nisotab
Terms of UsePrivacy PolicyDelete Account
DentalReels

DentalReels — Privacy Policy

Last updated: June 28, 2026

This Privacy Policy describes how nisotab(“we”, “us”, “our”) collects, uses, stores, shares, and protects information in connection with the DentalReels mobile application (the “App”) and related services (together, the “Service”). nisotab is operated as a sole proprietorship based in Istanbul, Türkiye.

By downloading, accessing, or using the App, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with it, please do not use the App.

1. Who This App Is For

DentalReels is a professional content-creation tool intended for dental professionals and dental clinics to create short promotional videos for their own practices. The App is not directed at children and is not intended for use by anyone under the age of 18.

2. Information We Collect

2.1 Information you provide directly

  • Account information — your email address and password (when registering with email), or your Google account email (when signing in with Google). Passwords are handled by our authentication provider and are never visible to us in plain text.
  • Profile information — optional details you add to your profile, such as your name or clinic name and clinic logo.
  • User content — photos, images, logos, and text you upload or enter to create videos (for example, before/after photos, clinic photos, promotional text).
  • Support communications — information you send us when you contact support.

2.2 Information collected automatically

  • Usage and analytics data — in-app events (for example: sign-up, login, video render started, template saved), app version, device type, operating system version, language/locale, and approximate region derived from your connection. We use PostHog (EU-hosted) for analytics. A limited sample of app sessions may be recorded as masked session replays (text inputs and sensitive fields are masked and not readable) to help us understand usability problems.
  • Crash and diagnostics data — if the App crashes or malfunctions, technical diagnostics (device model, OS version, stack trace, app state at the time of the error) are collected via Sentry (EU-hosted).
  • Push notification identifiers — a push token and an anonymous OneSignal identifier, linked to your account ID so we can deliver notifications (for example, “your video is ready”) to your devices.
  • Purchase and subscription data — subscription status, product identifier, purchase and renewal dates, and an anonymized app user ID, processed via RevenueCat and the relevant app store. We never receive or store your credit card or full payment details — payments are processed entirely by Google Play or the Apple App Store.
  • Device identifiers — randomly generated app-scoped identifiers used for the purposes above. We do not collect your IMEI, SIM serial, or other persistent hardware identifiers.

2.3 Information we do NOT collect

  • We do not collect precise location data.
  • We do not access your contacts, SMS, or call logs.
  • We do not sell personal data to anyone.
  • We do not serve third-party advertising and do not share your data with ad networks.
  • Background removal of images is performed on your device; those images are not sent to a server for that feature.

3. How We Use Information

We use the information described above to:

  • Create and manage your account and authenticate you;
  • Provide the core Service: generating videos from the content and templates you choose, storing your creations, and letting you download or share them;
  • Process and manage subscriptions and verify premium entitlements;
  • Send service notifications (for example, render-completed notifications) if you have granted notification permission;
  • Understand aggregate usage to improve features, templates, and usability;
  • Detect, investigate, and fix crashes, bugs, abuse, and security issues, and enforce usage limits (for example, daily render quotas);
  • Comply with legal obligations and enforce our Terms of Use.

4. Legal Bases (EEA/UK users — GDPR)

Where the GDPR or equivalent laws apply, we process personal data on these legal bases:

  • Performance of a contract — account management, video creation and delivery, subscriptions, notifications you request;
  • Legitimate interests — analytics, crash reporting, service security, fraud and abuse prevention, enforcing usage limits, balanced against your rights and using data minimization (masking, sampling, EU hosting);
  • Consent — push notification permission (managed via your device settings and revocable at any time);
  • Legal obligation — tax, accounting, and lawful requests from authorities.

For users in Türkiye, personal data is processed in accordance with the Personal Data Protection Law No. 6698 (“KVKK”) on the equivalent legal grounds.

5. Who We Share Data With (Processors)

We share personal data only with service providers (“processors”) that help us operate the Service, under contracts that restrict their use of the data:

ProviderPurposeLocation/Hosting
SupabaseAuthentication, database, and file storage (accounts, profiles, uploaded content, render records)EU (Frankfurt, eu-central-1)
Google Play / Apple App StorePayment processing and app distributionGlobal (per store)
RevenueCatSubscription management and entitlement verificationUSA
PostHogProduct analytics and masked session replayEU
SentryCrash and error reportingEU
OneSignalPush notification deliveryUSA
Amazon Web Services / CloudflareVideo rendering infrastructure and secure delivery of rendered video filesEU/Global

We may also disclose information: (a) if required by law, regulation, legal process, or enforceable governmental request; (b) to enforce our Terms of Use or protect the rights, property, or safety of us, our users, or the public; or (c) in connection with a merger, acquisition, or sale of assets, in which case we will notify you (for example, in-app or by email) before your data becomes subject to a different privacy policy.

We do not sell personal data and we do not share it with third parties for their own marketing.

6. International Data Transfers

Our primary data storage is in the European Union. Some processors listed above (e.g., RevenueCat, OneSignal) may process data in the United States or other countries. Where data is transferred outside the EEA/UK, we rely on appropriate safeguards such as the EU Standard Contractual Clauses and/or the EU–US Data Privacy Framework, as applicable.

7. Data Retention and Deletion

  • Account data and user content are retained while your account is active.
  • Deleting your account — you can permanently delete your account at any time inside the App (Profile > Delete Account). This deletes your account and the personal data associated with it from our production systems. You may also request deletion by emailing support@nisotab.com.
  • Backups and logs may persist for a limited period (typically up to 30 days) before being overwritten, and certain minimal records may be retained where required for legal, tax, accounting, security, or fraud-prevention purposes, as permitted by law.
  • Analytics and crash data are retained in aggregate or pseudonymized form according to the retention settings of our analytics providers, and are not used to re-identify deleted accounts.
  • Subscription records are retained by the app stores and RevenueCat according to their own policies and legal obligations; deleting your account does not cancel an active subscription — you must cancel via Google Play or the App Store.

8. Security

We use industry-standard measures to protect your data, including encryption in transit (HTTPS/TLS), access controls, row-level security on our databases, and secure token-based authentication. No method of transmission or storage is 100% secure; therefore we cannot guarantee absolute security, but we take commercially reasonable steps to protect your information and to notify you and the relevant authorities of any personal data breach where required by law.

9. Your Rights

Depending on your jurisdiction (including under GDPR, UK GDPR, KVKK, and applicable US state laws such as the CCPA/CPRA), you may have the right to:

  • Access the personal data we hold about you;
  • Correct inaccurate data;
  • Delete your data (see Section 7);
  • Port your data to another service;
  • Object to or restrict certain processing (including analytics based on legitimate interests);
  • Withdraw consent at any time where processing is based on consent (e.g., disable push notifications in your device settings);
  • Complain to a supervisory authority (in the EEA, your local Data Protection Authority; in Türkiye, the KVKK Authority).

To exercise any of these rights, contact us at support@nisotab.com. We will respond within the timeframe required by applicable law. We will not discriminate against you for exercising your rights.

10. Your Responsibilities Regarding Patient and Third-Party Content

If you upload photos or other materials that depict patients or other identifiable individuals, you are solely responsible for obtaining all consents, authorizations, and permissions required under applicable law and professional regulations (including health-data and medical-confidentiality rules) before uploading such content. We process such content only as your service provider, on your instructions, to generate your videos. We do not independently verify, and are not responsible for verifying, that you have obtained such consents.

11. Push Notifications

Push notifications are optional. The App asks for notification permission in context (for example, when you create your first video). You can revoke this permission at any time in your device settings; the App will continue to work without notifications.

12. Children’s Privacy

The Service is not directed at children under 18, and we do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us at support@nisotab.com and we will delete it.

13. Third-Party Links and Services

The App may contain links to third-party websites or services (for example, subscription management pages of Google Play or the App Store). This Privacy Policy does not apply to those third parties, and we are not responsible for their privacy practices.

14. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be announced in the App or by other reasonable means before they take effect, and the “Last updated” date above will be revised. Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.

15. Contact Us

For any questions, requests, or complaints about this Privacy Policy or our data practices, contact us at support@nisotab.com.

© 2026 nisotab. All rights reserved.

support@nisotab.com