Privacy Policy
Core privacy principles (web + app)
The Relationship Menu website and app were designed with privacy at its core. Unlike with most web services and apps these days, your personal data stays completely private.
100% Local Processing
All menu data is processed and stored entirely within your browser using local storage or on your personal device when using the app. Nothing about your relationship preferences is ever transmitted to any servers without your explicit consent and initiation.
No data collection without consent
Neither the website nor the app collects or transmits any personal data or any other tracking data unless you explicitly choose to share a menu. Your menus remain entirely under your control at all times.
Sharing Your Menu with Others
There are three ways to share your relationship menu with others (web + app), all designed with your privacy in mind:
Share as Link
Share a copy of your menu via an end-to-end encrypted link. Your menu is encrypted on your device and only the encrypted data is uploaded to the server.
The key to decrypt the menu is embedded in the link and never sent or visible to the server.
Exporting as PDF
Export your menu as a beautifully formatted PDF document that's ready for printing or sharing.
The exported PDF file can be opened on any device with a PDF viewer but can only be edited on this website or in the app.
Downloading as Menu File (.json, .rmenu, .relationshipmenu)
Download your menu as a JSON encoded file. If you don't know what that means this likely isn't for you.
Can be used to put the menu into a git repository or other version control system.
Privacy Benefits of All Sharing Methods
- Your personal data remains on your device until you explicitly choose to share it
- You maintain absolute control over who can access your relationship preferences
Link Advantages
- Protected with end-to-end encryption
- Valid for 5 days / 5 minutes after it is used
- Easy to share via messaging apps
- Editable on this website or in the app
PDF Advantages
- Professional presentation
- Ready for printing
- Widely compatible format
- Contains json menu data
- Editable on this website or in the app
JSON File Advantages
- Permanent offline storage
- Easy backup and archiving
- Version control possibilities
- Editable on this website or in the app
Legal Requirements
1. General information and mandatory information
Data Controller Information
Address
Paul-Vincent Roll
Gürtelstraße 13
13088 Berlin
Germany
Contact
+49 173 1626294
paul-vincent@relationshipmenu.org
The responsible party is the natural or legal person who alone or jointly with others decides on the purposes and means of processing personal data (names, email addresses, etc.).
2. Data collection (web + app)
2.1. Sharing Your Menu via Link
To let you share a menu via a link, the app needs to upload your menu to its server.
Each time you create a sharing link, your device generates a unique, random encryption key, encrypts the menu using AES-256-GCM, and uploads only the encrypted data to the server. The server then responds with a token (the ID part of the URL), which can later be used to retrieve the encrypted menu.
The generated encryption key is added to the link as a URL fragment (the part after #). This part of the URL is not transmitted to the server—ensuring that even if it wanted to, the server couldn’t decrypt your menu.
Sharing links remain valid for up to 5 days and expire automatically 5 minutes after the menu data is accessed and imported into the app or website. After expiration, the data is deleted from the server. To enable this, the server stores a timestamp of when the menu was uploaded.
No IP addresses or any other information that could link the encrypted data back to you are stored with the menu.
Menus are only uploaded when you explicitly choose to share them. No data is transmitted to the server without your direct action.
Please keep your link private and avoid sharing it through untrusted channels, as anyone with the full link can access your menu.
Menu data is stored and processed based on your consent under Art. 6(1)(a) and Art. 9(2)(a) of the GDPR.
You can delete an uploaded menu at any time by visiting the sharing link and clicking the "Delete this shared link" button.
2.2. Server log files
When you access the website or use the link sharing feature of the app, certain technical data is automatically collected and stored in server log files. This helps ensure the security, stability, and proper functioning of the service.
These log files include:
- IP address of the device making the request
- Host name of the requesting device
- Timestamp and duration of the request
- Request line indicating the requested resource
- HTTP status code returned by the server
- Amount of data transmitted during the request
- User agent string (including browser type and version, operating system)
- Referrer URL (the webpage that linked to the resource)
This data may also be used to detect and prevent malicious activity, such as abuse or unauthorized access attempts, including implementing rate limiting on IP addresses to protect the service from overload or attacks.
The processing of this data is based on Article 6(1)(f) GDPR (legitimate interests), aimed at ensuring service security, stability, and abuse prevention.
Log files are retained for a maximum of fourteen (14) days and are not linked with any other personal data.
3. Website-specific details (Website only)
Local storage only
Your relationship menu is saved in your browser's local storage so you can safely reload the page or come back later without losing data. Clearing your browser data may also delete your menus.
No tracking cookies
No cookies are used to track your behavior or preferences. Your browsing remains private to you.
4. App app–specific privacy details (iOS app only)
Device storage & backups
All your relationship menus are stored locally on your device. If iCloud backups are enabled, your menus may be included in those backups depending on your device settings. I do not have access to these backups. For added security, you can enable end‑to‑end encryption for iCloud backups via your device settings (Settings → iCloud → Advanced Data Protection).
Advanced Data Protection may not be available in all countries. See Apple’s documentation.
On‑device encryption
The menu files on your device are protected using iOS Data Protection (NSFileProtectionComplete). This means they are encrypted at rest and are not accessible while the device is locked. Temporary files created during save, import, or export are written with the same protection. Encryption keys for on‑device data are hardware‑bound and managed by iOS and the Secure Enclave; the app never handles your passcode or device‑level encryption keys.
App Lock (Face ID / Touch ID)
Biometric Lock uses Face ID or Touch ID to restrict access to the app. You can choose when the app re‑locks (immediately, 30s, 1m, or 5m). The app covers its content when moving to the background and will require authentication again based on your chosen timeout. Authentication is performed by iOS and dedicated hardware (Secure Enclave). The app never receives your biometric data—only whether authentication succeeded or failed. Biometric Lock controls access to the app interface; on‑device files are protected separately by iOS Data Protection.
Learn more about Face ID / Touch ID security in Apple’s security guide.
Apple device analytics
Like all iOS apps, Apple may collect standard crash logs and analytics to help improve app quality. This data is anonymized by Apple and cannot be used to identify you personally. You can disable this in Settings → Privacy → Analytics & Improvements. See Apple’s analytics info.
5. Data Processing by Third-Party Providers
phasedrei
This website uses phasedrei, Richard-Wagner-Ring 2E, 67227 Frankenthal (Pfalz) as the hosting provider.
The collected data mentioned in Section 2 is processed and stored on servers operated by phasedrei.
A data processing agreement is in place with phasedrei, ensuring full compliance with the strict requirements of German data protection authorities.
The privacy policy of phasedrei can be found at: https://phasedrei.de/datenschutz/
The use of phasedrei is based on a legitimate interest (Art. 6 (1)(f) GDPR) in ensuring the secure and reliable hosting of this service.
Apple, the Apple logo, iPhone, iPad, iOS, Mac, Apple Watch, Apple TV, App Store, Mac App Store, iCloud, Face ID, Touch ID, and Secure Enclave are trademarks of Apple Inc., registered in the U.S. and other countries and regions.