SISIRA

Privacy Policy

Last updated · 27 July 2026
  1. 1The short version
  2. 2Who we are
  3. 3What we collect
  4. 4Legal bases
  5. 5Who we share data with
  6. 6How long we keep data
  7. 7Your rights
  8. 8Children
  9. 9Security
  10. 10Changes to this policy
  11. 11Contact

1The short version

SISIRA is an AI life assistant. The things you entrust to it — your calendar, memories, wardrobe, pantry and preferences — are stored in your account and used for one purpose: to assist you.

2Who we are

The data controller for SISIRA is WISE IT SRL (registration no. RO29931473), Oradea, Romania. For anything in this policy, write to contact@sisira.app.

3What we collect

Account data. When you sign in, we receive your name, email address and a unique identifier from your sign-in provider (such as Apple).

Content you add. Calendar events, reminders, memories, notes, wardrobe and pantry items, photos you attach, and preferences you set. This content exists so SISIRA can assist you — it is never used for anything else.

AI requests. When you talk to SISIRA — by text or voice — your message, together with the relevant context from your content, is sent to our AI providers to generate the response. Providers process these requests under agreements that prohibit using them to train their models.

Subscription status. Purchases are processed by Apple; we receive your subscription status (not your payment details) via RevenueCat.

Diagnostics. Anonymized crash reports and basic usage events, so we can keep the app reliable.

4Legal bases

Under the GDPR we process data on these bases: performance of a contract (providing the service you signed up for), legitimate interests (diagnostics, fraud prevention), consent (optional communications and permissions such as calendar or photo access, which you can withdraw at any time), and legal obligation (tax and accounting records).

5Who we share data with

Only processors that make the service work: Apple (sign-in, purchases, notifications), RevenueCat (subscription status), Supabase (database and authentication hosting), our AI providers (Anthropic, OpenAI — to generate responses), and hosting and crash-reporting infrastructure. Each is bound by a data processing agreement.

We never sell your data and we do not run third-party advertising SDKs.

6How long we keep data

Your content is kept for as long as your account exists. If you delete your account, your data is deleted within 90 days. Crash logs are kept for 90 days. Billing records are kept as long as Romanian tax law requires (typically 10 years).

7Your rights

Under the GDPR you can request access, correction, deletion, portability, restriction of processing, or object to processing. Email contact@sisira.app and we will respond within 30 days. You may also lodge a complaint with your local supervisory authority — in Romania, the ANSPDCP.

8Children

SISIRA is intended for people aged 16 and over. If we learn we hold data on a younger child, we will delete it.

9Security

Data in transit is encrypted with TLS. Data at rest is encrypted by our hosting providers (AES-256 or equivalent). If a breach affects your personal data, we will notify you and the supervisory authority within 72 hours, as GDPR Article 33 requires.

10Changes to this policy

If we make material changes, we will give you at least 14 days' notice in the app or by email before they take effect.

11Contact

WISE IT SRL · Oradea, Romania · contact@sisira.app