Privacy Policy
Last updated 25 August 2026
Who is responsible
Silent Heroes Consulting FZCO, Building A1, Dubai Digital Park, Dubai Silicon Oasis, Dubai, United Arab Emirates. support@tizzal.com. See our company information. Tizzal is operated from the United Arab Emirates and this policy follows UAE law, in particular Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data.
What we store
When you sign in
Tizzal uses Sign in with Apple. We receive a stable identifier that is specific to our app and, on first authorisation, your email address. If you chose "Hide My Email", we only ever see Apple's relay address.
Your profile
Your name, username, industry, home city, a short text about yourself, your interests, and your photo. You enter all of it yourself and can change it at any time.
What you write and record
Posts, comments, reactions, voice messages, images and videos, events you create and events you say you will attend.
When you ask for an invitation on this website
The form at tizzal.com/apply stores your name, your email address, the optional line about what you build, which channel brought you here (for example an advertisement), the time, and, if you arrived from an advertisement, the click identifier that Meta or Google attached to the link. No script runs on the page.
We use it for one purpose: to send you an invitation, or a reply, when the network opens. It is kept separately from member data, on Cloudflare's infrastructure, and deleted once you have been invited or declined, or at any time on request to support@tizzal.com.
Measurement on this website
This website is advertised on Instagram, Facebook and Google, and we measure whether those advertisements work. We do it on our own server, not in your browser: no script from Meta or Google runs on the page, and no third-party cookie is set. When you open a page, our server reports the visit to Meta (Conversions API) with your IP address, your browser identifier, the address of the page, and the click identifier from the advertisement, if any. When you ask for an invitation, it reports that too, with your email address and name in hashed form, so that Meta can attribute the application to the advertisement without receiving the address itself. Applications that came from a Google advertisement are reported to Google Ads with the click identifier.
To connect a visit with a later application, our server sets one first-party cookie with a random number, valid for one year, and one with the click identifier, valid for ninety days. They contain nothing about you and are readable by nobody but us. Delete them in your browser at any time.
Inside the app there is no measurement of any kind: no analytics, no advertising identifiers, nothing is sold or passed on.
Technical data
- Your IP address, to enforce rate limits and defend against abuse.
- A device token, so we can send you push notifications.
- An App Attest key, which proves that requests come from the genuine, unmodified Tizzal app. It identifies the app, not you.
- Session records with the time and user agent of your sign-ins.
Your membership
Your member number, tier, price and term. Payments run through Apple. We never see your card details; we receive a signed confirmation from Apple that a purchase happened.
Why we store it
| Purpose | Why it is allowed |
|---|---|
| Running the network for you | Necessary to provide the membership you asked for |
| Reviewing applications and invitations | Necessary to decide on membership |
| Rate limits, abuse and fraud defence | Our legitimate interest in a safe network |
| Transcription and translation of what you post | Part of the service |
| Push notifications | Your consent, given in iOS and withdrawn there at any time |
| Accounting records | Required by law |
Who else processes it
These companies process data on our behalf, bound by contract, and only for what we ask them to do.
| Processor | What for |
|---|---|
| Neon | Database, hosted in Germany (eu-central-1) |
| Vercel | Hosting of the app's server and this website |
| Cloudflare | Delivery of this website, and storage of invitation requests from the form |
| Cloudinary | Storage and delivery of images, video and audio |
| Apple | Sign-in, push notifications, payments |
| OpenAI | Transcribing voice messages and translating content |
| Meta | Measuring whether our advertisements on Instagram and Facebook lead to visits and applications on this website (server-side, no script) |
| Measuring whether our advertisements on Google lead to applications on this website (click identifier only) |
These companies process data outside the United Arab Emirates: the database and the app's server are in Germany, the other services are in the United States. We only use processors that are bound by contract to protect your data to the standard described here.
How long we keep it, and how to delete it
Your data stays while your account exists. You can delete your account at any time in the app, under Settings. Your profile, posts, comments, media and sessions are then removed and your account is anonymised.
One thing survives: your member number. It stays in the record, detached from your name, and is never issued again. That is what makes the invitation chain verifiable. Records we are required to keep for tax or accounting reasons are retained for as long as the applicable law requires, and no longer.
Your rights
You may request access to your data, ask us to correct or delete it, ask us to restrict how we use it, request a copy in a portable form, and object to processing we base on our legitimate interest. Write to support@tizzal.com. If you are not satisfied with our answer, you may complain to the UAE Data Office.
Changes
If this policy changes in a way that matters, we will tell you in the app before the change takes effect.
