Last updated: 12 August 2026
Privacy Policy
This Privacy Policy explains what personal data the TeamFamily app (the “App”) collects, why we process it and what rights you have. We use your data solely to make the App work - we do not sell it and we do not use it for advertising.
1. Data controller
The controller of your personal data is SWANSOFTWARE Maciej Bandyk, based in Jaworzno, Poland, NIP 6322029900, REGON 520713370. For data-protection matters, contact: support@teamfamily.pl.
2. What data we collect
Account data
You provide it on sign-up and in your profile:
- email address,
- password - stored only as a secure, irreversible hash, never as plain text. An account created through Google or Apple has no password at all,
- username and first name,
- profile color and initial.
Data received from Google and Apple
If you sign in with a Google or Apple account, we receive from the provider your user identifier with them, your verified email address and - in the case of Google - your first name. See section 3 for details.
Data created while using the App
- families/groups you belong to - their names and members,
- shopping lists: products, quantities, prices, categories and the author of each item,
- settlements: amounts, currencies and balances between household members (who owes whom and how much).
Technical data
- the push notification token (FCM) together with an App installation identifier and the device platform (Android/iOS) - see section 4,
- the IP address recorded on sign-in and session refresh - for security purposes,
- technical service logs (events, errors).
We do not collect your location data, we do not profile you for advertising and we do not sell your data.
3. Signing in with Google and Apple
The App lets you create an account and sign in with a Google account (Android and iOS) or an Apple account (iOS). The provider only confirms your identity - the account itself is created and kept by us. You can also use the App without either of them, by signing up with an email address and password.
What we receive from Google
- your user identifier with Google - a stable, technical string (it is not your email address),
- your email address, verified by Google,
- your first name from your Google profile - we pre-fill it when you complete your profile; you can change it or replace it with your own.
What we receive from Apple
- your user identifier with Apple - a stable, technical string,
- your email address, verified by Apple. Apple sends it only on the first authorization of the App. If you choose “Hide My Email”, we receive a relay address in the privaterelay.appleid.com domain - we send mail to it and never learn your real address,
- we do not take your name from Apple - you enter it yourself in the App.
What we do not receive
We never ask for and never receive your Google or Apple account password. We have no access to your mailbox, contacts, calendar, photos or files. The scope we request is limited to confirming your identity: your email address and basic profile data.
What we do with this data
We store the provider's user identifier together with the provider name (Google or Apple), the date the link was created and the date of your last sign-in - so that we can recognize your account the next time you sign in. Your email address and first name go into your TeamFamily profile. The email address is also used to contact you about your account (e.g. a password reset).
We use the data received from Google and Apple solely to authenticate you and run your account. It is not used for advertising, we do not sell it, we do not share it with third parties beyond what section 6 describes, and we do not use it to train artificial-intelligence models.
TeamFamily's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
How to disconnect a provider
You can revoke the App's access to your provider account at any time:
- Google - Google Account → Third-party apps,
- Apple - Settings → [your name] → Sign-In & Security → Sign in with Apple.
Disconnecting a provider does not delete your TeamFamily account or the data in the App - you delete the account as described in section 9. If your account has no password, set one first using “Forgot password”, otherwise you will lose the ability to sign in.
4. Push notifications and the FCM token
Notifications (e.g. a shopping-list change, a settlement reminder) are delivered through Firebase Cloud Messaging (FCM), a Google service.
- The push token (FCM) is generated on your device by a Google library. It is a technical address we deliver the notification to - it contains neither your name nor your email address. We store it when you sign in and update it whenever Google changes it.
- Along with the token we store a random App installation identifier (generated on the device - it is not an IMEI, a serial number or any permanent hardware identifier), the platform (Android/iOS) and the dates of creation and last use.
- At the moment of sending, we pass the token and the notification content to Google, which delivers it to your device.
- When you sign out, we detach the token from your account - notifications stop arriving for it. The device record itself remains, no longer linked to any account, so that notifications work immediately the next time you sign in. The same happens after you delete your account.
- We delete the device record once Google reports that the token is inactive (e.g. after the App is uninstalled).
You can turn notifications off at any time in your phone's system settings - the system then stops displaying them. To stop them being sent at all, sign out or delete your account.
5. Purposes and legal bases for processing
- Providing the service (creating and running your account, shopping lists, settlements) - Art. 6(1)(b) GDPR (performance of a contract).
- Signing in with Google and Apple (authentication, linking your account to the provider) - Art. 6(1)(b) GDPR (performance of a contract); you use it voluntarily, instead of a password.
- Push notifications - Art. 6(1)(a) GDPR (your consent expressed in your device settings; you can withdraw it at any time).
- Security, abuse prevention and diagnostics - Art. 6(1)(f) GDPR (our legitimate interest).
- Transactional emails (account activation, password reset) - Art. 6(1)(b) GDPR.
6. Data recipients
We use trusted providers who process data only on our behalf:
- OVH - server hosting (servers in the European Union),
- Google Firebase Cloud Messaging - delivery of push notifications (the device token and the notification content are passed to Google in order to deliver it),
- an email provider - sending transactional messages.
Google (Sign in with Google) and Apple (Sign in with Apple) act separately: they are the source of the data described in section 3, but the fact that you sign in to TeamFamily is known to them and they process it as independent controllers, under the terms of the Google Privacy Policy and the Apple Privacy Policy.
We do not share your data with third parties for marketing purposes.
7. Transfers outside the EEA
Push notifications are handled by Google (Firebase), and social sign-in by Google and Apple. As a result, the device token and sign-in data (user identifier, email address) may also be processed by those companies outside the European Economic Area. Google and Apple apply Standard Contractual Clauses (SCC) approved by the European Commission as the safeguard for such transfers.
8. Retention period
- We keep account data, Google/Apple links and data created in the App for as long as you have an account.
- After you delete your account, we delete or anonymize the data within 30 days, except for data we must retain for legal or security reasons.
- The device record (push token) is kept for as long as the App is installed - after account deletion with no link to it; we delete it once Google reports that the token is inactive.
- We keep technical logs for a limited time, usually up to 90 days.
9. Deleting your account
You can delete your account and the data linked to it yourself at any time - in the App under Profile → Account → Delete account. The deletion takes effect immediately.
Confirming your identity
- an account with a password - you confirm with your password,
- an account created through Google or Apple (no password) - you confirm by signing in with that provider again.
If you own a family/group, first transfer it to another household member or delete it - only then can you delete your account. This protects the data of the other members of the group.
What we delete
- account data: email address, password (hash), username, first name and profile color,
- the links to your Google and Apple accounts,
- active sessions (refresh tokens), activation codes and password-reset codes,
- the shopping-list items you created, and your settlements and balances.
The push token is detached from your account - notifications stop arriving (see section 4). If you used Sign in with Apple, we also revoke the authorization you granted our app with Apple, as required by the App Store.
Some shared data (e.g. historical settlements visible to other household members) may be anonymized rather than deleted, so as not to affect other users' data.
If you no longer have access to the App
Email support@teamfamily.pl from the address linked to your account (for Sign in with Apple with a hidden email - from the privaterelay.appleid.com address your account uses) and we will complete the request within 30 days. Details and step-by-step instructions: the account deletion page.
10. Your rights
You have the right to: access your data, rectify it, erase it, restrict its processing, data portability, object to processing and withdraw consent at any time. To exercise these rights, email support@teamfamily.pl.
You also have the right to lodge a complaint with the supervisory authority - the President of the Personal Data Protection Office (UODO), ul. Stawki 2, 00-193 Warsaw, Poland.
11. Data security
We apply technical and organizational measures to protect your data:
- data is transmitted over an encrypted HTTPS/TLS connection,
- passwords are stored only as a secure hash,
- Google and Apple tokens are verified server-side - we check the provider's signature, the expiry and that the token was issued for our app,
- sensitive data is additionally encrypted in the database (AES-256),
- access to the infrastructure is restricted and secured.
12. Children
The App is intended for family use. An account should be created by an adult. If children use the App, it happens under the supervision of a parent or guardian. Under Polish law, consent to process the data of a child under 16 is given by a parent or guardian.
13. Cookies on the website
Our website uses browser storage (localStorage) only where necessary - to remember your consent choice. We currently use no analytics or marketing cookies; if that changes, they will only be enabled after you give consent in the banner. You can change your choice at any time by clicking “Cookie settings” in the page footer. The site also loads Google Fonts, which means your IP address is sent to Google when the fonts are fetched. The mobile App does not use cookies.
14. Changes to this policy
We may update this Policy. We will announce material changes in the App or on this page. The date of the last update is shown at the top of the document.
15. Contact
For privacy and personal-data matters, write to: support@teamfamily.pl.
Back to home