Last updated: 3 August 2026
This policy explains what we collect through this website (leewyn.app), how the Leewyn app itself handles your teenager's data once you're a customer, and what rights you have either way. It's written by us, not a template — if anything is unclear, email hello@leewyn.app.
The data controller is ToModern e.U. (Marc Jenni), Seitenstettengasse 5/37, 1010 Wien, Österreich — full company details are in our legal notice. You can reach us at hello@leewyn.app for anything to do with your data.
When you visit leewyn.app or sign up on the landing page, here's everything we collect — no more:
The specific events we send to PostHog are: a button click on "Get Leewyn" (with which button you clicked, e.g. header or hero), and whether a signup on the landing page was submitted, completed, or failed. That's the full list.
This is a different system from the website above, so it gets its own section. Leewyn works by becoming the device owner on your teenager's phone — the same kind of lock companies use on work devices — and enforcing rules locally, on the device itself:
We'll need standard account details from you as the parent (email, and — once billing is live — payment information via whichever processor we use at the time). We don't have that integration built yet; this policy will be updated to name that processor before it goes live.
We don't use anything we collect for advertising, and we don't build marketing profiles. There's no ad pixel on this site, and there never will be.
We apply this same standard to every visitor, regardless of where you're located — not just to visitors in the EU/EEA.
We keep the list of processors short on purpose: our database host (Neon, hosted in Frankfurt, Germany) and PostHog (analytics, EU Cloud). We don't sell your data to anyone, we don't share it with ad networks or data brokers, and we don't transfer it outside the EU. The only other case where we'd share information is if we were legally required to, or if Leewyn were ever acquired or merged — in which case your data would move under the same protections described here.
We use encrypted connections (TLS) between your browser, our servers, and our database, and we limit who and what can access the data described above to what's needed to run the site. No system is 100% secure, and we won't claim otherwise — but we keep the amount of data we hold small on purpose, so there's less that could ever go wrong.
This website — the landing page you're reading about right now — is meant for parents and guardians, not children, and we don't knowingly collect personal data from children through it. The Leewyn app itself is different: it's designed to run on a teenager's device, installed and controlled by their parent, under the local-only model described in section 3.
Unlike most sites, we actually honor it: if your browser sends a Do Not Track signal, our analytics respect it.
Under the GDPR, you can ask us to access, correct, delete, or export the data we hold about you, restrict or object to how we use it, or withdraw consent at any time — none of that affects the lawfulness of anything we did before you asked. Email hello@leewyn.app and we'll sort it out ourselves, not via a support queue. If you think we've gotten something wrong, you can also complain to the Austrian data protection authority (dsb.gv.at).
If we change how we handle your data, we'll update this page and move the "Last updated" date at the top. For anything material — a new processor, a new purpose — we'll say so plainly here rather than burying it in legal language.
ToModern e.U., Seitenstettengasse 5/37, 1010 Wien, Österreich — hello@leewyn.app. Email us to review, update, or delete anything we hold about you.