1. Data Controller
Tim Kaltenbrunner
Schönauring 58
8052 Zürich
Switzerland
Email: tim.kaltenbrunner@gmail.com
2. What Data Is Collected?
Baby Monitor Timmy processes only the data needed for connection setup and protection against misuse. Specifically:
- Firebase Anonymous Auth UID — An automatically generated, temporary identifier. It contains no personal data (no name, no email, no password).
- Firestore session data — SDP offers and answers as well as ICE candidates. These are purely technical connection data required to establish the WebRTC connection. SDP/ICE data is removed from Firestore immediately after the WebRTC connection is established. The session record itself (anonymised and encrypted connection metadata) is fully deleted within 24 hours at most.
- Pairing codes — Temporary 4-character codes for pairing two devices. The pairing code itself is never transmitted to any server and never leaves the device. Only a cryptographic hash (SHA-256) of the code is used as a Firestore document identifier. The hash cannot be reversed to reveal the original code. Pairing documents are deleted within 24 hours at most.
3. What Data Is NOT Collected?
Baby Monitor Timmy is built to process as little personal data as possible:
- No audio or video data on servers — All audio and video transmission occurs directly between devices (peer-to-peer via WebRTC). No server listens in or records.
- No email addresses, no passwords — The app uses exclusively anonymous authentication.
- No location data — No location data is collected or stored.
- No cookies in the app and static website — The app and this website do not set their own cookies. After you open the external Discourse forum, that site may use technically necessary cookies for login and sessions.
- No advertising, no tracking — No advertising or marketing analytics, tracking pixels, or advertising networks are used, and no user profiling takes place. For crash and stability diagnostics in release versions, the app uses only Firebase Crashlytics (see Section 6).
- No advertising IDs — The app does not access advertising IDs.
4. Legal Basis
The Swiss Federal Act on Data Protection (DSG) applies as the primary law. For users in the EU/EEA, the General Data Protection Regulation (GDPR) applies additionally; for users in the United Kingdom, the UK GDPR applies additionally.
The processing of data described in Section 2 is based on:
- Art. 31(1) DSG (Legitimate interest) / Art. 6(1)(b) GDPR (Performance of a contract) — The technical connection data is necessary to provide the app's functionality.
- Art. 31(1) DSG (Legitimate interest) / Art. 6(1)(f) GDPR (Legitimate interest) — Anonymous authentication serves the legitimate interest of protecting the app from misuse.
5. Payment Processing (Subscription)
Baby Monitor Timmy is offered as a paid subscription via the Google Play Store or Apple App Store. Payment processing is handled entirely by the respective app store. We receive no payment data (e.g., credit card numbers, bank details). We only receive a confirmation of the subscription status (active/inactive), which contains no personally identifiable payment information.
Information about data processing by the respective app store can be found here:
- Google Play: policies.google.com/privacy
- Apple: apple.com/legal/privacy
6. Third Parties
Google Firebase
Provider: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Services: Firebase Authentication (anonymous), Cloud Firestore, Firebase Hosting.
Privacy: firebase.google.com/support/privacy
Third-country transfer: USA. EU Commission Standard Contractual Clauses (SCCs) and the Swiss-US Data Privacy Framework apply.
Cloudflare
Provider: Cloudflare Inc., 101 Townsend St, San Francisco, CA 94107, USA.
Service: TURN relay server (Cloudflare Calls) for the WebRTC connection.
Only encrypted WebRTC traffic is relayed. Cloudflare has no access to the content of the communication (audio/video).
Privacy: cloudflare.com/privacypolicy
Third-country transfer: USA. EU Commission Standard Contractual Clauses and the Swiss-US Data Privacy Framework apply.
Google Firebase Crashlytics
Provider: Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.
Service: Crash and stability reporting for release versions of the app. If the app crashes or encounters a serious error, a diagnostic report is sent to Firebase Crashlytics so the fault can be fixed.
Data processed: crash stack traces, the app version, the device model and operating-system version, the time of the crash, and a Crashlytics installation identifier. This data contains no name, no email address, and no audio or video.
Legal basis: Art. 6(1)(f) GDPR / Art. 31(1) DSG (legitimate interest in the stability and error-free operation of the app).
Retention: crash reports are retained by Firebase Crashlytics for up to 90 days.
Privacy: firebase.google.com/support/privacy
Third-country transfer: USA. EU Commission Standard Contractual Clauses and the Swiss-US Data Privacy Framework apply.
Discourse Forum
For support questions and feature requests, the website links to an externally hosted Discourse forum at babyphone-timmy.discourse.group. If you visit the forum or create an account there, Discourse (or the respective forum host) processes, among other things, the account, post, session, and security data required to operate the forum. The app itself remains separate and continues to use no traditional user accounts. Information about data protection at Discourse can be found at discourse.org/privacy.
7. Data Retention
- Session data (SDP, ICE candidates, pairing codes): SDP and ICE data is deleted immediately after the connection is established. Anonymised, encrypted session metadata is fully deleted within 24 hours at most.
- Anonymous Auth UIDs: Short-lived and expire automatically. They contain no personal information.
8. Your Rights
Under the Swiss DSG (Art. 25–29) and, for users in the EU/EEA and the United Kingdom, the GDPR / UK GDPR, you have the following rights at any time regarding your personal data:
- Access (Art. 25 DSG / Art. 15 GDPR) — You may request information about the data processed about you.
- Rectification (Art. 32(1) DSG / Art. 16 GDPR) — You may request the correction of inaccurate data.
- Erasure (Art. 32(2)(c) DSG / Art. 17 GDPR) — You may request the deletion of your data.
- Restriction of processing (Art. 18 GDPR) — You may request the restriction of processing (GDPR only).
- Data portability (Art. 28 DSG / Art. 20 GDPR) — You may receive your data in a commonly used format.
- Objection (Art. 21 GDPR) — You may object to the processing (GDPR only).
- Complaint to a supervisory authority — In Switzerland, you may contact the Federal Data Protection and Information Commissioner (FDPIC): www.edoeb.admin.ch. In the EU/EEA, you may lodge a complaint with your local data protection supervisory authority. In the United Kingdom, you may contact the Information Commissioner's Office (ICO): ico.org.uk.
Regardless of where you live, you can contact us to exercise your access and deletion rights, and we will respond in line with the applicable law.
9. Children's Privacy
Baby Monitor Timmy is intended for use by adults (parents and caregivers). It is not directed to children, and we do not knowingly collect personal data from children. The app is operated by the supervising adult; the "baby" device only streams live audio and optional video peer-to-peer to the paired parent device, and this audio and video is never collected, recorded, or stored by us (see Sections 2 and 3). If you believe a child has provided us with personal data, please contact us and we will delete it.
10. United States — California and Other State Privacy Rights
We do not "sell" or "share" your personal information as those terms are defined under the California Consumer Privacy Act (CCPA/CPRA), and we do not process personal information for cross-context behavioral advertising or targeted advertising. We do not use or disclose sensitive personal information for purposes that would trigger a right to limit.
Residents of California and of other U.S. states with comprehensive privacy laws (such as Virginia, Colorado, Connecticut, Oregon, Texas, and Utah) may exercise the rights available to them under applicable law — including the right to know, access, correct, or delete personal information — by contacting us at tim.kaltenbrunner@gmail.com. We will not discriminate against you for exercising these rights.
11. Applicable Law
The Swiss Federal Act on Data Protection (DSG) applies to the processing of personal data through this app and website. For users in the EU/EEA, the General Data Protection Regulation (GDPR) applies additionally; for users in the United Kingdom, the UK GDPR applies additionally.
12. Hosting
This website is hosted via Firebase Hosting by Google. The app itself does not collect server logs. Information about data protection at Firebase Hosting can be found at firebase.google.com/support/privacy.