Last updated: December 2024
Introduction
At Sleutl, your privacy isn't just a feature - it's our foundation. This Privacy Policy explains what information we collect, how we use it, and what rights you have regarding your data. We've designed Sleutl from the ground up to minimize data collection while providing a secure messaging experience.
Information We Collect
Account Information
When you create an account, we collect the following:
| Data Type |
Purpose |
Protection |
| Email Address |
Account recovery, important notifications |
Encrypted at Rest |
| Phone Number |
Optional contact discovery |
Encrypted at Rest |
| Display Name |
How others see you (optional) |
User-controlled |
| Profile Picture |
Visual identification (optional) |
User-controlled |
Information We Do NOT Collect
We are committed to minimal data collection. We do not collect:
- Message contents - Your messages are end-to-end encrypted. We cannot read them, ever.
- Contact lists - We don't upload or access your phone contacts.
- Location data - We don't track your location.
- Browsing history - We don't track what you do outside Sleutl.
- Device identifiers - We don't collect advertising IDs or device fingerprints.
- Message metadata - We minimize metadata collection and never sell it.
How We Use Your Information
The limited information we collect is used solely to:
- Provide and maintain the Sleutl messaging service
- Allow others to find and message you (if you choose to enable this)
- Send important service notifications (e.g., security alerts)
- Prevent abuse and maintain security of our platform
- Comply with legal obligations when required
Data Security & Encryption
Security is at the core of everything we do:
- End-to-End Encryption: All messages use the Signal Protocol. Messages are encrypted on your device before transmission and can only be decrypted by the intended recipient.
- At-Rest Encryption: Personal account information (email, phone) is encrypted in our database using industry-standard AES-256 encryption.
- Transport Security: All data in transit is protected by TLS 1.3.
- Key Management: Your private encryption keys are generated and stored only on your device. We never have access to them.
Data Sharing
We do not sell, rent, or share your personal information with third parties for marketing purposes. We may share information only in the following limited circumstances:
- With your explicit consent - Only when you specifically authorize it
- To comply with legal obligations - When required by law, court order, or governmental request. Note: Due to end-to-end encryption, we cannot provide message contents even if legally compelled.
- To protect rights and safety - To prevent fraud, abuse, or security threats
- Service providers - We use minimal third-party services (e.g., cloud hosting) that are bound by strict data protection agreements
Your Rights
You have full control over your data:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate data
- Deletion: Delete your account and all associated data
- Export: Download your data in a portable format
- Restriction: Limit how we use your data
- Objection: Object to certain types of processing
To exercise these rights, visit Settings in the app or contact us at privacy@sleutl.com.
Data Retention
- Account data: Retained while your account is active. Deleted within 30 days of account deletion.
- Messages: Stored encrypted until you or the recipient deletes them, or according to disappearing message settings.
- Backup data: If you enable backups, they are encrypted and stored according to your settings.
Cookies & Local Storage
We use only essential cookies and local storage to:
- Maintain your login session
- Store your encryption keys securely in your browser
- Remember your app preferences
We do not use tracking cookies, analytics cookies, or share data with advertising networks.
Children's Privacy
Sleutl is not intended for users under the age of 13. We do not knowingly collect information from children under 13. If you believe a child has provided us with personal information, please contact us immediately.
International Data Transfers
Your data may be processed in countries outside your own. We ensure appropriate safeguards are in place, including standard contractual clauses and encryption, to protect your data regardless of where it's processed.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes through the app or via email. Continued use of Sleutl after changes constitutes acceptance of the updated policy.
If you have questions about this Privacy Policy or your data, please contact us: