Privacy policy
Last updated: 30 August 2026
1. Controller
Controller under the GDPR (Art. 4(7)):
- Provider
- Colopoint GmbH
- Address
- Lindleystraße 12
60314 Frankfurt am Main
Germany - hello@lynk.run
Further details are in the legal notice. For anything concerning data protection, an email to the address above is enough.
2. In short
- The app works without an account and without signing in.
- We do not sell data, run no ad networks and embed no third-party trackers.
- Ratings you enter stay on your device in this version of the app.
- A receipt photo never leaves your device.
- An account can be deleted permanently inside the app — Settings → Delete account.
3. Where the product data comes from
Name, brand, quantity and product image come from Open Food Facts, an open food database. We run our own mirror of it on our server. Only when a scanned barcode is missing there do we query Open Food Facts directly — sending nothing but the barcode digits, no information about you or your device. Product data is not personal data.
4. Processing activities in detail
4.1 Barcode scan and product lookup
When you scan, the barcode number is sent to our gateway (api.yammo.eu) and the product record is returned. The camera runs on the device; no image is transmitted. Legal basis: Art. 6(1)(b) GDPR (performing the function you asked for) and (f) (operating the app).
4.2 Your ratings
A rating consists of the answer “would buy again” (yes/no), the price paid, the store, and optional disappointment tags. In the current version of the app these are stored on your device only and are not transmitted to us. Before publishing ratings to the community goes live, this section will be updated — ahead of the feature shipping, not after.
4.3 Receipt photo
For receipt capture the app opens your device camera. The photo is processed on the device and not transmitted to us; we store no receipts and no photos on our servers. Text recognition, too, happens locally in this version. What you photograph stays with you.
4.4 Account and sign-in (optional)
If you sign in we store: an account id, your email address, a name (if the sign-in provider supplies one), the technical identifier of your Apple or Google account, your role (user/admin) and the creation timestamp. For email-code sign-in we additionally store the email address and the code as a hash; it expires after 15 minutes. Apple and Google sign-in tokens are verified cryptographically against those providers’ public keys. Legal basis: Art. 6(1)(b) GDPR.
4.5 Push notifications
If you allow notifications, the app registers a device identifier (push token) and platform (iOS/Android) with us; where an account exists, it is linked to it. Delivery runs through Google’s Firebase Cloud Messaging. Legal basis: your consent given through the system prompt, Art. 6(1)(a) GDPR — revocable by turning notifications off in your device settings.
4.6 Anonymous usage statistics
The app reports individual events (e.g. “scanner opened”) together with a randomly generated device identifier created locally on first launch. It contains no name, no email address and no advertising id, and exists to count devices rather than people. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in a working app). You may object at any time — an email to hello@lynk.run is enough.
4.7 Reports and blocks
If you report another user we store the reported account’s id, the category you chose, your optional message and the case status. Blocks are stored as a pair of blocking and blocked account. Legal basis: Art. 6(1)(f) GDPR and our obligations under the app stores’ guidelines; a report is also our record of the case.
4.8 Server logs
Our gateway logs requests technically (IP address, timestamp, path, status code). This is necessary for operating the service and for diagnosing faults. Legal basis: Art. 6(1)(f) GDPR.
4.9 Crash and error reports
App, server and this website can report crashes to Sentry where the service is enabled for the respective build. Transmitted are the error message, the technical stack trace, device type, operating-system and app version, and the connection’s IP address. The contents of your ratings are not included. Legal basis: Art. 6(1)(f) GDPR.
5. Recipients and processors
- Our own gateway (api.yammo.eu) — operated by us; account, moderation and statistics data live here.
- Resend — sending the sign-in email containing the one-time code (email address, code).
- Google (Firebase Cloud Messaging) — delivery of push notifications (push token, message content).
- Sentry — crash and error reports, where enabled.
- Apple / Google — only if you use “Continue with Apple/Google”; that sign-in happens under their own responsibility.
- Open Food Facts — product data source; no personal data is sent there.
Where these services process data outside the EU, we rely on the European Commission’s standard contractual clauses and/or the EU-US Data Privacy Framework.
6. Retention
- One-time sign-in codes
- 15 minutes, then invalid
- Account data
- until you delete the account
- Push tokens
- until revoked, until sign-out, or until account deletion
- Reports
- until the case is closed; afterwards as a record of the case, without a reference to the reporting account
- Blocks
- until you lift them or delete the account
- Usage statistics
- held only against the random device identifier, for as long as needed for evaluation
- Server logs
- short-term, for operations and fault analysis
7. Deleting your account — inside the app
The app carries a deletion function: Settings → Delete account. It does not merely sign you out: it permanently deletes your account and the data attached to it — the account record, push tokens and your blocks. Reports other people filed about you remain as case documentation, with the reporting account’s identifier removed. Deletion cannot be undone.
8. Your rights
- Access to the data held about you (Art. 15 GDPR)
- Rectification of inaccurate data (Art. 16 GDPR)
- Erasure (Art. 17 GDPR) — immediately available in the app, see above
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR)
- Objection to processing based on legitimate interests (Art. 21 GDPR)
- Withdrawal of consent with effect for the future (Art. 7(3) GDPR)
Write to hello@lynk.run. You may also lodge a complaint with a supervisory authority; ours is the Hessian Commissioner for Data Protection and Freedom of Information, Wiesbaden.
9. Children
Yammo is not directed at children. You should be 16 or older to create an account — younger only with a parent’s consent.
10. Changes
When what the app processes changes, this page changes with it — before the new feature ships, not after. The version published here, with the date shown above, is the applicable one.