Privacy Policy
As of March 2026
1. Data Controller
Christoph Bimmer, Undeostr. 37, 85661 Forstinning, Germany Email: datenschutz@getcarma.de
2. Data Collected
Registration: Email, name, password (encrypted) App usage: Vehicle data, scan results, history, purchase history Photos: Immediately and permanently deleted after AI analysis. Only results are stored.
3. Third-Party Services
- Google Gemini 2.5 Flash: AI analysis (USA, only with explicit consent)
- Cloudflare D1: Database (EU West)
- Cloudflare R2: Temporary photo storage (EU jurisdiction)
- Cloudflare Workers/KV: API backend and cache (Edge)
- RevenueCat: In-app purchases
- Sentry: Error tracking and crash reporting
- Apple / Google / Microsoft: SSO authentication
4. Your Rights (GDPR)
Access (Art. 15), Rectification (Art. 16), Erasure (Art. 17), Restriction (Art. 18), Portability (Art. 20), Objection (Art. 21), Withdrawal of consent (Art. 7(3))
5. Account Deletion
Available anytime in the app. After 30 days, all data is permanently deleted.