← Retour à Dopamyn

Politique de confidentialité

Application iOS Dopamyn — dernière mise à jour : 5 septembre 2026

Cette page couvre l'application iOS Dopamyn. Le site dopamyn.app a sa propre politique, plus courte : la voir.

En une phrase : Dopamyn ne peut pas voir ce que tu fais sur ton téléphone. Ce n'est pas une promesse commerciale — iOS ne nous donne tout simplement pas l'information.

Ce qui ne quitte jamais ton appareil

Ce qui est synchronisé sur nos serveurs

Uniquement ceci, et rien d'autre :

La synchronisation existe pour une seule raison : retrouver ton historique en changeant d'iPhone.

Ce que Dopamyn ne fait jamais

Connexion et achats

Notifications

Le rappel quotidien, la fin de session, l'alerte de limite atteinte et le rappel avant la fin de l'essai sont programmés localement par l'application. Il n'y a aucune notification distante, donc aucun jeton push transmis.

Où sont les données

Journaux techniques

Le serveur conserve des journaux de fonctionnement qui contiennent ton adresse IP, l'horodatage et la page appelée. Ils servent à deux choses, et à rien d'autre : diagnostiquer une panne, et limiter le nombre de tentatives par adresse afin qu'une authentification ne puisse pas être attaquée par essais successifs.

Ces journaux ne sont jamais rapprochés de ton compte pour analyser ton usage, et ne servent à aucune mesure d'audience. Ils reposent sur notre intérêt légitime à maintenir le service disponible et sûr (article 6.1.f du RGPD).

Nos sous-traitants

La liste est courte, et elle est exhaustive :

Aucun autre prestataire n'a accès à tes données. Aucun outil d'analyse, aucune régie, aucun service de messagerie tiers.

Combien de temps

Base légale

La synchronisation de ton compte et de ton historique repose sur l'exécution du contrat qui nous lie (article 6.1.b du RGPD) : sans compte ni synchronisation, l'application ne peut pas rendre le service auquel tu souscris.

Les journaux techniques décrits plus haut reposent, eux, sur notre intérêt légitime à garder le service disponible et à le protéger contre les abus (article 6.1.f). Tu peux t'y opposer en nous écrivant ; nous examinerons ta demande, étant entendu qu'un service qu'on ne peut ni dépanner ni protéger ne peut pas être rendu.

Il n'y a ni publicité, ni profilage, ni décision automatisée produisant des effets juridiques à ton égard.

Tes droits

Tu disposes d'un droit d'accès, de rectification, d'effacement, de limitation, d'opposition et de portabilité. Deux de ces droits s'exercent directement dans l'application, sans nous écrire, dans Réglages ▸ Confidentialité :

Pour tout le reste, écris à contact@dopamyn.app — on répond sous 30 jours. Si la réponse ne te convient pas, tu peux saisir la Autorité de protection des données ou l'autorité de protection des données de ton pays de résidence.

Comment tes données sont protégées

Enfants

Dopamyn n'est pas destinée aux enfants de moins de 13 ans et ne leur demande sciemment aucune donnée.

Modifications

Toute modification de cette politique sera publiée sur cette page, avec une nouvelle date de mise à jour. Un changement substantiel sera signalé dans l'application.

Contact

Responsable du traitement : Martinez Muzela, éditeur de Dopamyn — contact@dopamyn.app.


Privacy Policy

Dopamyn iOS app — last updated 5 September 2026. The website has its own, shorter policy: see it here.

In one sentence: Dopamyn cannot see what you do on your phone. That is not a marketing promise — iOS simply never gives us that information.

Never leaves your device: the list of apps and sites you block (iOS hands the app only opaque tokens, encrypted and valid on that iPhone alone — even receiving them, we could not tell which apps they are); your per-app screen time (blocking and limits are enforced by iOS Screen Time itself, which reports nothing to us); the content of your notifications, messages and browsing.

Synced to our servers, and nothing else: your blocking rules (name, schedules, time limits — not their contents); your focus sessions (start date, planned length, length held, mode); your streak days (date and focus minutes per day); your tasks and weekly goals (title and state); your account (an opaque Apple identifier, your first name if you gave one, and your subscription status). Syncing exists for one reason: so your history follows you to a new iPhone.

Never: no advertising, no ad trackers, no IDFA — the app therefore never shows an App Tracking Transparency prompt. No third-party analytics SDK. No resale or commercial sharing. No access to your contacts, location or microphone.

Sign-in and purchases: Sign in with Apple is the only way in — we never see a password, nor your real email if you chose to hide it. Subscriptions go through the App Store (StoreKit); no payment data passes through us. The app sends our server the transaction identifier, product and expiry date, solely to know whether your access is active.

Notifications are scheduled locally by the app. There are no remote notifications, so no push token is ever transmitted.

Where the data lives: on our application server over end-to-end HTTPS, hosted by OVH SAS in its Gravelines, France data centre (privacy policy). Your data therefore never leaves the European Union: there is no international transfer, and so no standard contractual clauses to rely on. Session tokens live in the iOS Keychain, excluded from iCloud backup and from any other device.

Server logs: the server keeps operational logs containing your IP address, a timestamp and the path called. They serve two purposes and no others: diagnosing a failure, and capping attempts per address so that sign-in cannot be attacked by repeated guesses. They are never cross-referenced with your account to analyse your usage, and never used for audience measurement. Legal basis: our legitimate interest in keeping the service available and secure (GDPR art. 6(1)(f)).

Our processors, in full: OVH SAS (France) for server and database hosting; Apple Inc. for Sign in with Apple, the App Store and StoreKit — Apple hands us an opaque identifier at sign-in, then notifies our server of your subscription events (renewal, expiry, refund) so your access stays correct without you having to reopen the app. We receive no payment data. See Apple's privacy policy. No other provider has access to your data: no analytics tool, no ad network, no third-party mailer.

How your data is protected: everything travels over HTTPS, without exception — the server accepts no cleartext connection. Session tokens are held in the iOS Keychain and never written to an iCloud backup. No password exists on the app side; sign-in goes through Apple only. The database is reachable by the application server alone, from no external network.

Retention: kept while your account exists; erased immediately from the live database — not archived — when you delete your account. The database is backed up in encrypted form for disaster recovery only, so a deleted record may persist there until that backup is replaced by the next one; it is never reintroduced into the service. Technical logs are kept as long as needed for diagnosis, then overwritten by rotation. A rule you delete leaves a very short technical tombstone while the deletion propagates to your other devices; it is excluded from your export.

Legal basis: syncing your account and history rests on performance of the contract between us (GDPR art. 6(1)(b)) — without an account there is no service to render. The server logs described above rest on our legitimate interest in keeping the service available and protected from abuse (art. 6(1)(f)); you may object by writing to us. There is no advertising, no profiling, and no automated decision producing legal effects concerning you.

Your rights: access, rectification, erasure, restriction, objection and portability. Two of them are exercised directly in the app, under Settings ▸ Privacy: “Export my data” (full JSON copy) and “Delete my account” (permanent server-side erasure). Your first name is edited under Settings ▸ Account. For anything else, email contact@dopamyn.app; we reply within 30 days. You may also lodge a complaint with your national data protection authority.

Children: Dopamyn is not directed at children under 13 and does not knowingly collect their data.

Changes to this policy are published on this page with a new update date; a substantial change is also flagged inside the app.

Contact: the data controller is Martinez Muzela, publisher of Dopamyn — contact@dopamyn.app.