← Back to Uyqu

Uyqu

Privacy Policy

This policy explains what Uyqu processes, why it is needed, where it is stored, and the controls available to you. It covers the Uyqu app for iPhone and iPad, its AI generation service, and Uyqu support.

Effective and last updated: July 25, 2026

The short version

  • Sleep-journal entries, night-recording audio, and sleep analysis stay on your device.
  • AI soundscape requests must be processed online; generated audio is held temporarily for secure delivery.
  • Only completed AI creations can be exported; you choose the destination through Apple's share sheet.
  • Soundscape iCloud sync is optional and uses your private Apple iCloud database.
  • Your private purchase account restores without a login after reinstall or on another device using the same App Store account.
  • Uyqu has no advertising and does not sell personal data or track you across other companies' apps or websites.

1. Who is responsible

Uyqu is operated by Mustafa Batın Efe in Türkiye ("Uyqu," "we," "us," or "our"). For applicable privacy law, Mustafa Batın Efe is the data controller for processing described in this policy.

Privacy questions and requests can be sent to help@mbefe.com.

2. Information handled by Uyqu

On-device profile and sleep information

Your onboarding choices, sleep goals, reminder preferences, morning check-ins, sleep duration and quality, wind-down activity, and related insights are stored locally. If you start night listening, microphone audio is analyzed on-device. Uyqu keeps short event clips, loudness levels, timestamps, and on-device sound labels for your morning review. This sleep data is not sent to Uyqu's servers or included in iCloud soundscape sync.

AI generation requests and output

When you request a soundscape, Uyqu sends your selected sounds, balance, mood, intensity, technical generation settings, and any free-text prompt to the generation service. The AI provider processes the request and produces audio. A temporary server copy of the audio and delivery metadata is used to download the result securely to your device. After delivery, you can choose to export that completed AI creation from Library.

Account, security, and device signals

After you confirm that you are 18 or older and accept the legal documents, Uyqu creates a disposable Firebase anonymous-authentication credential for that app installation. StoreKit supplies an Apple-signed App Transaction ID that remains stable for the same App Store account and app across redownloads and devices. Uyqu verifies it, derives separate opaque account and Support IDs, and does not retain or display the raw Apple identifier. Authentication tokens and App Attest, DeviceCheck, and Firebase App Check signals are processed to authenticate requests, protect delivery, enforce usage limits, and prevent abuse. Uyqu requests no Apple name or email.

Purchases and subscriptions

Apple and RevenueCat process product identifiers, purchase and subscription status, transaction events, restore events, and AI credit balances. Uyqu's backend keeps the accounting records needed to grant Pro access, apply rolling allowances and purchased credits, handle reversals, and prevent duplicate grants. Uyqu does not receive your full payment-card details.

Optional private iCloud soundscapes

If you opt in, Apple CloudKit stores generated audio in your private iCloud database with its title, track identifier, dates, duration, loop points, file format, file size, and integrity hash. Prompts, Firebase identifiers, purchase data, sleep journals, and night recordings are never included.

Exports you choose

When you export a completed AI creation, iOS presents Apple's share sheet and sends the audio file only to the person, app, or storage location you select. Uyqu does not receive your destination choice. Apple and the selected recipient or service process that transfer under their own applicable terms and privacy practices.

Support communications

If you contact support, we process your email address, message, Support ID, attachments, and any app, device, transaction, or diagnostic details you choose to provide so we can locate the opaque account, investigate, and respond. A Support ID is not accepted as authentication.

Basic interaction and diagnostics

The app and its service providers may process limited product-interaction, device, network, error, and diagnostic information needed to operate purchases, authenticate requests, diagnose failures, and improve reliability. Uyqu does not use an advertising identifier or request cross-app tracking permission.

Uyqu does not currently request your contacts, photos, precise location, or HealthKit data. Microphone and notification access are requested only when you choose features that need them.

3. How information is collected

  • From you: when you choose preferences, write a generation prompt, start a sleep recording, enable iCloud, make a purchase, or contact support.
  • From the app and device: when Uyqu creates an installation session, verifies Apple's signed App Transaction, secures a request, delivers audio, records a technical failure, or stores your local choices.
  • From Apple and RevenueCat: when they confirm, renew, restore, refund, or reverse an in-app purchase.

4. Why information is used and the legal bases

Depending on where you live, Uyqu relies on one or more of the following grounds:

  • Contract: to provide requested soundscapes, downloads, purchases, subscription features, restoration, and support.
  • Consent: for optional sleep tracking, microphone access, notifications, private iCloud storage, and any processing where consent is legally required. You can withdraw optional permissions without affecting earlier lawful processing.
  • Legitimate interests: to secure the service, prevent fraud, enforce quotas, troubleshoot failures, protect users, and improve reliability, where those interests are not overridden by your rights.
  • Legal obligations and claims: to keep required transaction records, respond to lawful requests, and establish or defend legal rights.

5. Service providers and disclosures

Uyqu shares only the information needed for the relevant function with:

  • Apple: App Store distribution and payments, signed App Transaction verification, App Attest and DeviceCheck integrity signals, device permissions, and optional private CloudKit storage.
  • Google Firebase: anonymous authentication, App Check, and short-lived operational generation records.
  • Google Cloud Vertex AI / Lyria: processing generation instructions and producing the requested soundscape.
  • RevenueCat: subscription entitlement, purchase restoration, transaction events, and consumable-credit administration.
  • Cloudflare Workers and R2: routing authenticated API requests and temporary, private storage used to deliver generated audio. The Worker relays the opaque signed App Transaction proof to Firebase for verification without decoding it.

Uyqu does not use your prompts or generated audio to train its own models. Google states that Vertex AI customer data is not used to train models without permission; limited retention or abuse-monitoring processing may still apply to the production service configuration.

We require processors acting for Uyqu to handle information only for the contracted service and to protect it consistently with this policy and applicable law. A service you independently choose from Apple's share sheet is your selected recipient rather than a processor acting for Uyqu.

We may also disclose information when reasonably necessary to comply with law, protect users or the service, investigate fraud, or complete a business reorganization. We do not sell or rent personal data, share it for behavioral advertising, or permit third parties to use it for their own direct marketing.

6. Storage and retention

  • Night-recording clips: stored on-device and automatically deleted after 7 days.
  • Sleep journal and derived sleep measurements: stored on-device for up to 365 days.
  • Local soundscapes and profile choices: kept on the device until you delete them, reset the app, or remove the app and its data.
  • Temporary generated audio: deleted after verified local save and secure delivery acknowledgement when possible; otherwise scheduled to expire within 72 hours, with infrastructure lifecycle deletion as a backstop.
  • Generation jobs: prompt text and generation parameters are cleared when a job reaches a terminal state. Remaining operational job metadata has a 7-day time-to-live.
  • Account, accounting, and security records: opaque account and Support IDs, timestamps, product and quota outcomes, model/version, and transaction events may be kept as long as needed to restore the account, maintain balances, prevent fraud, resolve disputes, and meet legal obligations. The raw Apple App Transaction ID is not stored, and these durable records do not contain prompt text or audio.
  • Private iCloud soundscapes: remain in your private iCloud database until you delete them in Uyqu or manage the applicable iCloud data.
  • Support messages: retained for as long as reasonably needed to resolve the request, maintain support history, and meet legal obligations.

Information may be retained longer when required by law, a valid legal hold, fraud prevention, or the establishment or defense of claims.

7. Your controls

  • Decline or revoke microphone and notification permissions in iOS Settings.
  • Choose this device only instead of private iCloud, or delete all Uyqu soundscapes from your private iCloud database in Uyqu Settings.
  • Export a completed AI creation individually from its Library menu. Blends, tones, curated audio, bundled content, previews, and source stems are not exportable.
  • Delete individual or all generated soundscapes and use Start over to erase the local profile and personalization data described by the confirmation screen.
  • Manage or cancel a Pro subscription through Apple's subscription settings and restore eligible purchases from Uyqu Settings.
  • Use Settings → Account → Delete account to permanently erase Uyqu data from this device, private iCloud soundscapes, the Uyqu backend identity and associated server content, and the RevenueCat customer record. Apple purchase records and records we must retain for law, security, refunds, fraud prevention, or disputes may not be erasable by Uyqu.

Removing the app or using Start over does not delete the private account or server records; ordinary reinstall restores that account when the same App Store account is used. The separate Delete account control is permanent and does not cancel an App Store subscription, which must be managed separately through Apple. If you cannot access the in-app control, email help@mbefe.com for deletion help.

8. Your privacy rights

Subject to applicable law—including Article 11 of Türkiye's Law No. 6698 (KVKK) and, where applicable, the GDPR—you may ask whether we process your data and request access, information about purposes and recipients, correction, deletion or destruction, restriction, portability, or objection. You may also object to materially adverse results produced solely by automated processing and lodge a complaint with the competent data-protection authority.

Send requests to help@mbefe.com. Include the Support ID shown in Uyqu Settings when available and describe the right you want to exercise. The Support ID helps locate records but is not proof of ownership, so we may need to verify that you control the account or transaction before responding. Some rights are limited by law and do not require deletion of records needed for transactions, security, legal obligations, or claims.

9. International processing

Uyqu is operated from Türkiye. Apple, Google, RevenueCat, and Cloudflare may process data in the United States and other countries where they or their processors operate. Where required, transfers are handled using an applicable legal mechanism and safeguards under KVKK, GDPR, or other relevant law. Privacy protections and government-access rules can differ between countries.

10. Security

Uyqu uses measures designed to protect information, including TLS network transport, authenticated and App Check-protected generation requests, private delivery endpoints, integrity verification, Apple's private CloudKit database, iOS file protection, and access controls. No system is perfectly secure, so we cannot guarantee absolute security.

11. Age restriction

Uyqu is for adults 18 and older and is not directed to anyone under 18. We do not knowingly collect server-side personal data from a person under 18. If you believe someone under 18 has used Uyqu or provided personal data, contact us so we can investigate, restrict access, and delete information where required.

12. Automated processing

Automated systems verify authentication, device integrity, purchase status, available generation allowance, delivery completion, and technical or safety failures. These checks may allow or deny a generation or adjust a credit balance, but Uyqu does not use personal data for decisions producing legal or similarly significant effects. Contact support if you believe an automated result is wrong.

13. Changes to this policy

We may update this policy as Uyqu, its providers, or legal requirements change. We will post the new effective date here and provide additional notice or seek renewed consent when required for a material change.

14. Contact

Mustafa Batın Efe
Türkiye
help@mbefe.com

For common controls and troubleshooting, visit Uyqu Support.