Overview
In Simple Terms
This policy covers both the Cake app and this website. Your birthday data stays on your iPhone. BYSN Apps does not use first-party analytics, advertising, visitor profiles, or cross-site tracking, and no account is required. If you contact us through the support form, that message is delivered by infrastructure providers and handled like regular email. The Privacy Policy sections explain the details.
Cake: Birthday Reminders ("the App") is developed by BYSN Apps, operated by Alec Fradkin in Massachusetts, United States. This policy applies to the App and to this website at cake.bysnapps.com ("the Website"). It should be read in conjunction with our Terms of Service.
The App is designed so that all birthday data, contact information, and preferences stay on your device. It does not transmit that information to BYSN Apps. The only exceptions outside the App's local storage are: (1) a single share counter integer stored in your iCloud, but not transmitted to BYSN Apps; (2) purchase transactions handled entirely by Apple; and (3) birthday data you choose to send directly to another device via Nearby Share.
The Website does not use analytics, advertising pixels, session replay, fingerprinting, tracking cookies, browser storage, or remotely hosted fonts and scripts. Browsing an ordinary page does not call a BYSN Apps application server. GitHub processes basic request information, including IP addresses, in operational security logs under its own privacy statement. BYSN Apps does not receive those logs or use page requests to identify, profile, or follow visitors.
The Website contacts our Cloudflare Worker only after you deliberately submit the support form or ask for a giveaway code. Those requests contain the information needed to perform the action. They are not used to track browsing activity.
Sections 1 through 7 describe how data is handled within the App. Sections 8 through 10 cover general legal provisions, the Website, and the support form.
Core Commitments
- No data collection. The app is not designed to transmit your personal data to our servers.
- No tracking. The app does not include analytics, telemetry, advertising, or crash reporting.
- No accounts. No sign-ups, login, or device fingerprinting.
- Your control. All permissions are optional and revocable in iOS Settings.
1. What the App Stores and Where
1.1 On Your Device (Local Only)
- SwiftData (SQLite). Birthday entries, contact data, blocklist, duplicate decisions — in the app's sandboxed directory, protected by iOS Data Protection encryption.
- UserDefaults. App preferences and display settings.
- iOS Keychain. Purchase unlock status and Nearby Share identity keys — device-only, not synced to iCloud.
- App Group container. Birthday data shared with the home screen widget via WidgetKit (local only).
1.2 iCloud (Share Counter)
The App stores one data point in your iCloud: a counter tracking how many times you've shared the App (used for feature unlocks). This is a single integer stored via Apple's NSUbiquitousKeyValueStore in your personal iCloud account. This data is not transmitted to BYSN Apps — it exists solely in your iCloud to persist across your devices. No birthday data, contact information, or personal details are synced.
2. iOS Permissions
The App does not request access to location, camera, microphone, health data, calendar, or email. Data accessed through these permissions is not transmitted to BYSN Apps.
3. In-App Purchases
The App offers optional cosmetic unlocks (themes, icons, card designer) via Apple's StoreKit 2. Apple handles all payment processing. We do not see, store, or process any payment information, Apple ID, or transaction details. The App stores only which features you've unlocked in the device Keychain.
5. Third-Party Libraries
The App uses open-source UI and animation libraries (Pow, Lottie, ConfettiSwiftUI, SwiftUI-Shimmer, DeckKit) for visual effects only. None of these libraries perform network operations or collect data.
BYSN Apps operates a separate corporate website at bysnapps.com, which may have its own data practices not covered by this policy.
6. Deleting Your Data
The App provides three levels of deletion:
- Individual entries. Open the actions for any birthday and choose Delete. Swiping is optional.
- Clear All Data (Settings). Deletes the birthday database, blocklist, and preferences. Does not clear Keychain items (purchases, crypto keys) or the iCloud share counter.
- Reset Entire App (Settings). Deletes everything — database, preferences, Keychain entries, iCloud share counter, all caches and filesystem data.
Note: Birthday dates, photos, or tag labels previously written back to iOS Contacts (see Section 2) persist independently and must be removed manually in the Contacts app. If you uninstall without running "Reset Entire App" first, Keychain items and the iCloud share counter may persist.
6.1 Website and Support Data
There is no Cake browsing profile, tracking cookie, or browser-storage record to delete because the Website does not create one. Giveaway redemption records contain code status and inventory data, not a visitor identity.
A support submission becomes a regular email in our inbox. We normally delete support messages within 90 days after the issue is resolved or our last substantive reply. We may retain a message longer while an issue, security matter, legal obligation, or dispute remains active, and we delete accidental sensitive or child-submitted data promptly after we identify it.
You may request access to, correction of, or deletion of a support message by emailing support@bysnapps.com with enough detail to locate it, such as its approximate date and subject. We may verify control of the reply address or ask for proportionate details so we do not disclose or delete another person's message. We respond within 30 days when the request can reasonably be verified. Deletion removes the message from the active mailbox; provider backups may remain until they expire under the provider's normal schedule.
7. Children's Privacy
The App is not directed to children under 13. We do not knowingly collect personal information from children. The App does not transmit birthday or contact data to BYSN Apps. If we learn that a child submitted personal information through the support form, we will delete it promptly. Parents can control access via iOS Screen Time and may contact us about a submission.
8. Disclaimers & Liability
8.1 Warranty Disclaimer
TO THE MAXIMUM EXTENT PERMITTED BY LAW, THE APP AND THE WEBSITE ARE PROVIDED "AS IS" WITHOUT WARRANTIES OF ANY KIND. WE DO NOT WARRANT UNINTERRUPTED OR ERROR-FREE OPERATION, OR THAT DATA LOSS WILL NOT OCCUR.
8.2 Limitation of Liability
TO THE MAXIMUM EXTENT PERMITTED BY LAW, BYSN APPS AND ALEC FRADKIN SHALL NOT BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES ARISING FROM YOUR USE OF THE APP OR THE WEBSITE, INCLUDING DATA LOSS DUE TO DEVICE DAMAGE, iOS UPDATES, OR DELETION VIA APP SETTINGS.
8.3 Apple Platform Services
The App integrates with Apple services (iCloud, StoreKit, Contacts, Notifications). These are governed by Apple's Privacy Policy, not this one. We are not responsible for Apple's data handling or service availability.
9. Policy Updates
This policy may be modified from time to time. The current version is always available on this page with the "Last Updated" date at the start of the policy. Continued use of the App or the Website constitutes acceptance of the current policy.
If we introduce optional features that handle data differently — such as cloud sync, social sharing, or usage analytics — those features will require your explicit consent before activation, and this policy will be updated before they become available.
10. Contact
Questions about this policy or your data:
Email: support@bysnapps.com
Support: support@bysnapps.com
Website: bysnapps.com
App data can be removed with the in-app controls in Section 6. If you sent a support message, you can ask us to delete that message using the process in Section 6.1.
10.1 Support Form
The support form at cake.bysnapps.com/support/ is an optional way to report bugs or share feedback. You can use it without creating an account or providing any personal information beyond what you choose to type into the form.
What we collect. The request body contains only the fields you submit: report type, summary, description, and any optional details you add, including device, iOS version, reproduction steps, and, if you opt in, a reply-to email. The Worker adds a receipt timestamp. As with any network request, GitHub, Cloudflare, and the email provider receive standard connection and request metadata needed to deliver and secure the service. The support page uses no cookies, advertising identifiers, analytics, or fingerprinting, and sends nothing to the support service until you submit the form.
How it reaches us. Your submission is sent to us as regular email at support@bysnapps.com and lands in our normal inbox. The Worker validates it in memory and does not save the report to a database or visitor profile. We read it, may reply if you asked for a reply, and apply the retention and deletion rules in Section 6.1. We do not aggregate support submissions into a marketing list, advertising system, or browsing profile.
Services in the delivery path. Three categories of third-party infrastructure providers are involved in getting your submission from your browser to our inbox:
- Static hosting provider serves this website and retains standard security logs, including visitor IP addresses, under its own policy.
- Serverless compute provider runs code that receives a submitted report and converts it into an email. It processes standard connection and request metadata for delivery and security. The Worker code writes no custom request logs, and its deployment configuration disables application-level observability.
- DNS and email provider routes the email and stores it in our mailbox until deletion under Section 6.1.
As of July 2026, these roles are filled by GitHub (hosting; GitHub Privacy Statement), Cloudflare (compute; Cloudflare Privacy Policy), and Namecheap (DNS/email; Namecheap Privacy Policy). Each is governed by its own privacy policy. If we change providers, the three roles and handling standards named in "Services in the delivery path" remain the same.
BYSN Apps does not plug any additional third-party service (support ticket system, CRM, analytics platform, advertising network, or marketing tool) into the support pipeline.
How we use it. We read support submissions to diagnose and fix bugs, prioritize improvements, and respond to users who asked for a reply. We do not sell your submission. If an issue must be escalated to Apple or another provider, we will ask permission before sharing identifying report content or remove identifying details where practical.
Please don't send sensitive data. The support form is not a secure channel for confidential information. Do not include passwords, payment or financial details, government identifiers, medical information, or anything you wouldn't want visible in a normal email. If you need to share something sensitive, email support@bysnapps.com first so we can arrange a secure method.
This policy is governed by the laws of the Commonwealth of Massachusetts, United States.
Effective: February 14, 2025 · Last updated: July 17, 2026
By using the App or the Website you acknowledge and accept this Privacy Policy and our Terms of Service.
We believe your birthday data is your business — not ours.
Privacy Policy plain-language guide
How to use this guide
This guide explains each section in shorter sentences. It does not replace the detailed Privacy Policy. If this guide and the detailed policy say different things, the detailed policy controls.
Overview
The policy covers the Cake app and this website. Birthday and contact data in the app stays on your device, apart from the iCloud share counter, Apple purchase handling, and Nearby Share explained in the Overview and Sections 1, 3, and 4. Apple and website service providers handle some data when you choose to use their services. Cake does not use first-party tracking or advertising tools.
1. What the App stores and where
The app stores birthday details, contact details, settings, purchase access, and sharing keys on your device. A home screen widget can read birthday data from a shared area on that device. One number that counts app shares is stored in your personal iCloud account. BYSN Apps does not receive that number or your birthday data.
2. iOS permissions
Contacts, notifications, photos, local network access, and Siri access are optional. Each permission supports a feature named in the "Optional iOS permissions used by Cake" table in Section 2. You can deny or remove a permission in iOS Settings. Data read through these permissions is not sent to BYSN Apps.
3. In-app purchases
Apple handles payments through the App Store. BYSN Apps does not receive your payment details, Apple ID, or transaction details. The app keeps only the record that tells it which features are unlocked on your device.
4. Nearby Share
Nearby Share is optional. You choose the birthdays to send and the other person must accept them. The data is encrypted and moves directly between nearby devices over the local network. It does not pass through BYSN Apps servers.
5. Third-party libraries
Cake uses some free code libraries to draw visual effects. These libraries do not collect data or use the internet. The separate BYSN Apps company website has its own privacy policy.
6. Deleting your data
You can delete one birthday, clear most app data, or reset the entire app. Clear All Data leaves purchase records, sharing keys, and the iCloud share count in place. Reset Entire App removes those items too. Information already written to Apple Contacts must be removed in the Contacts app.
Cake does not build a tracking profile when you visit this site. Giveaway records count codes. They do not identify visitors. Support reports become email. The full policy says when emails are deleted, why some may be kept longer, how to ask for deletion, and when backup copies end.
7. Children's privacy
The app is not directed to children under 13. The app does not send birthday or contact data to BYSN Apps. If BYSN Apps learns that a child sent personal information through support, it will delete that information promptly. A parent can contact BYSN Apps about a submission.
8. Disclaimers and liability
The app and website are offered as they are. BYSN Apps does not promise that they will always work or that data loss will never happen. The detailed policy limits the types of damages for which BYSN Apps and Alec Fradkin may be responsible. Apple's own privacy policy controls Apple services.
9. Policy updates
The current policy and its update date stay on this page. Continued use means you accept the current policy. If a future optional feature handles data in a new way, the policy says it will be updated and the feature will ask for your clear consent before it turns on.
10. Contact and support form
You can email BYSN Apps with privacy questions or requests about a support message. The support form sends only the fields you choose, plus a receipt time. GitHub, Cloudflare, and the email provider handle ordinary connection and delivery details. BYSN Apps does not use that information for advertising or a browsing profile.
A support report becomes email in the BYSN Apps inbox. Email is not safe for very private facts. Do not send passwords, payment details, government ID numbers, or medical details. The full policy says which companies deliver the form, how the message is used, how long it stays, how to ask for deletion, and which state law applies.
Privacy glossary
These definitions explain technical and legal words used in this policy.
Tracking and web services
- Analytics
Tools that measure how people use an app or website.
- Advertising pixel
A small web resource that can report a visit or action to an advertising service.
- Advertising identifier
A device or account value used to recognize activity for advertising.
- Browser storage
Data that a website saves in a browser, such as cookies or local storage.
- Customer relationship management (CRM) system
Software used to organize messages and relationships with customers.
- Domain Name System (DNS)
The system that directs a domain name, such as bysnapps.com, to the service that handles it.
- Cross-site tracking
Following a person's activity across different websites or online services.
- Fingerprinting
Combining device or browser details to try to recognize a visitor.
- First-party
Provided directly by BYSN Apps rather than by another company.
- Internet Protocol (IP) address
A network address used to send information to and from a device.
- Metadata
Details about a request or message, such as its time, network address, and delivery headers.
- Observability
Service tools that record technical events, logs, or measurements so an operator can inspect a system.
- Operational security log
A provider record used to operate and protect a service, such as a record of a request and its network address.
- Request body
The information a browser sends as the main content of a form request.
- Serverless compute and Worker
A provider-run service that executes a small piece of code when a request arrives. The support form uses a Cloudflare Worker.
- Session replay
A tool that records or rebuilds how a visitor used a page.
- Telemetry
Measurements that software sends to its developer about use, performance, or errors.
- Tracking cookie
A small browser record used to recognize or follow a visitor's activity.
- Third-party provider
Another company that supplies a service, such as website hosting, network processing, email, or payments.
- User interface (UI)
The controls and screens a person sees and uses.
App storage and sharing
- App sandbox
A protected area where an app keeps its own files on a device.
- App Group container
A protected storage area that related parts of an app, such as its widget, can share on one device.
- AppIntents
Apple technology that lets an app provide actions to Siri and other system features.
- Blocklist
A local list of entries the app has been told not to import or show again.
- Cache
A temporary stored copy that can help software load or work more quickly.
- Cryptographic key
A protected value used to encrypt, decrypt, or verify information.
- CryptoKit and MultipeerConnectivity
Apple technologies used to protect data and connect nearby devices.
- Data Protection encryption
Apple device protection that encrypts stored files and controls when they can be opened.
- End-to-end encrypted
Protected so the content can be read only by the sending and receiving devices during a transfer.
- iCloud
Apple's online storage service tied to a person's Apple account.
- iOS Keychain
Protected Apple device storage for small sensitive items, such as keys or purchase access records.
- Local network
Nearby connected devices, commonly using Wi-Fi or Bluetooth rather than the public internet.
- NSUbiquitousKeyValueStore
Apple technology that stores small settings or values in a person's iCloud account.
- Open source
Software whose source code is available under a license that permits others to inspect or use it.
- StoreKit
Apple technology that apps use to offer and check App Store purchases.
- SwiftData and SQLite
Apple and database technologies the app uses to organize data stored on a device.
- UserDefaults
Apple device storage commonly used for app preferences and settings.
- WidgetKit
Apple technology used to display app information in a home screen widget.
Policy and legal terms
- Consent
A clear choice that gives permission for a stated action.
- Liability
Legal responsibility for a loss, harm, or payment.
- Personal information
Information that identifies a person or can reasonably be connected to that person.
- Provider backup
A service provider's extra copy of data used for recovery. It may remain for a time after the active copy is deleted.
- Retention
How long information is kept before it is deleted.
- Warranty
A legal promise about a product or service. A warranty disclaimer says that certain promises are not made.