Privacy Policy
Last updated: August 22, 2026
Maark is a link-sharing app. We wrote this document to describe exactly the data the app actually processes, nothing more, nothing less. All of our infrastructure is hosted in France / the European Union.
Contents
1. Data controller
Maark is published by an individual. The controller responsible for processing your personal data is:
De La Casa Jérémy
Contact: hello@maark.app
We have not appointed a Data Protection Officer (DPO). For any question about your data, email support@maark.app.
2. Data we process
Maark can be used in guest mode, without an account, in which case no email address is required. Creating an account (via email, Google or Apple) unlocks sharing across devices and with other people. When you upgrade from guest mode to an account, your lists, links, subscriptions, reading history and preferences are transferred to the account, and the guest profile is then deleted.
Account and authentication
- Email address: to sign you in (one-time code) and send you service-related emails.
- Social sign-in identifiers: if you sign in with Google or "Sign in with Apple", we receive and store the identity tokens they provide (and the associated email).
- Name and public handle (@handle): chosen by you, shown to the people you share lists with.
- Profile picture (avatar): if you add one.
- IP address and device information (user-agent): recorded with your session for security purposes.
- Account status: guest or real account, and your language.
Content you create
- Saved links: the URL, plus the title, description and image automatically retrieved from the page (preview).
- Lists: their name, visibility (private, public or accessible by link, known as “unlisted”), category, color theme and, if you fill it in, a place (city, region or country) picked by hand from a list of places. No GPS position is used.
- Comments and reactions on links and on comments.
- Subscriptions, list members, reading history (which links you opened, and when).
- List history: who added, moved, archived, trashed or restored a link, and when.
- Invitations: if you invite someone by handle (only possible among your contacts, i.e. people you already share a list with or have already invited), we store only their account identifier, never their email. If you invite by email, we store that address, even if the person has no account yet. An invitation link with no recipient contains no personal data.
- Reports and blocks: if you report content or block someone.
What others can see
- On a private list, the content, members, history, readers and reactions are visible only to the owner and members.
- On a public or link-accessible (unlisted) list, anyone who opens it can see the links, the comments, the member list and, for each link, the names of the people who opened it and of those who reacted. Opening a link in a public list therefore makes your reading visible to other readers. A list's history is visible only to its members, and the named subscriber list only to the owner and admins.
- Your name, @handle and picture are visible to anyone who can see you in a list, an invitation or a comment.
Browser extension
- If you install the Maark extension for Chrome or Firefox, it keeps your session token, a cache of your lists and a queue of links to send in the browser's local storage. It only talks to our servers and only reads the page you choose to save.
Push notifications
- Push notification token for your device (if you enable notifications), with the platform (iOS/Android) and your language.
Usage statistics (optional)
- If, and only if, you explicitly consent, we measure a few anonymized usage statistics (see §3 and §9). No statistics are collected until you opt in.
Technical diagnostics (error reports)
- If the app crashes or errors, a technical report is sent to our diagnostics tool. It does not include your IP address (that option is disabled), nor the content of your data (links, comments, list names): reports are limited to your technical account identifier and technical information about the error, and an automatic filter masks any sensitive data before sending. See §3.
We do NOT collect: your location (a list's place is typed in by hand, never read from GPS), your phone's address book, your microphone, or any advertising identifier (no IDFA/ATT tracking). Maark shows no ads, offers no purchases and never sells your data.
3. Purposes and legal bases (GDPR)
| Processing | Purpose | Legal basis (Art. 6 GDPR) |
|---|---|---|
| Account, email, sign-in (one-time code, Google, Apple) | Create and secure your access, recognize you across devices | Performance of a contract (Art. 6(1)(b)) |
| Session IP address and user-agent | Security, fraud and abuse prevention, rate limiting | Legitimate interest (Art. 6(1)(f)) |
| Lists, links, previews, comments, reactions, subscriptions, list and reading history | Provide the core functionality of the app | Performance of a contract (Art. 6(1)(b)) |
| Public name, @handle and avatar | Identify you to the people you share with | Performance of a contract (Art. 6(1)(b)) |
| List invitations (by handle, email or link) | Deliver the invitation you send and verify membership | Legitimate interest (Art. 6(1)(f)), at your request |
| Push notifications | Notify you about activity on your lists (new links, comments, invitations, accepted invitation, deleted list) | Consent (system permission) / contract performance |
| Transactional emails (sign-in code, invitations) | Operate the service | Performance of a contract (Art. 6(1)(b)) |
| Anonymized usage statistics | Understand usage to improve the app | Consent (Art. 6(1)(a)), explicit opt-in, revocable |
| Error / diagnostic reports | Detect and fix bugs, ensure stability | Legitimate interest (Art. 6(1)(f)) |
| Moderation and reports | Handle reported illegal or offensive content | Legitimate interest + legal obligation (Art. 6(1)(f) / 6(1)(c)) |
4. Processors and recipients
We do not sell or rent your data. We rely on a small number of technical providers (processors under the GDPR), chosen wherever possible for European hosting:
| Provider | Role | Data involved | Location |
|---|---|---|---|
| Scaleway (France) | Hosting of servers, database and avatar storage | All application data | France (fr-par) |
| Resend | Sending emails (sign-in code, invitations) | Recipient email address and email content | EU |
| PostHog (Cloud EU) | Usage statistics (only if you consent) | Technical account identifier, screens viewed, usage counters | EU |
| Sentry | Error diagnostics / crash reports | Technical account identifier, technical error details | EU |
| Expo (Push) | Delivery of push notifications | Notification token, notification title and body | United States (Google Cloud) |
| Google / Apple | Social sign-in (only if you choose it) | Authentication via your Google / Apple account | Outside the EU (see §5) |
| Preview providers (YouTube, TikTok and the linked site) | Fetch the title / preview of a link you save | The URL of the link concerned (needed to fetch the preview) | Depends on the site |
When you save a link, our server visits the corresponding page to extract a preview (title, image). For some platforms (YouTube, TikTok), the URL is sent to their official preview service. We share no other data about you with them.
5. Transfers outside the European Union
Our servers, database and avatar storage are located in France. Statistics (PostHog) and diagnostics (Sentry) use European hosting regions.
Two exceptions may involve a transfer outside the EU:
- Google / Apple sign-in: if you choose to sign in via these services, authentication is handled by Google (Google Ireland / United States) or Apple, under their own policies.
- Push notifications: the notification token and notification content pass through Expo's push service, hosted in the United States (Google Cloud), before reaching Apple or Google. This transfer is governed by standard contractual clauses.
Where such transfers occur, they are governed by the mechanisms provided for by the GDPR (standard contractual clauses or an adequacy decision). If you prefer no transfer outside the EU, you can use email sign-in and leave push notifications disabled.
6. Retention periods
- Account and content: kept for as long as your account exists.
- Inactive guest accounts: may be deleted after 30 days of inactivity if they own no lists.
- One-time sign-in code: valid for 10 minutes, then expires.
- List invitations: a named invitation (handle or email) expires after 7 days, an invitation link after 48 hours; expired invitations are purged 7 days later.
- Deleted or orphaned avatars: removed from storage.
- Usage statistics: kept for a limited period by our analytics provider (PostHog), then deleted or anonymized.
- Error reports: kept for a maximum of 90 days, then automatically deleted.
- Backups: our encrypted backups are kept for a limited period, then overwritten.
7. Your rights
Under the GDPR, you have the following rights:
- Access: obtain a copy of the data we hold about you.
- Rectification: correct inaccurate data (your name and @handle are editable directly in the app).
- Erasure: delete, yourself in the app and without closing your account, your lists and their links, your comments and your profile picture; delete your whole account (see §8); or email us to erase specific data (for example your contributions in other people's lists).
- Portability: receive your data in a structured, machine-readable format.
- Objection and restriction: object to processing based on legitimate interest, or ask to restrict it.
- Withdrawal of consent: for usage statistics, at any time, without retroactive effect.
To exercise these rights, email support@maark.app. We respond within a maximum of one month. You may also lodge a complaint with the CNIL (www.cnil.fr), the French supervisory authority, or with the supervisory authority in your country of residence.
8. Account deletion
You can delete your account at any time from the app: Settings → Account → Delete my account. This removes the lists you own and the links they contain, revokes your sessions and notification tokens, and erases your profile picture.
If you no longer have access to the app, send your deletion request to support@maark.app from the email address of your Maark account: we delete the account within 30 days, with the same effects as deleting it from the app.
On deletion, your personal data is immediately anonymized: your email address is replaced with an irreversible random value, and your name, public handle, picture and analytics consent are erased. The access secrets tied to your account (authentication tokens, Google / Apple connections, sign-in codes) as well as any invitations addressed to your email are deleted.
Contributions you left in lists owned by other people (comments, reactions, history entries, read marks, memberships and subscriptions) are kept to preserve the integrity of those lists, but attached to an emptied anonymous profile: they no longer contain any data that could identify you. If you also want them erased, email support@maark.app. This anonymization is permanent and irreversible.
9. Cookies and trackers
The mobile app uses no advertising cookies and embeds no third-party tracking network.
- Local storage: the app keeps on your device a session token (secure encrypted storage) and a local copy of your data so it can work offline. These are not shared with third parties.
- Usage statistics (opt-in): on first launch, the app asks whether you allow anonymous usage statistics. They are disabled by default and only activate after your explicit consent. You can decline with no impact on your use of the app.
- Session replay: when statistics are enabled, an anonymized recording of interactions may be captured. Text input fields and all images are masked (images, including profile pictures, are replaced with a placeholder); sensitive system views (photo and contact pickers) are masked too. In addition, technical identifiers in screen paths are anonymized before sending (for example, a list's identifier is replaced with a generic marker), so no identifying data is transmitted through navigation tracking.
- maark.app website: the site measures its traffic with PostHog (EU Cloud) without cookies or any persistent identifier: nothing is written to your device, there is no session recording, and URL parameters (such as an invitation token) are never sent. That is why the site shows no consent banner.
10. Security
Exchanges with our servers are encrypted (HTTPS). Session tokens are stored encrypted on your device. Avatars are served from a dedicated, cookie-free domain. We apply rate limiting and abuse protections.
11. Minors
Maark is not intended for people under 15 (the age of digital consent in France). We do not knowingly collect data about minors below that age. If you believe a minor has provided us with data, contact us so we can delete it.
12. Changes
We may update this policy. For significant changes, we will notify you in the app or by email. The last-updated date appears at the top of this page.
13. Contact
For any question about this policy or your personal data:
support@maark.app