Privacy Policy
This privacy policy applies to the Pelion Mobile app for mobile devices, together with any related services operated by PELION d.o.o. (collectively, the “Application”). PELION d.o.o. is hereby referred to as the “Service Provider”.

What information does the Application obtain and how is it used?
The Application does not collect personal information for the purpose of accounts, marketing, or profiling. Registration is not required. If the Application is used with an active internet connection, technical protocol data (such as your ephemeral IP address) is transmitted to facilitate network connectivity.

To improve the stability of the Application and to identify and fix defects, the Application collects anonymized crash diagnostic data when a crash or error occurs. This data includes:

the type of crash or error,
the stack trace generated at the time of the crash,
the Application version,
the device model,
the operating system version,
a Firebase Installation ID (a non-personal, app-scoped identifier used to group reports from the same installation),
the approximate time of the crash.

This crash diagnostic data does not include your name, email address, OIB, business details, financial data, prometni račune, or any data from your Pelion business account. It is intended solely to help the Service Provider diagnose and fix software defects.

This processing is based on the Service Provider’s legitimate interest under Article 6(1)(f) GDPR to maintain the security, integrity, and stability of the Application.

Does the Application collect precise real time location information of the device?
This Application does not collect precise information about the location of your mobile device.

Do third parties see and/or have access to information obtained by the Application?
The crash diagnostic data described above is processed by Google LLC through Firebase Crashlytics, the crash reporting service used by the Application. Google acts as a data processor on the Service Provider’s behalf and is bound by the Firebase Data Processing Terms. No other third-party services receive data from the Application.

Google’s privacy notice for Firebase is available at: https://firebase.google.com/support/privacy

Data is transmitted to Firebase Crashlytics over encrypted connections (HTTPS / TLS).

What are my opt-out rights?
You have control over the collection of crash diagnostic data:

Crash reporting can be disabled in the Application’s settings under Postavke → Izvještavanje o greškama. Disabling this option stops further collection of crash diagnostic data from your device. It cannot retroactively delete crash reports already received by the Service Provider.
Uninstalling the Application stops all data transmission from your device.

You may also request the removal of voluntarily-provided personal information at any time by contacting the Service Provider at info@pelion.hr.

How long is data retained?
Crash diagnostic data is retained for up to 90 days by Firebase Crashlytics, after which it is automatically deleted in accordance with Google’s default retention policy. Voluntarily-provided information sent to us by other means is retained only as long as necessary to respond to your inquiry, or as required by applicable law.

Children
The Application is not intended for children under 16 years of age, or such higher age as required by applicable law. The Service Provider does not knowingly solicit data from children or market to them. Since the Application does not collect personal information through normal use, children’s data is not at risk from use of the Application alone. If you voluntarily provide personal information through other means and are under 16 years of age, your parent or guardian must provide consent on your behalf where permitted by law.

Security
Crash diagnostic data is transmitted over encrypted connections and stored within Google’s Firebase infrastructure, which implements industry-standard security controls. The Service Provider implements reasonable safeguards to protect systems and any data it holds. However, no security system is completely secure.

Data Breach Notification
If a breach occurs involving data collected by the Application or voluntarily provided to the Service Provider, the Service Provider will notify affected users as required by applicable law (including, where applicable, Article 33 and 34 GDPR).

Changes
The Service Provider may update this Privacy Policy from time to time. The Service Provider will notify you of material changes by posting the updated Privacy Policy with an effective date. Where required by law, the Service Provider will seek your consent to material changes before they take effect.

Previous versions of this Privacy Policy will be maintained and made available upon request by contacting the Service Provider at info@pelion.hr.

This privacy policy is effective as of 01.01.2026.

Your Consent
If you voluntarily provide information to the Service Provider and processing is based on consent, you may withdraw that consent at any time without affecting processing carried out before withdrawal. For processing based on legitimate interest (such as crash diagnostics), you may object at any time as set out in the “What are my opt-out rights?” section.

Contact Us
If you have any questions regarding privacy while using the Application, or have questions about the practices, please contact the Service Provider via email at info@pelion.hr.