Privacy Policy

Last updated: June 11, 2026

Your privacy is of the utmost importance to us. This Privacy Policy explains how Shalini Mehra ("we", "us", or "our") collects, uses, and discloses information about you when you access or use the ZENDO App and other online products and services (collectively, the "Services"). We may change this Privacy Policy from time to time and will notify you of material changes.

1. Collection of Information

1.1 Information You Provide to Us

We collect information you provide directly to us, including: Account Information (name, email address, password); Payment Information (processed by Paddle.com Market Limited, our Merchant of Record – we do not store card details); Communications (support requests, feedback); and Preferences (favorite sessions, settings).

1.2 Information We Collect Automatically

When you use our Services, we automatically collect: Usage Information (sessions listened to, categories browsed, favorites, time spent); Device Information (hardware model, OS, browser type); Log Information (access times, pages viewed, app crashes); and Approximate Location (derived from IP address).

1.3 Cookies and Similar Technologies

We use local storage to maintain your session, remember your login, and store preferences. We do not use third-party tracking cookies or advertising pixels. Third-party services (Paddle) may use cookies strictly necessary for their operation.

1.4 Information from Other Sources

We may receive transaction confirmations and subscription status from Paddle, and basic server logs from Lovable (our GDPR-compliant hosting provider).

2. Use of Information

We use the information we collect to: provide and maintain the Services; process your subscription and payments; communicate with you (notices, updates, support); personalize your experience; ensure security and prevent fraud; and comply with legal obligations under Austrian and EU law.

3. Sharing of Information

We do not sell, rent, or trade your personal data. We may share information with:

We may also disclose information as required by law, to protect rights and safety, or in connection with a business transfer.

4. International Data Transfers

Shalini Mehra is based in Austria (EU). When your personal data is transferred outside the EEA, we ensure appropriate safeguards are in place, including the EU-US Data Privacy Framework and Standard Contractual Clauses (SCCs) approved by the European Commission. You may request a copy of the relevant safeguards by contacting us at connect@purebeing.eu.

5. Data Retention

6. Data Security

We implement appropriate technical and organizational measures including encrypted data transmission (HTTPS/TLS), secure authentication, access controls, and regular review of our data practices. No method of transmission over the Internet is 100% secure, but we strive to use commercially acceptable means to protect your data.

7. Your Privacy Rights

7.1 Rights for All Users

You have the right to access, correct, and delete your personal data, and to opt out of promotional communications at any time.

7.2 Additional Rights for EEA/UK/Switzerland

Under GDPR, you additionally have the right to restrict processing, data portability, to object to processing based on legitimate interests, and to withdraw consent. You may lodge a complaint with the Austrian Data Protection Authority (Österreichische Datenschutzbehörde), Barichgasse 40-42, 1030 Vienna, dsb@dsb.gv.at.

To exercise any of these rights, contact us at connect@purebeing.eu. We will respond within 30 days.

8. Legal Basis for Processing (EEA/UK/Switzerland)

PurposeLegal Basis
Providing the Services & account managementPerformance of contract (Art. 6(1)(b) GDPR)
Processing paymentsPerformance of contract (Art. 6(1)(b) GDPR)
Sending administrative communicationsLegitimate interest (Art. 6(1)(f) GDPR)
Improving and developing the ServicesLegitimate interest (Art. 6(1)(f) GDPR)
Ensuring security and preventing fraudLegitimate interest (Art. 6(1)(f) GDPR)
Complying with legal obligationsLegal obligation (Art. 6(1)(c) GDPR)
Sending promotional communicationsConsent (Art. 6(1)(a) GDPR)

9. Children's Privacy

Our Services are not directed to individuals under the age of 18. We do not knowingly collect personal data from children under 18. If you believe a child has provided us with personal data, please contact us at connect@purebeing.eu.

10. Third-Party Links and Services

Our Services may contain links to third-party websites. We have no control over and assume no responsibility for the content or privacy policies of any third-party sites or services.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. For material changes that affect your rights, we will provide notice via email at least 14 days before the changes take effect.

12. Data Controller

Shalini Mehra

Dipl.-Päd. Shalini Mehra

Florianiweg 7, 6212 Maurach am Achensee, Austria

VAT: ATU79440749

Email: connect@purebeing.eu

13. Artificial Intelligence

We do not use artificial intelligence to profile you, to analyse your behaviour or emotional state, or to make automated decisions that produce legal or similarly significant effects for you. Your personal data, account information, and listening history are never sold, shared, or supplied to any provider for the purpose of training AI models. Some illustrative imagery in the app is created with generative AI tools; all audio sessions are recorded by a human voice. Details are set out in our AI Transparency Notice.

14. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at connect@purebeing.eu. We will respond within 30 days.