Atesto is a contact-sharing app. This policy explains what information we collect, how we use it, and what choices you have.
What we collect
Information you give us directly
- Phone number — used to create and identify your account.
- Contact card — your name, company, job title, phone numbers, email addresses, physical addresses, social profiles, birthday, and profile photo. Everything on your contact card is optional except your account itself.
- Recovery email — an email address you can add to regain access to your account if you lose your devices. Optional.
Information we collect automatically
- Device information — the type of device (iOS or Android) and a name you assign to it, so you can manage which devices have access to your account.
- Push notification token — a device-specific token used to send you notifications (such as when someone shares their contact card with you). We do not use this for advertising.
- Usage and security logs — records of account actions (sign-ins, card shares, device changes) for security and fraud prevention. These logs do not contain the content of your contact card and do not include your phone number or email address. IP addresses are hashed before storage and cannot be reversed.
What we do NOT collect
- We do not read, upload, or store the contacts already on your device. Atesto only stores information you explicitly enter into your contact card.
How we use your information
- To create and secure your account
- To send you one-time login codes via SMS
- To deliver your contact card to people you choose to share with
- To send you push notifications about shares and account activity
- To send account recovery emails if you request them
- To let you manage and revoke access from your devices
- To answer your support requests
We do not use your information for advertising. We do not sell your data.
How we share your information
We share your information only in these limited cases:
- With people you share with — when you share your contact card, the recipient sees the fields you've chosen to make visible. You control what's on your card and who gets a share link.
- With our service providers — we use Amazon Web Services (to store your data, route notifications, send recovery emails, and — via its Rekognition and Comprehend AI services — automatically screen your profile photo and identity text fields, such as your name, company, job title, and contact labels, for policy violations before they become visible to anyone you share with), Google (Firebase Cloud Messaging, to deliver push notifications to Android devices; on iOS, Apple's Push Notification service delivers them), Twilio (to send SMS login codes), Stripe (to process payments and manage billing if you subscribe to a paid plan), Expo (to deliver app updates — update checks send basic device information such as OS and app version), Sentry (to diagnose app crashes — crash reports include device information and a stack trace, never your contact card content, phone number, or email address), Google Workspace (to host our support email inbox), and Anthropic (whose Claude AI assistant helps us investigate and draft replies to support requests — it may process what you write to us and the account details needed to resolve your request; a person reviews and sends every reply, and Anthropic does not use this data to train its models). Each processes data on our behalf under its own data processing agreement.
- If required by law — we may disclose information if required by a valid legal process, such as a court order.
We do not share your data with advertisers, data brokers, or analytics platforms.
Data retention
We keep your account data for as long as your account exists. When you delete your account, your contact card, shares, and device records are deleted. Security and audit logs are kept for 90 days after account deletion for fraud prevention and are not deleted early just because the account is — as described above, these logs never contain your contact card content, phone number, or email address. If you had a paid subscription, Stripe retains your invoice and payment records after deletion, as required by financial recordkeeping and tax law.
Temporary data (login sessions, recovery sessions, device approval requests) is automatically deleted after expiration — typically within minutes to hours.
Your rights
You can:
- Access your data — export your contact card as a vCard from the app at any time.
- Delete your account — permanently delete your account, contact card, shares, and device records from Settings → Delete account (security logs and, if applicable, Stripe billing records are retained afterward as described under Data retention above). If you no longer have the app installed, email hello@akwatri.com with your account's phone number and we will delete your account within 30 days.
- Manage your devices — view and revoke access for any trusted device from Settings → Trusted devices.
- Update your contact card — edit or clear any field at any time.
If you are in the EU or California and have additional rights under GDPR or CCPA, you can exercise them by contacting us (see below). We will respond within 30 days.
Security
We use industry-standard practices to protect your data: encrypted connections (TLS), encrypted storage, and access controls. Recovery codes are never stored in a form that can be reversed. We do not log sensitive credentials.
No system is perfectly secure. If you believe your account has been compromised, revoke access to untrusted devices immediately from Settings → Trusted devices.
Children
Atesto is not directed at children under 13. We do not knowingly collect information from anyone under 13. If you believe a child has created an account, contact us and we will delete it.
Changes to this policy
If we make material changes, we will update the effective date above. Continued use of the app after changes take effect constitutes acceptance of the updated policy.
Contact
Questions about this policy? Email us at hello@akwatri.com.