Wedding Seating Planner
Privacy Policy
Updated 7 October 2026
Who is responsible
Wedding Seating Planner is developed by Yurii Koshkin in Spain under the Gatoficio studio brand. Contact support@gatoficio.com for privacy questions.
Your wedding records stay on your device
Event details, guest names, RSVP statuses, table assignments, guest rules and plans are stored locally. We do not receive this content. There is no app account or app-operated cloud sync. Device and iCloud backups may include local app data according to your Apple settings; these are separate from an app-operated service.
Imports and exports
Pasted CSV content is processed on your device. When you export a CSV or venue PDF, the system share sheet lets you select a destination. These files can contain names and seating assignments; review them before sharing. The recipient or service handles the shared copy under its own policies.
Limited analytics and your choice
The release app uses TelemetryDeck to understand onboarding, planning and purchase flows. Minimal analytics is enabled by default without a blocking prompt. Turn off “Share usage analytics” in Settings → Privacy. This stops future sending and discards queued analytics. Previously received events are not automatically deleted. If you enable analytics again, restart the app to resume it. Analytics never changes access to planning or paid features.
We use these limited statistics to find broken workflows and improve the app, not for advertising or individual profiling. Where this processing is subject to data-protection law, we rely on our legitimate interest in maintaining and improving the service, balanced against your privacy through data minimization, on-device identifier hashing and the accessible opt-out. You may object using that switch or by contacting support. We do not treat the default setting as affirmative consent to unrelated processing.
App events contain coarse onboarding step numbers, workflow outcomes, guest-count ranges, revision or export action types, paywall layout and experiment version, lifetime product type, purchase or restore outcomes, and rating-request attempts. We do not send guest names, event names, exact guest lists or table assignments, relationships, contact details, meals or allergies, CSV or PDF contents, file names, receipts, payment details or transaction identifiers.
The SDK attaches a hashed client identifier, a session identifier, timestamps, app version/build and technical device information. This may include operating system, model, architecture, screen settings, language/region, time zone, appearance, layout direction and accessibility settings. We do not set an account identity, associate events with wedding records or support messages, use an advertising identifier, sell this information, or track you across other companies' apps or websites. A hashed identifier is still an identifier; analytics is not described here as containing no identifiers.
When available, analytics also includes Apple’s App Store storefront country code, the app version/build, a workflow version label, and a coarse distribution category (local testing, sandbox, verified production, or unknown). The storefront is Apple’s commerce territory, not your GPS position or precise location. These categories help us keep test activity separate and compare workflow reliability across releases and markets; they do not include Apple account details, receipts, or transaction identifiers.
TelemetryDeck processes analytics in the European Union. Its privacy information explains technical metadata and identifier handling and states that it does not retain visitors' IP addresses. There is no fixed routine deletion interval promised here for all analytics. Contact support with questions; do not send a guest list or Apple receipt to identify an analytics event.
Apple purchases
Apple handles billing for the one-time lifetime Pro purchase. StoreKit checks verified access, restores purchases and handles revocation. When analytics is enabled, coarse lifetime product and purchase outcomes are sent as described above. Receipts and transaction identifiers are not sent to TelemetryDeck. We do not receive payment card details. Apple maintains its own purchase records.
Support messages
If you email us, we receive your email address, message and attachments through our email providers. We use them to answer your request and retain necessary support records, not for marketing. Please send redacted examples rather than a complete guest list.
Deletion and rights
Delete local events in the app or remove the app to remove its local records; offloading may preserve data. Shared files and backups must be managed separately. We cannot retrieve local plans we do not hold. Necessary support records are kept only for the request, follow-up or applicable obligations. You may request access, correction, deletion or restriction of support information, or object to processing where applicable, at the address above. You may contact your local data-protection authority, including Spain's AEPD.
Opening our website
Website requests are separate from app analytics. See the Gatoficio website privacy notice for hosting and connection information.