Zuletzt aktualisiert: 20. September 2026
Sponti ist eine App für spontane Treffen mit Menschen, die du selbst auswählst. Diese Erklärung beschreibt, welche Daten die App erhebt, warum, wer sie sehen kann und wie du sie wieder löschst. Sie gilt für die Android- und die iOS-Version.
Sponti wird von seinem Entwickler betrieben, der für die hier beschriebenen Daten verantwortlich ist. Kontakt: armaganarsln@gmail.com.
Sponti kennt nur einen Anmeldeweg: deine Telefonnummer. Du gibst sie ein, wir lassen über Firebase Authentication (Google) eine SMS mit einem sechsstelligen Code an diese Nummer senden, und mit dem Code bestätigst du, dass die Nummer dir gehört. Es gibt kein Passwort.
Deine Nummer wird dabei an Google übermittelt, damit die SMS zugestellt werden kann. Google prüft die Anfrage ausserdem auf Missbrauch — je nach Gerät über Play Integrity, App Check oder ein reCAPTCHA im Browser. Deine Nummer ist gleichzeitig der Schlüssel deines Kontos: sie identifiziert dich gegenüber den Menschen, mit denen du Pläne teilst.
| Daten | Wozu |
|---|---|
| Telefonnummer | Anmeldung, Bestätigung per SMS und Kennung deines Kontos. Pflichtangabe — ohne sie funktioniert die App nicht. |
| Anzeigename | Damit andere wissen, wer einen Plan erstellt hat oder mitkommt. |
| Profilbild (freiwillig) | Wird neben deinem Namen angezeigt, wenn du eines hinzufügst. |
| Pläne, Chatnachrichten, Fotos, Zusagen und dein Status „Offen für Spontis“ | Der eigentliche Inhalt der App. Wird gespeichert, damit die eingeladenen Personen ihn sehen. |
| Ort eines Plans (freiwillig, Android) | Nur der Ort, den du einem Plan bewusst hinzufügst. Sponti verfolgt deinen Standort nicht im Hintergrund. Die iOS-Version fragt den Standort derzeit gar nicht ab. |
| Push-Token (Firebase Cloud Messaging) | Eine Gerätekennung, damit Benachrichtigungen über deine Pläne ankommen. Sie wird gelöscht, sobald du dich abmeldest. |
| Meldungen und Blockierungen | Wenn du einen Plan meldest, wird gespeichert, dass du ihn gemeldet hast. Blockierte Personen bleiben nur auf deinem Gerät gespeichert und werden niemandem mitgeteilt. |
| Absturz- und Nutzungsdaten | Firebase Crashlytics (Android und iOS) für Abstürze, Firebase Analytics (nur Android) für grobe Nutzungszahlen. Die Werbe-ID (AD_ID) ist in Sponti ausdrücklich deaktiviert. |
Die Android-Version kann dein Telefonbuch lesen, um dir zu zeigen, wer aus deinen Kontakten Sponti schon benutzt. Das ist freiwillig und lässt sich in den Einstellungen abschalten. Die iOS-Version greift überhaupt nicht auf Kontakte zu.
Dein Telefonbuch wird nicht gespeichert. Für den Abgleich schickt die App die Telefonnummern aus deinen Kontakten in normalisierter Form an eine Serverfunktion, die ausschliesslich antwortet, welche davon zu einem Sponti-Konto gehören. Die gesendeten Nummern werden nicht protokolliert und nicht gespeichert — auf dem Server bleibt davon nichts zurück. Die Namen aus deinem Telefonbuch verlassen dein Gerät nie.
Früher lief das umgekehrt: die App lud die Liste aller Sponti-Konten auf dein Gerät und verglich sie dort. Deine Kontakte blieben so zwar vollständig lokal, aber es bedeutete, dass jedes angemeldete Konto die Telefonnummern aller anderen herunterladen konnte. Beides gleichzeitig geht nicht — wer nach einer Nummer fragt, verrät damit die Frage. Wir halten den heutigen Weg für den sichereren, weil er niemandem das Telefonbuch aller anderen aushändigt.
Umgekehrt kannst du in den Einstellungen festlegen, ob andere dich über deine Telefonnummer finden dürfen. Diese Einstellung wird auf dem Server durchgesetzt, nicht erst in der App der anderen Person.
Ein Plan ist sichtbar für die Person, die ihn erstellt hat, für die eingeladenen Personen und — wenn der Plan für den eigenen Kreis geöffnet wurde — für die Verbindungen der erstellenden Person. Pläne sind nicht öffentlich und nicht über Suchmaschinen auffindbar.
Dein Anzeigename und dein Profilbild sind für andere angemeldete Sponti-Nutzerinnen und -Nutzer sichtbar, weil die App darüber Verbindungen herstellt. Deine Telefonnummer, deine E-Mail-Adresse und dein Push-Token liegen getrennt davon in einem Bereich, den nur dein eigenes Konto lesen kann.
Sponti nutzt Google Firebase: Authentication, Realtime Database, Cloud Storage,
Cloud Messaging, Crashlytics und (auf Android) Analytics. Datenbank und
Serverfunktionen laufen in der Google-Region europe-west1 in
Belgien. Google LLC kann als Auftragsverarbeiter Daten auch in anderen Ländern
verarbeiten; Grundlage dafür sind die Standardvertragsklauseln.
Wir verkaufen keine Daten, schalten keine Werbung und verfolgen dich nicht über andere Apps oder Websites hinweg.
Deine Daten bleiben gespeichert, solange dein Konto besteht. Du kannst dein Konto direkt in der App löschen (Profil → Konto löschen) oder das Löschformular benutzen. Wir löschen deine personenbezogenen Daten innerhalb von 24 Stunden nach einer bestätigten Anfrage, soweit wir sie nicht gesetzlich aufbewahren müssen.
Zwei Einschränkungen, die wir offen nennen: Nachrichten, die du in den Chat eines Plans geschrieben hast, bleiben für die anderen Teilnehmenden sichtbar, weil sie Teil deren Unterhaltung sind. Und Pläne, die dir nicht gehören, bleiben bestehen — gelöscht wird, was zu deinem Konto gehört.
Nach der DSGVO und dem Schweizer Datenschutzgesetz hast du das Recht auf Auskunft, Berichtigung, Löschung, Einschränkung der Verarbeitung, Datenübertragbarkeit und Widerspruch. Schreib uns dafür an die unten genannte Adresse. Du kannst dich ausserdem bei einer Datenschutzaufsichtsbehörde beschweren.
Sponti ist nicht für Kinder unter 13 Jahren bestimmt, und wir erheben wissentlich keine Daten von ihnen. Bist du zwischen 13 und 16, brauchst du je nach Land die Zustimmung deiner Eltern. Unsere Standards zum Schutz von Kindern stehen unter Child Safety Standards.
Der Zugriff auf die Datenbank ist durch serverseitige Regeln beschränkt, die an deine bestätigte Telefonnummer gebunden sind. Persönliche Angaben liegen in einem Bereich, den nur dein Konto lesen kann. Fotos werden vor dem Hochladen verkleinert. Kein System ist vollkommen sicher — teile Einladungen deshalb nur mit Menschen, denen du vertraust.
Wir können diese Erklärung anpassen. Wesentliche Änderungen erkennst du am Datum oben auf dieser Seite.
Fragen oder Anliegen zu deinen Daten:
E-Mail: armaganarsln@gmail.com
Last updated: 20 September 2026
Sponti is an app for making spontaneous plans with people you choose. This policy describes what data the app collects, why, who can see it, and how you delete it. It covers both the Android and the iOS version.
Sponti is operated by its developer, who is the data controller for the information described here. Contact: armaganarsln@gmail.com.
Sponti has one way in: your phone number. You enter it, we ask Firebase Authentication (Google) to send a six-digit code by SMS to that number, and the code proves the number is yours. There is no password.
Your number is passed to Google so the SMS can be delivered. Google also checks the request for abuse — depending on your device, through Play Integrity, App Check, or a reCAPTCHA in a browser. Your number is also your account key: it is how the people you share plans with recognise you.
| Data | Why |
|---|---|
| Phone number | Signing in, SMS verification, and identifying your account. Required — the app does not work without it. |
| Display name | So others know who created a plan or joined one. |
| Profile photo (optional) | Shown next to your name if you add one. |
| Plans, chat messages, photos, RSVPs and your “Open for Spontis” status | The actual content of the app, stored so the people you invited can see it. |
| A plan's location (optional, Android) | Only the location you deliberately attach to a plan. Sponti does not track your location in the background. The iOS version does not request location at all. |
| Push token (Firebase Cloud Messaging) | A device identifier so notifications about your plans reach you. It is deleted when you sign out. |
| Reports and blocks | Reporting a plan records that you reported it. People you block are stored only on your device, and are never told. |
| Crash and usage data | Firebase Crashlytics (Android and iOS) for crashes, Firebase Analytics (Android only) for coarse usage counts. The advertising ID (AD_ID) is explicitly disabled in Sponti. |
The Android version can read your address book to show you which of your contacts already use Sponti. This is optional and can be switched off in settings. The iOS version does not access contacts at all.
Your address book is not stored. To match it, the app sends the phone numbers from your contacts, in normalised form, to a server function that replies only with which of them belong to a Sponti account. The numbers sent are not logged and not stored — nothing of them remains on the server. The names in your address book never leave your phone.
This used to work the other way round: the app downloaded the list of all Sponti accounts to your device and compared it there. That kept your contacts entirely local, but it also meant any signed-in account could download everyone else's phone number. You cannot have both — asking about a number is what tells us you asked. We think today's arrangement is the safer one, because it does not hand anybody everyone else's phone book.
In the other direction, settings let you choose whether other people may find you by your phone number. That setting is enforced on the server, not merely in the other person's app.
A plan is visible to the person who created it, to the people invited to it, and — if the plan was opened to the creator's circle — to that person's connections. Plans are not public and are not indexed by search engines.
Your display name and profile photo are visible to other signed-in Sponti users, because that is how the app connects people. Your phone number, email address and push token are held separately, in an area only your own account can read.
Sponti uses Google Firebase: Authentication, Realtime Database, Cloud Storage,
Cloud Messaging, Crashlytics and (on Android) Analytics. The database and the
server functions run in Google's europe-west1 region in Belgium.
Google LLC, as a processor, may process data in other countries on the basis of
the Standard Contractual Clauses.
We do not sell data, we do not run ads, and we do not track you across other apps or websites.
Your data is kept while your account exists. You can delete your account in the app (Profile → Delete account) or use the deletion form. We delete your personal data within 24 hours of a verified request, except where we are required to keep it by law.
Two limits we would rather state plainly: messages you wrote in a plan's chat stay visible to the other participants, because they are part of their conversation. And plans that are not yours remain — what is deleted is what belongs to your account.
Under the GDPR and the Swiss Data Protection Act you have the right to access, rectify, erase, restrict processing of, and port your data, and to object to processing. Write to the address below to exercise any of them. You may also complain to a data protection authority.
Sponti is not intended for children under 13, and we do not knowingly collect data from them. If you are between 13 and 16, you may need a parent's consent depending on your country. Our child protection standards are at Child Safety Standards.
Access to the database is restricted by server-side rules tied to your verified phone number. Personal details sit in an area only your account can read. Photos are downscaled before upload. No system is perfectly secure — so share invitations only with people you trust.
We may update this policy. Material changes will show in the date at the top of this page.
Questions or requests about your data:
Email: armaganarsln@gmail.com