Privacy Policy
Last Updated: July 29, 2026
1. Welcome to Scrollo
Welcome to Scrollo. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Scrollo mobile application and website (collectively, the "Service"). Please read this Privacy Policy carefully. By accessing or using the Service, you acknowledge that you have read, understood, and agree to be bound by all the terms of this Privacy Policy and our Terms of Service.
2. Who We Are
The Service is operated by Zakhar Ipatov, an independent software developer ("Operator", "we," "us," or "our"). Scrollo encourages physical activity by requiring users to perform basic exercises (such as pushups) in order to earn scrolling time on other applications.
- Email: support@scrollo.fit
- Website: scrollo.fit
3. What Information We Collect
3.1 Information You Give Us Directly
- Account Information: When you register, we collect information necessary to set up your account, such as your email address, name, and identifying data provided through third-party authentication services (Google, Apple).
- User Content: Information you provide when using the Service, such as profile information.
3.2 Data We Collect Automatically
- Usage Data: Information about your activity, including exercise data (exercise counts, steps, metrics), streaks, time budget usage, historical statistics, and session duration.
- Device Information: Data about your mobile device and connection, including device type, operating system, unique device identifiers, and IP address.
- App Usage Information: Through the screen time API (iOS/Android), we collect information about the time you spend on various applications to facilitate time budgets. We do not collect information about specific content viewed within those external applications.
3.3 Face Data & Exercise Detection
- How We Use Face Data: Scrollo uses your device's camera to detect exercises through facial and body landmark detection. This verifies exercise completion to earn scrolling time.
- Explicit Consent: Before accessing your camera or processing any landmarks, we request your explicit, active consent within the app. You may withdraw this consent at any time via your device settings.
-
Face Data Collection and Storage: For exercise verification, we do not collect, store,
or retain any face data. All landmark detection and processing for exercise verification occurs entirely
locally on your device. Specifically:
- No face data retained: Landmarks are processed in real-time and immediately discarded. We do not retain images, landmarks, or biometric identifiers.
- Processed locally: The camera feed used to verify exercises is processed on your device. For exercise verification, no recording is created or stored, and only the final exercise count (a simple number) is synced to your account.
- No biometric identification: We do not use landmarks to uniquely identify you, and we do not perform facial recognition.
- Third-Party Sharing: We do not share face data with any third parties. Our service providers receive only aggregated exercise counts.
3.4 Data From Third-Party Connections
We may receive information about you from third-party services when you choose to connect your account with them (such as Google or Apple for authentication).
4. How We Use Your Data
We use collected information to provide and maintain the Service, manage your account, track statistics, enable gamification, improve user experience, detect fraudulent activity, and comply with legal obligations.
5. Who We Share Your Data With
- Service Providers: Hostinger (hosting provider), RevenueCat (paywall management), Amplitude (product analytics), and Sentry (crash reporting).
- Legal Authorities: We may disclose information if required by law or valid requests by public authorities.
- Business Transfers: If we are involved in a merger, acquisition, or sale of assets, your information may be transferred.
6. How Long We Keep Your Data
We retain personal information only as long as necessary.
- Account Data: Retained while your account is active.
- Account Deletion: You can delete your account and associated data at any time directly within the app settings. Upon initiation, personal data is removed from active databases within 30 days. Routine server backups are securely destroyed within 90 days.
7. Children's Privacy
Our Service is not directed to individuals under the age of 16, and we ask users to confirm their date of birth. We do not knowingly collect personal information from anyone under 16. If we become aware that we have collected personal data from a child under 16, we will take immediate steps to remove it.
8. Your Global Privacy Rights
Depending on your location (e.g., GDPR in Europe, CCPA in California), you may have the right to access, rectify, erase, restrict processing of, or object to the processing of your personal data. To exercise these rights, contact us at support@scrollo.fit.
9. International Data Transfers
Your information may be transferred to and processed in countries outside your own. Where we transfer personal data out of the European Economic Area, we rely on appropriate safeguards — such as Standard Contractual Clauses and, where available, regional data storage — to ensure your information remains protected in accordance with this policy.
10. Updates & Contact
We may update this Privacy Policy from time to time; the "Last Updated" date above reflects the latest revision. For any further information, please reach support@scrollo.fit.