Privacy Policy - ZZP Pulse
Last Updated: January 2025
Data Controller: Hermes Business Intelligence
App Name: ZZP Pulse
Contact: support@zzppulse.nl
1. Introduction
Hermes Business Intelligence ("we," "our," or "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how ZZP Pulse ("the App") handles your information when you use our mobile application for freelance business administration.
Important: ZZP Pulse is designed as a local-first application. The vast majority of your data remains on your device and under your direct control.
2. Information We Collect
2.1 Information Stored Locally on Your Device
The following data is stored exclusively on your device and is NOT transmitted to our servers:
- **Business Information**: Company name, address, BTW number, KVK number
- **Client Data**: Names, email addresses, phone numbers, addresses
- **Financial Records**: Income, expenses, invoices, hourly rates
- **Work Activity**: Hours worked, kilometers driven, project details
- **Documents**: Receipt photos, invoice PDFs, company logos
- **Location Data**: GPS coordinates collected during kilometer tracking sessions
2.2 Analytics Data (Transmitted to Third Parties)
We collect limited analytics data to improve the App:
- **Usage Analytics**: Button clicks, feature usage, onboarding completion
- **Device Information**: App version, device type, operating system
- **Anonymous Identifiers**: Random ID to track app sessions (not linked to personal identity)
Note: Analytics data is processed by PostHog, hosted in the European Union. We do NOT collect:
- Personal identification information
- Financial amounts or client names
- Location data outside of active tracking sessions
- Automatic page views or screen recordings
3. How We Use Information
3.1 Local Data Usage
Data stored on your device is used solely for:
- Providing app functionality (tracking income, expenses, hours, kilometers)
- Generating invoices and reports
- Calculating tax obligations
- Creating local backups
3.2 Analytics Data Usage
Analytics data is used exclusively for:
- Understanding feature usage patterns
- Improving app performance and user experience
- Identifying and fixing technical issues
- Guiding product development decisions
4. Data Sharing and Disclosure
4.1 We Do NOT:
- Sell, rent, or trade your personal information
- Share your business data with third parties
- Access your locally stored data
- Upload your financial records to any server
4.2 Limited Sharing:
We may share anonymous analytics data with:
- **PostHog**: For analytics processing (EU-based servers)
- **Google Drive**: ONLY when you explicitly choose to backup/restore data
We may disclose information if required by law, court order, or governmental regulation.
5. Data Storage and Security
5.1 Local Storage
- All business data is stored in your device's private app storage
- Data remains under iOS/Android security protocols
- We recommend using device-level security (PIN, biometric lock)
- You are responsible for your device's physical security
5.2 Analytics Data
- Stored on PostHog's EU servers
- Subject to PostHog's security measures
- Retained for 90 days then automatically deleted
5.3 Security Limitations
**Important Notice**:
- Local data is NOT encrypted at rest
- The App relies on your device's built-in security
- If your device is compromised, app data may be accessible
- We recommend regular backups and strong device passwords
6. Your Rights and Choices
6.1 Data Control
You have complete control over locally stored data:
- **Access**: View all your data within the app
- **Modification**: Edit or update any information
- **Deletion**: Delete individual records or all data
- **Portability**: Export data in JSON or Excel format
- **Backups**: Create and manage local backups
6.2 Analytics Opt-Out
Currently, the App does not provide an in-app analytics opt-out. To prevent analytics collection:
- Use the App in airplane mode
- Block network access for the App in device settings
- Contact us to request analytics data deletion
6.3 Location Services
You can control location access:
- Deny location permissions to disable kilometer tracking
- Use only "While Using App" permission for foreground-only tracking
- Revoke permissions at any time in device settings
7. Children's Privacy
ZZP Pulse is intended for business use by adults. We do not knowingly collect information from children under 16. If you believe we have inadvertently collected such information, please contact us immediately.
8. International Data Transfers
- **Local Data**: Remains on your device (no transfer)
- **Analytics Data**: Processed in the European Union
- **Backups**: Only transferred to Google Drive when you explicitly initiate
9. Data Retention
9.1 Local Data
- Retained indefinitely until you delete it
- No automatic deletion or cleanup
- You control all retention periods
9.2 Analytics Data
- Anonymous analytics: 90 days
- No personal data retained on our servers
10. Third-Party Services
The App integrates with:
PostHog (Analytics)
- Purpose: Anonymous usage analytics
- Data: Feature usage, app performance metrics
- Location: EU servers
- Privacy Policy: https://posthog.com/privacy
Google Drive (Optional)
- Purpose: Backup and restore functionality
- Data: Only shared when you explicitly initiate backup
- Control: You can revoke access through Google account settings
- Privacy Policy: https://policies.google.com/privacy
11. Updates to This Policy
We may update this Privacy Policy periodically. Changes will be posted within the App with the updated "Last Updated" date. Continued use of the App after changes constitutes acceptance of the updated policy.
12. Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW:
- We are NOT responsible for data loss due to device failure, user error, or security breaches
- You are responsible for maintaining backups of important business data
- We recommend using additional business accounting systems for critical records
- The App is provided "as is" without warranties regarding data security or retention
13. Dutch Law Compliance
This App is designed for use in the Netherlands and complies with:
- General Data Protection Regulation (GDPR)
- Dutch Implementation Act (UAVG)
- Relevant Dutch tax record retention requirements
You are responsible for ensuring your use complies with applicable business and tax regulations.
14. Contact Information
For privacy-related questions or concerns:
- Email: privacy@zzppulse.nl
- Address: Amsterdam, Netherlands
For technical support:
- Email: support@zzppulse.nl
15. Data Breach Notification
In the unlikely event of a data breach affecting our analytics systems, we will:
- Assess the risk to your rights and freedoms
- Notify relevant authorities within 72 hours if required
- Inform affected users if high risk is identified
Note: Breaches of locally stored data on your device are outside our control and detection capability.
16. Consent and Acceptance
By downloading and using ZZP Pulse, you acknowledge that:
- You have read and understood this Privacy Policy
- You consent to the limited analytics data collection described
- You understand the security limitations of local storage
- You accept responsibility for your device security and data backups
---
Remember: Your business data is valuable. Please maintain regular backups and use strong device security. We cannot recover data lost due to device issues, accidental deletion, or security breaches.