Birthday Quiz Party

Gizlilik Politikası

Son güncelleme: 7 Ağustos 2026

Kısaca

Birthday Quiz Party hesap açmanı istemez. E-postanı, telefonunu, adını, kişilerini veya konumunu toplamaz. Reklam göstermez, analitik veya izleme aracı kullanmaz. Sunucuda tutulan tek şey, quizini çalıştırmak için gereken veridir: partinin kendisi, sorular ve misafirlerin verdiği cevaplar.

Bu politikayı yazan ve verilerden sorumlu olan kişi: Furkan Aktürk (bireysel geliştirici, Türkiye). İletişim: birthdayquizparty@protonmail.com

1. Hesap ve kimlik

Uygulamayı ilk açtığında sunucu sana rastgele bir kimlik (UUID) verir. Bu kimliğin arkasında e-posta, parola veya isim yoktur; kurduğun partilerin sana ait olduğunu anlamak için vardır. Uygulamayı silersen bu kimliğe bir daha ulaşılamaz.

Misafirler de hesap açmaz. Misafirin tarayıcısında rastgele bir cihaz anahtarı saklanır (uygulamada iOS Keychain, web sayfasında localStorage). Amacı tek: sayfayı kapatıp geri döndüğünde kaldığın yerden devam edebilmen ve aynı kişinin iki kez sayılmaması. Bu anahtar bir reklam kimliği değildir, üçüncü taraflarla paylaşılmaz ve site dışında hiçbir yerde kullanılmaz. Aynı cihaz aynı partiye tekrar girdiğinde tanınır.

Çerez kullanmıyoruz.

2. Toplanan veriler

Parti kuran kişinin girdikleri

Parti bilgileri
Başlık, doğum günü sahibinin adı (senin yazdığın şekliyle), varsa yaş ve tarih, emoji ve tema.
Sorular
Soru metinleri, şıklar, doğru cevaplar, puanlar.
Davetli listesi (isteğe bağlı)
Yalnızca senin elle yazdığın isimler. Telefon rehberine erişmiyoruz ve izin de istemiyoruz.
Soru görselleri (isteğe bağlı)
Yüklediğin fotoğraflar. Bkz. aşağıdaki uyarı.

Misafirin girdikleri

Görünen ad
Misafirin kendi yazdığı ad. Takma ad olabilir, doğrulanmaz.
Avatar emojisi
Listeden seçilen bir emoji.
Cevaplar ve skor
Verilen cevaplar, doğru/yanlış bilgisi, toplam puan ve quizin kaç saniyede bitirildiği.

Satın alma

Ödemeyi Apple alır. Kart numaran, adın ve fatura bilgin bize hiçbir zaman ulaşmaz. Satın alma sonrası bizde saklanan kayıt şunlardan ibarettir: Apple'ın işlem kimliği, ürün kimliği, hangi partiye ait olduğu, işlemin Sandbox mı Production mı olduğu ve tarihi. Bu kayıt, ödediğin partinin ödenmiş kalmasını sağlamak ve aynı işlemin ikinci kez kullanılmasını engellemek için tutulur.

Otomatik olarak oluşan teknik veriler

Sunucumuz (Supabase) ve sayfayı barındıran GitHub Pages, her istekte teknik kayıt tutar: IP adresi, tarayıcı bilgisi, zaman. Bu kayıtlara biz analiz amacıyla bakmıyoruz; kötüye kullanım ve arıza durumları için sağlayıcılarda kısa süre kalır.

3. Üç şeyi özellikle bilmen gerekiyor

🖼️ Yüklediğin soru görselleri herkese açık değildir. Depolandıkları yer dışarıya kapalı; adresi bilmek tek başına yetmiyor. Görseller misafirlere yalnızca quiz kodu doğrulandıktan sonra, bir saat geçerli imzalı bir adresle gösteriliyor. Süre dolunca o adres çalışmaz.

🔒 Yine de bu uçtan uca şifreleme değildir: görseller sunucuda saklanıyor ve teknik olarak biz erişebiliriz. Erişmiyoruz, ama bilmen gereken bir ayrım.

🔗 Quiz linkini bilen herkes quizi çözebilir. Link, tahmin edilmesi zor rastgele bir koddan oluşur; ayrıca bir parola yoktur. Linki paylaştığın kişilerle sınırlı kalacağını varsay, ama linki alenen paylaşma.

4. Veriler nerede duruyor

Veritabanı ve dosyalar Supabase üzerinde, Frankfurt (Almanya, AB) bölgesinde tutulur. Misafir web sayfası GitHub Pages üzerinde barındırılır.

Misafir sayfası yazı tipini Google Fonts'tan çeker. Yani sayfayı açan kişinin IP adresi Google'ın sunucularına ulaşır. Bunun dışında sayfada hiçbir üçüncü taraf kaynağı, reklam ağı veya izleme betiği yoktur.

5. Verilerin paylaşıldığı taraflar

  • Supabase — veritabanı ve dosya barındırma (veri işleyen).
  • Apple — satın alma işlemleri ve doğrulaması.
  • GitHub — misafir sayfasının barındırılması.
  • Google Fonts — yalnızca yazı tipi dosyası; bu sırada IP adresi Google'a görünür.

Bunların dışında kimseyle paylaşmıyoruz. Veriyi satmıyoruz, reklam amacıyla kullanmıyoruz, profilleme yapmıyoruz. Yasal bir zorunluluk doğarsa (mahkeme kararı gibi) yalnızca zorunlu olan kadarını paylaşırız.

6. Ne kadar süre saklanıyor

  • Bir partiyi sildiğinde o partinin soruları, misafirleri, cevapları ve görselleri de silinir.
  • Silinmeyen partiler, sen silene veya silme talebinde bulunana kadar durur.
  • Satın alma kayıtları, muhasebe ve iade yükümlülükleri nedeniyle parti silinse de saklanabilir.

7. Haklarınız

KVKK (6698 sayılı Kanun) m.11 ve — Avrupa Birliği'ndeyseniz — GDPR kapsamında; hangi verilerinizin işlendiğini öğrenme, bunların kopyasını isteme, düzeltilmesini veya silinmesini talep etme hakkınız var.

Talebinizi birthdayquizparty@protonmail.com adresine yazın. Hesap olmadığı için kimliğinizi doğrulayamayız; bu yüzden talebinizde parti kodunu (misafir linkindeki kod) belirtmeniz gerekir — silme işlemini o partiye bağlı veriler için yaparız.

Misafirseniz ve yalnızca kendi cevabınızın silinmesini istiyorsanız, parti kodunu ve quizde kullandığınız görünen adı yazmanız yeterli.

8. Çocuklar

Uygulama 13 yaş altındaki çocuklara yönelik değildir ve onlardan bilerek veri toplamaz. Doğum günü quizleri çocuklu ortamlarda oynanabilir; bu durumda quizi kuran yetişkinin, çocuklara ait isim ve fotoğraf girmeden önce velilerin rızasını alması gerekir. Yanlışlıkla toplanmış bir veri fark ederseniz yazın, sileriz.

9. Değişiklikler

Bu politika değişirse üstteki tarih güncellenir. Önemli bir değişiklik olursa uygulama içinde ayrıca bildiririz.

Privacy Policy

Last updated: 7 August 2026

In short

Birthday Quiz Party does not ask you to create an account. It does not collect your email, phone number, real name, contacts, or location. There are no ads, no analytics, and no tracking tools. The only data on the server is what is needed to run your quiz: the party itself, its questions, and the answers guests give.

The person who wrote this policy and is responsible for the data: Furkan Aktürk (independent developer, Türkiye). Contact: birthdayquizparty@protonmail.com

1. Accounts and identity

The first time you open the app, the server issues you a random identifier (a UUID). There is no email, password, or name behind it; it exists only so the app knows which parties are yours. If you delete the app, that identifier cannot be recovered.

Guests do not create accounts either. A random device key is stored on the guest's device (iOS Keychain in the app, localStorage on the web page). Its only purpose is to let you resume where you left off and to avoid counting the same person twice. It is not an advertising identifier, it is never shared with third parties, and it is not used anywhere outside this service. The same device is recognised if it returns to the same party.

We do not use cookies.

2. Data we collect

Entered by the person creating the party

  • Party details — title, the birthday person's name as you type it, optional age and date, emoji and theme.
  • Questions — question text, options, correct answers, points.
  • Guest list (optional) — only names you type yourself. We do not access your contacts and never ask for permission to.
  • Question images (optional) — photos you upload. See the warning below.

Entered by guests

  • Display name — chosen by the guest; may be a nickname, not verified.
  • Avatar emoji — picked from a list.
  • Answers and score — the answers given, whether they were correct, total points, and how many seconds the quiz took.

Purchases

Payment is handled by Apple. Your card number, name, and billing details never reach us. After a purchase we store only: Apple's transaction identifier, the product identifier, which party it belongs to, whether the transaction was Sandbox or Production, and the date. This record exists to keep the party you paid for unlocked and to prevent the same transaction being used twice.

Automatic technical logs

Our server provider (Supabase) and the page host (GitHub Pages) keep technical request logs: IP address, browser information, timestamp. We do not review these for analytics; they are retained briefly by the providers for abuse prevention and troubleshooting.

3. Three things you should know

🖼️ Question images you upload are not public. The storage they live in is closed to the outside, and knowing an address is not enough on its own. Images are shown to guests only after the quiz code has been verified, through a signed address valid for one hour. Once it expires, that address stops working.

🔒 This is still not end-to-end encryption: the images are stored on a server and we could technically access them. We do not, but it is a distinction you should know about.

🔗 Anyone who has the quiz link can take the quiz. The link contains a hard-to-guess random code, but there is no password. Treat it as shared with exactly the people you send it to, and do not post it publicly.

4. Where the data is stored

The database and files are hosted on Supabase in the Frankfurt (Germany, EU) region. The guest web page is hosted on GitHub Pages.

The guest page loads its typeface from Google Fonts, which means the visitor's IP address reaches Google's servers. Apart from that, the page contains no third-party resources, ad networks, or tracking scripts.

5. Who we share data with

  • Supabase — database and file hosting (data processor).
  • Apple — purchase processing and verification.
  • GitHub — hosting of the guest page.
  • Google Fonts — the font file only; the IP address is visible to Google during that request.

We share with no one else. We do not sell data, use it for advertising, or build profiles. If legally compelled (for example by a court order), we disclose only what is strictly required.

6. Retention

  • Deleting a party also deletes its questions, guests, answers, and images.
  • Parties you keep remain until you delete them or ask us to.
  • Purchase records may be retained after a party is deleted, for accounting and refund obligations.

7. Your rights

Under Turkish data protection law (KVKK, Law No. 6698, Art. 11) and — if you are in the European Union — the GDPR, you have the right to learn what data of yours is processed, to request a copy, and to request correction or deletion.

Write to birthdayquizparty@protonmail.com. Because there are no accounts, we cannot verify your identity, so your request must include the party code (the code in the guest link) — deletion is performed for the data attached to that party.

If you are a guest and want only your own answers removed, give the party code and the display name you used in the quiz.

8. Children

The app is not directed at children under 13 and does not knowingly collect data from them. Birthday quizzes may be played around children; in that case the adult creating the quiz is responsible for obtaining parental consent before entering children's names or photos. If you notice data collected by mistake, write to us and we will delete it.

9. Changes

If this policy changes, the date at the top is updated. For significant changes we will also notify you inside the app.