Stressless logoStressless logo

Privacy Policy

Effective date: September 1, 2025

This Privacy Policy explains how StressLess: relax&rhythm (the “App”) and RelaxRhythm Innovations , LLC (the “Company”, “we”, “us”, “our”) process personal data of users in compliance with the EU General Data Protection Regulation (GDPR, Regulation (EU) 2016/679) and applicable laws.

  1. 1. Data Controller and Contact

    EU Representative (Article 27 GDPR):

  2. 2. Data We Collect

    2.1. Data Provided by You

    • First and last name (used as your username in the App).
    • Email address and password.
    • One-time verification codes (OTP).
    • Data from Google or Apple accounts when using these login methods

    2.2. App Usage Data

    • Quiz results.
    • Records and statistics on stress level and mood tracking.
    • Statistics of breathing exercises and meditations.

    2.3. Technical Data

    • Device identifiers, model, operating system.
    • Log data (IP address, timestamps, events in the App).
    • Cookies/SDKs that support app functionality and analytics.

  3. 3. Purposes of Processing and Legal Bases (Art. 6 GDPR)

    PurposeExamplesLegal Basis
    Account creation and maintenance; core app functionalityRegistration, login, progress storageContract performance (Art.6(1)(b))
    Security and abuse preventionFraud detection, protection from attacksLegitimate interest (Art.6(1)(f))
    Transactional email notificationsAccount confirmation, important technical updatesContract performance (Art.6(1)(b))
    Analytics (Google Analytics)Aggregated statistics to improve the AppLegitimate interest (Art.6(1)(f))

    3.1. Special Categories of Data (Art. 9 GDPR)

    Stress and mood tracking data may be considered health data. We process it only based on your explicit consent (Art. 9(2)(a)). How to withdraw consent: contact us at software@relaxrhythminno.net. Withdrawal does not affect the lawfulness of processing before withdrawal.

    If you do not provide such consent, some features (stress/mood tracking, personalized recommendations) will not be available.

  4. 4. Necessity of Providing Data

    Account data (email, password, or Google/Apple ID) is mandatory to use core features. Analytics data is optional.

  5. 5. Data Recipients (Processors)

    We use service providers solely to provide services to us:

    • AWS (Amazon Web Services, EU region) — hosting and infrastructure.
    • Google Analytics — product analytics.
    We have signed Data Processing Agreements (DPAs) with these providers. We do not sell personal data.

  6. 6. International Transfers

    Data is stored in the European Union (AWS EU region). If we transfer data outside the EEA in the future, we will apply appropriate safeguards (e.g., EU Standard Contractual Clauses or adequacy decisions).

  7. 7. Analytics (Google Analytics)

    We use Google Analytics for aggregated statistics to improve the App. Google’s Privacy Policy: https: https://policies.google.com/privacy

  8. 8. Data Retention and Deletion

    • Account/data deletion: through the App’s settings — performed immediately and irreversibly. Data cannot be restored.
    • No backups of user data are created.
    • Technical logs (including IP address and event timestamps) are retained for up to 30 days for security and diagnostic purposes, after which they are automatically deleted or anonymized.

  9. 9. Security

    We apply technical and organizational measures to protect your data (encryption, access control, monitoring). However, no system can guarantee absolute security

  10. 10. Your Rights (GDPR)

    You have the right to:

    • access your personal data
    • rectify inaccurate or incomplete data (via support: software@relaxrhythminno.net)
    • erase your data and account (via the App or by contacting support)
    • restrict processing
    • data portability
    • object to processing based on legitimate interest
    • withdraw consent (where processing is based on consent)

    Requests can be sent to software@relaxrhythminno.net. We will respond without undue delay
    Complaints: You have the right to lodge a complaint with your national data protection authority in the EEA.

  11. 11. Children

    The App is not intended for individuals under 16 years old. If we discover that we have collected data from minors without parental consent, we will delete it.

  12. 12. Email Notifications

    We may send you email notifications (e.g., account confirmation or important technical messages). You may opt out of non-mandatory notifications by contacting us at software@relaxrhythminno.net. We do not send marketing emails without your prior consent.

  13. 13. Changes to This Policy

    We may update this Policy from time to time. The current version will always be available in the App and/or on our website. If significant changes are made, we will notify you by email or within the App.

  14. 14. Contact