← Back to Voxcount

Privacy Policy

Last updated: September 2026 · Voxcount B.V., Amsterdam, the Netherlands · KVK 42170854

In short

  • We’re Voxcount B.V., an Amsterdam company. When you answer questions in the app, you are our participant and we are the controller of your data.
  • We collect your email, a phone number (only to verify you before your first reward), coarse demographics, and your answers. We do not ask for your real name.
  • Your individual answers are never sold or shown to anyone. We only ever license anonymised, aggregated results — and only where at least 50 people are in a result, so no one can be singled out.
  • Some questions touch political, religious or health topics. Those are “special category” data under EU law, and we only process them with your separate, explicit consent — which you can decline without losing access.
  • Everything is hosted in the EU. You have full rights over your data, and can delete your account anytime.

This notice covers the personal data we handle when you use the Voxcount app and website. It sits alongside our Terms & Conditions and Cookie Policy. Aggregated insight that no longer identifies anyone is not personal data, so it sits outside this policy and outside data-protection law.

1. Who we are (controller)

Voxcount B.V., Besteväerstraat 89-3, 1056 HK Amsterdam, the Netherlands (KVK 42170854). We are the controller of your personal data. Privacy contact: privacy@voxcount.com. We are not required to appoint a Data Protection Officer and have not done so. We are established in the EU, so no Article 27 EU representative is required.

2. Who this notice is for

This notice is for participants — people who use the Voxcount app. Our separate business terms cover organisations that license insight from us; those clients never receive your personal data.

3. What we collect

Account

  • Email address.
  • Authentication method (email one-time passcode, Sign in with Apple, or Sign in with Google). We store no passwords.
  • A generated display handle (e.g. @quiet-fox-3120). We do not collect your name.
  • Phone number — collected and verified by SMS one-time code once, before your first reward redemption, purely as an anti-fraud check. Not used for marketing; not shared with reward providers.

Demographics (coarse brackets, at onboarding)

  • Age bracket (e.g. 25–29 — never a date of birth), gender, country, city, employment status, field, education, income band, housing, relationship status, whether you have children, and interests.

Your answers & activity

  • Your responses to the daily questions and swipe cards, timestamped and linked to your account.
  • Engagement data: session timestamps, time per question, completion rates, streaks, points, level.

Special-category data

  • Some daily questions touch political opinions, religious/philosophical beliefs, or health. Where they do, that is special-category data — see section 5.

Technical & location

  • Push notification token (to deliver notifications; removed on logout/uninstall).
  • Platform and app version; device model and OS version collected pseudonymously via our analytics, only if you consent.
  • We do not retain your IP address — our analytics is configured to discard it.
  • We do not track your location. You enter your city manually; an optional “detect my city” convenience reads your approximate location only when you tap it, and we keep only the city/country, never coordinates or history.

4. Why we process it, and our legal basis

  • Run your account, serve and record your answers, award points, provide rewards — performance of our contract (Art. 6(1)(b)).
  • Produce and license anonymised, aggregated insight — underlying answers on Art. 6(1)(b); once anonymised/aggregated, the result is no longer personal data.
  • Analytics and non-essential device storage — your consent (Art. 6(1)(a)), opt-in.
  • Fraud prevention, security, one-account enforcement, phone verification — our legitimate interest (Art. 6(1)(f)).
  • Legal obligations — Art. 6(1)(c).
  • Sensitive-topic questions — your explicit consent (Art. 9(2)(a)).

5. Special-category (sensitive) data

Some questions concern political opinions, religious or philosophical beliefs, or health. We process these only under your explicit consent (Art. 9(2)(a)), given separately for the act of answering that question. Every such question is clearly flagged, optional, and always includes a “prefer not to answer” option — skipping costs you no points and no streak. Your sensitive answers stay confidential and are never shared in identifiable form without your separate explicit consent, which you can withdraw at any time. Because our questions are structured (multiple-choice / sliders, never free text), we minimise the sensitive data we hold.

6. How your answers become the product

  • We never sell, license, or show any individual’s answers to anyone. We do not sell personal data.
  • Before answers are used, we remove directly identifying data (email, handle) and indirectly identifying data, and combine responses into grouped, statistical results.
  • We only release results anonymised and aggregated across at least 50 respondents per result, so no individual can be singled out. Outside the app, the most granular view anyone sees is country level. (This 50-respondent floor is stronger than comparable panels publish.)
  • De-linking: within 12 months of a project, we remove the link between your profile and your answers, so they can no longer be traced back to you.
  • The vast majority of what we provide clients is anonymised insight; in the rare case a client asks for anything identifiable, we ask for your explicit permission first — declining doesn’t affect your use of the app.

7. Analytics & on-device storage

Product analytics uses PostHog (EU-hosted), keyed to an anonymous device identifier, never your email, with your IP discarded. It loads only after you opt in. Non-essential storage or identifiers on your device require your prior opt-in; storage strictly necessary to run the app (your session, points/streak state) is exempt.

8. Who we share data with

We share personal data only with service providers acting on our instructions under GDPR Art. 28 agreements:

  • Supabase — EU-region database/hosting.
  • PostHog — EU-region product analytics (consent-gated).
  • Our SMS provider — sends your one-time phone-verification code.
  • Our email provider — transactional and, if you opt in, other email.
  • Tremendous — reward fulfilment; on redemption we pass only the recipient email and amount so it can deliver a voucher or charity donation. Rewards are issued by the provider/brand under their terms shown at redemption.

Our business clients receive only anonymised, aggregated insight — never your personal data.

9. International transfers

Data is stored in the EU. Where a processor is outside the EEA (e.g. a US reward-fulfilment provider), we rely on an adequacy decision (including the EU–US Data Privacy Framework where certified) or the European Commission’s Standard Contractual Clauses.

10. How long we keep it

  • Account & profile data — while your account is active; deleted within 30 days of closure (except records the law requires us to keep longer, e.g. fraud/financial).
  • Your answers — de-linked from your profile within 12 months; identifiable answer data kept no longer than 24 months, then held only in fully de-identified form.
  • Analytics events — 24 months.
  • Phone-verification data — deleted immediately after successful verification.
  • Push token/device rows — for the account lifetime; removed on logout/uninstall.

11. Automated decision-making

We use automated logic to detect fraud and protect data quality — flagging speeders, straight-liners, bot/automation patterns, and device-based checks used solely to prevent duplicate or fraudulent accounts, not for any other purpose. This can suspend an account or void answers; you can contact us to contest any such decision.

12. Your rights

You have the right to access, rectification, erasure, restriction, objection, and portability; to withdraw consent at any time; and to lodge a complaint with a supervisory authority — in the Netherlands, the Autoriteit Persoonsgegevens. To exercise these: email privacy@voxcount.com, or delete your account in Profile → Settings (or via our data-deletion page).

13. Age

The app is for users 18 and over. We do not knowingly collect data from anyone under 18; if we learn we have, we delete it.

14. Security

We protect your data with encryption in transit, access controls, EU-region hosting, and providers chosen for their security. No system is perfectly secure, but we take it seriously and review it as we grow.

15. Changes

We may update this notice; we’ll post the new version with an updated date and, for material changes, notify you in-app.