Türkçe (yetkili metin)

RYTEX — Gizlilik Politikası

Son güncelleme: 24 Temmuz 2026

Yürürlük tarihi: 3 Temmuz 2026

RYTEX ("Uygulama"), gizliliği temel ilke olarak benimser ve "yerel-öncelikli" (local-first) bir mimariyle tasarlanmıştır: sağlık verilerin kural olarak cihazından dışarı çıkmaz. Bu politika, 6698 sayılı Kişisel Verilerin Korunması Kanunu (KVKK) ve Avrupa Birliği Genel Veri Koruma Tüzüğü (GDPR) kapsamında hangi verileri nasıl işlediğimizi açıklar.

1. VERİ SORUMLUSU

Uygulama: RYTEX

İletişim / başvuru: [email protected]

(Kurumsal tüzel kişilik tescil edildiğinde unvan ve adres bu bölümde güncellenecektir.)

2. İŞLEDİĞİMİZ VE İŞLEMEDİĞİMİZ VERİLER

a) Cihazında kalan veriler (bizim erişmediğimiz): döngü/regl tarihleri, akış düzeyi, semptomlar, ruh hâli, notlar, uygulama tercihleri. Bunlar yalnızca cihazında, şifreli yerel veritabanında (SQLCipher) saklanır; sunucularımıza gönderilmez ve tarafımızca görülemez. Apple Sağlık (HealthKit) veya Health Connect'ten ya da başka bir uygulamanın dışa aktarım dosyasından regl geçmişini içe aktarmayı seçersen, bu okuma yalnızca senin iznin ile ve salt-okuma olarak cihazında yapılır; içe aktarılan veriler de yalnızca cihazında saklanır, sunucuya gönderilmez.

b) Yalnızca partner özelliğini kullanırsan işlenen veriler: telefon numaranın geri döndürülemez özeti (SHA-256 "hash"), hesap kimlik jetonu (JWT), partner eşleşme kaydı ve — bildirimleri kullanıyorsan — cihazının anlık bildirim jetonu (push token; bkz. madde 6). Telefon doğrulaması Firebase Authentication (Google) ile yapılır: SMS kodunu iletebilmek için ham telefon numaran Google'a gönderilir (bkz. madde 8). RYTEX'in kendi sunucusu ham numarayı DEĞİL, yalnızca özetini (hash) alır ve saklar.

c) Toplamadığımız veriler: reklam tanımlayıcıları, konum, rehber, sağlık verilerinin sunucu kopyası. Ham telefon numaran RYTEX sunucularında saklanmaz; yalnızca doğrulama sırasında Google/Firebase tarafından SMS iletimi için işlenir.

3. SAĞLIK VERİLERİ (ÖZEL NİTELİKLİ)

Döngü ve semptom verileri KVKK m.6 ve GDPR Art.9 anlamında özel nitelikli/özel kategorideki kişisel veridir. Bu veriler yalnızca cihazında, senin kontrolünde işlenir; uygulamayı kullanman bu işlemeye açık rızanı oluşturur. Rızanı, verileri silerek (bkz. madde 9) her an geri çekebilirsin.

4. YEDEKLEME VE VERİ TAŞIMA

Yedekleme özelliğini açarsan verilerin CİHAZINDA AES-256 ile şifrelenir ve yalnızca senin Google Drive hesabının "uygulamaya özel" (appDataFolder) alanına (Android) veya senin iCloud alanına (iOS) yüklenir. Yedek, yalnızca senin bildiğin bir parolayla korunur; bu parolayı saklamayız ve kurtaramayız. RYTEX yedeğin içeriğini okuyamaz. Bu depolama, Google/Apple'ın kendi gizlilik koşullarına tabidir. Ayrıca verini şifreli bir dosyaya dışa aktarabilir ve başka bir cihazda içe aktarabilirsin; bu dosya da yalnız senin parolanla açılır ve RYTEX sunucularına gönderilmez.

5. HESAP VE PARTNER BAĞLANTISI

Partner paylaşımı için kurulan hesapta kimliğin telefon numarasının özetiyle (hash) temsil edilir. Paylaşılan özet veriler uçtan uca şifrelenir (X25519 anahtar değişimi + AES-256-GCM): şifreleme cihazında yapılır, sunucu yalnızca ŞİFRELİ veriyi taşır ve İÇERİĞİNİ OKUYAMAZ. Sunucuda eşleşme kaydı ve şifreli kutular dışında sağlık verisi tutulmaz.

6. BİLDİRİMLER

Döngü hatırlatma bildirimleri yalnızca cihazında, yerel olarak oluşturulur; sunucuya veya üçüncü taraflara gönderilmez. Cihaz kilitliyken bildirim içeriği gizlenir (yalnız uygulama adı görünür).

Partner özelliğinde, sana gelen bir paylaşım/mesaj olduğunda uygulama kapalıyken de haberdar olabilmen için Firebase Cloud Messaging (Google) üzerinden İÇERİKSİZ, jenerik bir bildirim ("yeni bildirim var" gibi) gönderilebilir. Bu bildirim hiçbir sağlık verisi veya mesaj içeriği taşımaz; içerik uçtan uca şifreli kutuda kalır ve yalnızca uygulama içinde görünür. Bunun için cihazının anlık bildirim jetonu (push token) hesabınla ilişkili olarak sunucumuzda saklanır; hesabından çıkış yaptığında silinir.

7. İŞLEME AMAÇLARI VE HUKUKİ DAYANAK

8. HİZMET SAĞLAYICILAR (İŞLEYENLER) VE YURT DIŞI AKTARIM

Cihazdaki veriler sen silene kadar cihazında kalır. Partner sunucusundaki asgari kayıtlar (hash, eşleşme) hesabını/eşleşmeni sona erdirdiğinde silinir. Aşağıdaki hizmet sağlayıcıları sınırlı amaçlarla kullanırız ve bunlar yurt dışında (ör. ABD/AB) bulunabilir:

Ham sağlık verisi yurt dışına aktarılmaz; partner paylaşımındaki sağlık verisi yalnızca uçtan uca şifreli olarak taşınır. Bu aktarımlar KVKK m.9 ve GDPR Bölüm V kapsamında değerlendirilir.

9. HAKLARIN (KVKK m.11 / GDPR Art.15-22)

Kişisel verilerine erişme, düzeltme, silme, işlemeyi kısıtlama, taşınabilirlik ve itiraz haklarına sahipsin. Cihazdaki tüm verini Ayarlar > Verileri Sil ile ya da uygulamayı kaldırarak istediğin an kalıcı olarak silebilirsin. Hesap/partner verileri için [email protected] üzerinden başvurabilirsin; başvurun en geç 30 gün içinde yanıtlanır.

10. ÇOCUKLARIN GİZLİLİĞİ

Uygulama 16 yaşından küçükler için tasarlanmamıştır. 16 yaş altı bir kullanıcıya ait veri işlediğimizi tespit edersek ilgili kaydı sileriz.

11. GÜVENLİK ÖNLEMLERİ

Yerel veritabanı şifrelemesi (SQLCipher), yedeklerde AES-256, isteğe bağlı biyometrik/PIN uygulama kilidi, ekran görüntüsü engeli (FLAG_SECURE) ve aktarımda TLS kullanılır.

12. ÇEREZLER VE SDK'LAR

Mobil uygulama çerez kullanmaz ve REKLAM SDK'sı içermez. Yalnızca yukarıda (madde 8) açıklanan Firebase Authentication ve (release'te) Firebase Crashlytics tanılama bileşenlerini kullanır; bunlar reklam veya profilleme amacı taşımaz.

13. VERİ SAKLAMA VE SİLME

Cihazındaki veriler sen silene kadar cihazında kalır; Ayarlar üzerinden veya uygulamayı kaldırarak istediğin an kalıcı olarak silebilirsin. Partner eşleşmesini sonlandırdığında paylaşım erişimi anında kesilir ve o eşleşmeye ait sunucu kayıtları (eşleşme kaydı, şifreli kutular, şifreli mesajlar) sunucudan silinir. Hesabını Profil > Hesabı Sil ile uygulama içinden istediğin an kalıcı olarak silebilirsin: telefon özetin, ortak anahtarın, bildirim jetonun, tüm eşleşme kayıtların, şifreli paylaşım kutuların ve şifreli mesajların sunucudan ANINDA silinir; talep beklemez. Aynı işlemde telefon doğrulama kaydın da (Firebase) silinir; uzun süredir giriş yapmamışsan Firebase yeniden doğrulama isteyebilir, bu durumda uygulama seni bilgilendirir. Cihazındaki döngü ve semptom kayıtları hesap silmede ayrı bir onay kutusuna bağlıdır — istersen cihazda kalır. Silme yolunun herhangi bir nedenle çalışmaması hâlinde 16. maddedeki kanaldan da talep edebilirsin (en geç 30 gün). Çökme kayıtları Google/Firebase tarafından kendi veri saklama politikaları kapsamında (bu politikanın tarihinde yaklaşık 90 gün) tutulur. Yedekler yalnızca senin Google Drive/iCloud alanındadır — bunlara erişemeyiz ve silemeyiz; kendi hesabından yönetir ve silersin.

14. CİHAZ İÇİ TAHMİN MODELİ (YAPAY ZEKÂ) VE İSTEĞE BAĞLI ANONİM İSTATİSTİK

Regl ve ovülasyon tahminleri, tamamen cihazında çalışan istatistiksel bir modelle üretilir; verilerin model için de cihazdan çıkmaz. Tahminler olasılıksaldır ve hatalı olabilir; tıbbi tavsiye, teşhis veya doğum kontrol yöntemi değildir. Nihai karar her zaman sana ve sağlık uzmanına aittir.

İsteğe bağlı anonim istatistik (varsayılan KAPALI): Ayarlar > Gizlilik'ten "anonim istatistik paylaşımı"nı açarsan, tahmin modelinin herkes için iyileştirilmesi amacıyla YALNIZCA normalize edilmiş döngü uzunluğu sayıları (ör. 28,5 gibi gün değerleri) gönderilir. Kimliğin, telefon özetin, tarihlerin veya başka hiçbir verin gönderilmez; iletim, hesabından bağımsız rastgele bir anonim tanıtıcıyla yapılır ve sana geri bağlanamaz. Bu anahtar her an kapatılabilir; kapattığında yeni veri gönderilmez, ancak daha önce gönderilmiş sayılar anonim oldukları (sana bağlanamadıkları) için geriye dönük silinemez. Açarken bu durum ayrıca onayına sunulur.

15. DEĞİŞİKLİKLER

Bu politikayı zaman zaman güncelleyebiliriz. Önemli değişiklikler uygulama içinde duyurulur; güncel sürüm her zaman bu ekranda yer alır.

16. İLETİŞİM VE BAŞVURU

[email protected]


English (informational translation)

The Turkish version above is the legally authoritative text.

RYTEX — Privacy Policy

Last updated: 24 July 2026

Effective date: 3 July 2026

RYTEX ("the App") treats privacy as a founding principle and is built local-first: as a rule, your health data never leaves your device. This policy explains what we process and how, under the Turkish Personal Data Protection Law (KVKK) and the EU General Data Protection Regulation (GDPR).

1. DATA CONTROLLER

App: RYTEX

Contact / requests: [email protected]

(Company name and address will be updated here once a legal entity is registered.)

2. DATA WE DO AND DO NOT PROCESS

a) Data that stays on your device (we cannot access it): cycle/period dates, flow level, symptoms, mood, notes, app preferences. These are stored only on your device in an encrypted local database (SQLCipher); they are never sent to our servers and we cannot see them. If you choose to import your period history from Apple Health (HealthKit), Health Connect, or another app's export file, that read happens only with your permission, read-only, on your device; imported data is likewise stored only on your device and never sent to a server.

b) Data processed only if you use the Partner feature: an irreversible digest (SHA-256 hash) of your phone number, an account token (JWT), the partner pairing record, and — if you use notifications — your device's push notification token (see Section 6). Phone verification is handled by Firebase Authentication (Google): to deliver the SMS code, your raw phone number is sent to Google (see Section 8). RYTEX's own server does NOT receive the raw number — only its hash, which is what it stores.

c) Data we do not collect: advertising identifiers, location, contacts, any server copy of your health data. Your raw phone number is not stored on RYTEX servers; it is processed only during verification by Google/Firebase to deliver the SMS.

3. HEALTH DATA (SPECIAL CATEGORY)

Cycle and symptom data are special-category personal data under KVKK Art. 6 and GDPR Art. 9. They are processed only on your device, under your control; using the App constitutes your explicit consent to this processing. You can withdraw consent at any time by deleting your data (see Section 9).

4. BACKUP AND DATA TRANSFER

If you enable backup, your data is encrypted ON YOUR DEVICE with AES-256 and uploaded only to the app-specific area (appDataFolder) of your own Google Drive account (Android) or your own iCloud space (iOS). The backup is protected by a password only you know; we do not store it and cannot recover it. RYTEX cannot read the contents of your backup. This storage is subject to Google's/Apple's own privacy terms. You can also export your data to an encrypted file and import it on another device; that file too can only be opened with your password and is never sent to RYTEX servers.

5. ACCOUNT AND PARTNER CONNECTION

In the account created for partner sharing, your identity is represented by a digest (hash) of your phone number. Shared summary data is end-to-end encrypted (X25519 key exchange + AES-256-GCM): encryption happens on your device, the server only carries the ENCRYPTED data and CANNOT READ its contents. Apart from the pairing record and encrypted boxes, no health data is kept on the server.

6. NOTIFICATIONS

Cycle reminder notifications are generated locally on your device only; they are not sent to the server or third parties. When your device is locked, notification content is hidden (only the app name is shown).

In the Partner feature, so that you can be notified of an incoming share/message even while the app is closed, a CONTENT-FREE, generic notification (such as "you have a new notification") may be delivered via Firebase Cloud Messaging (Google). This notification carries no health data and no message content; the content stays in the end-to-end encrypted box and is visible only inside the app. For this purpose, your device's push notification token is stored on our server linked to your account; it is deleted when you sign out.

7. PURPOSES AND LEGAL BASES

8. SERVICE PROVIDERS (PROCESSORS) AND INTERNATIONAL TRANSFERS

Data on your device stays there until you delete it. The minimal records on the partner server (hash, pairing) are deleted when you end your account/pairing. We use the following service providers for limited purposes, and they may be located abroad (e.g., US/EU):

Raw health data is never transferred abroad; health data in partner sharing is carried only end-to-end encrypted. These transfers are assessed under KVKK Art. 9 and GDPR Chapter V.

9. YOUR RIGHTS (KVKK Art. 11 / GDPR Art. 15-22)

You have the rights of access, rectification, erasure, restriction of processing, portability, and objection. You can permanently delete all data on your device at any time via Settings > Delete Data, or by uninstalling the App. For account/partner data, contact [email protected]; requests are answered within 30 days at the latest.

10. CHILDREN'S PRIVACY

The App is not designed for anyone under 16. If we learn that we have processed data belonging to a user under 16, we delete the relevant record.

11. SECURITY MEASURES

Local database encryption (SQLCipher), AES-256 for backups, optional biometric/PIN app lock, screenshot blocking (FLAG_SECURE), and TLS in transit.

12. COOKIES AND SDKs

The mobile app uses no cookies and contains no ADVERTISING SDKs. It uses only the Firebase Authentication and (in release builds) Firebase Crashlytics diagnostic components described in Section 8; these serve no advertising or profiling purpose.

13. DATA RETENTION AND DELETION

Data on your device stays there until you delete it; you can erase it permanently at any time via Settings or by uninstalling the App. When you end a partner match, sharing access stops immediately and the server records belonging to that match (pairing record, encrypted boxes, encrypted messages) are deleted from the server. You can permanently delete your account at any time from within the App via Profile > Delete Account: your phone digest, public key, push token, all pairing records, encrypted share boxes and encrypted messages are deleted from the server IMMEDIATELY — no request or waiting period. The same action also deletes your phone verification record (Firebase); if you have not signed in for a long time, Firebase may require re-authentication, and the App tells you when this happens. Cycle and symptom records on your device are governed by a separate checkbox in the deletion dialog — they stay on your device unless you choose otherwise. Should this in-app path fail for any reason, you may also request deletion via the channel in Section 16 (within 30 days at the latest). Crash records are retained by Google/Firebase under their own data retention policies (approximately 90 days as of the date of this policy). Backups exist only in your own Google Drive/iCloud space — we cannot access or delete them; you manage and delete them from your own account.

14. ON-DEVICE PREDICTION MODEL (AI) AND OPTIONAL ANONYMOUS STATISTICS

Period and ovulation predictions are produced by a statistical model that runs entirely on your device; your data does not leave the device for the model either. Predictions are probabilistic and may be wrong; they are not medical advice, diagnosis, or a method of contraception. The final decision always belongs to you and your healthcare professional.

Optional anonymous statistics (OFF by default): if you enable "anonymous statistics sharing" under Settings > Privacy, ONLY normalized cycle-length numbers (day values such as 28.5) are sent, for the purpose of improving the prediction model for everyone. Your identity, phone digest, dates, or any other data are never sent; transmission uses a random anonymous identifier independent of your account and cannot be linked back to you. You can turn this switch off at any time; no new data is sent after that, but numbers already sent cannot be retroactively deleted precisely because they are anonymous (they cannot be linked to you). This is additionally presented for your confirmation when you enable the switch.

15. CHANGES

We may update this policy from time to time. Material changes are announced in the App; the current version is always available on this screen.

16. CONTACT AND REQUESTS

[email protected]

Note: This is an informational translation. The Turkish version is the legally authoritative text.