Last updated: August 24, 2026
HAN•GL ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains our data practices for the HAN•GL mobile application and website.
By default, HAN•GL works anonymously: you can use the app without creating an account, providing an email, or sharing your name. Cloud backup is optional and user-initiated.
The data controller responsible for processing your data is:
Kevin Myung
c/o COCENTER
Koppoldstr. 1
86551 Aichach, Germany
support@hangl.app
HAN•GL collects the minimum data required to deliver the app and improve it over time. We do not sell data, do not show advertisements, and do not track your location.
Anonymous mode (default):
When you link your account (optional):
We do NOT collect:
The only contact detail we ever hold is an email address, and only in the two cases you choose: linking your account through Apple or Google Sign-In, or asking us to reply when you send in-app feedback. Neither is required to use the app.
HAN•GL uses Firebase Authentication (a Google service) to manage user identities.
On first launch, the app signs you in anonymously — no personal data is collected, just a random device-scoped ID. If you choose to link your account via Apple Sign-In or Google Sign-In, Firebase issues a permanent ID tied to your Apple or Google identity, and we receive your email address.
Legal basis: Contract performance (Art. 6(1)(b) GDPR) — anonymous authentication and cloud backup are necessary to deliver the core app service (your progress surviving reinstalls and cross-device sync).
You can review Firebase Authentication's privacy practices at firebase.google.com/support/privacy.
Your learning progress is stored locally on your device and synced to Firebase Cloud Firestore under your user ID (anonymous or permanent). This sync enables progress recovery if you reinstall the app and cross-device continuity if you link your account.
What is synced:
What is NOT synced: language preference, UI toggles, and other device-local settings stay on your device only.
Legal basis: Contract performance (Art. 6(1)(b) GDPR).
HAN•GL uses a small number of Firebase Cloud Functions (server-side code running on Google's infrastructure):
The first three run on demand, triggered by your actions, and do not store additional data beyond what is already in Firestore. The fourth is triggered by RevenueCat rather than by you.
The app lets you report a problem with a specific word or lesson, and send general feedback from the menu. Both are optional, and you can use the whole app without ever sending either.
What a submission stores:
Legal basis: Legitimate interest (Art. 6(1)(f) GDPR) in fixing the content and bugs you report. Where you supply a reply address, consent (Art. 6(1)(a) GDPR), which you can withdraw at any time by emailing us.
Retention: Submissions are kept while the issue is open, and afterwards as a record of what was fixed. They are deleted immediately and permanently if you delete your account.
If you allow notifications, we store a record for your device so we can send them. This only happens after you grant permission, and you can withdraw it at any time in your device settings or under Settings inside the app.
What that record holds:
These decide who a given notification is worth sending to, and nothing else. They are not used for advertising and are not shared.
Legal basis: Consent (Art. 6(1)(a) GDPR), given when you allow notifications and withdrawable at any time by turning them off.
Deletion: This record is filed under your device's token rather than your account, so deleting your account removes the record for the device you delete from. If you have used HAN•GL on more than one device, email support@hangl.app and we will remove the others.
You can delete your account at any time from the app: Menu → Login / Signup → Delete account. Deletion is immediate and permanent — no grace period. On deletion:
To delete data collected via our waitlist (prior to launch) or any other request, email support@hangl.app.
To improve the app experience and fix technical issues, we collect anonymized usage data and crash reports through Firebase Analytics and Firebase Crashlytics (services provided by Google). This data is keyed to your Firebase user ID, which is not linked to your real identity.
Legal basis: Legitimate interest (Art. 6(1)(f) GDPR) — we have a legitimate interest in understanding how users interact with the app and in maintaining its stability. This processing is minimal, anonymized, and does not override your rights.
What we collect:
How we use this data:
Important: This analytics data is NOT used for advertising, NOT sold to third parties, and NOT linked to your personal identity. It is aggregated and used solely to improve the app.
Retention: Analytics data is retained for 14 months in Firebase and for up to 24 months in our own analytics archive, and is deleted automatically afterwards. Crash reports are retained for 90 days.
Your choice: You can turn analytics collection off at any time in the app under Settings, using the "Share anonymous usage data" toggle. You can also object to this processing under Art. 21 GDPR by emailing support@hangl.app, and you can request erasure of the data held about you (see "Your Rights" below). Analytics has no bearing on your learning progress or its sync. Note that deleting your account removes your progress and any reports you sent, but analytics data is pseudonymous and runs out its normal retention period rather than being deleted with the account.
If you make a purchase or subscribe to HAN•GL, payment processing is handled entirely by Apple (App Store) or Google (Google Play). We do not collect or store your payment information (credit card numbers, billing address, etc.).
We use RevenueCat to manage subscription status across platforms. RevenueCat receives:
Legal basis: Contract performance (Art. 6(1)(b) GDPR) — this processing is necessary to deliver the subscription service you purchased.
RevenueCat acts as a data processor on our behalf. You can review RevenueCat's privacy policy at https://www.revenuecat.com/privacy.
HAN•GL uses the following third-party services as data processors:
Firebase (Google):
Apple Sign-In (optional):
Google Sign-In (optional):
RevenueCat:
Aguamiel (social media management):
Legal basis: Legitimate interest (Art. 6(1)(f) GDPR) in answering people who contact us on social media. This applies only to the accounts themselves. It has no bearing on the app, and nothing about your learning progress or your account is shared with them.
Data Security: All data transmitted to these services is encrypted in transit. Firebase data is stored on Google's servers subject to Google's security standards. You can learn more at firebase.google.com/support/privacy.
We do not share your data with any advertising networks, data brokers, or other third parties beyond those listed above.
Firebase and RevenueCat process data on servers located in the United States and other regions. Google and RevenueCat rely on Standard Contractual Clauses (SCCs) and other safeguards approved by the European Commission to transfer data out of the EU. Our social media agency is based in Mexico, which has no EU adequacy decision, so that processing is covered by Standard Contractual Clauses signed directly with them. By using the app, you acknowledge that your data may be processed outside your country of residence.
Under the General Data Protection Regulation (GDPR), you have the following rights regarding your data:
To exercise any of these rights, contact us at support@hangl.app and we will respond within 30 days.
You also have the right to lodge a complaint with a supervisory authority. The relevant authority for us is the Bayerisches Landesamt für Datenschutzaufsicht (BayLDA), based in Ansbach (lda.bayern.de).
HAN•GL is suitable for learners of all ages and works anonymously by default — no name, email, or other personal information is collected in anonymous mode.
Account linking is restricted to users aged 16 and over. Linking your progress to an Apple or Google account requires us to receive an email address from the provider. Under Art. 8 GDPR, processing personal data of children under 16 in Germany requires verifiable parental consent, which we do not currently offer. Children under 16 may continue to use HAN•GL in anonymous mode without restriction.
If you become aware that a child under 16 has linked an account, please contact us at support@hangl.app and we will delete the account promptly. Parents may also use the in-app Delete Account flow at any time.
We comply with the Children's Online Privacy Protection Act (COPPA) for users in the United States and equivalent children's privacy laws in other jurisdictions. The anonymized analytics we collect is not linked to any individual user and is used solely to improve the app.
Our website (hangl.app) does not use analytics, tracking pixels, or advertising cookies. No personal data is collected from website visitors. The site is hosted by Netlify, which may process technical request metadata (IP address, user agent, request timestamp) in standard server logs for security and infrastructure purposes.
If you joined our waitlist prior to app launch, we collected your email address, platform preferences, and primary language solely to notify you when HAN•GL became available. This data is stored in a private Google Sheet and is not shared with third parties. You may request deletion of this data at any time by contacting us.
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
If you have questions about this Privacy Policy, please contact us at support@hangl.app