← Bring Me Back

Privacy Policy

For the Bring Me Back mobile app (iPhone and Android). Last updated 23 September 2026.

The short version. Everything the app is actually for — the apps you chose to pause, the sites you chose to block, and anything you write in a reflection — is stored on your phone and stays there. What does leave is ordinary app analytics, crash reports, and ad requests if you choose to watch a reward ad. Nothing requires an account.

Who we are

Bring Me Back is published by eudaiTec GmbH, which is the data controller for the processing described here. You can reach us about anything on this page, including a request to delete your data, at mail@eudaitec.com.

There are no user accounts. You never give us a name, an email address or a password to use the app, and we have no way to look you up as a person.

What stays on your phone

The app keeps a local database on your device. None of the following is uploaded to us:

Two things are read in memory and never stored or sent: the name of the app currently in the foreground (this is how a pause knows to appear), and, if you grant Usage access on Android, seven days of app-usage totals used only to sort the app picker.

Uninstalling the app deletes all of this.

What leaves your phone

Analytics

We use Google Firebase Analytics to understand which features get used. Events include screen names, time spent on a screen, session counts, Premium and subscription steps, ad events, counts of blocking actions, how you installed the app, your platform, and a rough “days since install” bucket. Firebase also automatically collects an app-instance identifier, your device model, OS version and a coarse location derived from your IP address.

One thing worth stating plainly: some analytics events include the package or bundle identifier and display name of an app you chose to pause — for example when a pause is triggered, or when you add or remove an app. If the set of apps you are trying to use less is sensitive to you, this is the one place it is disclosed to a third party. It is not linked to a name, an email address or an account, because we hold none.

Crash reports

Google Firebase Crashlytics receives stack traces, your device model, OS and app version, a Crashlytics-generated install identifier, and a short breadcrumb log, so that we can fix crashes.

Ads

There are no banners, no interstitials and no ads on launch. The app contains exactly one ad placement: an optional rewarded video you can choose to watch in exchange for five days of Premium. If you start one, Google AdMob receives the ad request, your IP address, a device or advertising identifier, coarse location, and whether the ad was watched.

On iPhone the app never asks to track you across apps, so no IDFA is available to the ad network. On Android the app declares the Advertising ID permission so this placement can work. If you never open a reward ad, no ad request is made.

Website filtering on Android

On Android the website filter runs as a local VPN on the device. It is not a remote VPN: your traffic is not proxied to us or to anyone else, and matching happens on your phone against a blocklist bundled into the app. Names on your blocklist are answered locally and go nowhere.

Names that are not blocked are resolved upstream through Cloudflare’s public DNS resolver (1.1.1.1) rather than your network’s usual resolver. We never see or store these lookups, but they do leave your device and reach Cloudflare while the filter is switched on. On iPhone, filtering uses Apple’s own Screen Time framework and discloses nothing to us.

App icons

On iPhone, the app asks Apple’s public iTunes lookup service for the icon of each app you add to your pause list. That request necessarily discloses your IP address and the identity of those apps to Apple. No identifier of yours is attached.

Purchases

Subscriptions and the lifetime unlock are processed entirely by Google Play or the Apple App Store. We receive the product purchased and its entitlement status. We never receive your card details, your billing address or your store account.

Gift codes

If you redeem a promotional gift code, the code and your name are sent to our gift-card service to validate it. An email address and phone number are optional fields on that form; if you fill them in, they are sent too. This is the only place in the app where you are asked for personal details, and it only happens if you choose to redeem a code.

Optional web dashboard sync

Bring Me Back can share a dashboard with our other app, Keep Me Out. This is off by default and does nothing unless it is enabled and you connect your device.

If it is on and you connect, these are uploaded to our servers:

Reflection text and your blocklist are never part of this. Because the identity is accountless, it is tied to the device: if you reinstall or factory reset, the previous history can no longer be reached, including by us.

Permissions, and why each one exists

PermissionWhat it is for
Accessibility (Android)Notices when an app you chose has come to the foreground, so the pause can appear. It receives window-change events and reads only the name of the foreground app. It is not used for anything else, and you switch it on yourself.
VPN (Android)Runs the website filter locally. No traffic is proxied to us. See the section above for what reaches Cloudflare.
Family Controls (iPhone)Applies website filtering through Apple’s Screen Time. Enforcement stays inside Apple’s framework; the app never learns which sites you visited.
Usage access (Android, optional)Sorts the app picker by what you use most. Without it the picker is alphabetical and nothing else changes.
NotificationsScheduled pause reminders, and the ongoing notice Android requires while filtering is running.
CameraOnly to scan a QR link code, and only when you tap Scan. Nothing is photographed or stored, and you can type the code instead.
Installed appsBuilds the picker of apps you can pause. The list is never uploaded.
Alarms, boot, vibrationFire scheduled pauses on time, restore them after a restart, and pace the breathing exercise.

The app requests no storage permission at all, and on iPhone it shows no App Tracking Transparency prompt because it does not track you across apps.

Your rights

If you are in the EEA or the UK, you have the right to access, correct, delete, restrict or object to the processing of your personal data, and to data portability. If you are in California, you have the right to know, delete, correct, and to opt out of sale or sharing — we do not sell or share personal information.

Because the app has no accounts, the practical route for most requests is to uninstall the app, which removes everything held on the device. For anything held by us — a connected dashboard device, or a gift-code redemption — email mail@eudaitec.com and we will respond within one month. To ask Google to delete analytics and crash data, include the app-instance identifier shown in the app’s settings.

Our legal basis is your consent for optional processing (the reward ad, gift codes and dashboard sync), and our legitimate interest in a working, debuggable product for analytics and crash reporting. You can withdraw consent at any time by turning the relevant feature off. You also have the right to lodge a complaint with your local data protection authority.

Children

Bring Me Back is not directed at children and we do not knowingly collect personal data from anyone under 16. If you believe a child has provided personal data through the gift-code form, contact us and we will delete it.

Third parties who receive data

Some of these providers are based outside the EEA. Where data is transferred internationally, it relies on the providers’ standard contractual clauses and equivalent safeguards.

Changes

If this policy changes materially we will update the date at the top and, where the change affects what leaves your device, note it in the app. Continuing to use the app after a change means you accept the updated policy.

Contact

eudaiTec GmbH — mail@eudaitec.com. For help using the app, see Support.