Privacy Policy: Kopp
Last updated: 2026-04-30 Effective: 2026-04-30
This Privacy Policy describes how Kopp ("we", "us", "the app") handles your information. Kopp is a coffee journal for iOS. You use it to track the coffees you drink, log your brews, and explore where the coffee in your shelf comes from.
We've kept this policy short and in plain English. If anything is unclear, email us at [email protected].
1. What we collect
Only what's needed for Kopp to work. Specifically:
- Account information: the email address you use to sign up. Your password is stored hashed by our authentication provider; we never see it in plain text.
- Your coffee data: the bags you add to your shelf, the brews you log, the photos you attach to coffees, the tasting notes you write, the ratings you give. This is the content of your journal.
- Profile preferences: your country, preferred brew method, and other choices you make in the app's settings.
- Basic technical data: iOS version and device language, used to render the app correctly.
We do not collect:
- Your real name (unless you choose to enter it).
- Your phone number.
- Your location (Kopp does not use the location services API).
- Your contacts, calendar, or other apps' data.
We do not currently use third-party analytics SDKs to track how you interact with the app. If we add analytics in the future, we will update this policy and notify you in advance per Section 8.
2. How we use it
The information we collect is used only to:
- Let you sign in to your account across devices.
- Save and display your coffee shelf and brew history.
- Show your coffee passport (countries you've covered, your taste profile). These are computed from your own data.
- Operate, maintain, and improve the app.
We do not use your data to:
- Show you ads (the app currently has no ads).
- Sell or share your information with third parties.
- Train machine learning models.
- Send you marketing emails (unless you explicitly opt in to a newsletter, which we don't currently offer).
3. Where your data is stored
Kopp's backend runs on infrastructure we operate ourselves on a server located in Germany (Netcup GmbH). Data in transit between the app and our server is encrypted using HTTPS/TLS. Photos you upload are stored in our object storage on the same server.
We do not transfer your data to other countries or third-party processors beyond our hosting provider.
4. How long we keep it
Your data stays in your account for as long as you keep the account. Database backups are retained for 30 days for disaster recovery.
If you delete your account (Settings → Delete Account), all your personal data (coffees, brews, photos, profile) is removed from our active database within 7 days. Backup copies are purged on the 30-day rolling cycle.
5. Your rights
You can, at any time:
- Access your data: everything you've entered is visible in the app.
- Correct your data: edit any coffee, brew, or profile field directly in the app.
- Delete your data: Settings → Delete Account removes everything as described in section 4.
- Export your data: email [email protected] and we'll send you a JSON export of everything we have on you, free of charge, within 14 days.
If you live in the EU, UK, or another jurisdiction granting you statutory data rights (GDPR, UK GDPR, CCPA, etc.), you also have the right to lodge a complaint with your local data protection authority.
6. Children
Kopp is not directed at children under 13. We do not knowingly collect data from children under 13. If you believe we have collected data from a child, contact us at [email protected] and we will delete it.
7. Security
We follow standard practices to protect your data: HTTPS for all traffic, hashed passwords, encrypted database backups, restricted server access. No system is perfectly secure, but we treat your data as carefully as we'd want our own treated.
If we ever experience a breach affecting your data, we will notify you by email within 72 hours of becoming aware.
8. Changes to this policy
If we make material changes to this policy (for example, adding a new category of data we collect, or changing how data is shared), we will notify you in the app and via email at least 14 days before the change takes effect.
Older versions of this policy are kept in our public repository at kopp.coffee/privacy/history (when the website launches).
9. Contact
For any privacy question, request, or concern:
- Email: [email protected]
- Mail: Nikolai Starostin (developer of Kopp), Astana, Kazakhstan
We respond to privacy requests within 14 days.