Privacy Policy
Teno — by Ambra
Effective Date: April 1, 2026
Last Updated: April 12, 2026
Ambra (“we,” “us,” or “our”) operates the Teno mobile application (the “App”). This Privacy Policy explains how we collect, use, and protect your information when you use Teno.
By using Teno, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
1.1 Account Information
We use Sign in with Apple for authentication. When you sign in, Apple provides us with:
- A unique, anonymous user identifier (not your real Apple ID)
- Your name and email address only if you choose to share them (Apple lets you hide your email)
We do not store your name or email. We only retain the anonymous identifier to associate your itineraries with your account.
1.2 Itinerary Content
When you create an itinerary, you provide content including:
- City or destination name
- Trip dates
- Titles, subtitles, and travel details
- Day-by-day entries (times, descriptions, labels)
- Little Notes or Vibe Check images
- Reminders
- Unlock screen configuration (prompt and answer)
- Theme and typography preferences
This content is stored on our servers so you can access, edit, and share your itineraries.
1.3 Photos
If you use the Vibe Check feature, you may select photos from your Photo Library. Selected images are compressed, resized, and stored as part of your itinerary data. We only access photos you explicitly select — we do not access your full Photo Library.
1.4 Apple Music
If you attach a song to an itinerary, we store only the Apple Music song identifier, title, artist name, and album art URL. We do not store or access your Apple Music library, listening history, or subscription status. A temporary 30-second preview may be streamed when a recipient opens your itinerary.
1.5 Suggestions
Recipients of a shared itinerary can submit suggestions (a name and text message). These are stored as part of the itinerary and visible to the creator.
1.6 Automatically Collected Information
We use Firebase (by Google) for authentication and data storage. Firebase may automatically collect:
- Device type and operating system version
- App version
- Crash logs and performance diagnostics
- Basic usage analytics (e.g., app launches)
- Subscription status and premium tier
1.7 Subscription & Payment Data
If you subscribe to Teno Premium, Apple handles all payment processing through your Apple ID. We never see, collect, or store your credit card, billing address, or any financial details.
On your device, StoreKit 2 processes transaction data locally (product identifiers, purchase dates, and subscription status) to determine your entitlements. We store only a boolean premium status flag in Firebase to enable consistent access across sessions. No transaction receipts, payment amounts, or billing details are transmitted to our servers.
We do not collect precise location, IP-based location, advertising identifiers (IDFA), or any data for ad targeting.
1.8 Collaboration
When you invite someone to collaborate on an itinerary, we use email addresses to look up existing Teno users. If the invitee has a Teno account, their user ID is added to the itinerary's collaborator list. Collaborators can view and edit the itinerary content you share with them.
If no account is found for the provided email, the invite is not stored and the creator is notified.
1.9 Push Notifications
If you enable push notifications, we store a device token (provided by Apple Push Notification service via Firebase Cloud Messaging) in your user profile. This token is used solely to deliver notifications about collaboration invites. We do not use push notifications for marketing or advertising. You can disable notifications at any time in your device's Settings.
2. How We Use Your Information
We use your information solely to:
- Provide the service — store and retrieve your itineraries
- Enable sharing — generate shareable links via iMessage App Clips
- Enable collaboration — allow invited users to co-edit itineraries
- Deliver notifications — send push notifications for collaboration invites
- Authenticate your account — verify your identity through Sign in with Apple
- Improve stability — diagnose crashes and performance issues
We do not:
- Sell your data to third parties
- Use your data for advertising or ad targeting
- Build behavioral profiles
- Track you across apps or websites
3. Data Sharing
Your itinerary content is shared only when you choose to share it by generating a link or inviting collaborators. Recipients can view the itinerary through the Teno App Clip without creating an account. Collaborators you invite can view and edit the itinerary content within the Teno app.
We share data with the following service providers, strictly for operating the App:
| Provider | Purpose | Data Shared |
|---|---|---|
| Firebase (Google) | Authentication, database | Anonymous user ID, itinerary content |
| Apple (MusicKit) | Song search and preview | Search queries, song IDs |
| Apple (Sign in with Apple) | Authentication | Credential tokens |
We do not share data with any other third parties.
4. Data Retention
- Your itinerary data is retained for as long as your account exists.
- When you delete an itinerary, it is permanently removed from our servers.
- When you delete your account (available in Settings), all associated itineraries and data are permanently deleted.
- We do not retain backups of deleted data.
5. Data Security
We protect your data using:
- Encryption in transit — all data is transmitted over HTTPS/TLS
- Firebase security rules — database access is restricted to authenticated users and their own data
- Sign in with Apple — industry-standard authentication with no password storage
- Minimal data collection — we only collect what is necessary to provide the service
6. Children's Privacy
Teno is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us at support@ambraform.com and we will delete it.
7. Your Rights
You have the right to:
- Access your data — all itinerary content is visible within the App
- Delete your data — delete individual itineraries or your entire account at any time
- Withdraw consent — stop using the App and delete your account
- Data portability — your itinerary content is available in the App for your reference
If you are a resident of California (CCPA), the European Economic Area (GDPR), or another jurisdiction with data protection laws, you may have additional rights. Contact us to exercise them.
8. Third-Party Links
Teno may include links to Apple Music. These links are governed by Apple's own privacy policy. We are not responsible for the privacy practices of third-party services.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by updating the “Last Updated” date at the top of this page. Your continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or your data, contact us at:
Ambra
Email: support@ambraform.com
Website: ambraform.com