Data Controller
Molecolarium ("the App") is developed by Meres. This Privacy Policy transparently describes what data we collect, how we use it, and with whom we share it when you use the App. For any questions, write to privacy@meresdev.com.
Summary
In short:
- We do not sell your data to anyone, and we do not perform cross-app advertising tracking.
- If you sign in with email/Apple/Google, we collect only your email and a Firebase user identifier for authentication.
- Crashlytics and Analytics are disabled by default and turn on only after your explicit consent.
- Your Lab Notebook is stored locally on your device and (if you have iCloud enabled) synced encrypted to your private CloudKit container: we cannot read it.
- In-app subscription payments are handled directly by Apple: we do not see or store any payment card data.
Data we collect
Aligned with the privacy manifest shipped with the App:
| Category | When | Purpose |
|---|---|---|
| Email address | Only if you sign up or log in | Authentication, account management |
| User identifier (Firebase UID) | After login | Authentication, entitlement sync |
| Crash diagnostics (Crashlytics) | Only if you consent | Stability and bug fixes — not linked to your identity |
| Performance and diagnostics | Only if you consent | Performance monitoring — not linked to your identity |
| Interaction events (Analytics) | Only if you consent | Understanding which features are used — anonymized |
| In-app purchase history | Only if you start a subscription | Unlocking Pro features — handled by Apple StoreKit |
We do not use advertising identifiers (IDFA), we do not profile users for marketing, and we do not share data with data brokers.
Local / iCloud data
Calculation history
Saved calculations and examples remain on your device and are not transmitted to external servers.
Lab Notebook
Your notes, drawings, and projects are stored locally with SwiftData. If iCloud is enabled on your device, they are synced to your private CloudKit container (zones FavoritesCK and NotebookCK). Apple handles encryption and storage: neither we nor third parties can access that data.
Third-party services
The App uses the following SDKs and services:
- Firebase Authentication (Google) — email/password login, password reset, Sign in with Apple and Google Sign-In integration.
- Firebase Crashlytics (Google) — crash reporting. Disabled until you consent.
- Firebase Analytics (Google) — aggregated usage events. Disabled until you consent.
- Firebase Storage (Google) — download of signed chemistry datasets (compounds, ions, GHS).
- Apple StoreKit 2 — subscription management and validation.
- Apple Sign in with Apple — optional authentication.
- Google Sign-In — optional authentication.
- Apple iCloud / CloudKit — Lab Notebook sync to your private container.
Each of these services processes data according to its own privacy policy. We do not share any additional data with other parties.
In-app subscriptions
The App offers auto-renewable subscriptions managed via Apple StoreKit. Apple handles payment methods and billing directly: we do not see, collect, or store any payment card data.
From Apple we receive only the product identifier, renewal status, and metadata necessary to unlock Pro features. More details in the Terms of Use.
International transfers
The third-party services listed above operate on global infrastructures (Google Cloud, Apple) and may transfer data outside of the EU. Such transfers are covered by the Standard Contractual Clauses approved by the European Commission or equivalent mechanisms.
Your rights
Under GDPR and CCPA you have the right to:
- Know what data we hold about you
- Request correction or deletion of your account and associated data
- Disable Crashlytics and Analytics anytime from the App's settings
- Delete local data and/or iCloud-synced data directly from the App or iCloud settings
- Take your data with you (PDF export of Lab Notebook projects)
- File a complaint with your local Data Protection Authority
To exercise these rights write to privacy@meresdev.com: we respond within 30 days.
Data retention
- Account data is retained as long as the account is active. You can request deletion at any time.
- Crash and diagnostic data is retained by Firebase for up to 90 days.
- Aggregated analytics events are retained according to standard Firebase Analytics settings (up to 14 months).
Minors
The App is educational and intended for users of all ages. We do not knowingly collect personal data from children under 13 (16 in some EU countries) without parental consent.
Changes to this policy
We may update this Privacy Policy. The "Last updated" date at the top of the page reflects the current version. We will inform you of significant changes via the App or by email.
Contact
For privacy questions or to exercise your rights:
