Privacy Policy

GETCODE PRIVACY POLICY

Last Updated: 21 October 2025

This Privacy Policy (the "Policy") explains how MIA DIJITAL BILISIM VE TIC LTD STI ("GetCode" or the "Company") processes personal data in connection with getcodeapp.com, dash.getcodeapp.com and the GetCode mobile applications (collectively, the "Service").


1. Data Controller and Contact

Data Controller: MIA DIJITAL BILISIM VE TIC LTD STI
Address: Hasanpaşa, Nabizade Sk. No: 82 D:1, 34722 Kadıköy/İstanbul
Email: [email protected]

This Policy takes into account Türkiye’s KVKK (Law No. 6698) and related regulations and, where relevant, GDPR requirements.


2. Categories of Personal Data Processed

Identity & Contact: name–surname (optional), email address, country/region information.

Account & Transaction Data: user ID, purchase/coin transactions, subscription status, refund/chargeback records, support requests and correspondence.

Device & Technical Data: IP address, device model/OS, app version, language, timestamps, cookie identifiers, session data, device fingerprint parameters, crash/error logs.

Usage Data: sign‑in date/time, feature usage, API request/response metadata; marketing measurement data (e.g., Firebase Analytics).

Payment Data: transaction identifiers and status codes from payment providers (card data is not stored in Company systems).

Location Data: approximate location (IP‑based) and, where the platform permission is granted, device location (optional).


3. Purposes and Legal Bases for Processing

Your personal data is processed for the following purposes and legal bases:

Contract performance/formation (KVKK Art. 5/2‑c): account creation, authentication, coin/payment transactions, operation of the Service.

Legitimate interests (Art. 5/2‑f): fraud and abuse prevention (risk scoring, IP and device analysis), security, performance and product improvement, customer satisfaction.

Legal obligation (Art. 5/2‑ç): retention of financial/commercial records, responses to requests and audits, court/authority demands.

Consent (Art. 5/1): marketing communications, personalized advertising/analytics, sensitive or optional permissions (e.g., device location, notifications).

Establishment/exercise/defense of legal claims (Art. 5/2‑e): dispute management, debt collection, chargeback appeals.


4. Cookies and Similar Technologies

The Service uses cookies, SDKs, and similar technologies. Strictly necessary cookies are required for core functions. Statistics/performance and advertising cookies are subject to your preferences. See the Cookie Policy for details and manage choices via in‑app consent screens.


5. Third Parties and Disclosures

Data may be shared with domestic/foreign processors and partners to provide the Service:

Hosting & Infrastructure: cloud providers, content delivery networks.

Analytics & Crash Reporting: Google/Firebase (Analytics, Crashlytics) and similar analytics tools.

Payments & Stores: Apple App Store, Google Play, Payssion, Stripe and other payment institutions.

Communications: email/SMS providers, customer support tools.

Number/SMS Provisioning: carriers and wholesale number providers.

Legal/Audit: competent authorities, independent auditors, legal counsel.

For international transfers, appropriate safeguards under KVKK Art. 9 (consent, Board decisions, undertakings, Standard Contract etc.) are applied.


7. Security Measures

We apply industry‑standard encryption, access controls, network segmentation, security of data at rest/in transit, the least‑privilege principle, and regular patching/vulnerability management. Third‑party processors are bound by contractual and technical safeguards.


8. Profiling and Automated Decision‑Making

For fraud prevention and abuse detection, risk scoring and limited profiling may be performed. These mechanisms may result in temporary account suspension, requests for additional verification (KYC), or rejection of certain transactions.


9. Children’s Data

The Service is not directed to individuals under 18. We do not knowingly process data of minors; if detected, the account is closed and data is deleted.


10. Your Rights (KVKK Art. 11)

To learn whether your personal data is processed and to request information; to learn the purposes of processing and the parties to whom data is disclosed,

To request correction/deletion/ anonymization of your data and notification of such actions to third parties to whom data has been disclosed,

To object to processing and to withdraw consent,

To claim compensation if you suffer damage due to unlawful processing.

Submit your requests to [email protected]. We may request additional information to verify your identity.


11. Marketing Communications and Preferences

If you have consented to commercial communications, you may receive emails/in‑app notifications. Each message includes an unsubscribe link or in‑app setting. You may withdraw your consent at any time.


12. Stores and Payment Information

Payments may be processed via Apple App Store, Google Play, Payssion, and Stripe. Card details are not stored on GetCode systems and are processed by the relevant payment providers. Refund and invoicing processes are subject to the respective store/provider terms.


13. Changes to This Policy

We may update this Policy from time to time. Material changes will be announced within a reasonable period before the effective date. The current version will be published on our website.


14. Contact

For questions and data subject requests: [email protected]
Address: Hasanpaşa, Nabizade Sk. No: 82 D:1, 34722 Kadıköy/İstanbul