Privacy Policy

This Privacy Policy explains how Dmitrii Nevzorov, trading as DynoTable — an independent business established in Spain, NIF Y4075577Z, registered address Paseo del Muelle Uno, s/n, 29016 Málaga (Andalusia, Spain) ("DynoTable", "we", "us"), processes personal data for the DynoTable desktop application ("the App"), the website dynotable.com, and related licensing and support services.

We are the data controller. Contact: support@dynotable.com. Full provider details are in our Legal Notice.

1. Your database content never passes through our servers

DynoTable connects from your device directly to your own AWS account using credentials you supply. Your AWS credentials and the contents of your DynamoDB tables are never sent to, stored by, or accessible to us. The personal data we process is limited to what is described below and never includes your database content.

2. Data we process, and why

DataPurposeLegal basis
Account and identity data (name, email)Create and secure your accountContract (Art. 6(1)(b) GDPR)
Billing data (handled by Stripe; we do not store card numbers)Take payment and issue invoicesContract (6(1)(b)); legal obligation — tax/invoicing (6(1)(c))
Licence and device identifiersActivate your licence and prevent abuseContract (6(1)(b)); legitimate interest (6(1)(f))
Diagnostic data (app version, operating system, error details)Detect and fix crashes (on by default; can opt out in Settings)Legitimate interest (6(1)(f))
Optional product-usage analytics (which features are used)Improve the AppConsent (6(1)(a)) — off by default
Support messagesRespond to your enquiryLegitimate interest / pre-contract (6(1)(f), 6(1)(b))
Website analytics without any stored identifier (no cookie, nothing kept on your device)Count visits and page views in aggregateLegitimate interest (6(1)(f))
Website analytics with a stored identifier (cookies and local storage, so tabs and repeat visits join up)Understand how the site is actually usedConsent (6(1)(a)) — off unless you accept
Linking your website analytics identifier to your account when you sign up or subscribeJoin the visit that led to a sign-up with the sign-up itself, so we can tell which routes into the product workConsent (6(1)(a)) — off unless you accept
Ad-click conversion measurement (a Google click ID when you arrive via one of our ads, and whether a trial or subscription started)Measure advertising effectiveness — shared with Google Ads, together with your consent decisionConsent (6(1)(a)) — off unless you accept

We do not collect your query text, table names, or row data for diagnostics or analytics, and identifiers used for these purposes are minimised.

3. Cookies

The website uses three categories of storage: strictly necessary (keeping you signed in, protecting forms from forgery, remembering your language and your cookie choice), analytics, and advertising. Only the first is exempt from consent; the other two are off until you accept them in the banner shown on your first visit. Your answer is kept in a first-party dt_consent cookie, and you can change or withdraw it at any time through Cookie settings in the footer of every page.

Rejecting costs one click, changes nothing about how the site works, and still leaves the visit counted — without a cookie and without an identifier stored on your device. We do not record your screen, we do not build advertising audiences, and the site loads no third-party advertising or tag-manager script. Every cookie and storage item is listed, with its purpose and lifetime, in our Cookie Policy.

4. Recipients

We share personal data only with service providers who act on our instructions under a data processing agreement, in these categories: payment processing (Stripe), authentication, hosting, diagnostics, analytics, invoicing, and support email. Where you have accepted advertising, conversion data — the Google click ID from your ad click and the fact that a trial or subscription started — is also sent to Google Ads, accompanied by your consent decision; without that consent nothing is sent. We name Stripe because it appears on your payment records; the current identity of the other providers is available on request at support@dynotable.com. AWS is not our processor — you connect to your own AWS account directly from your device.

5. International transfers

Where a provider is outside the EEA, transfers are protected by appropriate safeguards (Standard Contractual Clauses or an adequacy decision).

6. Data retention

We keep personal data only as long as necessary for the purpose it was collected for. Invoices and tax records are retained for the period required by Spanish law. Diagnostic and analytics data are kept for a limited period and then deleted or aggregated.

7. Your rights

You can access, rectify, erase, restrict or object to processing, and port your data, and withdraw consent at any time — for the App, turn analytics off in Settings; for the website, use Cookie settings in the footer of every page, which takes effect immediately and deletes what your consent created. Use "Delete my data" in the App or email support@dynotable.com; we respond within one month. You may also lodge a complaint with the Spanish supervisory authority, the Agencia Española de Protección de Datos (AEPD) (www.aepd.es).

8. Security

We use industry-standard measures, including encryption in transit, to protect personal data.

9. Children

The Services are not directed to children under 16 and we do not knowingly collect their personal data.

10. Changes to this policy

We may update this policy and will revise the "Last updated" date; we will notify you of material changes through the Services.

11. Contact

Dmitrii Nevzorov, trading as DynoTable · NIF Y4075577Z · Paseo del Muelle Uno, s/n, 29016 Málaga (Andalusia, Spain) · support@dynotable.com

Updated