Fernly Privacy Policy
Last Amended: June 17, 2026
Fernly (“we,” “us,” or “our”) is dedicated to safeguarding your personal data and ensuring its processing is handled transparently and securely. This Privacy Policy (the “Policy”) outlines our procedures regarding the collection, storage, and utilization of your information when you interact with our mobile applications and games (collectively, the “Software” or “Apps”).
By installing or interacting with our Software, you explicitly consent to the practices detailed in this Policy. If you do not consent to these terms, please refrain from downloading, installing, or using our Apps.
1. Jurisdiction and Scope
This Policy constitutes an integral part of our Terms of Use. Specific sections or pages within our Apps may display supplementary privacy notices, providing deeper context regarding localized data processing, operational necessities, or specific user controls. Regardless of where your information is processed, transmitted, or hosted, any data gathered via our Software remains governed by this framework.
2. Regulatory Overview
For the purposes of the General Data Protection Regulation (“GDPR”), we function as the Data Controller. This document serves to satisfy our disclosure obligations concerning how we process, manage, and utilize personal data associated with the delivery of our Services.
3. Categories of Data We Process
A. Information You Provide Actively
To facilitate the performance of our contractual obligations and deliver full application functionality, we may request certain user-submitted disclosures. Failure to provide this data may restrict your access to specific features.
Account Registration: Creating a profile is entirely optional. Should you establish an account, we collect credentials such as your chosen username, password, and email address. You may opt to register via third-party authentication services (e.g., Apple, Google, or Facebook). While this authenticates your identity, we do not scrape or store data from your social media profile graphs.
Visual Data and Camera Access: To process, identify, and evaluate images you capture or select, our Apps require hardware authorization for your camera and photo library. We do not index, retain, or access your local media storage unless you explicitly upload a specific image through the interface.
User-Generated Content: We process any materials, images, metadata, or text you generate or publish within our Apps. Please be aware that publicly distributed content within the Software may be accessible and downloadable by other users.
Sign-In Credentials: Standard tokenized authentication data is processed when utilizing Apple, Google, or Facebook logins. We never store your raw account passwords or transmit them to unauthorized parties.
Customer Support Communications: Any data you share voluntarily—including your name, email address, and message transcripts—when reaching out for assistance, feedback, or support is collected to resolve your inquiries.
Scientific Observations: Submitting a plant or nature observation shares the submitted image along with its associated timestamp. These contributions may be aggregated to support ongoing analytical research.
B. Information Collected Automatically
When operating the App, specific device and behavioral metrics are monitored automatically based on our legitimate interest in optimizing performance, resolving bugs, and improving user experiences. This data is predominantly non-identifiable and viewed in aggregate.
Device Specs & Network Connectivity: We analyze technical data from your device, such as operating system versions, hardware identifiers, and unique system signatures, utilizing standard platform developer kits.
Application Logs: Internal system reports regarding the App’s version, status, and running instances may be compiled to prevent crashes.
Analytical Identifiers and Tracking: We employ industry-standard tracking scripts, pixels, and cookies (small text fragments stored on your device) to analyze navigation patterns, monitor feature engagement, and track ad performance. This allows us to improve layout layouts and serve contextual materials.
System Activity Logs: Every connection request generates log metrics detailing timestamps, durations of use, and feature engagement paths.
Monetization & Advertising Metrics: We compile records regarding embedded advertisements, tracking whether an ad was rendered, clicked, or resulted in a conversion event, alongside the placement type (video, banner, text) and your interaction response.
Behavioral Events: To map app progression, analytics tools record micro-interactions like screen transitions, tutorial steps completed, virtual milestones achieved, and selected data-limitation preferences.
Disclaimer on Third-Party SDKs: Automated data processing tools managed by third-party ad networks or analytics vendors operate under their own independent privacy frameworks. These external networks may perform user profiling or cross-reference your device ID with external demographic records (such as age or gender stored on Facebook servers) beyond our scope of control. For data inquiries regarding these external processing activities, please consult the respective third parties listed in Section 4.
C. Financial Transacting
We offer premium upgrades and digital goods within our Services. All transaction billing, payment processing, and financial security are managed exclusively by our e-commerce platforms (Apple App Store or Google Play Store). We do not collect, view, or retain credit card numbers or financial account details. Your financial data is governed solely by the privacy practices of the respective app stores.
- Apple App Store Payments: View policy at https://www.apple.com/legal/privacy/
- Google Play Payments: View policy at https://policies.google.com/privacy
4. Core Purposes of Data Utilization
Fernly deploys the information we maintain to:
- Operate, host, and maintain our operational Services.
- Build, update, evaluate, and test new software patches and capabilities.
- Tailor app layouts, promotions, and marketing efforts to user preferences.
- Deliver responsive troubleshooting and user support.
- Flag security vulnerabilities, mitigate spam, prevent fraud, and uphold legal standards.
Should supplementary data processing needs emerge, we will update this framework to ensure complete transparency before initiating those operations.
5. Data Distribution to Third Parties
Service Providers: We collaborate with specialized contractors to handle business analytics, customer outreach, and cloud infrastructure. These vendors are granted highly restricted, contractually managed access to data (including user content where necessary) solely to execute tasks on our behalf.
Advertising Networks: We do not trade or lease your direct personal records. However, anonymized, aggregated, device-level data (such as click counts, system versions, and anonymized location indicators) may be shared with marketing partners to serve relevant advertising. Device-level location tracking can be toggled off directly within your mobile operating system settings.
Cookie Integration: Shared cookie strings may be processed by advertising vendors to optimize tailored commercial delivery across network platforms.
6. Understanding Your Privacy Rights
Depending on your geographical residency, you may possess some or all of the following statutory entitlements regarding your data:
- Access: The right to request comprehensive breakdowns and copies of your personal data.
- Rectification: The right to modify or update inaccurate or partial records.
- Restriction/Objection: The right to demand that we halt or minimize the processing of certain data subsets.
- Erasure (The Right to be Forgotten): The right to request permanent deletion of your data, which we will perform unless statutory retention mandates or compelling regulatory interests require preservation.
- Portability: The right to receive your data in a structured, machine-readable format for transfer to external providers.
- Revocation of Consent: Where processing relies on your explicit consent, you can withdraw it at any time without providing justification.
To assert any of these entitlements, please contact us at winxjsc@gmail.com. For safety purposes, we may require identity validation before executing your request. We reserve the right to decline requests that conflict with legal obligations or jeopardize the privacy of other individuals.
System Permissions: You can manage or revoke hardware access (such as camera authorizations, storage permissions, or push notification channels) at any time through your device’s system settings menu.
De-installation: To permanently stop all automated data gathering by the App, you may uninstall it using standard platform removal steps. Note that your unique hardware identifier may remain logged in our system; re-installing the App on that same device will reconnect your new session with your historical activities.
California Privacy Clarification: We do not pass personal records to third parties for their own direct marketing operations.
7. Preserving User Preferences
Profile Corrections: Account data can be modified dynamically via the profile settings window inside the application. Deactivating your profile requires deleting the application, though minimal transaction logs may be retained for regulatory compliance.
Marketing Opt-outs: Promotional emails can be stopped by using the unsubscribe links embedded in those messages. Essential system alerts regarding account status will continue regardless of marketing choices.
Interest-Based Ad Deactivation: To stop tailored advertising, activate "Limit Ad Tracking" (iOS) or "Opt out of Ads Personalization" (Android) within your hardware configuration menus. This will not eliminate ads completely; it simply randomizes the commercials you see.
Geographical Context: Precise GPS mapping is restricted unless you explicitly permit it. This can be enabled or disabled via device permission panels.
Alert Toggles: Push notifications can be muted via your hardware settings or directly inside the application's interface.
8. Protection of Minors
Our Apps are not structured for, targeted toward, or knowingly made available to individuals under the age of 13. We do not deliberately gather personal identifiers from children. If you are under 13, do not input any personal details into our systems. If we discover that a minor under 13 has bypassed these limits, we will delete the corresponding files immediately. If you suspect an oversight has occurred, notify us immediately at winxjsc@gmail.com.
9. International Data Movements
Information gathered via our Software may be moved to, stored in, and accessed from infrastructure located in the United States or other global territories where our service vendors operate. Privacy regulations in these target countries may differ from your domestic laws. We deploy standard contractual protections to ensure your information receives equivalent care across all operational jurisdictions.
10. Information Security Measures
We maintain commercially reasonable technical and administrative controls designed to defend your data against unauthorized access or destruction. However, no digital platform or internet transmission is completely flawless; we cannot offer an absolute guarantee of absolute safety. You remain solely responsible for protecting your account credentials and passwords.
11. Third-Party Links
Our Software may occasionally feature hyperlinks to external websites or digital networks. We hold no liability or responsibility for the privacy practices, content, or terms of use maintained by those external entities.
12. Amendments to This Policy
We regularly update our operational protocols to incorporate new app features and legal updates. Material revisions to this framework will be highlighted via in-app notices or through direct system alerts prior to taking effect.
13. Contact Channels
For all privacy inquiries, data requests, or policy questions, please contact our support team at: winxjsc@gmail.com.