Privacy Policy

Last updated 28 August 2026

The short version. You can browse and search every event in Annual Calendar without an account. If you sign in — with Apple or Google — we store your email address, the profile details you choose to give us, and the events you save. We do not ask for your location, we do not use advertising trackers, and we do not sell your data to anyone.

1. Who we are

Annual Calendar is published by Kaizen Technologies Ltd, a company registered in England and Wales under company number 09108099, whose registered office is at 4 Wagtail Court, 34 Pipit Drive, London SW15 3BF, United Kingdom ("we", "us", "our").

We are the data controller for the personal data described in this policy. If you have any question about it, or want to exercise any of your rights, email justin@justinhast.com.

This policy covers the Annual Calendar iPhone app and this website.

2. Using the app without an account

You can open Annual Calendar and browse, search and read every published event without signing in. In that state we do not know who you are. We still record anonymous product usage events as described in section 3, tied to a random identifier generated on your device rather than to you.

An account is only needed to save events to your personal calendar.

3. What we collect and why

Account information

We offer sign-in with Apple and sign-in with Google. We do not operate passwords and never see your Apple or Google credentials. From your chosen provider we receive:

We use this to create and secure your account and to contact you about the service.

Profile information you choose to give us

During onboarding and in your account settings you may provide:

These are optional beyond what is needed to complete sign-up, and you can change or clear them at any time in the app. We use them to personalise what the app shows you and to understand, in aggregate, who our audience is.

Events you save

When you save an event we store the link between your account and that event so your saved list is there when you come back, on any device you sign in on.

Product analytics

We record a small set of first-party product events so we can see where the app is confusing or broken — for example that a sign-in was attempted, which provider was used, an error code if it failed, which onboarding step was reached, and how long a step took. These are stored in our own database. We do not use Google Analytics, Firebase, Meta, or any other third-party analytics or advertising SDK, and there are no advertising identifiers in the app.

Before you sign in, these events are tied to a random identifier created on your device. After you sign in they are also tied to your account.

Technical information

Our hosting providers automatically log technical information when the app or website talks to our servers, including IP address, timestamps and basic request details. This is used for security, abuse prevention and diagnosing faults.

4. What we do not collect

5. Our legal bases (UK GDPR)

WhatLegal basis
Creating and running your account; storing your saved eventsPerformance of a contract with you
Profile details you volunteerYour consent, which you can withdraw by clearing the field
Product analytics, security logging and fault diagnosisOur legitimate interest in a working, secure product, balanced against your privacy by keeping the data minimal
Checking you are 18 or overOur legitimate interest in operating an adults-only service
Responding to a legal requestCompliance with a legal obligation

6. Age

Annual Calendar is for adults. You must be 18 or over to create an account, and the app will not accept a date of birth that puts you under 18. The service is not directed at children and we do not knowingly collect data from anyone under 18. If you believe a child has given us personal data, email us and we will delete it.

7. Who we share data with

We do not sell your personal data and we do not share it for advertising. We use a small number of service providers who process data on our behalf under contract:

ProviderWhat they doWhere
SupabaseDatabase, authentication and file storage — this is where your account, profile and saved events liveEuropean Union (Ireland)
AppleSign in with Apple; App Store distribution; the map view inside event pagesGlobal
GoogleGoogle sign-in, if you choose itGlobal

We may also disclose data if we are legally required to, or to establish or defend legal claims.

A note on profile photos

Profile photos are stored on a public file host, which means anyone holding the exact file link can view the image. The link is not published anywhere and is not guessable in practice, but do not upload a photo you would not be comfortable being seen. You can remove your photo at any time from your account screen.

8. Where your data is stored

Your account, profile and saved events are stored in the European Union (Ireland). Apple and Google may process sign-in data in the United States and elsewhere; those transfers are covered by the standard safeguards those companies operate, including the UK International Data Transfer Addendum and the EU Standard Contractual Clauses.

9. How long we keep it

10. Deleting your account

To delete your account and everything attached to it, email justin@justinhast.com from the address you signed up with. We will confirm and complete the deletion within 30 days. Deletion removes your profile, your saved events and your profile photo, and disconnects the analytics events we hold from your identity.

11. Your rights

Under UK data protection law you have the right to:

Email justin@justinhast.com to exercise any of these. We will respond within one month.

If you are unhappy with how we have handled your data you can complain to the Information Commissioner's Office at ico.org.uk or on 0303 123 1113. We would appreciate the chance to put it right first.

12. Security

Your data is held on managed infrastructure with encryption in transit and at rest, and access to it is restricted by row-level database rules so that one account cannot read another's data. Administrative access is limited to the people who need it. No system is perfectly secure, but we take this seriously and will tell you and the ICO promptly if a breach affects you.

13. Changes to this policy

If we change this policy we will update the date at the top of this page, and for anything significant we will tell you in the app or by email before it takes effect.

14. Contact

Kaizen Technologies Ltd
4 Wagtail Court
34 Pipit Drive
London SW15 3BF
United Kingdom
justin@justinhast.com