address, date and time of access, page requested, amount of data transferred, referrer URL, and browser type and operating system.
This data is used solely to ensure the security and stability of operations and is not combined with other data sources. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in the secure and functional operation of the website).
12.2 Fonts
The fonts used on this website (Google Fonts: Manrope, Sora) are served locally from our own server. There is no connection to Google's servers and no transmission of your IP address to any third party.
12.3 No Cookies, No Tracking
This website does not use cookies, analytics or marketing tools, or tracking pixels. No user profiles are created.
12.4 External Links
The website links to external services (e.g. Google Play, Apple App Store). Their own privacy policies apply to data processing on those external sites.
13. Privacy Contact
Suther Kommunikationsdesign
Samuel Suther, Am Aschenkrug 72, 41169 Mönchengladbach, Germany
E-mail: info@suther.de