Datenschutzerklärung — CleverCrewConnect
Stand: 23. August 2026 Version: 1.4
1. Verantwortliche Person
Verantwortlich für die Bearbeitung der personenbezogenen Daten im Sinne von Art. 5 lit. j revDSG und Art. 4 Ziff. 7 DSGVO ist:
Denis Ermantraut
Pappelnweg 16
4310 Rheinfelden
Schweiz
E-Mail für Datenschutzanfragen: support@clevercrewconnect.org
2. Anwendungsbereich
Diese Datenschutzerklärung gilt für die Nutzung der mobilen Applikation CleverCrewConnect (im Folgenden „App") sowie für alle damit verbundenen Server-Dienste. Sie beschreibt, welche Daten beim Gebrauch der App bearbeitet werden, zu welchem Zweck und auf welcher Rechtsgrundlage.
CleverCrewConnect ist eine spezialisierte Koordinations-Plattform für das Ehrenamt. Sie dient der effizienten Planung und Organisation von freiwilligen Helfereinsätzen in Vereinen, Clubs und Verbänden. Sie unterstützt die Koordination von Veranstaltungen (Festen, Turnieren, Spielen u.ä.), die flexible Einteilung von Helfern in konkrete Rollen und Aufgabenbereiche sowie die Verwaltung von Organisationen, Mitgliedschaften und geleisteten Helferstunden.
3. Welche Daten werden bearbeitet
3.1 Konto- und Profildaten
Beim Erstellen eines Kontos werden folgende Daten erhoben und gespeichert:
- E-Mail-Adresse (zwingend)
- Passwort (ausschliesslich als kryptografischer Hash, nicht im Klartext)
- Vorname und Nachname (zwingend)
- Telefonnummer (freiwillig)
- Bestätigung des Mindestalters: Es wird kein konkretes Geburtsdatum erhoben oder gespeichert. Erfasst wird ausschliesslich die digitale Bestätigung (Selbstauskunft), dass die nutzende Person mindestens 16 Jahre alt ist (zwingend).
- Zeitpunkt und Dokumentversion der Zustimmung zu Datenschutzerklärung und AGB (Nachweiszweck)
- Qualifikationen, z.B. Match-Uhr-Schulung, Spielbericht-SW-Schulung, Führerschein (freiwillig)
- Crew-Status (Einzelmitglied oder Teil einer Familie) und Familien-Funktion (Erziehungsberechtigte:r oder Kind)
- Spracheinstellung (Deutsch, Französisch, Italienisch oder Englisch)
- Rolle in der Organisation (Crew-Mitglied, Org-Admin) sowie ggf. Team-Admin-Status pro Mannschaft
3.2 Mitgliedschaftsdaten
- Zugehörigkeit zu einer Organisation — verknüpft über den von der Organisation vergebenen Beitrittscode
- Mitgliedschaften in einzelnen Mannschaften, jeweils mit Funktion (z.B. Spieler:in oder Crew-Mitglied) und Status (offen, aktiv, beendet)
- Beitritts- und Austrittsdatum der Mannschafts-Mitgliedschaft
3.3 Aktivitätsdaten
- Anmeldungen zu verschiedenen Rollen bei Veranstaltungen (z.B. Spielen, Wettkämpfe, Feste)
- Geleistete Helferstunden und deren Bestätigungsstatus
- Saison-Reports und administrative Stundenübersichten
- Selbst angelegte Events (sofern als Crew-Mitglied auf Basis der Rolle erlaubt)
- Erfasste Auslagen zu Einsätzen (Betrag, Beschreibung, Auszahlungsstatus) sowie freiwillig hochgeladene Beleg-Fotos — Beleg-Fotos sind ausschliesslich für Administratoren der eigenen Organisation über zeitlich begrenzte Links abrufbar
- Bei Veranstaltungen wird gespeichert und organisationsintern angezeigt, wer sie erstellt und zuletzt geändert hat
3.4 Technische Daten
- IP-Adresse beim Aufruf des Organisations-Beitrittscodes (gespeichert maximal 30 Tage, zur Abwehr automatisierter Brute-Force-Angriffe; Rechtsgrundlage: berechtigtes Interesse an Systemsicherheit)
- Audit-Log-Einträge zu administrativen Aktionen (Org-Verwaltung, Rollenwechsel, Account-Löschungen, Änderungen an Veranstaltungen — gespeichert maximal 12 Monate)
- Geräte-Sprache und -Zeitzone (zur korrekten Anzeige von Datum/Uhrzeit und UI-Sprache)
3.5 Schattenprofile (verwaltete Profile)
Erziehungsberechtigte können für minderjährige Kinder oder andere von ihnen verwaltete Personen sogenannte Schattenprofile anlegen. Diese verfügen über keinen eigenen Login (keine E-Mail, kein Passwort), sondern werden vollständig von der erziehungsberechtigten Person verwaltet. Für solche Profile werden gespeichert: Vor- und Nachname, Teamzugehörigkeit, die Familienverknüpfung zur verwaltenden Person, Rollen-Zuweisungen und geleistete Stunden sowie die weiteren bearbeitbaren Profilfelder. Benachrichtigungen, die ein verwaltetes Profil betreffen, werden an das Gerät der verwaltenden Person zugestellt (siehe Abschnitt 6.6).
3.6 Vom Admin vorangelegte Profile (Einladungs-Code)
Organisations- und Team-Admins können Mitgliedsprofile bereits vor der Registrierung der betreffenden Person anlegen — einzeln oder per Listen-Import. Dabei bestätigt die Organisation gegenüber dem Anbieter, dass die betroffene Person mit der Erfassung ihrer Daten einverstanden ist; diese Bestätigung wird protokolliert. Gespeichert werden: Vor- und Nachname, Teamzugehörigkeit mit Funktion sowie ggf. Familienverknüpfung, Rollen-Zuweisungen und Stunden. Ein eigener Login besteht in diesem Stadium nicht. Die Person erhält von ihrer Organisation einen persönlichen Einladungs-Code (90 Tage gültig, einmalig einlösbar), mit dem sie das Profil übernimmt und dabei erst E-Mail-Adresse und Passwort selbst festlegt sowie Datenschutzerklärung und AGB bestätigt. Wird der Code nicht eingelöst, kann die Organisation das vorangelegte Profil jederzeit löschen.
3.7 Organisationsbezogene Inhalte
Innerhalb einer Organisation können Dokumente hochgeladen und Anleitungen erstellt werden. Dabei wird der Name der hochladenden bzw. verfassenden Person gespeichert und organisationsintern angezeigt (Namens-Attribution). Dokumente sind nur für Mitglieder der eigenen Organisation über zeitlich begrenzte Links abrufbar.
3.8 Rückmeldungen und Meldungen
Über die App können Fehler gemeldet (Funktion „Bug melden") und unangemessene Inhalte gemeldet werden. Erfasst werden: Kategorie, Freitext-Beschreibung, bei Fehlermeldungen die App-Version sowie der Bezug zur meldenden Person und ggf. zum gemeldeten Inhalt. Zweck ist die Fehlerbehebung bzw. die Moderation. Empfänger sind ausschliesslich die Betreiber der Plattform. Die Meldungen werden nach Erledigung gelöscht, spätestens jedoch nach 12 Monaten.
4. Zwecke der Bearbeitung
Die genannten Daten werden ausschliesslich zu folgenden Zwecken verarbeitet:
- Bereitstellung des Dienstes: Login, Authentifizierung, Anzeige von Veranstaltungen, Rollen, Aufgabenbereichen und Mitgliedschaften innerhalb der jeweiligen Organisation.
- Organisationsinterne Koordination: Der Org-Admin und die Team-Admins können Mitglieder verwalten, Rollen zuweisen, geleistete Stunden kontrollieren und Reports erstellen — entsprechend dem Zweck der App.
- Benachrichtigungen: Zustellung von Push-Benachrichtigungen zu relevanten Ereignissen (z.B. Rollen-Zuweisungen, Terminänderungen, Erinnerungen an unbestätigte Einsätze) — siehe Abschnitt 6.6.
- Spesenabrechnung: organisationsinterne Erfassung und Abwicklung von Auslagen zu Einsätzen.
- Kommunikation: System- und Informations-E-Mails an Organisations-Administratoren (siehe Abschnitt 6.7) sowie Bearbeitung von Rückmeldungen und Meldungen (siehe Abschnitt 3.8).
- Verifizierung und Sicherheit: E-Mail-Bestätigung beim Sign-up, Schutz vor automatisierten Anmeldeversuchen (Cloudflare Turnstile), IP-basierte Sperrung bei Brute-Force-Versuchen.
- Auditierbarkeit: Administrative Eingriffe (z.B. die manuelle Anlage eines Schattenprofils durch einen Admin) werden protokolliert, um Nachvollziehbarkeit zu gewährleisten.
- Finanzierung des Dienstes: Die App beinhaltet reguläre Werbeplatzierungen, um die unentgeltliche Bereitstellung der Kernfunktionen zu ermöglichen. Die Anzeige der Werbung erfolgt ohne Erstellung umfassender Verhaltensprofile. Es werden keine Daten an Dritte zu rahmenunabhängigen Werbezwecken verkauft.
5. Rechtsgrundlagen
- Vertragserfüllung (Art. 31 Abs. 2 lit. a revDSG / Art. 6 Abs. 1 lit. b DSGVO) für Daten, die zur Bereitstellung des Dienstes erforderlich sind.
- Berechtigtes Interesse (Art. 31 Abs. 2 lit. d revDSG / Art. 6 Abs. 1 lit. f DSGVO) für Sicherheitsmassnahmen (IP-Logging beim Brute-Force-Schutz, Audit-Trail) sowie für die Einblendung von Werbung zur Refinanzierung der Plattform.
- Einwilligung (Art. 31 Abs. 1 revDSG / Art. 6 Abs. 1 lit. a DSGVO) für freiwillige Angaben (z.B. Telefonnummer).
6. Weitergabe an Dritte und Auftragsverarbeiter
Folgende externe Dienste verarbeiten Daten im Auftrag des Verantwortlichen:
6.1 Supabase (Datenbank- und Authentifizierungs-Dienst)
- Anbieter: Supabase Inc., 2261 Market Street #4280, San Francisco, CA 94114, USA
- Region: EU-Frankfurt (eu-central-1) — sämtliche Datenbank- und Auth-Daten werden auf Servern innerhalb der Europäischen Union gespeichert.
- Rechtsgrundlage für Drittlandtransfer: Standardvertragsklauseln (Module 2 + 3) im Sinne von Art. 46 DSGVO, ergänzt durch die EU-Standardvertragsklauseln in Supabase's Data Processing Agreement.
- Verarbeitet: alle in Abschnitt 3 genannten Daten.
6.2 Cloudflare Turnstile (Bot-Schutz)
- Anbieter: Cloudflare Inc., 101 Townsend Street, San Francisco, CA 94107, USA
- Verarbeitet: IP-Adresse, Browser-Fingerprint, Verhaltens-Heuristiken — ausschliesslich zur Bot-Erkennung bei Anmeldung, Registrierung, Passwort-Reset und Beitrittscode-Eingabe.
- Cloudflare speichert diese Daten gemäss eigener Privacy Policy maximal 30 Tage.
- Rechtsgrundlage: Art. 6 Abs. 1 lit. f DSGVO (berechtigtes Interesse an Spam-/Bot-Abwehr).
6.3 Telegram (interne Systembenachrichtigungen)
- Anbieter: Telegram Messenger Inc., 71-75 Shelton Street, London, UK
- Zweck: Wird ausschliesslich für automatisierte Status- und Sicherheitsmeldungen an die Systemadministration des Anbieters verwendet (z.B. zur Freigabe neu registrierter Organisationen, bei neuen Rückmeldungen oder bei der Erkennung von Manipulationsversuchen).
- Datenminimierung: Es werden keine personenbezogenen Daten von Endnutzer:innen an Telegram übermittelt. Die Systemnachrichten enthalten ausschliesslich den Namen der betroffenen Organisation, Kategorien (z.B. die Kategorie einer Fehlermeldung), technische Referenz-IDs und Statuswechsel sowie beim Brute-Force-Schutz eine gekürzte IP-Adresse. Inhaltliche Details (z.B. der Text einer Rückmeldung) verbleiben in der Datenbank und sind ausschliesslich für die Betreiber einsehbar.
6.4 Hive (lokaler Cache)
Hive ist eine lokale Datenbank im geschützten App-Speicher (App-Sandbox) für die Offline-Anzeige. Im Offline-Modus ist nur das Ansehen zuvor geladener Daten möglich; Änderungen (Einsätze, Events, Profile, Spesen usw.) erfordern eine aktive Internetverbindung. Die Daten verlassen das Gerät nicht und werden bei der Deinstallation der App entfernt.
6.5 Google AdMob (Werbe-Auslieferung)
- Anbieter: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland
- Zweck: Auslieferung der in der App angezeigten Werbeplatzierungen (Native Ads in den Listen, Rewarded Video zur freiwilligen Freischaltung der Spass-Statistiken). Die Werbeumsätze finanzieren den unentgeltlichen Betrieb der App.
- Verarbeitet: Werbe-ID des Geräts (AAID auf Android, IDFA auf iOS), IP-Adresse, ungefähre Standort-Region (Land/Stadt), App-Identifikator und Werbe-Interaktionen (Impressionen, Klicks). Es werden keine Konto- oder Mitgliedschaftsdaten an Google übermittelt.
- Rechtsgrundlage: Art. 6 Abs. 1 lit. f DSGVO (berechtigtes Interesse an der Werbefinanzierung der App, siehe AGB §3); bei personalisierter Werbung zusätzlich Art. 6 Abs. 1 lit. a DSGVO (Einwilligung).
- Drittlandtransfer: Standardvertragsklauseln gemäss Art. 46 DSGVO mit Google LLC (USA).
- Deine Kontrolle:
- In der EU wird vor der ersten Werbeanzeige eine Einwilligung über das Google-Consent-Formular eingeholt; deine Auswahl kannst du jederzeit in den App-Einstellungen im Bereich „Hilfe & Info" ändern. Auf iOS fragt die App zusätzlich die System-Tracking-Erlaubnis (App Tracking Transparency) ab.
- Die Werbe-ID kannst du jederzeit in den Geräte-Einstellungen zurücksetzen (Android: Einstellungen → Datenschutz → Werbung; iOS: Einstellungen → Datenschutz → Werbung).
- Personalisierte Werbung kannst du in den gleichen Geräte-Einstellungen abschalten — du siehst dann nur noch kontextbezogene (nicht personalisierte) Werbung.
- Datenschutzerklärung von Google: policies.google.com/privacy
- Werbe-Einstellungen einsehen/ändern: adssettings.google.com
6.6 Google Firebase Cloud Messaging (Push-Benachrichtigungen)
- Anbieter: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irland
- Zweck: Zustellung von Push-Benachrichtigungen, z.B. bei Rollen-Zuweisungen, Terminänderungen oder als Erinnerung an unbestätigte Einsätze.
- Verarbeitet: Geräte-Token (eindeutige Push-Kennung des Geräts), Themen-Abonnements entsprechend der Team- und Admin-Zugehörigkeit sowie die Nachrichteninhalte selbst — diese können Namen, Team-Namen, den Namen der Organisation und Event-Daten (z.B. Titel und Datum) enthalten.
- Verwaltete Profile: Benachrichtigungen, die ein Schattenprofil betreffen, werden an das Gerät der verwaltenden Person zugestellt.
- Löschung: Das Geräte-Token ist exklusiv an das zuletzt angemeldete Gerät gebunden; meldet sich auf dem Gerät eine andere Person an, werden Token und Themen-Abonnements auf deren Konto umgestellt. Bei der Konto-Löschung werden Geräte-Token und Themen-Abonnements entfernt.
- Drittlandtransfer: Standardvertragsklauseln gemäss Art. 46 DSGVO mit Google LLC (USA).
- Abschalten: Push-Benachrichtigungen kannst du jederzeit in den System-Einstellungen deines Geräts deaktivieren.
6.7 Infomaniak (E-Mail-Versand)
- Anbieter: Infomaniak Network SA, Genf, Schweiz
- Zweck: Versand von System- und Informations-E-Mails an Organisations-Administratoren — insbesondere eine Willkommens-E-Mail bei der Freischaltung einer neuen Organisation.
- Verarbeitet: E-Mail-Adresse, Vorname und Organisationsname der empfangenden Person.
- Standort: Schweiz — kein Drittlandtransfer.
- Rechtsgrundlage: berechtigtes Interesse (Art. 31 Abs. 2 lit. d revDSG / Art. 6 Abs. 1 lit. f DSGVO) an der Information der Administratoren über den Dienst.
7. Speicherort und Speicherdauer
- Server: EU (Frankfurt) bei Supabase
- Konto- und Profildaten: solange der Account aktiv ist
- Audit-Log: automatische Löschung nach 12 Monaten
- Brute-Force-Versuche: automatische Löschung nach 30 Tagen
- Unbestätigte Registrierungen: Das Konto (E-Mail-Adresse und Zugangsdaten) wird nach 7 Tagen ohne E-Mail-Bestätigung automatisch gelöscht. Wurde die Person von ihrer Organisation bereits als Mitglied geführt (Teamzugehörigkeit oder zugewiesene Einsätze), bleibt das Mitgliedsprofil als vorangelegtes Profil im Sinne von Abschnitt 3.6 bestehen — ohne Login, von der Organisation jederzeit löschbar oder erneut per Einladungs-Code vergebbar
- Rückmeldungen und Meldungen: Löschung nach Erledigung, spätestens nach 12 Monaten
- Nach Konto-Löschung werden alle personenbezogenen Daten innerhalb von 30 Tagen aus der Produktivdatenbank entfernt. Backup-Kopien werden im Rahmen des regulären Backup-Zyklus (max. 30 Tage) ebenfalls überschrieben.
8. Cookies und lokale Speicherung
CleverCrewConnect setzt keine Tracking-Cookies zur Erstellung verhaltensbasierter Nutzerprofile ein. Zur Auslieferung der regulären Werbeeinblendungen können technische Kennungen (wie anonymisierte Werbe-IDs des Betriebssystems oder IP-Adressen) verarbeitet werden. Es werden keine Tools zur seitenübergreifenden Verhaltensanalyse (wie Google Analytics, Facebook Pixel, Hotjar etc.) eingesetzt.
Lokal auf dem Gerät werden in einer lokalen Datenbank im geschützten App-Speicher (App-Sandbox) zwischengespeichert:
- Aktuell angemeldete Sitzung (Auth-Token)
- Organisations- und Team-Daten zur Offline-Anzeige
- Events und Stunden-Einträge der eigenen Organisation
Beim Logout werden die Sitzungs- und Identitätsdaten entfernt; bei der Deinstallation der App wird der gesamte lokale App-Speicher gelöscht.
9. Sicherheitsmassnahmen
- Verschlüsselte Übertragung aller Daten (TLS 1.2+)
- Passwörter werden niemals im Klartext gespeichert, sondern ausschliesslich als kryptografisch sicherer Hash (one-way) durch das Auth-System (Supabase / GoTrue)
- Row-Level Security (RLS) auf Datenbankebene: jedes Mitglied sieht ausschliesslich die Daten der eigenen Organisation. Mitglieder anderer Organisationen haben keinerlei Zugriff.
- Cloudflare Turnstile schützt Auth-Endpunkte gegen automatisierte Angriffe
- Automatische temporäre Sperrung einer IP-Adresse bei wiederholten Falscheingaben des Organisations-Beitrittscodes. Die genauen Schwellen werden aus Sicherheitsgründen nicht offengelegt; sie sind so kalibriert, dass legitime Tippfehler nicht zu Sperrungen führen, automatisierte Brute-Force-Versuche jedoch verlässlich geblockt werden.
- Audit-Trail für administrative Eingriffe
- Automatische Löschung unbestätigter Konten (Zugangsdaten und E-Mail-Adresse) nach 7 Tagen
- Backup-Verschlüsselung gemäss Supabase-Standard (AES-256)
10. Mindestalter
Die Nutzung von CleverCrewConnect ist Personen ab 16 Jahren vorbehalten. Bei der Registrierung muss diese Selbstauskunft per Pflicht-Häkchen bestätigt werden.
Für jüngere Mitglieder besteht die Möglichkeit, dass ein:e Erziehungsberechtigte:r ein eigenes Konto anlegt und sie dort als verwaltetes Schattenprofil führt. In diesem Fall trägt die erziehungsberechtigte Person die Verantwortung für die Korrektheit der Daten des verwalteten Profils.
11. Rechte der betroffenen Person
Sie haben gegenüber dem Verantwortlichen folgende Rechte:
- Auskunft (Art. 25 revDSG / Art. 15 DSGVO): welche Daten zu Ihnen gespeichert sind
- Berichtigung (Art. 32 Abs. 1 revDSG / Art. 16 DSGVO): unkorrekte Daten korrigieren — die meisten Felder können Sie selbst im Profil bearbeiten
- Löschung (Art. 32 Abs. 2 lit. c revDSG / Art. 17 DSGVO): Konto-Löschung jederzeit möglich; die App enthält dafür eine Selbstbedienungs-Funktion in den Einstellungen
- Datenübertragbarkeit (Art. 28 revDSG / Art. 20 DSGVO): Export Ihrer Daten in einem strukturierten, gängigen, maschinenlesbaren Format auf Anfrage an support@clevercrewconnect.org
- Widerspruch gegen die Verarbeitung (Art. 30 Abs. 2 lit. b revDSG / Art. 21 DSGVO): bei berechtigtem Interesse als Rechtsgrundlage
- Widerruf einer erteilten Einwilligung mit Wirkung für die Zukunft
Anfragen zur Ausübung dieser Rechte richten Sie bitte an support@clevercrewconnect.org. Wir bearbeiten Anfragen innerhalb von 30 Tagen.
12. Beschwerderecht
Sie haben das Recht, sich bei der zuständigen Datenschutzbehörde zu beschweren:
- In der Schweiz: Eidgenössischer Datenschutz- und Öffentlichkeitsbeauftragter (EDÖB), Feldeggweg 1, 3003 Bern, www.edoeb.admin.ch
- In der EU: die für Ihren Wohnsitz zuständige Aufsichtsbehörde (Liste: edpb.europa.eu)
13. Änderungen dieser Erklärung
Diese Datenschutzerklärung wird bei wesentlichen Änderungen an den Datenflüssen, Drittdiensten oder Verarbeitungszwecken angepasst. Die jeweils aktuelle Version ist immer in der App im Bereich „Einstellungen → Hilfe & Info" abrufbar. Bei substanziellen Änderungen werden alle aktiven Nutzenden vor Inkrafttreten der neuen Version informiert.
Privacy Policy — CleverCrewConnect
As of: 23 August 2026 Version: 1.4
1. Data Controller
Responsible for the processing of personal data within the meaning of Art. 5 lit. j revFADP and Art. 4 No. 7 GDPR is:
Denis Ermantraut
Pappelnweg 16
4310 Rheinfelden
Switzerland
Email for data protection requests: support@clevercrewconnect.org
2. Scope
This privacy policy applies to the use of the mobile application CleverCrewConnect (hereinafter "App") as well as to all associated server services. It describes which data is processed when using the App, for what purpose, and on what legal basis.
CleverCrewConnect is a specialized coordination platform for volunteer work. It serves the efficient planning and organization of voluntary helper assignments in clubs, associations and federations. It supports the coordination of events (festivals, tournaments, games and similar), the flexible allocation of helpers to specific roles and task areas, as well as the management of organizations, memberships and helper hours performed.
3. What data is processed
3.1 Account and profile data
When creating an account, the following data is collected and stored:
- Email address (mandatory)
- Password (exclusively as cryptographic hash, never in plaintext)
- First and last name (mandatory)
- Phone number (optional)
- Minimum-age confirmation: no specific date of birth is collected or stored. Only the digital confirmation (self-declaration) that the user is at least 16 years old is recorded (mandatory).
- Time and document version of your consent to the privacy policy and terms of service (for evidence purposes)
- Qualifications, e.g. match clock training, match report software training, driver's license (optional)
- Crew status (individual member or part of a family) and family function (legal guardian or child)
- Language preference (German, French, Italian or English)
- Role in the organization (crew member, Org-Admin) as well as, if applicable, Team-Admin status per team
3.2 Membership data
- Affiliation to an organization — linked via the join code assigned by the organization
- Memberships in individual teams, each with function (e.g. player or crew member) and status (pending, active, ended)
- Join and leave date of the team membership
3.3 Activity data
- Sign-ups for various roles at events (e.g. games, competitions, festivals)
- Helper hours performed and their confirmation status
- Season reports and administrative hour overviews
- Self-created events (if permitted as crew member based on role)
- Recorded expenses for assignments (amount, description, payout status) as well as voluntarily uploaded receipt photos — receipt photos are accessible exclusively to administrators of the own organization via time-limited links
- For events, the App stores and displays within the organization who created them and who last edited them
3.4 Technical data
- IP address when entering the organization's join code (stored for a maximum of 30 days, for defense against automated brute-force attacks; legal basis: legitimate interest in system security)
- Audit log entries for administrative actions (org management, role changes, account deletions, changes to events — stored for a maximum of 12 months)
- Device language and time zone (for correct display of date/time and UI language)
3.5 Shadow profiles (managed profiles)
Legal guardians may create so-called shadow profiles for underage children or other persons they manage. These profiles have no own login (no email, no password) but are fully managed by the legal guardian. For such profiles the following is stored: first and last name, team affiliation, the family link to the managing person, role assignments and hours performed, as well as the other editable profile fields. Notifications concerning a managed profile are delivered to the device of the managing person (see section 6.6).
3.6 Profiles pre-created by the admin (invitation code)
Organization and team admins may create member profiles before the person concerned registers — individually or via list import. In doing so, the organization confirms to the provider that the person concerned consents to the recording of their data; this confirmation is logged. The following is stored: first and last name, team affiliation with function and, where applicable, the family link, role assignments and hours. At this stage there is no own login. The person receives a personal invitation code from their organization (valid for 90 days, usable once) with which they take over the profile, only then setting their own email address and password and accepting the privacy policy and terms. If the code is not redeemed, the organization may delete the pre-created profile at any time.
3.7 Organization-related content
Within an organization, documents can be uploaded and guides can be created. The name of the uploading or authoring person is stored and displayed within the organization (name attribution). Documents are accessible only to members of the own organization via time-limited links.
3.8 Feedback and reports
Via the App, errors can be reported (feature "Report a bug") and inappropriate content can be flagged. The following is recorded: category, free-text description, the app version for bug reports, as well as the reference to the reporting person and, where applicable, to the reported content. The purpose is bug fixing and moderation, respectively. The recipients are exclusively the operators of the platform. Reports are deleted after completion, at the latest after 12 months.
4. Purposes of processing
The mentioned data is processed exclusively for the following purposes:
- Provision of the service: login, authentication, display of events, roles, task areas and memberships within the respective organization.
- Internal coordination of the organization: the Org-Admin and Team-Admins can manage members, assign roles, control hours performed and create reports — in accordance with the purpose of the App.
- Notifications: delivery of push notifications about relevant events (e.g. role assignments, schedule changes, reminders for unconfirmed assignments) — see section 6.6.
- Expense handling: recording and processing of expenses for assignments within the organization.
- Communication: system and informational emails to organization administrators (see section 6.7) as well as the handling of feedback and reports (see section 3.8).
- Verification and security: email confirmation at sign-up, protection against automated login attempts (Cloudflare Turnstile), IP-based blocking in case of brute-force attempts.
- Auditability: administrative actions (e.g. the manual creation of a shadow profile by an admin) are logged to ensure traceability.
- Financing of the service: the App contains regular advertising placements to enable the free provision of the core functions. The display of advertising takes place without the creation of extensive behavioral profiles. No data is sold to third parties for context-independent advertising purposes.
5. Legal bases
- Performance of contract (Art. 31 para. 2 lit. a revFADP / Art. 6 para. 1 lit. b GDPR) for data necessary for the provision of the service.
- Legitimate interest (Art. 31 para. 2 lit. d revFADP / Art. 6 para. 1 lit. f GDPR) for security measures (IP logging for brute-force protection, audit trail) as well as for the display of advertising to refinance the platform.
- Consent (Art. 31 para. 1 revFADP / Art. 6 para. 1 lit. a GDPR) for optional information (e.g. phone number).
6. Disclosure to third parties and data processors
The following external services process data on behalf of the data controller:
6.1 Supabase (database and authentication service)
- Provider: Supabase Inc., 2261 Market Street #4280, San Francisco, CA 94114, USA
- Region: EU-Frankfurt (eu-central-1) — all database and auth data is stored on servers within the European Union.
- Legal basis for third-country transfer: Standard Contractual Clauses (Modules 2 + 3) within the meaning of Art. 46 GDPR, supplemented by the EU Standard Contractual Clauses in Supabase's Data Processing Agreement.
- Processes: all data mentioned in section 3.
6.2 Cloudflare Turnstile (bot protection)
- Provider: Cloudflare Inc., 101 Townsend Street, San Francisco, CA 94107, USA
- Processes: IP address, browser fingerprint, behavioral heuristics — exclusively for bot detection at login, registration, password reset and join-code entry.
- Cloudflare stores this data in accordance with its own Privacy Policy for a maximum of 30 days.
- Legal basis: Art. 6 para. 1 lit. f GDPR (legitimate interest in spam/bot defense).
6.3 Telegram (internal system notifications)
- Provider: Telegram Messenger Inc., 71-75 Shelton Street, London, UK
- Purpose: used exclusively for automated status and security messages to the system administration of the provider (e.g. for the activation of newly registered organizations, for new feedback, or upon detection of manipulation attempts).
- Data minimization: no personal data of end users is transmitted to Telegram. The system messages contain exclusively the name of the affected organization, categories (e.g. the category of a bug report), technical reference IDs and status changes, as well as a truncated IP address for brute-force protection purposes. Content details (e.g. the text of a feedback message) remain in the database and are accessible exclusively to the operators.
6.4 Hive (local cache)
Hive is a local database in the protected app storage (app sandbox) for offline viewing. Offline, only viewing previously loaded data is possible; changes (assignments, events, profiles, expenses, etc.) require an active internet connection. The data does not leave the device and is removed when the App is uninstalled.
6.5 Google AdMob (ad serving)
- Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland
- Purpose: Serving the ad placements displayed in the app (native ads in the lists, rewarded video for the voluntary unlock of the fun statistics). The ad revenue funds the free operation of the app.
- Data processed: device advertising ID (AAID on Android, IDFA on iOS), IP address, approximate region (country/city), app identifier and ad interactions (impressions, clicks). No account or membership data is transmitted to Google.
- Legal basis: Art. 6(1)(f) GDPR (legitimate interest in the ad-funded operation of the app, see T&C §3); for personalised advertising, additionally Art. 6(1)(a) GDPR (consent).
- Third-country transfer: Standard Contractual Clauses under Art. 46 GDPR with Google LLC (USA).
- Your control:
- In the EU, consent is obtained via the Google consent form before the first ad is displayed; you can change your choice at any time in the app settings in the section "Help & Info". On iOS, the app additionally asks for the system tracking permission (App Tracking Transparency).
- You can reset the advertising ID at any time in the device settings (Android: Settings → Privacy → Ads; iOS: Settings → Privacy → Advertising).
- You can disable personalised advertising in the same settings — you will then only see contextual (non-personalised) ads.
- Google's privacy policy: policies.google.com/privacy
- View/change ad settings: adssettings.google.com
6.6 Google Firebase Cloud Messaging (push notifications)
- Provider: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland
- Purpose: delivery of push notifications, e.g. for role assignments, schedule changes, or as a reminder for unconfirmed assignments.
- Data processed: device token (unique push identifier of the device), topic subscriptions according to team and admin affiliation, as well as the message contents themselves — these may contain names, team names, the name of the organization and event data (e.g. title and date).
- Managed profiles: notifications concerning a shadow profile are delivered to the device of the managing person.
- Deletion: the device token is exclusively bound to the last signed-in device; if another person signs in on the device, the token and topic subscriptions are switched to their account. Upon account deletion, the device token and topic subscriptions are removed.
- Third-country transfer: Standard Contractual Clauses under Art. 46 GDPR with Google LLC (USA).
- Opt-out: you can disable push notifications at any time in your device's system settings.
6.7 Infomaniak (email dispatch)
- Provider: Infomaniak Network SA, Geneva, Switzerland
- Purpose: dispatch of system and informational emails to organization administrators — in particular a welcome email upon activation of a new organization.
- Data processed: email address, first name and organization name of the recipient.
- Location: Switzerland — no third-country transfer.
- Legal basis: legitimate interest (Art. 31 para. 2 lit. d revFADP / Art. 6 para. 1 lit. f GDPR) in informing administrators about the service.
7. Storage location and retention period
- Server: EU (Frankfurt) at Supabase
- Account and profile data: as long as the account is active
- Audit log: automatic deletion after 12 months
- Brute-force attempts: automatic deletion after 30 days
- Unconfirmed registrations: the account (email address and credentials) is automatically deleted after 7 days without email confirmation. If the person was already managed as a member by their organisation (team membership or assigned roles), the member profile remains as a pre-created profile within the meaning of section 3.6 — without login, deletable by the organisation at any time or re-assignable via an invitation code
- Feedback and reports: deletion after completion, at the latest after 12 months
- After account deletion, all personal data is removed from the production database within 30 days. Backup copies are also overwritten as part of the regular backup cycle (max. 30 days).
8. Cookies and local storage
CleverCrewConnect does not use any tracking cookies for the creation of behavior-based user profiles. For the delivery of regular advertising placements, technical identifiers (such as anonymized advertising IDs of the operating system or IP addresses) may be processed. No cross-site behavioral analytics tools (such as Google Analytics, Facebook Pixel, Hotjar, etc.) are used.
The following is cached locally on the device in a local database in the protected app storage (app sandbox):
- Currently logged-in session (auth token)
- Organization and team data for offline display
- Events and hour entries of the own organization
Upon logout, the session and identity data is removed; upon uninstallation of the App, the entire local app storage is deleted.
9. Security measures
- Encrypted transmission of all data (TLS 1.2+)
- Passwords are never stored in plaintext, but exclusively as cryptographically secure hash (one-way) by the auth system (Supabase / GoTrue)
- Row-Level Security (RLS) at the database level: each member sees exclusively the data of their own organization. Members of other organizations have no access whatsoever.
- Cloudflare Turnstile protects auth endpoints against automated attacks
- Automatic temporary blocking of an IP address upon repeated incorrect entries of the organization's join code. The exact thresholds are not disclosed for security reasons; they are calibrated such that legitimate typing errors do not lead to blocks, but automated brute-force attempts are reliably blocked.
- Audit trail for administrative actions
- Automatic deletion of unconfirmed accounts (credentials and email address) after 7 days
- Backup encryption according to Supabase standard (AES-256)
10. Minimum age
The use of CleverCrewConnect is reserved for persons aged 16 and over. During registration, this self-declaration must be confirmed via mandatory checkbox.
For younger members, there is the possibility that a legal guardian creates an own account and registers them there as a managed shadow profile. In this case, the legal guardian bears responsibility for the correctness of the managed profile's data.
11. Rights of the data subject
You have the following rights vis-à-vis the data controller:
- Access (Art. 25 revFADP / Art. 15 GDPR): which data about you is stored
- Rectification (Art. 32 para. 1 revFADP / Art. 16 GDPR): correct incorrect data — most fields can be edited directly in the profile
- Erasure (Art. 32 para. 2 lit. c revFADP / Art. 17 GDPR): account deletion possible at any time; the App contains a self-service function for this in the settings
- Data portability (Art. 28 revFADP / Art. 20 GDPR): export of your data in a structured, commonly used, machine-readable format on request to support@clevercrewconnect.org
- Objection to processing (Art. 30 para. 2 lit. b revFADP / Art. 21 GDPR): in case of legitimate interest as legal basis
- Withdrawal of a given consent with effect for the future
Requests for the exercise of these rights should be sent to support@clevercrewconnect.org. We process requests within 30 days.
12. Right to lodge a complaint
You have the right to lodge a complaint with the competent data protection authority:
- In Switzerland: Federal Data Protection and Information Commissioner (FDPIC), Feldeggweg 1, 3003 Bern, www.edoeb.admin.ch
- In the EU: the supervisory authority competent for your place of residence (list: edpb.europa.eu)
13. Changes to this policy
This privacy policy will be adapted in case of substantial changes to data flows, third-party services or processing purposes. The currently valid version is always accessible in the App in the section "Settings → Help & Info". In case of substantial changes, all active users will be informed before the entry into force of the new version.
Politique de confidentialité — CleverCrewConnect
Version du : 23 août 2026 Version : 1.4
1. Responsable du traitement
Responsable du traitement des données personnelles au sens de l'art. 5 let. j nLPD et de l'art. 4 ch. 7 RGPD :
Denis Ermantraut
Pappelnweg 16
4310 Rheinfelden
Suisse
E-mail pour les demandes de protection des données : support@clevercrewconnect.org
2. Champ d'application
La présente politique de confidentialité s'applique à l'utilisation de l'application mobile CleverCrewConnect (ci-après « Application ») ainsi qu'à l'ensemble des services serveur associés. Elle décrit quelles données sont traitées lors de l'usage de l'Application, à quelle fin et sur quelle base juridique.
CleverCrewConnect est une plateforme de coordination spécialisée pour le bénévolat. Elle sert à la planification et à l'organisation efficaces des engagements bénévoles dans les clubs, associations et fédérations. Elle prend en charge la coordination d'événements (fêtes, tournois, matchs et similaires), la répartition flexible des bénévoles selon des rôles et des domaines de tâches concrets ainsi que la gestion des organisations, des adhésions et des heures de bénévolat effectuées.
3. Quelles données sont traitées
3.1 Données de compte et de profil
Lors de la création d'un compte, les données suivantes sont collectées et stockées :
- Adresse e-mail (obligatoire)
- Mot de passe (exclusivement sous forme de hachage cryptographique, jamais en clair)
- Prénom et nom (obligatoire)
- Numéro de téléphone (facultatif)
- Confirmation de l'âge minimum : aucune date de naissance concrète n'est collectée ou stockée. Seule est enregistrée la confirmation digitale (auto-déclaration) que la personne utilisatrice est âgée d'au moins 16 ans (obligatoire).
- Date/heure et version du document de votre consentement à la politique de confidentialité et aux CGU (à des fins de preuve)
- Qualifications, par exemple formation chrono de match, formation logiciel feuille de match, permis de conduire (facultatif)
- Statut crew (membre individuel ou membre d'une famille) et fonction familiale (représentant·e légal·e ou enfant)
- Préférence linguistique (allemand, français, italien ou anglais)
- Rôle dans l'organisation (membre crew, Org-Admin) ainsi que, le cas échéant, le statut Team-Admin par équipe
3.2 Données d'adhésion
- Appartenance à une organisation — liée par le code d'accès attribué par l'organisation
- Adhésions à des équipes individuelles, chacune avec une fonction (par ex. joueur·euse ou membre crew) et un statut (en attente, actif, terminé)
- Date d'adhésion et de départ de l'appartenance à l'équipe
3.3 Données d'activité
- Inscriptions à différents rôles lors d'événements (par ex. matchs, compétitions, fêtes)
- Heures de bénévolat effectuées et leur statut de confirmation
- Rapports de saison et aperçus administratifs des heures
- Événements créés soi-même (si autorisé en tant que membre crew sur la base du rôle)
- Frais saisis pour les missions (montant, description, statut de remboursement) ainsi que photos de justificatifs téléversées volontairement — les photos de justificatifs sont accessibles exclusivement aux administrateurs de la propre organisation via des liens à durée limitée
- Pour les événements, l'Application enregistre et affiche en interne à l'organisation qui les a créés et qui les a modifiés en dernier
3.4 Données techniques
- Adresse IP lors de la saisie du code d'accès à l'organisation (stockée pendant 30 jours maximum, pour la défense contre les attaques par force brute automatisées ; base juridique : intérêt légitime à la sécurité du système)
- Entrées du journal d'audit pour les actions administratives (gestion d'org, changements de rôle, suppressions de compte, modifications d'événements — stockées pendant 12 mois maximum)
- Langue et fuseau horaire de l'appareil (pour l'affichage correct de la date/heure et la langue de l'interface)
3.5 Profils fantômes (profils gérés)
Les représentant·e·s légaux peuvent créer des profils fantômes pour des enfants mineurs ou d'autres personnes qu'iels gèrent. Ces profils ne disposent d'aucun login propre (pas d'e-mail, pas de mot de passe) mais sont entièrement gérés par le·la représentant·e légal·e. Pour de tels profils sont stockés : prénom et nom, appartenance à une équipe, le lien familial avec la personne gestionnaire, les attributions de rôles et les heures effectuées, ainsi que les autres champs de profil modifiables. Les notifications concernant un profil géré sont remises à l'appareil de la personne gestionnaire (voir section 6.6).
3.6 Profils précréés par l'admin (code d'invitation)
Les administrateurs d'organisation et d'équipe peuvent créer des profils de membres avant l'inscription de la personne concernée — individuellement ou par import de liste. Ce faisant, l'organisation confirme au fournisseur que la personne concernée consent à la saisie de ses données ; cette confirmation est journalisée. Sont stockés : prénom et nom, appartenance à une équipe avec fonction ainsi que, le cas échéant, le lien familial, les attributions de rôles et les heures. À ce stade, il n'existe aucun login propre. La personne reçoit de son organisation un code d'invitation personnel (valable 90 jours, utilisable une seule fois) avec lequel elle reprend le profil, en définissant alors elle-même son adresse e-mail et son mot de passe et en acceptant la déclaration de confidentialité et les CGU. Si le code n'est pas utilisé, l'organisation peut supprimer à tout moment le profil précréé.
3.7 Contenus liés à l'organisation
Au sein d'une organisation, des documents peuvent être téléversés et des guides créés. Le nom de la personne qui téléverse ou rédige est alors enregistré et affiché en interne à l'organisation (attribution nominative). Les documents sont accessibles uniquement aux membres de la propre organisation via des liens à durée limitée.
3.8 Retours et signalements
Via l'Application, il est possible de signaler des erreurs (fonction « Signaler un bug ») et des contenus inappropriés. Sont enregistrés : la catégorie, la description en texte libre, la version de l'application pour les signalements d'erreurs, ainsi que la référence à la personne qui signale et, le cas échéant, au contenu signalé. La finalité est respectivement la correction des erreurs et la modération. Les destinataires sont exclusivement les exploitants de la plateforme. Les signalements sont supprimés après traitement, au plus tard après 12 mois.
4. Finalités du traitement
Les données mentionnées sont traitées exclusivement aux fins suivantes :
- Fourniture du service : connexion, authentification, affichage des événements, rôles, domaines de tâches et adhésions au sein de l'organisation respective.
- Coordination interne à l'organisation : l'Org-Admin et les Team-Admins peuvent gérer les membres, attribuer des rôles, contrôler les heures effectuées et créer des rapports — conformément à la finalité de l'Application.
- Notifications : remise de notifications push concernant des événements pertinents (par ex. attributions de rôles, changements d'horaire, rappels pour les missions non confirmées) — voir section 6.6.
- Gestion des frais : saisie et traitement internes à l'organisation des frais liés aux missions.
- Communication : e-mails de système et d'information aux administrateurs d'organisation (voir section 6.7) ainsi que traitement des retours et signalements (voir section 3.8).
- Vérification et sécurité : confirmation par e-mail lors de l'inscription, protection contre les tentatives de connexion automatisées (Cloudflare Turnstile), blocage basé sur IP en cas de tentatives de force brute.
- Auditabilité : les interventions administratives (par ex. la création manuelle d'un profil fantôme par un admin) sont consignées afin de garantir la traçabilité.
- Financement du service : l'Application contient des placements publicitaires réguliers pour permettre la mise à disposition gratuite des fonctionnalités centrales. L'affichage de la publicité s'effectue sans création de profils comportementaux étendus. Aucune donnée n'est vendue à des tiers à des fins publicitaires indépendantes du cadre.
5. Bases juridiques
- Exécution du contrat (art. 31 al. 2 let. a nLPD / art. 6 al. 1 let. b RGPD) pour les données nécessaires à la fourniture du service.
- Intérêt légitime (art. 31 al. 2 let. d nLPD / art. 6 al. 1 let. f RGPD) pour les mesures de sécurité (journalisation IP pour la protection contre la force brute, journal d'audit) ainsi que pour l'affichage de publicité pour le refinancement de la plateforme.
- Consentement (art. 31 al. 1 nLPD / art. 6 al. 1 let. a RGPD) pour les indications facultatives (par ex. numéro de téléphone).
6. Transmission à des tiers et sous-traitants
Les services externes suivants traitent des données pour le compte du responsable du traitement :
6.1 Supabase (service de base de données et d'authentification)
- Fournisseur : Supabase Inc., 2261 Market Street #4280, San Francisco, CA 94114, USA
- Région : UE-Francfort (eu-central-1) — toutes les données de base de données et d'authentification sont stockées sur des serveurs situés à l'intérieur de l'Union européenne.
- Base juridique pour le transfert vers un pays tiers : clauses contractuelles types (modules 2 + 3) au sens de l'art. 46 RGPD, complétées par les clauses contractuelles types UE dans le Data Processing Agreement de Supabase.
- Traite : toutes les données mentionnées à la section 3.
6.2 Cloudflare Turnstile (protection anti-bots)
- Fournisseur : Cloudflare Inc., 101 Townsend Street, San Francisco, CA 94107, USA
- Traite : adresse IP, empreinte du navigateur, heuristiques comportementales — exclusivement pour la détection de bots lors de la connexion, l'inscription, la réinitialisation de mot de passe et la saisie du code d'accès.
- Cloudflare stocke ces données conformément à sa propre politique de confidentialité pendant 30 jours maximum.
- Base juridique : art. 6 al. 1 let. f RGPD (intérêt légitime à la défense contre le spam / les bots).
6.3 Telegram (notifications système internes)
- Fournisseur : Telegram Messenger Inc., 71-75 Shelton Street, Londres, UK
- Finalité : utilisé exclusivement pour les messages de statut et de sécurité automatisés à l'administration système du fournisseur (par ex. pour l'activation d'organisations nouvellement enregistrées, lors de nouveaux retours ou lors de la détection de tentatives de manipulation).
- Minimisation des données : aucune donnée personnelle des utilisateur·rice·s finaux n'est transmise à Telegram. Les messages système contiennent exclusivement le nom de l'organisation concernée, des catégories (par ex. la catégorie d'un signalement d'erreur), des identifiants de référence techniques et des changements de statut, ainsi qu'une adresse IP tronquée à des fins de protection contre la force brute. Les détails de contenu (par ex. le texte d'un retour) restent dans la base de données et ne sont consultables que par les exploitants.
6.4 Hive (cache local)
Hive est une base de données locale dans l'espace de stockage protégé de l'application (sandbox de l'application) pour l'affichage hors-ligne. Hors ligne, seule la consultation des données déjà chargées est possible ; les modifications (missions, événements, profils, frais, etc.) nécessitent une connexion Internet active. Les données ne quittent pas l'appareil et sont supprimées lors de la désinstallation de l'Application.
6.5 Google AdMob (diffusion publicitaire)
- Fournisseur : Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irlande
- Finalité : Diffusion des emplacements publicitaires affichés dans l'application (annonces natives dans les listes, vidéo récompensée pour le déblocage volontaire des statistiques fun). Les revenus publicitaires financent l'exploitation gratuite de l'application.
- Données traitées : identifiant publicitaire de l'appareil (AAID sur Android, IDFA sur iOS), adresse IP, région approximative (pays/ville), identifiant de l'application et interactions publicitaires (impressions, clics). Aucune donnée de compte ou d'adhésion n'est transmise à Google.
- Base juridique : art. 6 al. 1 let. f RGPD (intérêt légitime au financement publicitaire de l'application, voir CGV §3) ; pour la publicité personnalisée, en plus art. 6 al. 1 let. a RGPD (consentement).
- Transfert vers pays tiers : clauses contractuelles types selon art. 46 RGPD avec Google LLC (USA).
- Votre contrôle :
- Dans l'UE, un consentement est recueilli via le formulaire de consentement de Google avant le premier affichage publicitaire ; vous pouvez modifier votre choix à tout moment dans les paramètres de l'application, rubrique « Aide & Infos ». Sur iOS, l'application demande en plus l'autorisation de suivi du système (App Tracking Transparency).
- Vous pouvez réinitialiser l'identifiant publicitaire à tout moment dans les réglages de l'appareil (Android : Paramètres → Confidentialité → Annonces ; iOS : Réglages → Confidentialité → Publicité).
- Vous pouvez désactiver la publicité personnalisée dans les mêmes réglages — vous ne verrez alors plus que des annonces contextuelles (non personnalisées).
- Politique de confidentialité de Google : policies.google.com/privacy
- Voir/modifier les paramètres publicitaires : adssettings.google.com
6.6 Google Firebase Cloud Messaging (notifications push)
- Fournisseur : Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Irlande
- Finalité : remise de notifications push, par ex. lors d'attributions de rôles, de changements d'horaire ou comme rappel pour les missions non confirmées.
- Données traitées : jeton d'appareil (identifiant push unique de l'appareil), abonnements thématiques selon l'appartenance aux équipes et le statut d'admin, ainsi que le contenu des messages lui-même — celui-ci peut contenir des noms, des noms d'équipes, le nom de l'organisation et des données d'événements (par ex. titre et date).
- Profils gérés : les notifications concernant un profil fantôme sont remises à l'appareil de la personne gestionnaire.
- Suppression : le jeton d'appareil est lié exclusivement au dernier appareil connecté ; si une autre personne se connecte sur l'appareil, le jeton et les abonnements thématiques sont transférés à son compte. Lors de la suppression du compte, le jeton d'appareil et les abonnements thématiques sont supprimés.
- Transfert vers pays tiers : clauses contractuelles types selon art. 46 RGPD avec Google LLC (USA).
- Désactivation : vous pouvez désactiver les notifications push à tout moment dans les réglages système de votre appareil.
6.7 Infomaniak (envoi d'e-mails)
- Fournisseur : Infomaniak Network SA, Genève, Suisse
- Finalité : envoi d'e-mails de système et d'information aux administrateurs d'organisation — en particulier un e-mail de bienvenue lors de l'activation d'une nouvelle organisation.
- Données traitées : adresse e-mail, prénom et nom de l'organisation de la personne destinataire.
- Localisation : Suisse — pas de transfert vers un pays tiers.
- Base juridique : intérêt légitime (art. 31 al. 2 let. d nLPD / art. 6 al. 1 let. f RGPD) à l'information des administrateurs sur le service.
7. Lieu et durée de stockage
- Serveur : UE (Francfort) chez Supabase
- Données de compte et de profil : tant que le compte est actif
- Journal d'audit : suppression automatique après 12 mois
- Tentatives de force brute : suppression automatique après 30 jours
- Inscriptions non confirmées : le compte (adresse e-mail et identifiants) est automatiquement supprimé après 7 jours sans confirmation par e-mail. Si la personne était déjà gérée comme membre par son organisation (appartenance à une équipe ou rôles attribués), le profil de membre subsiste comme profil pré-créé au sens de la section 3.6 — sans login, supprimable à tout moment par l'organisation ou réattribuable via un code d'invitation
- Retours et signalements : suppression après traitement, au plus tard après 12 mois
- Après la suppression du compte, toutes les données personnelles sont supprimées de la base de production dans un délai de 30 jours. Les copies de sauvegarde sont également écrasées dans le cadre du cycle de sauvegarde régulier (max. 30 jours).
8. Cookies et stockage local
CleverCrewConnect n'utilise aucun cookie de traçage pour la création de profils utilisateurs basés sur le comportement. Pour la diffusion des affichages publicitaires réguliers, des identifiants techniques (tels que des identifiants publicitaires anonymisés du système d'exploitation ou des adresses IP) peuvent être traités. Aucun outil d'analyse comportementale inter-sites (tel que Google Analytics, Facebook Pixel, Hotjar, etc.) n'est utilisé.
Sont mis en cache localement sur l'appareil dans une base de données locale située dans l'espace de stockage protégé de l'application (sandbox de l'application) :
- Session actuellement connectée (token d'auth)
- Données d'organisation et d'équipe pour l'affichage hors-ligne
- Événements et entrées d'heures de l'organisation propre
Lors de la déconnexion, les données de session et d'identité sont supprimées ; lors de la désinstallation de l'Application, l'ensemble du stockage local de l'application est effacé.
9. Mesures de sécurité
- Transmission chiffrée de toutes les données (TLS 1.2+)
- Les mots de passe ne sont jamais stockés en clair, mais exclusivement sous forme de hachage cryptographiquement sécurisé (one-way) par le système d'authentification (Supabase / GoTrue)
- Row-Level Security (RLS) au niveau de la base de données : chaque membre voit exclusivement les données de sa propre organisation. Les membres d'autres organisations n'ont aucun accès.
- Cloudflare Turnstile protège les endpoints d'authentification contre les attaques automatisées
- Blocage automatique temporaire d'une adresse IP en cas de saisies incorrectes répétées du code d'accès à l'organisation. Les seuils exacts ne sont pas divulgués pour des raisons de sécurité ; ils sont calibrés de manière à ce que les erreurs de frappe légitimes ne conduisent pas à des blocages, mais que les tentatives de force brute automatisées soient bloquées de manière fiable.
- Journal d'audit pour les interventions administratives
- Suppression automatique des comptes non confirmés (identifiants et adresse e-mail) après 7 jours
- Chiffrement des sauvegardes selon le standard Supabase (AES-256)
10. Âge minimum
L'utilisation de CleverCrewConnect est réservée aux personnes âgées d'au moins 16 ans. Lors de l'inscription, cette auto-déclaration doit être confirmée par une case à cocher obligatoire.
Pour les membres plus jeunes, il existe la possibilité qu'un·e représentant·e légal·e crée un compte propre et les y inscrive en tant que profil fantôme géré. Dans ce cas, la personne représentant·e légal·e assume la responsabilité de l'exactitude des données du profil géré.
11. Droits de la personne concernée
Vous disposez vis-à-vis du responsable du traitement des droits suivants :
- Accès (art. 25 nLPD / art. 15 RGPD) : quelles données vous concernant sont stockées
- Rectification (art. 32 al. 1 nLPD / art. 16 RGPD) : corriger les données incorrectes — la plupart des champs peuvent être édités directement dans le profil
- Suppression (art. 32 al. 2 let. c nLPD / art. 17 RGPD) : suppression du compte possible à tout moment ; l'Application contient à cet effet une fonction libre-service dans les paramètres
- Portabilité des données (art. 28 nLPD / art. 20 RGPD) : export de vos données dans un format structuré, courant et lisible par machine sur demande à support@clevercrewconnect.org
- Opposition au traitement (art. 30 al. 2 let. b nLPD / art. 21 RGPD) : en cas d'intérêt légitime comme base juridique
- Retrait d'un consentement donné avec effet pour l'avenir
Pour exercer ces droits, adressez-vous à support@clevercrewconnect.org. Nous traitons les demandes dans un délai de 30 jours.
12. Droit de réclamation
Vous avez le droit de déposer une réclamation auprès de l'autorité de protection des données compétente :
- En Suisse : Préposé fédéral à la protection des données et à la transparence (PFPDT), Feldeggweg 1, 3003 Berne, www.edoeb.admin.ch
- Dans l'UE : l'autorité de contrôle compétente pour votre lieu de résidence (liste : edpb.europa.eu)
13. Modifications de la présente politique
La présente politique de confidentialité sera adaptée en cas de modifications substantielles des flux de données, des services tiers ou des finalités de traitement. La version actuellement en vigueur est toujours accessible dans l'Application dans la rubrique « Paramètres → Aide & Infos ». En cas de modifications substantielles, tous les utilisateurs actifs seront informés avant l'entrée en vigueur de la nouvelle version.
Informativa sulla privacy — CleverCrewConnect
Stato: 23 agosto 2026 Versione: 1.4
1. Titolare del trattamento
Responsabile del trattamento dei dati personali ai sensi dell'art. 5 lett. j nLPD e dell'art. 4 n. 7 GDPR è:
Denis Ermantraut
Pappelnweg 16
4310 Rheinfelden
Svizzera
E-mail per richieste in materia di protezione dei dati: support@clevercrewconnect.org
2. Ambito di applicazione
La presente informativa sulla privacy si applica all'utilizzo dell'applicazione mobile CleverCrewConnect (di seguito „App") nonché a tutti i servizi server ad essa collegati. Descrive quali dati vengono trattati durante l'uso dell'App, per quale scopo e su quale base giuridica.
CleverCrewConnect è una piattaforma di coordinamento specializzata per il volontariato. Serve alla pianificazione e organizzazione efficiente degli impegni volontari in club, associazioni e federazioni. Supporta il coordinamento di manifestazioni (feste, tornei, eventi e simili), l'assegnazione flessibile dei volontari a ruoli e ambiti di compiti concreti nonché la gestione di organizzazioni, adesioni e ore di volontariato prestate.
3. Quali dati vengono trattati
3.1 Dati di account e profilo
Alla creazione di un account vengono raccolti e memorizzati i seguenti dati:
- Indirizzo e-mail (obbligatorio)
- Password (esclusivamente come hash crittografico, mai in chiaro)
- Nome e cognome (obbligatorio)
- Numero di telefono (facoltativo)
- Conferma dell'età minima: non viene raccolta o memorizzata alcuna data di nascita concreta. Viene registrata esclusivamente la conferma digitale (autodichiarazione) che la persona utilizzatrice ha almeno 16 anni (obbligatorio).
- Data/ora e versione del documento del consenso all'informativa sulla privacy e ai termini di servizio (a fini di prova)
- Qualifiche, ad es. formazione cronometro partita, formazione software referto, patente di guida (facoltativo)
- Stato crew (membro singolo o parte di una famiglia) e funzione familiare (rappresentante legale o figlio)
- Impostazione lingua (tedesco, francese, italiano o inglese)
- Ruolo nell'organizzazione (membro crew, Org-Admin) nonché, se del caso, lo stato Team-Admin per squadra
3.2 Dati di adesione
- Appartenenza a un'organizzazione — collegata tramite il codice di adesione assegnato dall'organizzazione
- Adesioni a singole squadre, ciascuna con funzione (ad es. giocatore/trice o membro crew) e stato (aperto, attivo, concluso)
- Data di adesione e di uscita dall'appartenenza alla squadra
3.3 Dati di attività
- Iscrizioni a vari ruoli in occasione di manifestazioni (ad es. partite, gare, feste)
- Ore di volontariato prestate e relativo stato di conferma
- Report di stagione e panoramiche amministrative delle ore
- Eventi creati autonomamente (se consentito in qualità di membro crew sulla base del ruolo)
- Spese registrate per gli impieghi (importo, descrizione, stato di rimborso) nonché foto di ricevute caricate volontariamente — le foto delle ricevute sono accessibili esclusivamente agli amministratori della propria organizzazione tramite link a tempo limitato
- Per le manifestazioni viene memorizzato e visualizzato internamente all'organizzazione chi le ha create e chi le ha modificate per ultimo
3.4 Dati tecnici
- Indirizzo IP alla digitazione del codice di adesione dell'organizzazione (memorizzato per un massimo di 30 giorni, per la difesa da attacchi di forza bruta automatizzati; base giuridica: interesse legittimo alla sicurezza del sistema)
- Voci del registro di audit per azioni amministrative (gestione dell'organizzazione, cambiamenti di ruolo, eliminazioni di account, modifiche alle manifestazioni — memorizzate per un massimo di 12 mesi)
- Lingua e fuso orario del dispositivo (per la corretta visualizzazione di data/ora e della lingua dell'interfaccia)
3.5 Profili tutelati (profili gestiti)
I/le rappresentanti legali possono creare i cosiddetti profili tutelati per figli minorenni o altre persone da loro gestite. Tali profili non dispongono di un proprio login (nessuna e-mail, nessuna password) ma sono interamente gestiti dal/la rappresentante legale. Per tali profili vengono memorizzati: nome e cognome, appartenenza alla squadra, il collegamento familiare alla persona che li gestisce, le assegnazioni di ruoli e le ore prestate, nonché gli altri campi del profilo modificabili. Le notifiche riguardanti un profilo gestito vengono recapitate al dispositivo della persona che lo gestisce (vedi sezione 6.6).
3.6 Profili precreati dall'admin (codice d'invito)
Gli amministratori di organizzazione e di squadra possono creare profili di membri già prima della registrazione della persona interessata — singolarmente o tramite importazione di liste. In tal caso l'organizzazione conferma al fornitore che la persona interessata acconsente alla registrazione dei propri dati; questa conferma viene protocollata. Vengono memorizzati: nome e cognome, appartenenza alla squadra con funzione nonché, se del caso, il collegamento familiare, le assegnazioni di ruoli e le ore. In questa fase non esiste alcun login proprio. La persona riceve dalla propria organizzazione un codice d'invito personale (valido 90 giorni, utilizzabile una sola volta) con cui assume il profilo, definendo solo allora e-mail e password e accettando l'informativa sulla privacy e le condizioni. Se il codice non viene utilizzato, l'organizzazione può eliminare in qualsiasi momento il profilo precreato.
3.7 Contenuti relativi all'organizzazione
All'interno di un'organizzazione possono essere caricati documenti e create guide. In tal caso viene memorizzato e visualizzato internamente all'organizzazione il nome della persona che carica o redige (attribuzione del nome). I documenti sono accessibili solo ai membri della propria organizzazione tramite link a tempo limitato.
3.8 Feedback e segnalazioni
Tramite l'App è possibile segnalare errori (funzione „Segnala un bug") e contenuti inappropriati. Vengono registrati: categoria, descrizione a testo libero, per le segnalazioni di errori la versione dell'app, nonché il riferimento alla persona segnalante e, se del caso, al contenuto segnalato. La finalità è rispettivamente la correzione degli errori e la moderazione. I destinatari sono esclusivamente i gestori della piattaforma. Le segnalazioni vengono cancellate dopo l'evasione, al più tardi dopo 12 mesi.
4. Finalità del trattamento
I dati menzionati vengono trattati esclusivamente per le seguenti finalità:
- Fornitura del servizio: login, autenticazione, visualizzazione di manifestazioni, ruoli, ambiti di compiti e adesioni all'interno della rispettiva organizzazione.
- Coordinamento interno all'organizzazione: l'Org-Admin e i Team-Admin possono gestire i membri, assegnare ruoli, controllare le ore prestate e creare report — conformemente allo scopo dell'App.
- Notifiche: recapito di notifiche push su eventi rilevanti (ad es. assegnazioni di ruoli, modifiche di orario, promemoria per impieghi non confermati) — vedi sezione 6.6.
- Gestione delle spese: registrazione e gestione interna all'organizzazione delle spese relative agli impieghi.
- Comunicazione: e-mail di sistema e informative agli amministratori di organizzazione (vedi sezione 6.7) nonché gestione di feedback e segnalazioni (vedi sezione 3.8).
- Verifica e sicurezza: conferma e-mail al sign-up, protezione contro tentativi di accesso automatizzati (Cloudflare Turnstile), blocco basato su IP in caso di tentativi di forza bruta.
- Auditabilità: gli interventi amministrativi (ad es. la creazione manuale di un profilo tutelato da parte di un admin) vengono registrati per garantire la tracciabilità.
- Finanziamento del servizio: l'App contiene posizionamenti pubblicitari regolari per consentire la messa a disposizione gratuita delle funzioni principali. La visualizzazione della pubblicità avviene senza creazione di profili comportamentali estesi. Nessun dato viene venduto a terzi per finalità pubblicitarie indipendenti dal contesto.
5. Basi giuridiche
- Esecuzione del contratto (art. 31 cpv. 2 lett. a nLPD / art. 6 par. 1 lett. b GDPR) per i dati necessari alla fornitura del servizio.
- Interesse legittimo (art. 31 cpv. 2 lett. d nLPD / art. 6 par. 1 lett. f GDPR) per misure di sicurezza (logging IP per la protezione da forza bruta, registro di audit) nonché per la visualizzazione di pubblicità per il rifinanziamento della piattaforma.
- Consenso (art. 31 cpv. 1 nLPD / art. 6 par. 1 lett. a GDPR) per indicazioni facoltative (ad es. numero di telefono).
6. Trasmissione a terzi e responsabili del trattamento
I seguenti servizi esterni trattano dati per conto del titolare del trattamento:
6.1 Supabase (servizio di database e autenticazione)
- Fornitore: Supabase Inc., 2261 Market Street #4280, San Francisco, CA 94114, USA
- Regione: UE-Francoforte (eu-central-1) — tutti i dati di database e di autenticazione vengono memorizzati su server all'interno dell'Unione europea.
- Base giuridica per il trasferimento in paesi terzi: clausole contrattuali standard (moduli 2 + 3) ai sensi dell'art. 46 GDPR, integrate dalle clausole contrattuali standard UE nel Data Processing Agreement di Supabase.
- Tratta: tutti i dati menzionati nella sezione 3.
6.2 Cloudflare Turnstile (protezione anti-bot)
- Fornitore: Cloudflare Inc., 101 Townsend Street, San Francisco, CA 94107, USA
- Tratta: indirizzo IP, fingerprint del browser, euristiche comportamentali — esclusivamente per il riconoscimento di bot al login, registrazione, reset password e digitazione del codice di adesione.
- Cloudflare memorizza questi dati conformemente alla propria privacy policy per un massimo di 30 giorni.
- Base giuridica: art. 6 par. 1 lett. f GDPR (interesse legittimo alla difesa da spam / bot).
6.3 Telegram (notifiche di sistema interne)
- Fornitore: Telegram Messenger Inc., 71-75 Shelton Street, Londra, UK
- Finalità: utilizzato esclusivamente per messaggi di stato e di sicurezza automatizzati all'amministrazione di sistema del fornitore (ad es. per l'attivazione di organizzazioni di nuova registrazione, per nuovi feedback o al rilevamento di tentativi di manipolazione).
- Minimizzazione dei dati: nessun dato personale degli utenti finali viene trasmesso a Telegram. I messaggi di sistema contengono esclusivamente il nome dell'organizzazione interessata, categorie (ad es. la categoria di una segnalazione di errore), ID di riferimento tecnici e cambiamenti di stato, nonché un indirizzo IP troncato a fini di protezione da forza bruta. I dettagli di contenuto (ad es. il testo di un feedback) restano nel database e sono consultabili esclusivamente dai gestori.
6.4 Hive (cache locale)
Hive è un database locale nella memoria protetta dell'app (sandbox dell'app) per la visualizzazione offline. Offline è possibile solo consultare i dati già caricati; le modifiche (incarichi, eventi, profili, spese, ecc.) richiedono una connessione Internet attiva. I dati non lasciano il dispositivo e vengono rimossi alla disinstallazione dell'App.
6.5 Google AdMob (distribuzione pubblicitaria)
- Fornitore: Google Ireland Limited, Gordon House, Barrow Street, Dublino 4, Irlanda
- Finalità: Distribuzione degli spazi pubblicitari mostrati nell'applicazione (annunci nativi nelle liste, video con ricompensa per lo sblocco volontario delle statistiche fun). I ricavi pubblicitari finanziano l'esercizio gratuito dell'applicazione.
- Dati trattati: identificativo pubblicitario del dispositivo (AAID su Android, IDFA su iOS), indirizzo IP, regione approssimativa (paese/città), identificativo dell'applicazione e interazioni pubblicitarie (impressioni, clic). Nessun dato di account o di appartenenza viene trasmesso a Google.
- Base giuridica: art. 6 par. 1 lett. f GDPR (interesse legittimo al finanziamento pubblicitario dell'applicazione, vedi T&C §3); per la pubblicità personalizzata, inoltre art. 6 par. 1 lett. a GDPR (consenso).
- Trasferimento verso paesi terzi: clausole contrattuali tipo secondo art. 46 GDPR con Google LLC (USA).
- Il tuo controllo:
- Nell'UE, prima della visualizzazione del primo annuncio viene richiesto un consenso tramite il modulo di consenso di Google; puoi modificare la tua scelta in qualsiasi momento nelle impostazioni dell'app, sezione „Aiuto & Info". Su iOS l'app richiede inoltre l'autorizzazione di tracciamento del sistema (App Tracking Transparency).
- Puoi reimpostare l'identificativo pubblicitario in qualsiasi momento nelle impostazioni del dispositivo (Android: Impostazioni → Privacy → Annunci; iOS: Impostazioni → Privacy → Pubblicità).
- Puoi disattivare la pubblicità personalizzata nelle stesse impostazioni — vedrai allora solo annunci contestuali (non personalizzati).
- Informativa sulla privacy di Google: policies.google.com/privacy
- Vedere/modificare le impostazioni pubblicitarie: adssettings.google.com
6.6 Google Firebase Cloud Messaging (notifiche push)
- Fornitore: Google Ireland Limited, Gordon House, Barrow Street, Dublino 4, Irlanda
- Finalità: recapito di notifiche push, ad es. per assegnazioni di ruoli, modifiche di orario o come promemoria per impieghi non confermati.
- Dati trattati: token del dispositivo (identificativo push univoco del dispositivo), abbonamenti a topic secondo l'appartenenza alle squadre e lo stato di admin, nonché i contenuti stessi dei messaggi — questi possono contenere nomi, nomi di squadre, il nome dell'organizzazione e dati di eventi (ad es. titolo e data).
- Profili gestiti: le notifiche riguardanti un profilo tutelato vengono recapitate al dispositivo della persona che lo gestisce.
- Cancellazione: il token del dispositivo è legato esclusivamente all'ultimo dispositivo con cui è stato effettuato l'accesso; se un'altra persona accede sul dispositivo, il token e gli abbonamenti ai topic vengono trasferiti al suo account. Alla cancellazione dell'account, il token del dispositivo e gli abbonamenti ai topic vengono rimossi.
- Trasferimento verso paesi terzi: clausole contrattuali tipo secondo art. 46 GDPR con Google LLC (USA).
- Disattivazione: puoi disattivare le notifiche push in qualsiasi momento nelle impostazioni di sistema del tuo dispositivo.
6.7 Infomaniak (invio e-mail)
- Fornitore: Infomaniak Network SA, Ginevra, Svizzera
- Finalità: invio di e-mail di sistema e informative agli amministratori di organizzazione — in particolare un'e-mail di benvenuto all'attivazione di una nuova organizzazione.
- Dati trattati: indirizzo e-mail, nome e nome dell'organizzazione della persona destinataria.
- Ubicazione: Svizzera — nessun trasferimento verso paesi terzi.
- Base giuridica: interesse legittimo (art. 31 cpv. 2 lett. d nLPD / art. 6 par. 1 lett. f GDPR) all'informazione degli amministratori sul servizio.
7. Luogo e durata di conservazione
- Server: UE (Francoforte) presso Supabase
- Dati di account e profilo: finché l'account è attivo
- Registro di audit: cancellazione automatica dopo 12 mesi
- Tentativi di forza bruta: cancellazione automatica dopo 30 giorni
- Registrazioni non confermate: l'account (indirizzo e-mail e credenziali) viene cancellato automaticamente dopo 7 giorni senza conferma e-mail. Se la persona era già gestita come membro dalla sua organizzazione (appartenenza a una squadra o ruoli assegnati), il profilo di membro resta come profilo pre-creato ai sensi della sezione 3.6 — senza login, cancellabile in qualsiasi momento dall'organizzazione o riassegnabile tramite codice d'invito
- Feedback e segnalazioni: cancellazione dopo l'evasione, al più tardi dopo 12 mesi
- Dopo la cancellazione dell'account, tutti i dati personali vengono rimossi dal database di produzione entro 30 giorni. Le copie di backup vengono parimenti sovrascritte nell'ambito del ciclo di backup regolare (max. 30 giorni).
8. Cookie e archiviazione locale
CleverCrewConnect non utilizza cookie di tracciamento per la creazione di profili utente basati sul comportamento. Per la consegna degli inserimenti pubblicitari regolari possono essere trattati identificatori tecnici (come ID pubblicitari anonimizzati del sistema operativo o indirizzi IP). Non vengono utilizzati strumenti per analisi comportamentali cross-site (come Google Analytics, Facebook Pixel, Hotjar, ecc.).
Localmente sul dispositivo vengono memorizzati nella cache in un database locale nella memoria protetta dell'app (sandbox dell'app):
- Sessione attualmente connessa (token di auth)
- Dati di organizzazione e team per la visualizzazione offline
- Eventi e voci di ore della propria organizzazione
Al logout vengono rimossi i dati di sessione e di identità; alla disinstallazione dell'App viene cancellata l'intera memoria locale dell'app.
9. Misure di sicurezza
- Trasmissione crittografata di tutti i dati (TLS 1.2+)
- Le password non vengono mai memorizzate in chiaro, ma esclusivamente come hash crittograficamente sicuro (one-way) tramite il sistema di autenticazione (Supabase / GoTrue)
- Row-Level Security (RLS) a livello di database: ogni membro vede esclusivamente i dati della propria organizzazione. I membri di altre organizzazioni non hanno alcun accesso.
- Cloudflare Turnstile protegge gli endpoint di autenticazione da attacchi automatizzati
- Blocco automatico temporaneo di un indirizzo IP in caso di ripetute digitazioni errate del codice di adesione dell'organizzazione. Le soglie esatte non vengono divulgate per motivi di sicurezza; sono calibrate in modo che errori di battitura legittimi non portino a blocchi, ma che tentativi di forza bruta automatizzati vengano bloccati in modo affidabile.
- Registro di audit per interventi amministrativi
- Cancellazione automatica degli account non confermati (credenziali e indirizzo e-mail) dopo 7 giorni
- Crittografia dei backup secondo lo standard Supabase (AES-256)
10. Età minima
L'utilizzo di CleverCrewConnect è riservato alle persone dai 16 anni in su. Alla registrazione questa autodichiarazione deve essere confermata tramite spunta obbligatoria.
Per i membri più giovani esiste la possibilità che un·a rappresentante legale crei un proprio account e li registri come profilo tutelato gestito. In tal caso il·la rappresentante legale si assume la responsabilità della correttezza dei dati del profilo gestito.
11. Diritti dell'interessato
Nei confronti del titolare del trattamento Le spettano i seguenti diritti:
- Accesso (art. 25 nLPD / art. 15 GDPR): quali dati La riguardano sono memorizzati
- Rettifica (art. 32 cpv. 1 nLPD / art. 16 GDPR): correggere dati inesatti — la maggior parte dei campi può essere modificata direttamente nel profilo
- Cancellazione (art. 32 cpv. 2 lett. c nLPD / art. 17 GDPR): cancellazione dell'account possibile in qualsiasi momento; l'App contiene a tal fine una funzione self-service nelle impostazioni
- Portabilità dei dati (art. 28 nLPD / art. 20 GDPR): esportazione dei Suoi dati in un formato strutturato, di uso comune, leggibile da dispositivo automatico su richiesta a support@clevercrewconnect.org
- Opposizione al trattamento (art. 30 cpv. 2 lett. b nLPD / art. 21 GDPR): in caso di interesse legittimo come base giuridica
- Revoca di un consenso prestato con effetto per il futuro
Le richieste per l'esercizio di questi diritti vanno indirizzate a support@clevercrewconnect.org. Trattiamo le richieste entro 30 giorni.
12. Diritto di reclamo
Lei ha il diritto di presentare reclamo presso l'autorità competente in materia di protezione dei dati:
- In Svizzera: Incaricato federale della protezione dei dati e della trasparenza (IFPDT), Feldeggweg 1, 3003 Berna, www.edoeb.admin.ch
- Nell'UE: l'autorità di controllo competente per il Suo luogo di residenza (elenco: edpb.europa.eu)
13. Modifiche della presente informativa
La presente informativa sulla privacy viene adattata in caso di modifiche sostanziali dei flussi di dati, dei servizi terzi o delle finalità di trattamento. La versione attualmente in vigore è sempre disponibile nell'App nella sezione „Impostazioni → Aiuto & Info". In caso di modifiche sostanziali tutti gli utenti attivi vengono informati prima dell'entrata in vigore della nuova versione.