Initial draft
This is an initial draft written for a small project, not legal advice and not a reviewed policy. It describes honestly what the software currently does.
Only if you create an account:
Masra7 records a small set of first-party events — a production page being viewed, a ticket link being clicked, something being saved, marked seen or reviewed, an artist or venue being followed, and app installation. Each record holds the event name, the catalogue identifiers it refers to, a coarse label for where in the interface it happened, and — only when you are signed in — your user id.
The text of your reviews is never copied into analytics. There are no third-party trackers, advertising pixels or fingerprinting scripts, and the collection can be switched off entirely by the operator.
Your profile is private by default. Nothing you log is visible to anyone else unless you make your profile public, and a review is only shown publicly when both your profile and that particular review are set to public.
You can delete your account from Settings at any time. That removes your profile, everything you have logged, your ratings and reviews, your follows, your submissions and your analytics events, and then removes the sign-in record itself. It cannot be undone.
Data is held in Google Cloud Firestore in the europe-west1 region, and authentication is handled by Firebase Authentication. Nothing is sold or shared with third parties.
For anything about your data, contact the operator of this deployment. The administrator address is configured per deployment.