perma
Privacy policy
Last updated 19 August 2026
perma is a personal project run from Denmark, so this notice follows the EU General Data Protection Regulation (GDPR). It covers both the waitlist on this website and the perma app.
Who is responsible
The data controller is HaaN (Danish CVR no. 43653970), v/ Victor Alexander Haaning, Vestre Teglgade 4, 3. 7, 2450 København SV, Denmark.
HaaN is a Danish sole proprietorship (enkeltmandsvirksomhed) and is not a separate legal person from its owner; for GDPR purposes Victor Alexander Haaning is personally the data controller.
Contact: hello@goperma.app — for anything in this notice, including requests to see or delete your data.
The waitlist (this website)
When you sign up for the waitlist we store:
- your email address
- the country you select
- your language preference (English or Danish)
- the date and time you signed up
We use your email to tell you when the open beta is ready, plus the occasional short update. The legal basis is your consent (GDPR Art. 6(1)(a)), which you give by submitting the form and can withdraw at any time. The country is used only to understand, in aggregate, where interest is coming from. We don't ask for your name, and we don't build a profile of you — see visitor counts below for the aggregate page counts we do keep.
The perma app
You can use the app anonymously, with no account. If you want your garden backed up and synced across your devices, you can create an optional account. The app collects:
- An anonymous identifier. The first time you open the app, we create an anonymous account via Supabase, generating a random identifier (a UUID) stored on your device and on Supabase. On its own it has no connection to your name or email. Legal basis: necessary to provide the service (GDPR Art. 6(1)(b)), because the app needs a session identifier to work.
- Your garden. The plants you add and where you place them on your plot, your areas and structures, the notes and observations you write, and the plot's location. If you anchor your garden on the map, the app geocodes an address you type via the Danish Address Web API (DAWA) and stores the resulting coordinates. You type that address in yourself: the app does not read your device location to place your plot. Without an account this stays on your device (for anonymous sessions, the plot coordinates are also stored with your anonymous identifier in Supabase). If you create an account, your garden is backed up to Supabase so it can sync across your devices. Legal basis: necessary to deliver the map and backup features (GDPR Art. 6(1)(b)).
- Photos of plants you scan. If you photograph a plant to identify it, that photo is sent to Pl@ntNet, a plant-identification service run by a French public research initiative, which sends back the likely species. Neither of us keeps it. Pl@ntNet's API terms state that the photos sent to them are not stored in their database and are held only in their server's memory while the identification runs, and we do not store it either. They receive the image and our developer key, and nothing that identifies you. The one exception is if you turn on the option to help improve identification: then the photo is saved to our storage together with the species suggestions and a coarse region band (roughly a 200 km square, not a place), and deliberately without your identifier or anything else linking it to you. That option is off unless you switch it on, and you can leave it off and still use scanning normally. Legal basis: performing the identification you asked for (GDPR Art. 6(1)(b)); for the donated photos, your consent (Art. 6(1)(a)).
- Where you are, when you scan (optional). When you scan a plant, the app can record where you spotted it, so the find sits in the right place in your garden log. This one is your actual device location, and the app asks for the permission first. Say no and scanning still works. It is only ever read while you have the scanner open, never in the background, and it is saved on that observation, alongside your garden. If you donate the photo, only the coarse region band described above travels with it, never the exact spot. Legal basis: delivering the logging feature you asked for (GDPR Art. 6(1)(b)).
- Account email (only if you create an account). Accounts are optional. If you sign up, we store the email address you use, whether you sign in by email link, password, or Google. If you sign in with Google, we also receive the basic profile Google shares for sign-in (your name and email). We use this to sign you in and to sync your garden. We do not use it for marketing and we do not share it. You can delete your account at any time, which erases the server-side record. Legal basis: necessary to provide the account and sync you asked for (GDPR Art. 6(1)(b)).
- What you post. Posts and votes on the feedback board are stored with your identifier, and other people using the app can see the posts. Plant entries and corrections you send to the public wiki are published in the shared database, and are stored without your identifier, so nothing links them back to you. Legal basis: providing the community features you chose to use (GDPR Art. 6(1)(b)).
- Foraging information. The app shows edibility / safety notes from the community wiki behind a safety disclaimer. We do not collect any data about your foraging activity.
- Crash and performance diagnostics. To find and fix bugs, the app uses Sentry to report crashes and basic performance data (for example error stack traces, app version, and device model and operating system). These reports are not linked to your anonymous identifier, and we strip location and identifier fields before sending them. We do not use them for advertising or tracking. Legal basis: our legitimate interest in keeping the app stable and secure (GDPR Art. 6(1)(f)).
What we do not collect
- background or continuous location: your device location is read only while the scanner is open, and only if you allow it
- your contacts, calendar, messages, or the other photos in your library
- payment information
- advertising or behavioural-tracking data
- any special-category (sensitive) data under GDPR Art. 9
Who processes your data
- Supabase — database + authentication (waitlist entries; the app's anonymous identifier and plot coordinates; and, if you create an account, your account email and the garden data synced to it). Stored in the EU on AWS (Frankfurt). As a US company, transfers outside the EU are covered by the European Commission's standard contractual clauses (SCCs).
- DAWA / Styrelsen for Dataforsyning og Infrastruktur (SDFI) — geocoding (address → coordinates). A Danish public-sector API; the address string is sent to resolve coordinates and is not retained beyond the response.
- Pl@ntNet — identifies the plant in a photo you scan. A French public research initiative. Their API terms state that submitted photos are not stored in their database and stay in server memory only for the length of the identification. They keep a history of the queries made through our developer account, which carries nothing about you.
- Map imagery and nearby-nature lookups. To draw the map and work out what grows well on your plot, the app fetches aerial and satellite tiles from Esri and from Datafordeler (the Danish public data platform), and looks up nearby habitats and recorded species from OpenStreetMap's Overpass API and GBIF. These requests carry the area you are looking at, so those services can tell roughly where your plot is. They receive no name, email, or identifier.
- Google Cloud (Cloud Run, EU region europe-north1) — runs our own terrain and sunlight analysis. It receives the outline of your plot to compute slope, water flow, and how much sun each part gets.
- Vercel — hosting for this website and the app's web version, and the cookieless visitor counts described above. US company; SCCs in place.
- Resend — delivers waitlist and contact-form emails. US company; SCCs in place.
- Sentry (Functional Software, Inc.) — crash and performance diagnostics. Data is stored in the EU (Germany). As a US company, transfers outside the EU are covered by the European Commission's standard contractual clauses (SCCs).
We don't sell your data or share it for anyone else's marketing.
How long we keep it
- Waitlist: until the open beta launches and you've had the chance to create an account, or until you ask us to delete it — whichever comes first.
- App without an account (anonymous identifier + plot coordinates): for the lifetime of your app installation, or until you delete the garden / app. You can also ask us to erase the server-side record.
- Account (email + synced garden): until you delete your account, after which we erase the server-side record. You can also ask us to erase it.
- Scans and observations (including the location on them): kept with your garden until you delete the observation, the garden, or your account.
- Donated scan photos: if you opted in, kept for as long as they are useful for improving identification. Because they are stored with nothing that ties them to you, we cannot look them up per person, which also means we cannot remove them individually. Photos from scans where you did not opt in are never stored by us at all.
- Wiki contributions: published in the shared plant database and kept there. They carry no link to you, so there is no record of yours to remove.
- Crash and performance diagnostics: kept by Sentry for up to 90 days, then automatically deleted.
- Visitor counts: kept by Vercel as aggregate statistics. They contain no identifier, so there is no record of yours to look up or remove.
When you contact us
If you message us (contact form or email), we store your name (if you give one), your email, and your message so we can reply — kept with Supabase in the EU, with a copy reaching us by email via Resend. We use it only to respond and delete it once your query is settled.
Other services this site uses
This page loads fonts (Google Fonts), icons, and a few images from external services, which may receive your IP address as part of delivering those files. We don't use advertising or behavioural-tracking cookies, and the only thing stored in your browser is your language preference.
Visitor counts
This website and the web version of the app use Vercel Web Analytics to count visits. It records the page you opened, the site you arrived from, your country, and your browser, operating system and device type — and it stores nothing in your browser, sets no cookies, and gives you no identifier that follows you between visits or between days. To count returning visitors within a single day, Vercel derives a one-way hash from the incoming request; the ingredient that makes it is replaced every 24 hours, so the same person on two days is two separate counts and the hash cannot be turned back into a person, an IP address or a device.
We use it to see how many people find the app and which pages they read — nothing more. It is not linked to your account, your anonymous app identifier, or your garden. Legal basis: our legitimate interest in knowing whether the product reaches anyone (GDPR Art. 6(1)(f)). Because nothing is written to or read from your device, it needs no cookie banner.
Your rights
Under the GDPR you can ask us to show you the data we hold, correct it, delete it ("right to be forgotten"), provide it in a portable format, restrict or object to processing, and withdraw consent at any time. If you use the app anonymously, the simplest erasure is deleting the app, and you can email us to erase the server-side session. If you created an account, you can delete it in the app (or email us), which erases your account email and the garden data synced to it. Our account deletion page sets out the steps, what gets erased, and the few things that stay.
Email hello@goperma.app and we'll handle it within 30 days. You also have the right to complain to the Danish Data Protection Agency, Datatilsynet.
Children
perma is not directed at children under 16, and we do not knowingly collect their data. If you believe a child has provided us with data, email hello@goperma.app and we'll delete it.
Changes
If this notice changes, we'll update the date at the top.
← Back to home
perma
Privatlivspolitik
Senest opdateret 19. august 2026
perma er et personligt projekt drevet fra Danmark, og denne politik følger derfor EU's databeskyttelsesforordning (GDPR). Den dækker både ventelisten på dette website og perma-appen.
Hvem er ansvarlig
Dataansvarlig er HaaN (CVR-nr. 43653970) ved Victor Alexander Haaning, Vestre Teglgade 4, 3. 7, 2450 København SV, Danmark.
HaaN er en enkeltmandsvirksomhed og er ikke en selvstændig juridisk person adskilt fra ejeren; efter GDPR er Victor Alexander Haaning personligt dataansvarlig.
Kontakt: hello@goperma.app — om alt i denne politik, også hvis du vil se eller have slettet dine oplysninger.
Ventelisten (dette website)
Når du tilmelder dig ventelisten, gemmer vi:
- din e-mailadresse
- det land, du vælger
- din sprogindstilling (engelsk eller dansk)
- dato og klokkeslæt for din tilmelding
Vi bruger din e-mail til at fortælle dig, når den åbne beta er klar, plus enkelte korte opdateringer. Retsgrundlaget er dit samtykke (GDPR artikel 6, stk. 1, litra a), som du giver ved at sende formularen, og som du kan trække tilbage når som helst. Landet bruges kun til i samlet form at se, hvor interessen kommer fra. Vi beder ikke om dit navn og laver ingen profil af dig — se besøgstal nedenfor for de samlede sidetal, vi faktisk gemmer.
perma-appen
Du kan bruge appen anonymt, uden konto. Hvis du vil have din have sikkerhedskopieret og synkroniseret på tværs af dine enheder, kan du oprette en valgfri konto. Appen indsamler:
- En anonym identifikator. Første gang du åbner appen, opretter vi en anonym konto via Supabase og danner en tilfældig identifikator (en UUID), som gemmes på din enhed og hos Supabase. I sig selv har den ingen forbindelse til dit navn eller din e-mail. Retsgrundlag: nødvendig for at levere tjenesten (GDPR artikel 6, stk. 1, litra b), da appen kræver en sessionsidentifikator for at fungere.
- Din have. De planter, du tilføjer, og hvor du placerer dem på din grund, dine områder og strukturer, de noter og observationer du skriver, samt grundens placering. Hvis du placerer din have på kortet, geokoder appen en adresse, du indtaster, via Danmarks Adressers Web API (DAWA) og gemmer de resulterende koordinater. Den adresse indtaster du selv: appen aflæser ikke din enhedsplacering for at placere din grund. Uden en konto bliver dette på din enhed (for anonyme sessioner gemmes grundens koordinater dog sammen med din anonyme identifikator hos Supabase). Hvis du opretter en konto, sikkerhedskopieres din have til Supabase, så den kan synkronisere på tværs af dine enheder. Retsgrundlag: nødvendig for at levere kort- og backup-funktionen (GDPR artikel 6, stk. 1, litra b).
- Fotos af planter, du scanner. Tager du et billede af en plante for at få den bestemt, sendes det foto til Pl@ntNet, en planteidentifikationstjeneste drevet af et fransk offentligt forskningsinitiativ, som sender de sandsynlige arter tilbage. Ingen af os gemmer det. Pl@ntNets API-vilkår oplyser, at de fotos, der sendes til dem, ikke gemmes i deres database, men kun ligger i deres servers hukommelse, mens identifikationen kører, og vi gemmer det heller ikke. De modtager billedet og vores udviklernøgle og intet, der identificerer dig. Den eneste undtagelse er, hvis du slår muligheden til for at hjælpe med at forbedre identifikationen: så gemmes fotoet i vores lager sammen med artsforslagene og et groft områdebånd (cirka et 200 km stort felt, ikke et sted), og helt bevidst uden din identifikator eller andet, der knytter det til dig. Den mulighed er slået fra, indtil du selv slår den til, og du kan lade den være slået fra og bruge scanning som normalt. Retsgrundlag: at udføre den identifikation, du har bedt om (GDPR artikel 6, stk. 1, litra b); for de donerede fotos dit samtykke (artikel 6, stk. 1, litra a).
- Hvor du er, når du scanner (valgfrit). Når du scanner en plante, kan appen registrere, hvor du så den, så fundet ligger det rigtige sted i din havelog. Dette er din faktiske enhedsplacering, og appen beder om tilladelsen først. Siger du nej, virker scanning stadig. Den aflæses kun, mens du har scanneren åben, aldrig i baggrunden, og den gemmes på den observation sammen med din have. Donerer du fotoet, følger kun det grove områdebånd beskrevet ovenfor med, aldrig det præcise sted. Retsgrundlag: at levere den logningsfunktion, du har bedt om (GDPR artikel 6, stk. 1, litra b).
- Konto-e-mail (kun hvis du opretter en konto). Konti er valgfrie. Hvis du tilmelder dig, gemmer vi den e-mailadresse, du bruger, uanset om du logger ind med e-maillink, adgangskode eller Google. Logger du ind med Google, modtager vi også de basisoplysninger, Google deler ved login (dit navn og din e-mail). Vi bruger det til at logge dig ind og til at synkronisere din have. Vi bruger det ikke til markedsføring, og vi deler det ikke. Du kan slette din konto når som helst, hvilket sletter registreringen på serversiden. Retsgrundlag: nødvendig for at levere den konto og synkronisering, du har bedt om (GDPR artikel 6, stk. 1, litra b).
- Det, du deler. Indlæg og stemmer på feedback-tavlen gemmes sammen med din identifikator, og andre, der bruger appen, kan se indlæggene. Planteopslag og rettelser, du sender til den offentlige wiki, udgives i den fælles database og gemmes uden din identifikator, så intet fører dem tilbage til dig. Retsgrundlag: at levere de fællesskabsfunktioner, du har valgt at bruge (GDPR artikel 6, stk. 1, litra b).
- Foraging-oplysninger. Appen viser spiselighed/sikkerhedsnoter fra fælles-wikien bag en sikkerhedsadvarsel. Vi indsamler ingen data om din foraging-aktivitet.
- Nedbruds- og ydelsesdiagnostik. For at finde og rette fejl bruger appen Sentry til at rapportere nedbrud og grundlæggende ydelsesdata (for eksempel fejl-stakspor, appversion samt enhedsmodel og styresystem). Disse rapporter er ikke knyttet til din anonyme identifikator, og vi fjerner placerings- og identifikatorfelter, før de sendes. Vi bruger dem ikke til annoncering eller sporing. Retsgrundlag: vores legitime interesse i at holde appen stabil og sikker (GDPR artikel 6, stk. 1, litra f).
Hvad vi ikke indsamler
- placering i baggrunden eller løbende: din enhedsplacering aflæses kun, mens scanneren er åben, og kun hvis du tillader det
- dine kontakter, din kalender, dine beskeder eller de øvrige billeder i dit galleri
- betalingsoplysninger
- annonce- eller adfærdssporingsdata
- særlige kategorier af følsomme oplysninger efter GDPR artikel 9
Hvem behandler dine data
- Supabase — database + godkendelse (ventelistetilmeldinger; appens anonyme identifikator og grundkoordinater; og, hvis du opretter en konto, din konto-e-mail og de havedata, der synkroniseres til den). Gemmes i EU på AWS (Frankfurt). Som amerikansk firma er overførsler uden for EU dækket af EU-Kommissionens standardkontraktbestemmelser (SCC).
- DAWA / Styrelsen for Dataforsyning og Infrastruktur (SDFI) — geokodning (adresse → koordinater). Et dansk offentligt API; adressen sendes for at finde koordinaterne og gemmes ikke ud over svaret.
- Pl@ntNet — bestemmer planten på det foto, du scanner. Et fransk offentligt forskningsinitiativ. Deres API-vilkår oplyser, at indsendte fotos ikke gemmes i deres database, men kun ligger i serverens hukommelse, så længe identifikationen varer. De gemmer en historik over de forespørgsler, der er lavet gennem vores udviklerkonto, og den indeholder intet om dig.
- Kortbilleder og opslag om nærliggende natur. For at tegne kortet og vurdere, hvad der trives på din grund, henter appen luft- og satellitbilleder fra Esri og fra Datafordeler (den danske offentlige dataplatform) og slår nærliggende naturtyper og registrerede arter op via OpenStreetMaps Overpass API og GBIF. Disse forespørgsler indeholder det område, du kigger på, så de tjenester kan se, cirka hvor din grund ligger. De modtager hverken navn, e-mail eller identifikator.
- Google Cloud (Cloud Run, EU-regionen europe-north1) — kører vores egen terræn- og solanalyse. Den modtager omridset af din grund for at beregne hældning, vandets løb og hvor meget sol hver del får.
- Vercel — hosting af dette website og appens webudgave samt de cookiefri besøgstal beskrevet ovenfor. Amerikansk firma; SCC på plads.
- Resend — leverer e-mails fra venteliste og kontaktformular. Amerikansk firma; SCC på plads.
- Sentry (Functional Software, Inc.) — nedbruds- og ydelsesdiagnostik. Data gemmes i EU (Tyskland). Som amerikansk firma er overførsler uden for EU dækket af EU-Kommissionens standardkontraktbestemmelser (SCC).
Vi sælger ikke dine oplysninger og deler dem ikke til andres markedsføring.
Hvor længe vi gemmer det
- Venteliste: indtil den åbne beta lanceres, og du har haft mulighed for at oprette en konto, eller indtil du beder os slette den — alt efter hvad der kommer først.
- App uden konto (anonym identifikator + grundkoordinater): så længe appen er installeret, eller indtil du sletter haven/appen. Du kan også bede os slette den serverside-registrering.
- Konto (e-mail + synkroniseret have): indtil du sletter din konto, hvorefter vi sletter registreringen på serversiden. Du kan også bede os slette den.
- Scanninger og observationer (inklusive placeringen på dem): gemmes sammen med din have, indtil du sletter observationen, haven eller din konto.
- Donerede scanningsfotos: har du slået muligheden til, gemmes de, så længe de er nyttige til at forbedre identifikationen. Fordi de gemmes uden noget, der knytter dem til dig, kan vi ikke slå dem op per person, hvilket også betyder, at vi ikke kan fjerne dem enkeltvis. Fotos fra scanninger, hvor du ikke har slået muligheden til, gemmes slet ikke hos os.
- Wiki-bidrag: udgives i den fælles plantedatabase og bliver der. De har ingen forbindelse til dig, så der findes ingen registrering af din, der kan fjernes.
- Nedbruds- og ydelsesdiagnostik: gemmes af Sentry i op til 90 dage og slettes derefter automatisk.
- Besøgstal: gemmes af Vercel som samlet statistik. De indeholder ingen identifikator, så der findes ingen registrering af din, der kan slås op eller fjernes.
Når du kontakter os
Hvis du skriver til os (kontaktformular eller e-mail), gemmer vi dit navn (hvis du oplyser det), din e-mail og din besked, så vi kan svare — opbevaret hos Supabase i EU, med en kopi til os på e-mail via Resend. Vi bruger det kun til at svare dig og sletter det, når din henvendelse er afsluttet.
Andre tjenester, siden bruger
Siden henter skrifttyper (Google Fonts), ikoner og enkelte billeder fra eksterne tjenester, som kan modtage din IP-adresse, når filerne leveres. Vi bruger ikke annoncer eller cookies til adfærdssporing, og det eneste, der gemmes i din browser, er din sprogindstilling.
Besøgstal
Dette website og appens webudgave bruger Vercel Web Analytics til at tælle besøg. Det registrerer den side, du åbnede, hvor du kom fra, dit land og din browser, styresystem og enhedstype — og det gemmer intet i din browser, sætter ingen cookies og giver dig ingen identifikator, der følger dig mellem besøg eller mellem dage. For at tælle gengangere inden for samme dag danner Vercel en envejs-hash ud fra forespørgslen; ingrediensen bag den udskiftes hver 24. time, så den samme person to dage i træk tælles som to, og hashen kan ikke oversættes tilbage til en person, en IP-adresse eller en enhed.
Vi bruger det til at se, hvor mange der finder appen, og hvilke sider de læser — ikke andet. Det er ikke koblet til din konto, din anonyme app-identifikator eller din have. Retsgrundlag: vores legitime interesse i at vide, om produktet når nogen (GDPR artikel 6, stk. 1, litra f). Da der hverken skrives til eller læses fra din enhed, kræver det ingen cookiebanner.
Dine rettigheder
Efter GDPR kan du bede os om at vise de oplysninger, vi har, rette dem, slette dem ("retten til at blive glemt"), udlevere dem i et portabelt format, begrænse eller gøre indsigelse mod behandling samt trække samtykke tilbage når som helst. Bruger du appen anonymt, er den enkleste sletning at fjerne appen, og du kan skrive til os for at slette serverside-sessionen. Har du oprettet en konto, kan du slette den i appen (eller skrive til os), hvilket sletter din konto-e-mail og de havedata, der er synkroniseret til den. Vores side om sletning af konto beskriver trinnene, hvad der slettes, og de få ting der bliver liggende.
Skriv til hello@goperma.app, så ordner vi det inden for 30 dage. Du har også ret til at klage til Datatilsynet.
Børn
perma er ikke rettet mod børn under 16 år, og vi indsamler ikke bevidst deres data. Hvis du mener, at et barn har givet os oplysninger, så skriv til hello@goperma.app, så sletter vi dem.
Ændringer
Hvis denne politik ændrer sig, opdaterer vi datoen øverst.
← Tilbage til forsiden