Privacy Policy

Last updated: 2026-01-01 · Data controller: Pilo Software Inc.

TR EN

This page summarises how Pilo (Wireless Remote) processes your personal data. The full KVKK / GDPR notice is at /legal/kvkk.html.

1) Data we collect

2) Why we process it

3) Social-login data flow

When you tap "Continue with Google / Facebook / Apple":

  1. Your browser (PC) or OS (Android) talks to the provider directly — Pilo never sees your provider password.
  2. The provider returns a signed identity token; our server only verifies the token and stores provider, provider_id, email, display_name, avatar_url.
  3. If the same provider + id appears again, we link to the existing account.

4) In-app purchase flow

ProviderFlowWhat Pilo receives
Iyzico (TR · web/PC)Checkout iframe → card processor → server webhookpaymentId, amount, currency, status
Google Play (Android)Play Billing → purchaseToken → verified server-sidetoken, productId, expiryTime
Apple StoreKit 2 (iOS)StoreKit + ASSN V2 (signed JWS)txn id, productId, expirationDate
Microsoft Store (Windows)StoreContext receipt → server verificationstoreId, anonymous user id
Card data never reaches Pilo's servers. PCI-DSS scope sits with the provider.

5) Retention

6) Your rights

Contact: privacy@pilo.media