Privacy Policy

Last updated: 2026-01-01

1. Introduction

Protecting your personal data is important to us. This privacy policy explains what data we collect, for what purpose, and how it is used, in accordance with the General Data Protection Regulation (GDPR).

We only collect data that is strictly necessary to provide the features described below. No data is collected or processed for purposes beyond those explicitly stated.

2. Data Controller

DouDou-Chinese
Email: hello@doudou-chinese.com

If you have any questions about this privacy policy or the processing of your data, you can contact us at the email address above.

3. Data We Collect and Why

a) Flashcard Ratings

What data is collected

Purpose

Legal basis

The ratings are used only for evaluating and improving the flashcards and are not used for profiling or marketing.

b) User Identification

What data is collected

Purpose

Legal basis

Users can use the service anonymously. Providing an email address is optional.

c) Newsletter Subscription

What data is collected

Purpose

Legal basis

The email address is used exclusively for sending the newsletter and is not shared or used for any other purpose. Users can unsubscribe at any time via the link provided in each newsletter.

4. No Further Use of Data

The collected data is not:

Data is processed only for the purposes explicitly described in this policy.

5. Data Storage and Retention

Data is stored only for as long as necessary to fulfill the stated purposes or until the user:

Anonymous data that can no longer be linked to an identifiable user may be retained for statistical or analytical purposes.

6. Your Rights

Under GDPR, you have the right to:

To exercise your rights, please contact us at [your contact email].

7. Changes to This Privacy Policy

This privacy policy may be updated if the scope of data processing changes. The current version will always be available within the app or on the website.

Optional notes (if applicable)

If you use third-party services to process data (e.g. Mailchimp, Firebase, RevenueCat, hosting providers), GDPR typically requires listing them as data processors. This policy intentionally stays minimal based on the scope you described.