Legal · tisa.day

Privacy Policy

Last updated: July 2026

01

Controller

Jonas Weigt
Holzhäuser Str. 86c
04299 Leipzig
Germany

Email: hello@tisa.day
Website: https://tisa.day

02

Overview

tisa is a wedding planning app. By default, all data you enter stays stored locally on your device. Only specific features (Live Activity, share checklist, AI import, weather, sun-position view) require a connection to external services. No user accounts are created, no advertising is shown, and no tracking is performed.

03
Stays on your device

Data Stored Locally

The following data is stored exclusively on your device:

  • Wedding data (title, date, venue, time zone)
  • Program items (title, time, notes, locations, reminders)
  • Contacts (name, phone number, role)
  • Vendors (name, email, phone, notes)
  • Addresses (full postal addresses)
  • Checklists
  • Wedding notes (free text)
  • Profile photo and uploaded documents
  • A posing-ideas library (an app-wide collection as well as wedding-specific images/PDFs, purely local)
  • App settings (language, time format, design)

Storage locations: UserDefaults (wedding data, settings, weather cache) · Keychain (anonymous free-tier counter, persists after reinstall) · Device filesystem (profile photo, documents, posing ideas).

Deletion

You can permanently delete all locally stored data via Settings → Delete All Data. This clears UserDefaults, Keychain, device filesystem and iCloud data. If a Live Activity is active at the time of deletion, the associated push token is also removed from the backend.

04

iCloud Sync

Optional and disabled by default — can be enabled in the app settings. When enabled, wedding data, the posing library and app settings are synchronised to the user's other Apple devices via Apple's iCloud (NSUbiquitousKeyValueStore). For very large weddings (more than approx. 900 KB of data), synchronisation is automatically skipped without impairing app functionality.

Provider: Apple Inc. (EU-US Data Privacy Framework).

Regardless of the iCloud sync toggle, local files (profile photo, documents) are included if the user has enabled the iOS system backup for the app — this is a separate, Apple-controlled mechanism. It can be disabled at any time in the app settings.

Free-Tier Counter (always active)

Regardless of the iCloud toggle, an anonymous counter of the number of weddings created is stored in iCloud to technically safeguard the free tier — it contains no personal content.

05

Live Activity & Push Notifications

The Live Activity displays the current program item on the lock screen and Dynamic Island. Data is transmitted to our backend service for updates.

Data transmitted

  • Push token (anonymous device identifier)
  • Program item titles, start and end times, locations, reminder titles
  • Number of program items, time zone
  • Display settings

Explicitly not transmitted: program item notes, contact data, vendor data, addresses, wedding notes.

Processing

AWS Lambda & DynamoDB · Amazon Web Services EMEA SARL, region eu-central-1 (Frankfurt) — no third-country transfer. Automatic deletion 2 hours after the wedding ends. The Apple Push Notification Service (APNs) is also used.

06

Share Checklist

When you share a checklist, a link is created (tisa.day/c/[token]). Anyone who has the link can view and edit the list (add/check off items) — even without a login.

Data stored

  • Checklist content
  • Wedding title, language
  • A SHA-256 hash of the share token (no plaintext)
  • Optionally a device token for change notifications

Storage: AWS DynamoDB, eu-central-1 (Frankfurt). Retention: 7 days, then automatically deleted.

07

AI Import

Allows a wedding program to be automatically created or supplemented from free-text notes and/or an uploaded photo/PDF.

When creating from scratch

Transmitted are your free-text notes (may contain names, phone numbers, addresses and information about third parties) and, optionally, a photo or PDF.

When supplementing an existing wedding

In addition, the entire current state of your wedding is sent as context — so the AI can meaningfully place new items instead of creating duplicates. This includes all stored contacts (name, phone number), addresses, vendors (name, category, email, phone, notes) as well as all program item notes.

AI provider and data protection

AI model: Claude Haiku (Anthropic PBC), run via AWS Bedrock within the EU (Amazon Web Services EMEA SARL). By default configuration, AWS Bedrock does not pass the transmitted content on to Anthropic and does not use it to train AI models.

For technical error diagnosis, short, non-persistently stored excerpts of the input/output may appear in the operational logs of our cloud provider (AWS CloudWatch); no targeted, permanent storage of your input takes place. A privacy notice is shown in the app before first use.

08

Weather Data

The address of your wedding venue is converted into GPS coordinates via Apple CLGeocoder; the weather forecast is then retrieved via Apple WeatherKit.

Provider for both: Apple Inc. (EU-US Data Privacy Framework).
Data transmitted: GPS coordinates of the wedding venue.

09
Stays on your device

Location for the Sun-Position View

For the live sun-position view (compass AR feature), the app uses your approximate location and your device's compass heading to align the display correctly to north. This data is processed exclusively on your device and never transmitted — not to Apple, nor to our own backend.

10
Stays on your device

Camera & Photo Library

Access occurs only upon explicit request, for: taking/selecting profile photos, scanning documents (VisionKit), adding photos to program items, and the white-balance Kelvin meter (measures colour temperature via the camera — no image is stored, only a numeric value in Kelvin).

Captured images/documents stay local, unless you deliberately upload them as part of a feature (e.g. AI Import).

11

In-App Purchases

Via Apple StoreKit 2. The app only receives the purchase confirmation, no payment data. Apple's privacy policy applies.

12

Processors

ProviderPurposeLocationBasis
Amazon Web Services EMEA SARL Backend (Lambda, DynamoDB, Bedrock/AI) eu-central-1, Frankfurt, EU AWS DPA
Apple Inc. APNs, iCloud, StoreKit, CLGeocoder, WeatherKit USA / Apple infrastructure EU-US Data Privacy Framework
13

Retention Periods

DataRetention
Local app dataUntil deleted by the user or uninstalled
iCloud dataUntil deleted (in app or iOS settings)
Live Activity (AWS DynamoDB)Automatically 2 hours after the wedding ends
Shared checklist (AWS DynamoDB)Automatically after 7 days
AI import inputNo targeted storage; short-lived operational logs at AWS possible
14

Your Rights

  • Access (Art. 15)What data we process about you
  • Rectification (Art. 16)Have inaccurate data corrected
  • Erasure (Art. 17)Request deletion of your data
  • Restriction (Art. 18)Request restriction of processing
  • Data portability (Art. 20)Receive data in a machine-readable format
  • Objection (Art. 21)Object to processing based on legitimate interests
  • Complaint (Art. 77)With a data protection supervisory authority

Since almost all data is stored locally, you can exercise access, rectification and erasure directly in the app. For data portability the app offers two native routes: a PDF export of your wedding (via the share menu) and a .tisa file export (a complete, re-importable format incl. contacts/addresses/notes — documents are included only as a reference, not as the file itself). For further requests: hello@tisa.day.

15

Supervisory Authority

The Federal Commissioner for Data Protection and Freedom of Information (BfDI)
Graurheindorfer Str. 153, 53117 Bonn, Germany
bfdi.bund.de

Alternatively, you may contact the supervisory authority of your federal state.

16

Changes

This policy is updated as needed. The current version is available at tisa.day/privacy. Significant changes are announced within the app.