Tahavol

Version 1 · Effective date: 2026-08-04

Privacy Policy — Tahavol (تحول)

Version 1 · Effective date: 2026-08-04 (۱۴۰۵/۰۵/۱۳ in the Iranian calendar)

Unofficial translation. This English text is a courtesy translation provided for convenience only. The Persian version at https://legal.tahavolapp.com/fa/privacy.html is the sole binding and governing text; in the event of any discrepancy, the Persian text prevails in matters of interpretation and enforcement. The factual disclosures below — data collected, processors, retention, and your options — describe exactly the same practices as the Persian text.

This document explains what the Tahavol habit app collects about you, why, who it is shared with, how long it is kept, and what control you have. Every statement here is written against the actual behaviour of the software; where the service has a limitation, the limitation is stated plainly.


1) Data controller and contact


2) Honest summary — eight things to know before you sign up


3) Data we collect

3-1) Data you enter

CategoryItemsMandatoryPurpose
Account identityMobile phone number in international formatYesThe only account identifier and the only way to sign in
ProfileFirst name, last name, email, gender, birth date, occupation, education level, profile pictureNoPersonalisation and the profile-completion reward
Time zoneDevice time-zone identifierYesComputing the daily deadline and the logging window
Habit contentTitle, description, schedule, duration, daily log notesYes for every habit you createThe core function of the service
Backup contactA third party's mobile number and an optional nameOnly if you enable itSection 4
SupportTicket subject and body, attachments including images, audio, video and documentsOnly if you open a ticketAnswering and tracking your issue

3-2) Data the service generates while running

CategoryItemsPurpose
FinancialWallet balance, the coin transaction ledger, coin purchase records including the store receipt token, gateway payment records including the reference id, discount-code useAn auditable record of every coin movement and dispute resolution
Sign-in and sessionsOne-time-code request records containing the phone number, a keyed hash of the code and the attempt count; hashes of session tokens together with a device identifierSign-in security, abuse detection, sign-out from all devices
Device technicalApp version, platform, device identifier, requested languageVersion support, mandatory updates, diagnostics
NotificationsDevice notification token and the text of notifications generated for youDelivering notifications and showing your notification inbox
Integrity signalsDevice boot-session identifier, device-uptime delta, client timestampPreventing device-clock manipulation used to log fake progress
Service technicalDuplicate-request prevention keys — the scope of such a key can be your phone number, and the stored response can contain your profilePreventing a financial operation from being recorded twice

3-3) IP address

Your IP address is not stored in the Tahavol database; it is used only as a temporary in-memory partition key for request rate limiting. It may be recorded briefly in server and hosting-proxy technical logs for diagnostics and security. Technical logs are rotated and purged periodically.


4) Backup contact — third-party personal data

The "backup" feature lets you enter another person's mobile number so that they are informed if you fail to keep your commitment. This is the most sensitive data flow in the whole service.

4-1) What is stored

4-2) What the SMS reveals

Three kinds of message may be sent: an invitation the first time, a missed-day warning on the day your absence begins, and a failure notice on the eighth day. Their text discloses to the recipient:

4-3) Four limitations you must know

4-4) If you were made someone's backup and object

If you received an SMS from Tahavol and do not want to be anyone's backup, tell us at tahavolapp.com@gmail.com or +989040683023. We will remove your number from the backup list and no further message will be sent to you. You do not need to be our user for this.


5) Important warning about habit titles

The title you give a habit is free text and may be sent verbatim in the backup SMS to a third party. Each habit has a "hide the title in SMS" option which makes that habit only ever counted, never named — but that option is off by default.

So if a habit relates to a medical, pharmaceutical, religious, financial or otherwise private matter, either do not put that in the title, or turn the hide-title option on before enabling a backup.


6) Your profile picture is at a public URL

The profile picture you upload is stored in cloud object storage at a stable, unsigned URL that anyone can read. Anyone who has that URL can view the image, even if they are not an app user. Using "remove picture" in the app genuinely deletes the stored object, but a cached copy may persist in content-delivery networks for a while.

Support-ticket attachments, unlike avatars, are private and are only retrievable through a short-lived signed URL.


7) What we do not collect


8) Sharing with processors

Your data is not sold and is not made available to anyone for advertising. It is shared only with these processors, only to operate the service:

ProcessorWhat reaches themWhy
Kavenegar — SMS providerThe recipient number and the one-time code; and for a backup SMS: the backup's number, your name or number, and your habit titlesDelivering the sign-in code and the backup SMS
ArvanCloud — cloud object storageThe files you upload and their original filenamesStoring profile pictures and attachments
Cafe Bazaar and MyketThe product identifier and the purchase receipt tokenVerifying in-app purchases
ZarinPal — payment gatewayMerchant id, amount, currency, a static description, the return URL. Your phone number, email and national ID are not sentPayment in the direct-install build
Google and Apple — push servicesThe device notification token and the notification text. This traffic passes through an egress proxyDelivering notifications. Push notifications are not enabled in the current Iranian-market build
Technical monitoring serviceLogs and request traces. When monitoring is enabled, some log lines can contain a phone numberDiagnostics and service-health monitoring

In addition, information is provided where a competent judicial authority lawfully requires it.


9) Where data is held

The primary database and file storage for the Iranian build are hosted on cloud infrastructure inside Iran. The exceptions — data that leaves the country — are the Google and Apple push services together with their egress proxy, and, when enabled, the technical monitoring service.


10) Retention

Scheduled automatic deletion applies today to these three categories only:

DataRetention
One-time-code request recordsOne hour after expiry
Duplicate-request prevention keys24 hours
Sent outbound message-queue rowsSeven days

11) Security

No system is perfectly secure. If you see any sign of unauthorised access to your account, sign out of all devices immediately and tell us at tahavolapp.com@gmail.com.


12) Your rights and how to exercise them

RightHow it works today
See your account dataThe profile screen in the app
Correct itProfile editing in the app
Clear optional fieldsEdit your profile and leave optional fields empty. Saving a profile is a full replacement, so a field you send empty is cleared
Remove your profile picture"Remove picture" in the app — the stored object is genuinely deleted
Stop notificationsRemove the device from the notification list in the app, or turn off app notifications in your device settings
Set a habit aside"Delete habit" in the app is actually an archive: it leaves the active list, but its history, performance records and backup details stay in the account. Full erasure happens only through account deletion
Get a copy of your dataNo automated tool exists. On a support request, a list of your account data is compiled manually and delivered to the registered phone number
Delete your accountSection 13

Note: a habit that carries an active stake cannot be archived; you must first exit that contract.


13) Account deletion

Account deletion has no automatic in-app path; it is performed manually on your request. The steps, prerequisites, timing and the exact table of what is deleted versus retained are on the account deletion page.


14) Children and teenagers

The minimum age for using Tahavol is 13, and financial actions in the app — buying coins and placing a stake — require being 18 or older. Because entering a birth date is optional, we do not verify your age and rely on your own declaration; if you do enter a birth date showing an age under 13, it is rejected.

If we learn that an account belongs to a child under 13, we disable the account and delete its data. Parents and guardians may request a review at tahavolapp.com@gmail.com.


15) Security incidents

If an incident affects your personal data, then after containing it and assessing its scope we will inform affected users through the app and the registered phone number, describing the nature of the incident, the data involved and the recommended action.


16) Changes to this policy


17) Contact and complaints

Please ask us first. If our answer does not satisfy you, you may approach the competent supervisory bodies, including the consumer-protection organisation and the authority handling complaints about internet businesses.