Privacy Policy

Last updated: March 16, 2026

This Privacy Policy ("Policy") describes how Uniq Intercom ("Data Controller", "we", "us", or "our") collects, uses, shares, retains, and protects your personal data when you access or use the Uniq Intercom mobile application, website, and all related services (collectively, the "Services"). This Policy applies to all users worldwide and is designed to comply with the Turkish Personal Data Protection Law No. 6698 ("KVKK"), the European Union General Data Protection Regulation ("GDPR"), the California Consumer Privacy Act ("CCPA"), and all other applicable data protection laws.

By downloading, installing, creating an account, or otherwise using the Services, you acknowledge that you have read, understood, and agree to the collection and processing of your personal data as described in this Policy. If you do not agree, you must not use the Services.

1. Data Controller

The data controller responsible for the processing of your personal data is:

Uniq Intercom
Email: info@uniqintercom.com
Website: uniqintercom.com

For all inquiries regarding the processing of your personal data, including exercising your rights under applicable law, please contact us at the email address above.

2. Categories of Personal Data We Collect

2.1 Account & Identity Data

When you create an account using Apple Sign-In or Google Sign-In, we collect your name, email address, and profile photo as provided by the authentication provider. We do not collect or store your password. You may also provide a display name and avatar through in-app profile setup.

2.2 Location Data

When you actively participate in a tour or group ride, we collect your real-time GPS location (latitude, longitude, altitude, speed, heading) to display on the shared map for other group members. Location data is collected only while you are actively participating in a tour and have granted location permission through your device settings. We do not track your location in the background outside of active tours. Route data may be stored as part of your tour history.

2.3 Voice & Audio Data

The Services provide real-time voice communication (intercom) between group members via LiveKit servers. Audio is transmitted in real-time peer-to-peer through our servers and is not recorded, stored, or logged by Uniq Intercom. We do not have access to the content of your voice communications. Once the audio stream ends, no audio data persists on our servers.

2.4 Device & Technical Data

We may collect device type, device model, operating system version, unique device identifiers, push notification tokens, IP address, app version, language settings, and time zone to deliver notifications, ensure compatibility, and improve the Services.

2.5 Motion & Sensor Data

With your explicit permission, we access your device's accelerometer and gyroscope to detect potential motorcycle crashes. This data is processed on-device in real-time and is not transmitted to our servers unless a crash event is triggered, at which point only the crash alert (not raw sensor data) is sent to your tour group and emergency contacts.

2.6 Emergency Contact Data

If you configure an SOS emergency contact, we store the contact name and phone number in your account profile to facilitate emergency alerts. This data is shared with tour group members only when an SOS event is triggered.

2.7 Usage & Analytics Data

We collect anonymized usage statistics such as tour duration, number of participants, feature usage frequency, app session data, and interaction events to understand how the Services are used and to improve them.

2.8 Diagnostic & Crash Report Data

We use Sentry for crash reporting and diagnostics. This may include device model, OS version, app state at the time of crash, memory usage, and anonymized stack traces. Crash reports do not contain personal messages, voice data, or precise location data.

2.9 Subscription & Transaction Data

Premium subscription purchases are processed by Apple (App Store) or Google (Google Play) and managed by RevenueCat. We receive anonymized transaction identifiers, subscription status, and entitlement information. We do not collect or have access to your payment method details (credit card number, billing address, etc.).

2.10 Tour & Group Data

When you create or join a tour, we store tour metadata (tour name, tour code, creation time, participant list, leader designation). Tour join codes are generic alphanumeric codes that grant access to any holder — they do not incorporate user-specific identification. Any person in possession of a valid tour code may join the corresponding tour room without additional identity verification.

3. Purposes and Legal Bases for Processing

Purpose Data Categories Legal Basis (KVKK Art. 5 / GDPR Art. 6)
Providing and operating the Services (voice communication, live map, group management) Account, Location, Voice, Device, Tour Performance of contract; Explicit consent (location, voice)
User authentication and account security Account, Device Performance of contract; Legitimate interest
Delivering push notifications (tour invitations, SOS alerts, friend requests) Device, Account Performance of contract; Explicit consent
Crash detection and emergency SOS alerts Motion, Location, Emergency Contact Vital interests of the data subject; Explicit consent
Processing premium subscriptions Subscription, Account Performance of contract
App stability monitoring and bug fixes Diagnostic, Device Legitimate interest
Usage analytics and service improvement Usage, Device Legitimate interest; Explicit consent where required
Tour history and route records Location, Tour Performance of contract; Explicit consent
Responding to support requests and feedback Account, content of communication Performance of contract; Legitimate interest
Compliance with legal obligations All relevant categories Legal obligation

4. Data Sharing and Recipients

We do not sell, rent, or trade your personal data to third parties for marketing purposes. We share your data only with the following categories of recipients, solely to the extent necessary for the purposes described above:

Recipient Purpose Data Shared Location
Firebase (Google LLC) Authentication, database, hosting, cloud functions Account, Tour, Location, Device United States / EU
LiveKit Real-time voice communication Audio streams (real-time, not stored), IP address Germany (self-hosted)
RevenueCat Subscription management Anonymous transaction IDs, subscription status United States
Sentry (Functional Software Inc.) Crash reporting and diagnostics Diagnostic data, device info United States
Expo (650 Industries Inc.) Push notifications Push tokens, device info United States
Apple Inc. App distribution (App Store), authentication, payments Account (via Sign-In), transaction data United States / Ireland
Google LLC Authentication (Google Sign-In), app distribution (Google Play), payments Account (via Sign-In), transaction data United States / Ireland

Other tour/group members: Your profile name, avatar, and real-time location are visible to other members within the same tour/group only while the tour is active. When you activate SOS, your location is shared with all tour members and your configured emergency contacts.

For information about how these service providers handle your data, please refer to their respective privacy policies: Firebase, LiveKit, RevenueCat, Sentry, Expo.

5. International Data Transfers

Your personal data may be transferred to and processed in countries outside Turkey and the European Economic Area (EEA), including the United States, where our service providers operate. Such transfers are conducted in accordance with applicable data protection laws, relying on:

By using the Services, you explicitly consent to the transfer of your data to countries that may not provide the same level of data protection as your country of residence.

6. Data Retention

Data Category Retention Period
Account & Identity Data Until account deletion
Location Data (active tour) Real-time only; route history retained up to 12 months
Voice / Audio Data Not stored — real-time transmission only
Tour History & Metadata Up to 12 months after tour completion
Diagnostic & Crash Data Up to 90 days (Sentry retention policy)
Usage & Analytics Data Up to 24 months (anonymized)
Subscription Data Until account deletion or as required by law
Emergency Contact Data Until removed by user or account deletion
SOS Event Records Up to 12 months for safety purposes

Upon account deletion, all personal data is permanently removed from our active systems within 30 days. Anonymized and aggregated data that cannot be used to identify you may be retained indefinitely for statistical purposes. Backup copies may persist for up to an additional 30 days before automatic purging.

7. Data Security

We implement industry-standard technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction, including:

While we strive to protect your data, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security, and you acknowledge that you transmit data at your own risk.

8. Tour Codes and Shared Access

Tour/group join codes are generic alphanumeric identifiers that are not tied to any specific user account. Any person who possesses a valid tour code may join the corresponding voice communication room and view participant locations on the shared map, without requiring separate identity verification. You are solely responsible for sharing tour codes only with intended participants. We are not responsible for unauthorized access resulting from tour codes being shared with, or obtained by, unintended parties. If you believe a tour code has been compromised, the tour leader may end the tour and create a new one at any time.

9. Your Rights

9.1 Under KVKK (Turkey)

In accordance with Article 11 of KVKK, you have the right to:

9.2 Under GDPR (EU/EEA)

If you are located in the European Economic Area, you have the following additional rights under the GDPR:

9.3 Under CCPA (California)

If you are a California resident, you have the right to know what personal information is collected, request deletion, opt out of the sale of personal information (we do not sell personal information), and not be discriminated against for exercising your rights.

9.4 How to Exercise Your Rights

You may exercise your rights by:

We will respond to all legitimate requests within 30 days. We may ask you to verify your identity before processing your request.

10. Children's Privacy

The Services are intended for users who are at least 18 years of age, as the Services are designed for motorcycle riders who must hold a valid driver's license. We do not knowingly collect personal data from anyone under the age of 18. If we learn that we have collected personal data from a person under 18, we will take immediate steps to delete such data. If you believe that a person under 18 has provided us with personal data, please contact us immediately at info@uniqintercom.com.

11. Cookies and Tracking Technologies

The Uniq Intercom mobile application does not use cookies. Our website (uniqintercom.com) may use essential cookies strictly necessary for website functionality (e.g., language preference). We do not use advertising cookies, tracking pixels, or third-party analytics on our website. We do not engage in cross-app or cross-site tracking.

12. Automated Decision-Making

The crash detection feature uses automated on-device processing of accelerometer data to determine if a potential crash has occurred. This automated processing may trigger SOS alerts to your tour group and emergency contacts. You may disable this feature at any time through the app settings. Apart from crash detection, we do not use automated decision-making or profiling that produces legal effects concerning you.

13. Third-Party Links and Services

The Services may contain links to third-party websites or services (e.g., Apple App Store, Google Play Store, authentication providers). We are not responsible for the privacy practices of such third parties. We encourage you to read the privacy policies of any third-party services you access.

14. Data Breach Notification

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authorities within 72 hours of becoming aware of the breach, in accordance with KVKK and GDPR requirements. Where required, we will also notify affected individuals without undue delay.

15. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes through the app (via push notification or in-app notice) or by email. The "Last updated" date at the top of this page indicates when this Policy was last revised. Your continued use of the Services after the effective date of any changes constitutes your acceptance of the updated Policy. If you do not agree to any changes, you must stop using the Services and delete your account.

16. Contact Us

If you have any questions about this Privacy Policy, wish to exercise your data rights, or have a complaint regarding our data practices, please contact us at:

Uniq Intercom (Data Controller / Veri Sorumlusu)
Email: info@uniqintercom.com
Website: uniqintercom.com

For KVKK-related requests, you may also submit a formal application to the Personal Data Protection Authority (KVKK) at www.kvkk.gov.tr. For GDPR-related complaints, you may contact the supervisory authority in your EU member state of residence.

← Back to Home