Privacy and Security
Naola is designed to give you accurate weather without compromising your privacy. Here's exactly what we do and don't collect.
What We Collect
| Data | Why | Where It's Stored |
|---|---|---|
| Your location (raw coordinates) | To fetch weather for your area | On your device only. Sent to weather services per request but never saved on our server in raw form. |
| Anonymized location aggregates | To score how accurate each provider is over time | On our server. Coordinates are rounded to ~1 km and not linked to any user, device, or IP. |
| Anonymized IP address | To prevent abuse (rate limiting) | Stored as an irreversible hash. Automatically deleted after 7 days. |
| Feedback messages | To improve the app | On our server, fully anonymous -- no identifying information attached. |
| Account data | To recognize a subscription on your device, and across devices and the web if you sign up | Every install: an anonymous device account (numeric id, placeholder address, hash of a keystore secret). If you sign up: email, password hash, OAuth identifiers. Plus one session UUID per slot (one phone, one browser) and activation codes. Erased on account deletion. |
| Subscription records | To know whether you have an active Advanced subscription | Your numeric Naola account id (the device account's id if you never signed up) and your platform — no name, no email sent to RevenueCat. |
| Ad impression and click counters | To know which self-served ad cards perform | Plain integers per ad row. No foreign key, no IP, no timestamp — impossible to link back to any user. |
| Website analytics | To see how many people visit the site and which pages they use | On our own Matomo server in the EU. No cookies, no IP address stored, nothing after a "?" in a web address; individual visits deleted after 6 months. |
What We Don't Collect
- No sign-up required — only an anonymous device account, with no personal data
- No email addresses, unless you choose to sign up
- No names or personal identifiers
- No tracking — the apps have no analytics, and the website's analytics sets no cookies and stores no IP address
- No advertising identifiers (IDFA, GAID)
- No third-party ad networks or SDKs
- No tracking cookies — only the strictly-necessary
langcookie (your language, one year, clearable any time) and, after you activate Naola on the web, asessioncookie. The mobile apps use no cookies. - No crash reporting or telemetry
- No data sold to third parties -- ever
Ads Without Tracking
Free-tier users see a single small ad card. Unlike most apps, our ads are entirely self-served:
- No third-party ad SDKs (no Google AdMob, no Meta)
- No user profiling or targeting
- No tracking pixels or cookies
- No way to link an ad impression to any user or device
- No consent banner needed -- because there's nothing to consent to
Affiliate links: Some ads link to merchants (e.g. Amazon) with an affiliate tag. Naola passes no user data through these links. Once you leave the app, the merchant's own privacy policy applies — they may use cookies on their site for affiliate attribution.
Weather Data Providers
When you check the weather, your coordinates are sent to these providers to fetch forecast data:
- Open-Meteo (Free tier)
- OpenWeather (Free tier)
- Apple Weather (Free tier)
- WeatherAPI.com (Advanced)
- Visual Crossing (Advanced)
- Google (Advanced)
Each provider receives only your coordinates for the duration of the request. No other personal data is shared.
Your Rights
Under GDPR (Articles 15, 17, and 20) and similar regulations, you can access, delete, or export your data. Naola implements these as self-service actions in the app, so you don't need to email support or wait on a manual process (email remains an option if you can't use the app):
- Export — Settings → Account → Export my data. Returns a JSON file of every row linked to your account.
- Delete — Settings → Account → Delete my account. Permanently removes every user-linked row from our database after a two-step confirmation.
Note: Deleting your Naola account does not cancel your Apple or Google subscription — cancel that in the store first (iPhone: Settings → [your name] → Subscriptions; Android: Google Play → Payments & subscriptions → Subscriptions), otherwise you'll continue to be charged.
Contact
For privacy questions or data requests: support@naola.app
For the full legal text, see the Privacy Policy.