Privacy Policy

Last updated: 14 May 2026

1. Who we are

Jarro is operated by Maciej Jarzębowski, an individual based in Poland. For privacy enquiries, contact us at support@jarro.eu.

2. What data we collect

We collect only the data necessary to provide the service. The table below lists what we may store on our server (Pro plan only). On the Free plan, your family data lives exclusively in your browser's local storage — it is never sent to our servers. Standard server access logs (IP, user agent, timestamp) are generated whenever the app loads, on all plans, but they do not contain your family data.

DataPurposeStored where (Pro)
Room token (random 64-char hex)Identifies your family's data; acts as the sole credentialServer database
Kids' first names, task names, marks, earnings, savingsCore app functionalityServer database (JSON blob)
PIN hashParent dashboard access controlServer database (bcrypt, irreversible)
Subscription IDLink payment to your roomServer database
Referral codeReferral programme trackingServer database
Recovery code hashPIN reset and room-link recoveryServer database (SHA-256, irreversible) — and in the browser's local storage on the Free plan
Server access logs (IP address, user agent, timestamp)Security, debuggingServer log files (auto-rotated) — all plans

We collect no contact information at all — no email address, no phone number, no real name (beyond the first names you type for your own kids). We also do not collect dates of birth, photos, location data, advertising identifiers, or analytics/tracking cookies. There is no "account" to recover, because there's no account in the first place — just a room link and (optionally) a recovery code you saved off-device.

3. Children's data

Jarro is designed for families. The data entered about children (first names, task completion, earnings) is provided and controlled by the parent or guardian who sets up the room. We do not knowingly collect data directly from children.

Under GDPR Article 8, processing of a child's personal data requires parental consent. By using Jarro, the parent or guardian confirms they have authority to enter data about their children and consents to its processing as described in this policy.

Children interact with the app only through the family dashboard (marking tasks). The parent dashboard, settings, and all data management are protected by a PIN.

4. Legal basis for processing

  • Contract performance (GDPR Art. 6(1)(b)) — processing your room data is necessary to provide the service you requested.
  • Legitimate interest (GDPR Art. 6(1)(f)) — server logs for security and debugging, kept for a limited period.

5. How we store and protect data

  • Free plan: family data stays in your browser's local storage; it is never transmitted to our servers.
  • Pro plan: family data is stored on a server located in the EU and synced across your devices.
  • All connections use HTTPS (TLS encryption in transit).
  • Room tokens are 64-character random hex strings — effectively unguessable.
  • PINs are never stored in plain text — bcrypt on the server, PBKDF2-SHA-256 in the browser's local storage on the Free plan.
  • Recovery codes are stored as SHA-256 hashes only (server-side and, on Free, locally). The plaintext code is shown to you once when generated and never persisted.
  • The database contains no index linking rooms to real identities.

Without the room token, no one (including us) can identify which room belongs to which family. The service is pseudonymous by design (GDPR Art. 4(5)) — a room is identified only by a random token, with no link to a real-world identity.

6. Data sharing

We share data with:

  • Lemon Squeezy (payment processor / Merchant of Record) — receives your room token as a custom field during checkout to link the subscription. Lemon Squeezy handles all payment data (card details, billing address) under their own privacy policy. We never see or store your payment details.

We do not sell, rent, or share your data with any other third party. We do not use advertising networks or third-party analytics.

7. Cookies and local storage

Jarro does not use cookies. The app uses browser localStorage to store:

  • Your room token (so you stay connected between visits)
  • UI preferences (language, currency, skin)
  • All family data — on the Free plan and whenever no server room exists. This is the primary storage for free-tier users.

All localStorage entries are prefixed with app_ and are essential for the app to function. No consent banner is required because no non-essential storage is used.

8. Data retention

  • Room data: stored as long as the room exists. You can delete your room at any time (see section 9).
  • Demo rooms: automatically deleted after 24 hours.
  • Server logs: automatically rotated and deleted after 30 days.
  • Subscription records: retained as long as the room exists for service continuity.

9. Your rights

Under GDPR, you have the right to:

  • Access — view all data stored in your room (visible in the app's Backup section).
  • Rectification — edit any data directly in the app.
  • Erasure ("right to be forgotten") — delete your room and all associated data. Use the "Delete Room" option in Settings, or email us at support@jarro.eu with your room token.
  • Data portability — export your data as JSON via the Backup feature.
  • Lodge a complaint — you may file a complaint with your local data protection authority. In Poland: UODO (uodo.gov.pl).

10. International transfers

Your data is stored on servers within the European Union. We do not transfer personal data outside the EU/EEA. Lemon Squeezy (our payment processor) may process payment data in accordance with their own privacy policy and applicable data protection frameworks.

11. Changes to this policy

We may update this policy from time to time. Changes will be posted on this page with a revised "Last updated" date. For significant changes, we will display a notice in the app.

12. Contact

For any privacy-related questions or to exercise your rights, contact:

Email: support@jarro.eu