Mentions légales
Politique de confidentialité de l’application Resifly
Date d’entrée en vigueur : 30 juillet 2026
1. General provisions
This Privacy Policy describes what data is processed when you use the Resifly mobile application (the “App”) and how that data is protected.
The operator of the App is RESIFLY LIMITED, a company registered in the Republic of Cyprus (registration number: 420483, registered address: Anexartisias, 37A 3036, Limassol, Cyprus).
Privacy contact: contact@resifly.ch
By using the App, the User confirms that they have read this Policy.
2. Core principle: data stays on the device
Resifly is designed around local storage. The App has no operator-side user accounts, no server backend for user data, and no cloud sync.
The Operator has no technical means to access data that the User enters into the App.
3. What data the App processes
The User enters the following into the App themselves:
- full name and date of birth;
- trip details: countries, entry and exit dates, trip purposes;
- images and copies of documents: passports, visas, residence permits, bookings, certificates, and tickets;
- information about tax and immigration residency goals;
- notes, comments, and generated reports.
All of the above data is stored solely in the memory of the User’s device and is not transmitted to the Operator.
4. Device permissions
The App may request the following permissions. Each is optional, and refusing a permission does not block the App except for the related feature.
Camera
Used to photograph documents and scan boarding passes. Images are stored locally in encrypted storage and are not sent to external servers.
Face ID / Touch ID
Used for quick unlock of the App. Biometric data is processed solely by iOS in the device’s Secure Enclave. The App does not receive or store biometric data.
Location (while using the App)
Used to determine the country of the User’s current location so the App can remind them to log a trip when the country changes. The App stores locally only a two-letter country code. Precise coordinates are not stored and are not transmitted anywhere.
Notifications
Used for local reminders about document expiry and approaching stay limits. Notifications are generated on the device. The Operator does not send push notifications from its servers.
5. Data protection
Access to the App is protected by a PIN that the User sets during setup. The PIN is stored in the system Keychain.
User documents are stored encrypted using AES-GCM. The encryption key is derived from the PIN and does not leave the device.
The Operator has no means to recover a forgotten PIN. If the PIN is lost, access to encrypted data will be impossible.
6. Subscriptions and payments
Resifly Premium subscriptions are purchased and processed by Apple through the App Store. The Operator does not receive or process bank card details or other payment credentials of the User.
Payment data processing is governed by Apple’s privacy policy: www.apple.com/legal/privacy/
7. Diagnostic data
The App uses the system MetricKit mechanism to collect stability information: crashes, hangs, and resource use. This information is stored locally on the device and is not sent to the Operator or third parties. Trip and document details are not included in diagnostics.
Separately, iOS may send anonymised crash reports to Apple if the User has enabled the relevant setting on the device. This setting is managed under Privacy & Security → Analytics & Improvements.
8. Disclosure to third parties
The Operator does not sell, transfer, or grant third parties access to User data.
The App does not use advertising networks, behavioural analytics systems, or cross-app / cross-site tracking tools.
Data may leave the device only at the User’s own initiative: when exporting a PDF report or ZIP archive, when creating a device backup with Apple tools, or when using third-party services that the User chooses to grant access to.
9. Retention and deletion
Data remains on the device until the User deletes it.
Deleting the App from the device permanently deletes all trips, documents, reports, and encryption keys. Because the Operator does not keep backups, data cannot be recovered after deletion.
10. User rights
Under the General Data Protection Regulation (GDPR), the User has rights of access, rectification, erasure, restriction of processing, and data portability.
Because data is stored only on the User’s device, these rights are exercised by the User through the App: editing and deleting records, exporting data as PDF and ZIP, and fully deleting data by removing the App.
For questions about exercising these rights, the User may contact contact@resifly.ch.
11. Policy changes
The Operator may update this Policy. The current version is published at resifly.ch/fr/privacy with the effective date indicated.
12. Contact
RESIFLY LIMITED
Republic of Cyprus
Email: contact@resifly.ch