VOCAre Privacy Policy
Effective Date: July 22, 2026
VOCAreps operates the VOCAre mobile application and the vocareps.com website ("VOCAre", "the App", "the Website", "we", "our", or "us"). This Privacy Policy explains how we process information to provide vocabulary learning, tests, wrong-answer notes, review reminders, study planning, account features, backup, sync, public samples, and website operation.
Contact
If you have questions about this Privacy Policy or want to make a privacy request, contact us at contact@vocareps.com.
Privacy contact: VOCAreps operator
1. Information, Purpose, and Retention
We process only the information needed for the App, Website, public sample screens, ads, support, security, and legal compliance. The main categories are listed below.
Account and sign-in
- Items: email address, account identifier, sign-in provider, session information, account status, and privacy consent status.
- Purpose: sign-in, session management, account connection, privacy consent confirmation, support, and account deletion processing.
- Retention: while the account is active, until deletion is completed, or longer if needed for legal, security, dispute, or support reasons.
Learning and sync data
- Items: planner items, wordbooks, tests, wrong-answer notes, review records, app settings, and other learning information the user enters or creates, plus status information and change records needed for account backup, device sync, deletion or edit propagation, and sync conflict handling.
- Purpose: save vocabulary work, provide tests and review features, back up account data, sync supported devices, handle sync conflicts, and restore account data when allowed by the product rules.
- Retention: while the account is active or while needed to provide sync and backup. Deleted or overwritten data may remain in limited backup, audit, or recovery records for the period reasonably needed to operate and protect the service.
Website and public sample data
- Items: website language preference, sign-in display state, pending privacy consent state, and temporary planner, wordbook, test, or other input entered in public sample screens.
- Purpose: remember website preferences and show the public sample again in the same browser.
- Retention: stored temporarily in browser storage until the user clears browser site data, cache, or the Website removes the stored value. Public sample data is not signed-in account data and is not synced to our server.
Wrong-answer photos and camera access
- Items: photos selected or taken by the user, local image files, crop or adjustment data, and user-created backup files where applicable.
- Purpose: provide the wrong-answer note feature and allow users to organize problem photos.
- Retention: generally kept on the user's device or in user-created backup files until the user deletes them, clears app storage, or deletes the App.
Notifications, device, and sync identifiers
- Items: notification permission status, local reminder schedules, internal device or client identifiers, sync revision information, and conflict-handling records.
- Purpose: schedule review reminders, support backup and sync, protect account data, and prevent old device data from overwriting server data without explicit user action.
- Retention: while needed for the feature, account protection, sync integrity, or support.
Credits, rewards, purchases, and verification records
- Items: credit balance, attendance rewards, test-time recharge records, store item records, purchase preparation records, purchase receipts or verification results, refund or dispute records, and related support messages.
- Purpose: provide paid or reward-based features, verify purchases, prevent fraud or duplicate claims, respond to support requests, and keep records needed for accounting or legal obligations.
- Retention: purchase and verification records may be retained longer than ordinary account data when required or permitted for accounting, tax, payment verification, fraud prevention, dispute handling, security, or legal reasons.
Automatically collected website and ad data
- Items: IP address, browser type, device information, approximate location inferred from network information, page access time, cookie identifiers, advertising identifiers, ad interactions, and diagnostic information, depending on the App or Website configuration.
- Purpose: operate the Website, protect the service, deliver ads, measure ad performance, prevent ad abuse, and improve reliability.
- Retention: cookies and browser storage remain according to browser settings or provider settings. Advertising and diagnostic records are retained according to the applicable provider's privacy practices and our operational, legal, security, and support needs.
2. Third-Party Provision and Sharing
We do not sell personal data.
We provide or share information with third parties only in limited cases:
- when the user asks us to provide a feature, sign in, complete a purchase, request support, or delete an account
- when a service provider processes information for App, Website, account, sync, purchase, ad, security, or support operations
- when Google Mobile Ads, Liftoff Monetize (formerly Vungle), Unity Ads, or Google AdSense processes ad-related information for ad delivery, measurement, fraud prevention, or personalized ads when the applicable advertising service is enabled
- when required to comply with law, enforce rights, protect users, prevent abuse, or respond to a valid legal request
We do not provide personal learning data to advertisers for their own direct marketing.
3. Processing Delegation and Service Providers
We may use service providers to operate the App and Website:
- Supabase for authentication, database storage, backup, sync, server functions, and account deletion processing
- Google and Apple for social sign-in
- Google Play and Apple App Store for app distribution, purchases, refunds, and store operations where applicable
- Expo/EAS for app build and release preparation
- Website hosting, domain, DNS, or content delivery providers where applicable
- Google Mobile Ads and configured mediation partners, including Liftoff Monetize (formerly Vungle) and Unity Ads, for rewarded ad delivery, measurement, and fraud prevention when ads are enabled in the release build
- Google AdSense for website ads, advertising cookies, ad measurement, and fraud prevention
These providers process information according to their own terms, privacy practices, and service roles.
4. International Processing
The App and Website may use global service providers. Information may be stored or processed in countries outside the user's country of residence, including countries where our service providers or their infrastructure operate. In those cases, we use service providers that offer contractual, technical, or organizational safeguards appropriate for their services.
5. Cookies, Browser Storage, and Advertising Choices
The Website may use cookies, local storage, session storage, or similar browser technologies to remember language preferences, account display state, privacy consent state, public sample inputs, security state, and website operation data.
vocareps.com may use Google AdSense for site approval, ad delivery, fraud prevention, and ad measurement. Third-party vendors, including Google, may use cookies or similar technologies to serve ads based on visits to this Website or other websites. Google's use of advertising cookies enables Google and its partners to serve personalized ads.
If we serve personalized ads to users in the European Economic Area, the United Kingdom, or Switzerland, we will configure a consent management tool required for Google publisher products before serving those ads.
For users in the European Economic Area, the United Kingdom, or Switzerland, the App uses an in-app consent message to identify the applicable ad partners and purposes. Google Mobile Ads, Liftoff Monetize (formerly Vungle), and Unity Ads may process ad-related information based on the user's consent or, where configured and permitted, legitimate interests. Users can manage purposes and partners, object to processing based on legitimate interests, and later withdraw consent or change their choices.
The user's choices affect which ad serving modes are available. Personalized ads require the applicable consent. Depending on the user's choices and available ad demand, the App may show non-personalized ads, limited ads, or no ad. Limited ads restrict the use of personal data for ad personalization, but technical information needed to deliver and protect ads, such as an IP address or diagnostic information, may still be used.
When required, the App displays an "Ad privacy choices" item in Settings. Users can open it to review and change their advertising privacy choices.
Users can manage advertising choices in the following ways:
- manage or turn off personalized Google ads in My Ad Center
- review Google's explanation of advertising cookies at Google Advertising Privacy & Terms
- manage many online advertising cookies through aboutads.info choices where available
- block, delete, or limit cookies in the browser settings
- reset or delete the mobile advertising identifier in Android or iOS device settings where available
Turning off personalized ads does not remove all ads. It may make ads less relevant.
6. User Rights and Requests
Depending on applicable law, users may request access, correction, deletion, suspension of processing, withdrawal of consent, or a copy of certain personal data. We may need to verify the requester's identity before processing a request.
You can request account deletion in the App:
- VOCAre App > Settings > Account Management > Delete Account
If you cannot use the App, or if you want to make another privacy request, contact us at contact@vocareps.com.
7. Deletion and Destruction
When account deletion is completed, account data is deleted, anonymized, or hidden from normal service use. Some information may remain for the period required or permitted for legal, tax, accounting, security, anti-abuse, purchase verification, dispute, backup, or support reasons.
Electronic records are deleted from active systems or made unavailable for ordinary service use. Backup copies may be overwritten or removed according to backup cycles.
Data stored only on your device may be removed by deleting the App or clearing the device storage for the App.
Public sample data and language preferences stored only in your browser may be removed by clearing browser site data or cache for the Website.
8. Security Measures
We use encrypted network connections where appropriate, including HTTPS for server communication. We also apply authentication, account-based access rules, service-provider access controls, and operational limits intended to keep account data available only to the signed-in user who owns it and the systems needed to provide the service.
No method of transmission or storage is perfectly secure, but we work to limit access, reduce unnecessary retention, and protect the App and Website against misuse.
9. Children
VOCAre is not submitted as a children-only app and is not directed to children under the age required by applicable law for consent-based online services. If we learn that a child provided personal data without proper consent, we will take reasonable steps to delete it. If the service audience or personal data processing changes, we will take the steps required by applicable law and update this Privacy Policy.
10. Changes
We may update this Privacy Policy when app features, data processing, service providers, ads, purchases, or legal requirements change. The updated version will be posted on this page with a new effective date.