This privacy policy was originally written in German. In case of discrepancies between the German original and this translation, the German version shall prevail.
1. Controller
Samir Salimovic
Email (Support / Privacy): privacy@mvm-app.at
Website: https://mvm-app.at
2. Scope
This Privacy Policy applies to the use of the iOS and iPadOS app "Debt Tracker".
The app processes data locally on your device as a matter of principle. No transmission to the controller's own servers takes place. Data is only processed or shared outside your device if you actively use features such as export, sharing, iCloud synchronisation or device backups.
3. Processed Data
Depending on use, the following data may in particular be processed:
Debt and Contract Data
For example titles, parties, amounts, due dates, status, partial payments, notes, and description texts.
Document Data
For example generated PDF files, CSV files, backup files, and import files.
Signatures
If you save a signature in contracts, it is stored locally in the app.
Settings and Personalisation
For example name, app appearance, accent colour, start section, greeting style, PDF design, reminder options, security options, and other display settings.
Security Data
For example activated Face ID or Touch ID usage and a locally stored, hashed PIN value.
System-Conditional Optional Diagnostic Data
For example anonymised Apple crash reports, if you have permitted this in iOS.
There is no advertising tracking, no profiling, and no analysis for advertising purposes.
4. Purposes and Legal Bases
Processing takes place for the following purposes:
Provision of App Functions
Management of debts, contracts, partial payments, deadlines, PDFs, imports and exports.
Legal basis: Art. 6(1)(b) GDPR
Personalisation and Ease of Use
Storage of your app settings and display preferences.
Legal basis: Art. 6(1)(f) GDPR
Security Features
Protection of your locally stored data through App Lock, PIN, and biometric locking.
Legal basis: Art. 6(1)(f) GDPR
Export and Sharing Functions
Execution of file, import, export, and sharing operations actively triggered by you.
Legal basis: Art. 6(1)(a) or (b) GDPR
Stability and Error Correction
Use of anonymous Apple diagnostic data, to the extent permitted by you at system level.
Legal basis: Art. 6(1)(f) GDPR
The legitimate interest lies in a stable, secure, and user-friendly app experience.
5. Pro Features and In-App Purchases
The Pro version extends the app's feature set, in particular with additional analyses, forecasts, planning and radar functions, premium PDFs, and further comfort and analysis features.
Pro features also process data locally on your device as a matter of principle. The developer's own servers are not used for this.
For the management of purchases, subscriptions, trial periods, and restorations, Apple's privacy and terms of use apply additionally, as in-app purchases are processed via the App Store.
6. Storage Locations and Retention Period
All data is stored locally in the app sandbox on your device as a matter of principle.
If you use iCloud, device backups, or export functions, data may additionally be contained in those storage or target systems you use.
Data remains stored until you delete it yourself, overwrite it via import, reset settings, or uninstall the app.
7. iCloud, Backups, Import and Export
The app offers functions for:
- iCloud import
- iCloud export
- JSON backups
- CSV import
- CSV export
These operations are only performed when you actively trigger them.
Notes:
- An import may replace existing local data.
- Exported or synchronised data may contain personal content.
- Apple's privacy policy additionally applies to iCloud.
- Device or iCloud backups may include the app in their backups.
8. PDF, CSV and Sharing Functions
The app can generate content as PDF or CSV, or pass it on to other apps or recipients via iOS sharing functions.
These files may in particular contain:
- Entry names
- Parties
- Amounts
- Due dates
- Notes
- Contract texts
- Status information
- Signatures, if present
You decide yourself about recipients, channels, and further use. From the point of handover, the privacy policies of the respective recipient or third-party provider apply.
9. Analytics and Crash Reports
The app does not use its own analytics or tracking services.
If you have consented to the transmission of diagnostic data in iOS, anonymised crash reports may be made available via Apple. These serve exclusively for error correction and stability improvement.
10. Third-Party Services and Third-Country Transfers
The app does not use its own external tracking or advertising services.
A transfer to third countries can only occur if you yourself pass data to an external service, for example via email, cloud services, file sharing, or other apps. The privacy policies of the respective service apply to these processes.
11. Data Security
Data processing takes place locally on your device.
To protect your data, the following are particularly recommended:
- Activate device passcode
- Use Face ID or Touch ID
- Set app PIN
- Keep iOS up to date
- Store exports and backups securely
The app itself does not operate its own servers for data storage.
12. Your Rights
Under the GDPR you have in particular the following rights:
- Right of access under Art. 15 GDPR
- Right to rectification under Art. 16 GDPR
- Right to erasure under Art. 17 GDPR
- Right to restriction of processing under Art. 18 GDPR
- Right to data portability under Art. 20 GDPR
- Right to object under Art. 21 GDPR
- Right to withdraw consent under Art. 7(3) GDPR
Contact: privacy@mvm-app.at
Many measures can be performed directly in the app or in iOS itself, for example deleting data, importing, exporting, or resetting the app.
13. Minors
The app is not specifically aimed at minors, but contains no content harmful to minors. Guardians should manage device settings, permissions, and data backups accordingly.
14. Changes
This Privacy Policy may be updated, for example in the event of legal changes or new features. The current version always applies.
15. Contact and Supervisory Authority
Email: privacy@mvm-app.at
Austrian Data Protection Authority: https://www.dsb.gv.at
You have the right to lodge a complaint with a supervisory authority (Art. 77 GDPR).
16. Changelog
- 30 Oct 2025: Initial publication of the Privacy Policy for the "Debt Tracker" app
- 16 Mar 2026: Update for Pro features, PDF designs, iCloud import/export, CSV import/export, import reports, security features, and extended settings

