SnapBattler app icon SnapBattler

Privacy Policy

Last updated: July 10, 2026

SnapBattler ("the app") is developed by Bartu Yeşilbağ, the data controller for the purposes of the GDPR. This policy explains what the app collects, why, and what happens to it.

The short version. We collect the photos you snap (to make your cards), your account details, your game progress and your purchase receipts. There is no advertising, no ad tracking, and no sale of your data. Your photos are never used to train AI models.

What we collect and why

What we don't do

Legal basis (GDPR)

We process your data to perform our contract with you (to provide the game and deliver purchases), and on the basis of our legitimate interest in keeping the service secure and working. Where consent is required — for example camera access — you give it through the system permission prompt and can withdraw it in iOS Settings at any time.

How long we keep it

Your account data and cards are kept while your account exists. Deleting a card in the app deletes its photo. Purchase receipts are kept as long as required for tax and accounting law. After account deletion, backups containing residual data are overwritten within 90 days.

Your rights

You can ask us to access, correct, export or delete your personal data, and you may object to or restrict processing. To do any of these, email bartuyesilbag@gmail.com from the address linked to your account. We complete deletion requests within 30 days. If you are in the EEA or the UK, you also have the right to complain to your local data protection authority.

Deleting your data

Children

SnapBattler is rated 9+ and is not directed at children under 13. We do not knowingly collect personal information from children under 13. Guest mode collects no personal information. If you believe a child has provided us with personal data, contact us and we will delete it.

International transfers

Our service providers process data on servers in the United States. Where personal data is transferred out of the EEA or the UK, it is protected by the European Commission's Standard Contractual Clauses, which our providers have adopted.

Service providers

Security

Data is transmitted over TLS and stored in access-controlled Firebase projects. Coin grants for real-money purchases are written only by our server, never by the app, so a modified client cannot mint currency.

Changes

We may update this policy. Material changes will be announced in the app or on this page with an updated date.

Contact

Bartu Yeşilbağ — bartuyesilbag@gmail.com