Last updated: 1 October 2026
This Privacy Policy explains how Aamir Alghamdi, a sole proprietor trading as “SyncUp” (“SyncUp”, “we”, “us”, or “our”), based in Riyadh, Kingdom of Saudi Arabia, collects, uses, discloses, and protects your personal data when you use the SyncUp mobile application and the website at wearesync.app (together, the “Service”).
We process personal data in accordance with the Personal Data Protection Law of the Kingdom of Saudi Arabia (Royal Decree M/19 of 1443H) and its Implementing Regulations (the “PDPL”), as overseen by the Saudi Data & Artificial Intelligence Authority (SDAIA). Where you use the Service from outside Saudi Arabia, additional local laws may apply to you.
The data controller for your personal data is Aamir Alghamdi (sole proprietor), trading as SyncUp. For any privacy question, request, or complaint, contact us at privacy@wearesync.app.
SyncUp uses your device camera only to scan SyncUp QR codes. Images from the camera are processed on your device to read the code and are not stored or transmitted by us.
| Purpose | Legal basis (PDPL) |
|---|---|
| Create and secure your account; authenticate you | Performance of a contract with you |
| Host your card and make it viewable by people you share it with | Performance of a contract; your instructions |
| Store the contacts, tags, notes, and sessions you create | Performance of a contract |
| Keep saved contacts up to date when a person updates their card (the “freshness” feature) and prepare suggested follow-up messages | Performance of a contract; our legitimate interest in providing the core feature |
| Optionally enrich a contact’s company or role using an AI model, when you request it | Your consent / your request |
| Send you notifications you have enabled | Your consent |
| Maintain, secure, debug, and improve the Service | Legitimate interest; legal obligation |
A SyncUp card is designed to be shared. When you share your card link or QR code, anyone who has it can view the details you placed on that card and save them as a contact. You control what goes on each card, and you can make a card private or delete it at any time, which stops it from being viewable at its public link. Details already saved by someone who previously scanned your card remain in that person’s own contacts, as they would with any business card.
We do not sell your personal data and we do not share it for advertising. We share data only with the processors that operate the Service on our behalf:
| Provider | Purpose |
|---|---|
| Google Firebase / Google Cloud | Authentication, database (Firestore), file storage, serverless functions, and website hosting |
| Google (Sign-In) & Apple (Sign in with Apple) | Optional sign-in, if you choose to use it |
| Google Gemini (Generative Language API) | Optional AI enrichment of a contact’s company/role, only when you request it |
| Expo push notification service | Delivery of notifications you have enabled |
Some of these providers process data on servers located outside the Kingdom of Saudi Arabia. Where personal data is transferred abroad, we rely on the conditions permitted under the PDPL and take reasonable steps to ensure an appropriate level of protection.
We keep your personal data for as long as your account is active. When you delete a card, contact, note, or session, it is removed from your account. When you delete your account (Settings → Delete account), we permanently delete your cards, contacts, sessions, notes, and related records. Backups and logs held by our infrastructure providers are cycled out in the ordinary course. We may retain limited information where required to comply with a legal obligation or to resolve disputes.
Subject to the PDPL, you have the right to: be informed about how your data is used; access the personal data we hold about you; request correction of inaccurate data; request deletion of your data; withdraw consent where processing is based on consent; and object to or restrict certain processing. SyncUp lets you exercise the main rights directly in the app:
To make any other request, or if you are unable to use the in-app tools, email privacy@wearesync.app. You also have the right to lodge a complaint with the competent supervisory authority (SDAIA) in the Kingdom of Saudi Arabia.
Your data is encrypted in transit and stored with a reputable cloud provider (Google Firebase) under access controls that limit data to your authenticated account. No method of transmission or storage is completely secure, but we take reasonable technical and organisational measures to protect your personal data.
SyncUp is a professional networking tool intended for adults. It is not directed at children, and we do not knowingly collect personal data from anyone under the age of 18. If you believe a minor has provided us personal data, contact us and we will delete it.
We may update this Privacy Policy from time to time. When we make material changes, we will update the “Last updated” date above and, where appropriate, notify you in the app. Your continued use of the Service after a change takes effect means you accept the updated policy.
Aamir Alghamdi (sole proprietor), trading as SyncUp
Riyadh, Kingdom of Saudi Arabia
Privacy requests: privacy@wearesync.app
General support: support@wearesync.app