SyncUp

Privacy Policy

Last updated: 1 October 2026

This Privacy Policy explains how Aamir Alghamdi, a sole proprietor trading as “SyncUp” (“SyncUp”, “we”, “us”, or “our”), based in Riyadh, Kingdom of Saudi Arabia, collects, uses, discloses, and protects your personal data when you use the SyncUp mobile application and the website at wearesync.app (together, the “Service”).

We process personal data in accordance with the Personal Data Protection Law of the Kingdom of Saudi Arabia (Royal Decree M/19 of 1443H) and its Implementing Regulations (the “PDPL”), as overseen by the Saudi Data & Artificial Intelligence Authority (SDAIA). Where you use the Service from outside Saudi Arabia, additional local laws may apply to you.

The short version. SyncUp is a professional networking app built on a simple promise: your network is yours. We collect the information needed to run your digital business card and your contacts, we never sell your personal data, and you can export or permanently delete everything from inside the app at any time.

1. Who is responsible for your data

The data controller for your personal data is Aamir Alghamdi (sole proprietor), trading as SyncUp. For any privacy question, request, or complaint, contact us at privacy@wearesync.app.

2. The personal data we collect

2.1 Information you give us

2.2 Information we collect automatically

2.3 Camera

SyncUp uses your device camera only to scan SyncUp QR codes. Images from the camera are processed on your device to read the code and are not stored or transmitted by us.

3. How we use your data and our legal basis

PurposeLegal basis (PDPL)
Create and secure your account; authenticate youPerformance of a contract with you
Host your card and make it viewable by people you share it withPerformance of a contract; your instructions
Store the contacts, tags, notes, and sessions you createPerformance of a contract
Keep saved contacts up to date when a person updates their card (the “freshness” feature) and prepare suggested follow-up messagesPerformance of a contract; our legitimate interest in providing the core feature
Optionally enrich a contact’s company or role using an AI model, when you request itYour consent / your request
Send you notifications you have enabledYour consent
Maintain, secure, debug, and improve the ServiceLegitimate interest; legal obligation

4. How your card is shared

A SyncUp card is designed to be shared. When you share your card link or QR code, anyone who has it can view the details you placed on that card and save them as a contact. You control what goes on each card, and you can make a card private or delete it at any time, which stops it from being viewable at its public link. Details already saved by someone who previously scanned your card remain in that person’s own contacts, as they would with any business card.

5. Service providers and international transfers

We do not sell your personal data and we do not share it for advertising. We share data only with the processors that operate the Service on our behalf:

ProviderPurpose
Google Firebase / Google CloudAuthentication, database (Firestore), file storage, serverless functions, and website hosting
Google (Sign-In) & Apple (Sign in with Apple)Optional sign-in, if you choose to use it
Google Gemini (Generative Language API)Optional AI enrichment of a contact’s company/role, only when you request it
Expo push notification serviceDelivery of notifications you have enabled

Some of these providers process data on servers located outside the Kingdom of Saudi Arabia. Where personal data is transferred abroad, we rely on the conditions permitted under the PDPL and take reasonable steps to ensure an appropriate level of protection.

6. Data retention

We keep your personal data for as long as your account is active. When you delete a card, contact, note, or session, it is removed from your account. When you delete your account (Settings → Delete account), we permanently delete your cards, contacts, sessions, notes, and related records. Backups and logs held by our infrastructure providers are cycled out in the ordinary course. We may retain limited information where required to comply with a legal obligation or to resolve disputes.

7. Your rights

Subject to the PDPL, you have the right to: be informed about how your data is used; access the personal data we hold about you; request correction of inaccurate data; request deletion of your data; withdraw consent where processing is based on consent; and object to or restrict certain processing. SyncUp lets you exercise the main rights directly in the app:

To make any other request, or if you are unable to use the in-app tools, email privacy@wearesync.app. You also have the right to lodge a complaint with the competent supervisory authority (SDAIA) in the Kingdom of Saudi Arabia.

8. Security

Your data is encrypted in transit and stored with a reputable cloud provider (Google Firebase) under access controls that limit data to your authenticated account. No method of transmission or storage is completely secure, but we take reasonable technical and organisational measures to protect your personal data.

9. Children

SyncUp is a professional networking tool intended for adults. It is not directed at children, and we do not knowingly collect personal data from anyone under the age of 18. If you believe a minor has provided us personal data, contact us and we will delete it.

10. Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the “Last updated” date above and, where appropriate, notify you in the app. Your continued use of the Service after a change takes effect means you accept the updated policy.

11. Contact us

Aamir Alghamdi (sole proprietor), trading as SyncUp
Riyadh, Kingdom of Saudi Arabia
Privacy requests: privacy@wearesync.app
General support: support@wearesync.app

HomePrivacy PolicyTerms of Service

© 2026 Aamir Alghamdi, trading as SyncUp. Riyadh, Kingdom of Saudi Arabia.