Uygulama / App: Worvento  ·  Paket kimliği / Package name: com.worvento.app

KVKK Aydınlatma Metni
Privacy Notice (Turkish DPA)

Bu sayfanın adresi / Address of this page: https://worvento.com/legal/aydinlatma
Bu sayfaya erişmek için giriş yapmanız gerekmez. You do not need to sign in to read this page.

Türkçe

Worvento Kişisel Verilerin Korunması Aydınlatma Metni

Sürüm: 1.0 · Yürürlük: 8 Ağustos 2026 · Son güncelleme: 8 Ağustos 2026


Özet — bir bakışta

Bu özet, aşağıdaki ayrıntılı bölümlerin yerine geçmez; onlara giriş niteliğindedir. Bağlayıcı olan ayrıntılı bölümlerdir.

SoruKısa cevapAyrıntı
Veri sorumlusu kim?Worvento'nun Türkiye'de yerleşik yayıncısı — bir gerçek kişi, şirket değil1. bölüm
Hangi verileri işliyorsunuz?Hesap bilgileri, öğrenme ilerlemesi, oyunlaştırma, sosyal etkileşim, güvenlik kayıtları, satın alma kayıtları; isteğe bağlı profil fotoğrafı3. bölüm
Neye dayanarak?Çoğu için sözleşmenin ifası (Kanun m.5/2-c); güvenlik için meşru menfaat (m.5/2-f); satın alma için hukuki yükümlülük (m.5/2-ç). Yalnız iki kalem açık rızaya dayanır3. bölüm
Verimi satıyor musunuz?Hayır. Kişisel verilerinizi satmıyoruz. Ama hizmeti çalıştırmak için sayılı alıcılarla sayılı veriyi paylaşıyoruz8. bölüm
Neyim herkese açık?Kullanıcı adı, deneyim puanı, seviye, rozetler, ısı haritası, çevrimiçi durumu, avatar. Bunları kapatan bir ayar yok4. bölüm
Veri nerede tutuluyor?Sunucu Finlandiya'da (Hetzner Online GmbH, Almanya). Profil fotoğrafları Cloudflare, Inc. (ABD) altyapısında, belirli bir ülkeye sabitlenmemiş8. bölüm
Ne kadar süre?Loglar 7 gün, ısı haritası 400 gün, kodlar 15 dakika. Diğer verilerin çoğu için tanımlı bir silme süresi yok — hesabınız açık kaldığı sürece tutulur5. bölüm
Hesabımı silersem ne olur?Hesap satırınız ve çoğu kayıt silinir, fakat 12 tablo ve bazı kalemler silinmez. Tam liste 5.1'de, hiçbiri saklanmadan5.1 bölümü
Konumumu alıyor musunuz?Hayır — GPS veya ağ konumu yok. Ama saat dilimi kayması ve IP adresi kaba bir konum çıkarımı sağlar6. bölüm
Ne yapabilirim?Kanun m.11'deki 8 hak; başvurularınız en geç 30 günde sonuçlanır10. bölüm
Bu metni onaylamam gerekiyor mu?Hayır. Yalnızca "okudum ve anladım" beyanı istenir; onay veya rıza istenmez15. bölüm

0. Bu metin nedir, ne değildir

Bu metin, 6698 sayılı Kişisel Verilerin Korunması Kanunu'nun (kısaca "Kanun") 10. maddesi ve Aydınlatma Yükümlülüğünün Yerine Getirilmesinde Uyulacak Usul ve Esaslar Hakkında Tebliğ'in (RG 10.03.2018/30356) 4. ve 5. maddeleri uyarınca hazırlanmış bir bilgilendirmedir.

Bu metin bir onay veya rıza belgesi değildir. Sizden bu metin için "kabul ediyorum" demeniz istenmez; yalnızca okuduğunuzu ve anladığınızı beyan etmeniz istenir. Bunun nedeni, Kişisel Verileri Koruma Kurulu'nun 18.02.2026 tarihli ve 2026/347 sayılı ilke kararıdır (Resmî Gazete 24.03.2026 / 33203): aydınlatma metni ile açık rıza metni ayrı belgeler olmak zorundadır, birleştirilemez ve tek bir onay kutusuyla sunulamaz.

Yalnızca iki işleme faaliyeti için sizden açık rıza istiyoruz: profil fotoğrafı ve kişiselleştirilmiş reklam. Onlar ayrı bir belgede, Açık Rıza Metni'nde toplanmıştır: https://worvento.com/legal/acik-riza. Bu metni okumak, o rızaları vermiş sayılmanıza yol açmaz. Yurt dışına aktarım için sizden açık rıza istemiyoruz; nedeni 8.2 bölümünde yazılıdır.

Kullanım Koşulları sözleşmesi de ayrı bir belgedir: https://worvento.com/legal/terms

İlgili diğer belgeler:

saklanan verilerin ayrıntılı listesi: https://worvento.com/legal/izleme-teknolojileri


1. Veri sorumlusunun kimliği (Kanun m.10/1-a)

Worvento uygulamasının (com.worvento.app) veri sorumlusu bir gerçek kişidir; tüzel kişi değildir.

Veri sorumlusuWorvento'nun Türkiye'de yerleşik yayıncısı (gerçek kişi) — bu metinde kısaca "Yayıncı"
Kişisel veri başvuruları için e-postaworvento.info@gmail.com (tek kanal)
Destek e-postasıworvento.info@gmail.com
İnternet adresihttps://api.worvento.com
TemsilciKanun m.10/1-a anlamında Türkiye'de atanmış bir temsilci bulunmamaktadır; başvurularınızı doğrudan yukarıdaki kanallardan iletirsiniz. Avrupa Birliği ve Birleşik Krallık bakımından 12. bölüme bakınız.

Kayıtlı elektronik posta (KEP) adresimiz bulunmamaktadır; bu nedenle KEP üzerinden başvuru alamıyoruz. Kabul edilen başvuru kanallarının tamamı 10.2 bölümündedir.

Dağıtım bölgesi. Worvento; Avrupa Birliği/Avrupa Ekonomik Alanı, Birleşik Krallık, İsviçre, Japonya, Güney Kore, Çin ve Suudi Arabistan'da dağıtılmamaktadır ve bu ülkelerdeki kullanıcılara yönelik değildir. Türkiye dışındaki kullanıcılar için ek bilgiler 12. bölümdedir.


2. Kişisel verileri hangi yolla topluyoruz (Kanun m.10/1-ç; Aydınlatma Tebliği m.5/1-h)

Aydınlatma Tebliği m.5/1-h, verinin hangi yolla elde edildiğinin açıkça yazılmasını ister. Worvento'da iki yol vardır:

  1. Tamamen otomatik yolla — verinin büyük bölümü buraya girer: uygulamayı kullanmanız

sırasında istemci uygulamasının sunucuya gönderdiği veriler (kayıt ve giriş formu alanları, çalışma sonuçları, oyun sonuçları, cihaz tanımlayıcıları, IP adresi, saat dilimi kayması, satın alma makbuzu, reklam ödülü doğrulaması) ve sunucunun kendi ürettiği kayıtlar (oturum kayıtları, güvenlik sayaçları, işletim logları).

  1. Veri kayıt sisteminin parçası olarak otomatik olmayan yolla — destek ve şikâyet

mesajlarında olduğu gibi, sizin serbest metin olarak yazıp bize ilettiğiniz ve sonrasında e-posta kutusunda düzenli biçimde saklanan veriler.

Aşağıdaki tabloların "Toplama yöntemi" kolonu her satır için bu ikisinden hangisinin geçerli olduğunu gösterir.


3. İşleme faaliyetleri tablosu (Kanun m.10/1-b, 1-c, 1-ç)

Aşağıdaki tablolarda her satır beş bilgiyi birlikte taşır: hangi veri, hangi somut amaç, hangi hukuki sebep (bent numarasıyla), hangi yolla toplandığı ve hangi alıcı grubuna aktarıldığı. Hukuki sebep kolonunda toplu atıf yapılmaz; her satırda ilgili bent tek tek yazılıdır.

Alıcı grubu kısaltmaları: [YB] yurt dışı barındırma sağlayıcısı · [YD] yurt dışı nesne depolama sağlayıcısı · [EP] e-posta gönderim altyapısı · [RS] reklam sağlayıcısı · [MS] mağaza ve ödeme sağlayıcısı · [DK] uygulamanın diğer kullanıcıları. Bu grupların kim olduğu 8. bölümdedir.

3.1 Hesap açma ve kimlik doğrulama

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Kullanıcı adıHesabınızı tanımlamak; liderlik tablosunda, lig sıralamasında, arkadaş listesinde, düelloda ve hediye ekranında sizi göstermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
E-posta adresiGiriş kimliği olarak kullanmak; doğrulama, şifre sıfırlama ve hesap silme onay kodunu göndermek; destek talebinize yanıt vermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [EP]
Parolanın BCrypt özetiGirişinizde kimliğinizi doğrulamak; hesap silme talebinden önce parolayı teyit etmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
E-posta doğrulama kodunun SHA-256 özeti, gönderim anı, deneme sayacıE-posta adresinizin size ait olduğunu doğrulamak; doğrulanmamış hesapları ödül ve oyuncu-karşı-oyuncu akışlarından ayırmakm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB] [EP]
Şifre sıfırlama kodunun özeti, gönderim anı, deneme sayacıParolanızı unuttuğunuzda yeni parola belirlemenizi sağlamakm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [EP]
Hesap silme onay kodunun özeti, gönderim anı, deneme sayacıHesap silme talebini iki adımda doğrulamak, yanlışlıkla veya başkası tarafından silinmeyi önlemekm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB] [EP]
Oturum yenileme kaydı (token, oluşturma, sona erme, iptal ve devir bilgisi)Erişim anahtarınız dolduğunda oturumu kesintisiz yenilemek; çıkış yaptığınızda, parolanızı değiştirdiğinizde veya hesabınız askıya alındığında oturumu iptal edebilmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Erişim anahtarının içeriği (kullanıcı numarası, e-posta adresi, kullanıcı adı, anahtar kimliği)Her istekte kimliğinizi doğrulamakm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Başarısız giriş sayacı ve hesap kilidi süresiParolanızı deneyerek kırma girişimlerine karşı hesabı geçici olarak kilitlemekm.5/2-f meşru menfaatTamamen otomatik[YB]

Erişim anahtarınızın içinde e-posta adresiniz de taşınır. Bu anahtar cihazınızda şifreli depoda tutulur ve her istekte sunucuya gönderilir.

Canlı maç ve düello bildirimleri için kurulan WebSocket bağlantısında bu anahtar adres satırının sorgu kısmında taşınır. Bunun sonucu şudur: ters vekil sunucunun erişim kayıtlarına anahtar düşebilir.

3.2 Öğrenme verisi

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Kelime bazlı aralıklı tekrar kaydı (kararlılık, güçlük, tekrar sayısı, unutma sayısı, durum, son tekrar anı, sıradaki tekrar anı)Her kelimeyi size özel doğru zamanda tekrar göstermek; haftalık karneyi üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Kelime ustalık işaretleriKoleksiyon albümünü ve altın kelime durumunu hesaplamak; evcil hayvanın evresini türetmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Karıştırma matrisi (hangi iki kelimeyi kaç kez karıştırdığınız)Size özel hata analizi yapmak ve tekrar önerisi üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Doğru ve yanlış cevap sayıları, güncel seri, en yüksek seriİlerlemenizi göstermek; seviye, liderlik sıralaması ve arkadaş profilini üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Günlük aktivite kaydı (gün → o gün kazanılan deneyim puanı)İstikrar takvimini (ısı haritasını) çizmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Sınav oturumu kaydı (oturum kimliği, mod, soru sayısı, kelime kimlikleri, başlangıç anı, tüketim işareti)Sınav ödülünün gerçekten oynanmış bir oturuma karşılık geldiğini doğrulamak; aynı oturumun tekrar ödüllendirilmesini engellemekm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB]
Öğrenme dili tercihleri, günlük deneyim puanı hedefi, tanıtım turunun tamamlanma durumuİkinci cihazda dil seçimini ve tanıtım turunu tekrar sormamak; düello ve adam asmaca içeriğini sizin dilinizde göstermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]

3.3 Oyunlaştırma ve uygulama içi ekonomi

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Toplam deneyim puanı, seviyeİlerleme göstergesi; liderlik ve lig sıralamasım.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Altın bakiyesi, joker envanteriUygulama içi harcamaları sunucu tarafında tutmak, bakiyenin cihazda değiştirilmesini engellemekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Rozet listesiKazandığınız başarımları kendi profilinizde ve başkalarının gördüğü profilde göstermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Sahip olunan kozmetikler, takılı çerçeve, takılı avatarGörünüm eşyalarını saklamak; takılı görünümü başkalarının gördüğü profilde göstermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Sezon puanı, sezon kimliği, sezon pass durumu, alınan sezon kademeleri, günlük ve haftalık görev ilerlemesiSezon ilerlemesini ve görevleri yürütmek. Sezon pass sahibi olduğunuz bilgisi liderlik satırınızda başkalarına görünürm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Seri onarma ve kalkan durumuSerinizi onarma hakkını sunucu tarafında saymak ve aynı hakkın tekrar kullanılmasını engellemekm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB]
Günlük giriş serisi ve alınan kilometre taşlarıGünlük giriş ödülünü bir kez vermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Ödül tekrarını engelleyen anahtar listeleriAynı ödülün iki kez verilmesini engellemekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Günlük hak sayaçları (sınav, çalışma, çift puanlı sınav, reklam, çark)Günlük hakları ve tavanları sunucu tarafında saymakm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB]
Deneyim puanı senkronizasyon sayaçları (son senkronizasyon günü, o gün kabul edilen puan)Günlük kabul tavanını uygulamak, cihazda üretilmiş sahte puanın kabul edilmesini engellemekm.5/2-f meşru menfaatTamamen otomatik[YB]
Cihaz saat dilimi kayması (dakika) ve son sıfırlama anıGünlük hakların ve limitlerin sizin yerel gece yarınızda sıfırlanmasını sağlamakm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Evcil hayvanın türü, adı, takılı aksesuarları, mama ve ödül durumuEvcil hayvan ekonomisini cihazlar arasında eşitlemek. Bu veriler yalnız size gösterilirm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Mini oyun sonuçları (günlük 60 saniye, günlük Wordle oturumu ve girdiğiniz tahminler, Mini Çengel, Günün Kelimesi quizi, Kelime Kulesi koşusu, haftalık boss sınavı)Her oyunda günde tek deneme kuralını uygulamak; oturumu yarıda kalırsa devam ettirmek; günlük ve haftalık skor tablolarını üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]

Saat dilimi kayması hakkında dürüst uyarı: konum verisi toplamıyoruz, fakat saat dilimi kaymasından kaba bir coğrafi çıkarım yapılabilir. Bunu 6. bölümde ayrıca yazıyoruz.

3.4 Sosyal katman ve herkese açık gösterim

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Arkadaşlık kayıtları (istek gönderen, alan, durum, tarihler)Arkadaş listesini ve istekleri yürütmek; düello, hediye ve canlı maç yetkisini belirlemekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Engellenen kullanıcı kayıtlarıEngellediğiniz kişinin sizinle etkileşimini kesmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Alınan hediyeler (hediye kimliği, gönderenin kullanıcı adı, tarih), hediye vitrini, itibar puanı, sahip olunan hediyelerHediye geçmişini size göstermek; seçtiğiniz hediyeleri profil vitrininizde göstermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Son görülme anıArkadaş listesinde ve profilde "çevrimiçi" veya "son görülme" göstergesini üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Canlı bağlantı kimlikleri (gerçek zamanlı oturum kayıtları)Canlı maç davetini ve durum güncellemesini doğru cihaza iletmek; çevrimiçi göstergesini beslemekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Düello sonuçları, canlı meydan okuma sonuçları, adam asmaca sonuçları (taraflar, skorlar, kazanan, tarih)"Aranızdaki maçlar" ve "son maçlar" listelerini üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Meydan okuma zarfı (taraflar, oyun türü, kelime listesi ve tohum verisi, skorlar, durum, sona erme anı)Arkadaşınıza yirmi dört saatlik asenkron meydan okuma göndermekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Oynanmakta olan maçın anlık görüntüsü (taraf kullanıcı adları, verilen cevaplar, denenen harfler, kalan süre)Sunucu yeniden başladığında yarıda kalan maçı kaybetmemekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]
Günlük lig deneyim puanı satırları"Günün kazananları" sıralamasını üretmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Ortak liste kayıtları (liste adı, diller, üyelik kayıtları, üyelerin eklediği kelimeler)En çok dört kişilik ortak kelime listesini yürütmekm.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [DK]
Davet kodunuz ve kullandığınız davet koduArkadaş davet kampanyasını yürütmek; aynı kodun tekrar kullanılmasını ve cihaz başına sınırı aşmayı engellemekm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB] [DK]
Kullanıcı şikâyeti (şikâyet eden, şikâyet edilen, en çok 500 karakter serbest metin gerekçe, durum, çözüm notu)Kural ihlali bildirimlerini incelemek ve karara bağlamakm.5/2-f meşru menfaat ve m.5/2-e bir hakkın korunmasıVeri kayıt sisteminin parçası olarak otomatik olmayan yolla (serbest metin)[YB]
Moderasyon durumu (yönetici yetkisi, hesabın askıda olup olmadığı)Kural ihlali halinde hesabı askıya almak; yönetici işlemlerini yetkilendirmekm.5/2-f meşru menfaatTamamen otomatik[YB]

Şikâyet gerekçesi hakkında dürüst uyarı: yazdığınız serbest metin, yönetici ekranında şikâyet eden ve şikâyet edilen kullanıcı adlarıyla birlikte görüntülenir. Kişisel bilgi yazmamanızı öneririz.

3.5 Güvenlik, kötüye kullanımın önlenmesi ve işletim

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Kayıt anındaki IP adresi ve son giriş IP adresiAynı adresten seri hesap açılmasını tespit etmek; kötüye kullanım incelemesi yapmakm.5/2-f meşru menfaatTamamen otomatik[YB]
Cihaz parmak izi (uygulamanın ürettiği rastgele bir tanımlayıcı)Aynı cihazda eşiği aşan sayıda hesap açılmasını tespit etmek; davet kodu kullanımını cihaz başına sınırlamak; bir hesap askıya alındığında aynı cihazdaki diğer hesaplara yayılmasını sağlamakm.5/2-f meşru menfaatTamamen otomatik[YB]
Kurulum kimliği (uygulamanın ürettiği rastgele bir tanımlayıcı)"Aynı cihaz, farklı kurulum" ayrımını yapmakm.5/2-f meşru menfaatTamamen otomatik[YB]
İşletim logları (istek yöntemi, yol, durum kodu, süre; yavaş sorgu metni)Sunucunun çalıştığını izlemek, arıza ve performans sorunlarını gidermekm.5/2-f meşru menfaatTamamen otomatik[YB]
Güvenlik uyarı logları (cihaz parmak izi, kullanıcı adı, IP; askıya alma kaydı ve aynı cihazdaki hesap numaraları)Kötüye kullanım incelemesinin izini tutmakm.5/2-f meşru menfaatTamamen otomatik[YB]
Gönderilen e-postaların içeriği (alıcı adresi, kullanıcı adı, altı haneli kod veya bildirim metni)Doğrulama, şifre sıfırlama, hesap silme onayı ve parola değişikliği bildirimini iletmekm.5/2-c sözleşmenin ifasıTamamen otomatik[EP]
Bağlantı kontrolü istekleri (genel IP adresiniz, zaman damgası)İnternet bağlantısının gerçekten çalıştığını anlamak; internete çıkışı olmayan ağa bağlıyken uygulamanın kilitli ekranda takılmasını önlemek — istek yalnız kendi sunucumuzun sağlık ucuna giderm.5/2-f meşru menfaatTamamen otomatik[YB]

Bağlantı kontrolü. Uygulama, internet bağlantınızın çalıştığını doğrulamak için düzenli olarak küçük bir istek gönderiyor. Bu istek yalnız kendi sunucumuza gidiyor (/health), yaklaşık 45 saniyede bir. Üçüncü tarafa hiçbir şey gitmiyor.

Bu metnin daha önceki sürümünde, kullandığımız kütüphanenin varsayılanları değiştirilmediği için bu kontrolün IP adresinizi dört üçüncü taraf adrese (one.one.one.one, icanhazip.com, jsonplaceholder.typicode.com, pokeapi.co) yaklaşık on saniyede bir gönderdiği yazıyordu. O tasarım kusuru düzeltildi; orada beyan edilen dört aktarım artık yapılmıyor.

3.6 Satın almalar

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Satın alma kaydı (mağaza, ürün kimliği, mağaza işlem kimliği, makbuz doğrulama verisi, tutar bilgisi, tarih)Aynı makbuzun iki kez altın veya hak vermesini engellemek; ilk satın alma bonusunu bir kez vermek; iade halinde verilen hakkı geri almak; vergi ve muhasebe yükümlülüklerini yerine getirmekm.5/2-ç hukuki yükümlülüğün yerine getirilmesi ve m.5/2-c sözleşmenin ifasıTamamen otomatik[YB] [MS]
Hak kayıtları (hak türü, kaynağı, verilme ve sona erme anı)Reklamsız erişim ve premium özellikleri doğru süre boyunca açık tutmakm.5/2-c sözleşmenin ifasıTamamen otomatik[YB]

Ödeme bilgileriniz bize hiç gelmez. Kart numarası, adınız, adresiniz ve vergi bilginiz mağazada kalır. Bize yalnızca mağazanın verdiği makbuz metni, işlem kimliği ve ürün kimliği ulaşır.

Uygulama içi satın alma kayıtları, hesabınızı sildiğinizde de silinmez; vergi ve muhasebe mevzuatı ile iade süreçleri bunu gerektirir. Ayrıntı 5. bölümdedir.

3.7 Reklam

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Ödüllü reklam gösterim ve ödül sayaçları, bekleme süresi kaydıGünlük reklam ödülü tavanını uygulamak; otomatik araçlarla ödül toplanmasını engellemekm.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaatTamamen otomatik[YB]
İşlenmiş reklam ödülü kayıtları (reklam sağlayıcısının verdiği işlem kimliği, ödül türü, işleme anı)Aynı reklam ödülünün iki kez verilmesini engellemekm.5/2-f meşru menfaatTamamen otomatik[YB] [RS]
Sunucu taraflı ödül doğrulamasında reklam sağlayıcısına gönderilen kullanıcı numaranız ve ödül türüÖdülü istemcinin değil sunucunun vermesini sağlamak; ödül sahtekârlığını engellemekm.5/2-f meşru menfaatTamamen otomatik[RS]
Reklam kimliği ve reklam telemetrisi (reklam sağlayıcısının kendi yazılım geliştirme kitiyle topladığı veriler: reklam kimliği, IP adresi, cihaz ve işletim sistemi bilgisi, reklam etkileşimleri)Ödüllü reklamın gösterilmesi; reklam sağlayıcısının ölçüm ve dolandırıcılık önleme işlemleriAçık rıza — Açık Rıza Metni'ndeki 2. rıza kalemi. Rıza vermezseniz yalnız kişiselleştirilmemiş reklam gösterilirTamamen otomatik[RS]

Reklam sağlayıcısına gönderilen kullanıcı numarası hakkında dürüst uyarı: ödüllü reklamın sonunda ödülü sunucunun verebilmesi için reklam sağlayıcısına iç kullanıcı numaranız düz metin olarak gönderiliyor. Yani bu veri takma adlı değildir; reklam sağlayıcısı tarafındaki kayıt doğrudan hesabınızla eşleşebilir.

3.8 Profil fotoğrafı

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Profil fotoğrafının kendisi (tam çözünürlüklü kopya ve 128 piksellik küçük kopya)Arkadaş listesinde, liderlik tablosunda ve profil ekranında avatarınızı göstermekAçık rıza — Açık Rıza Metni'ndeki 1. rıza kalemiTamamen otomatik (fotoğrafı siz seçersiniz)[YD] [DK]
Fotoğrafın adresiKüçük kopyayı ve tam kopyayı doğru kişilere göstermekAçık rıza — Açık Rıza Metni'ndeki 1. rıza kalemiTamamen otomatik[YB] [DK]

Fotoğraf yüklemek isteğe bağlıdır; yüklemezseniz uygulamanın tüm işlevleri açık kalır. Fotoğrafınızın hukuken önemli dört özelliğini burada açıkça yazıyoruz:

sezon pass) hakkı bulunan hesaplara açıktır ve bu sınır sunucuda uygulanır: hakkınız yoksa yükleme bileti hiç üretilmez, sunucu talebi reddeder. Fotoğrafı kaldırmak ücretsizdir ve her zaman yapılabilir; yani rızanızı geri almak için ödeme yapmanız gerekmez. Bir işleme faaliyetinin ücrete bağlanmasının rıza hukuku bakımından doğurduğu sorun Açık Rıza Metni'nin

  1. bölümündeki avukat notunda ayrıca işaretlenmiştir.

saklanır. Erişim kontrolü "adresi bilmek" üzerinedir; adres rastgele ve tahmin edilemez üretilir. Bu bir kimlik doğrulaması değildir: adresi eline geçiren herkes, hesabı olmasa bile fotoğrafı görebilir. Bu nedenle "fotoğrafınızı yalnız premium kullanıcılar görebilir" biçiminde bir koruma iddia etmiyoruz.

görüntüleyicilere gönderir; küçük kopya ise avatar olarak herkese görünür. Bu bir erişim kontrolü değil, adres gizliliğidir (yukarıdaki maddeye bakınız).

bir yıla kadar yaşayabilir. Kopya, oluşturulurken bir yıllık ve değiştirilemez önbellek ömrüyle işaretlenir.

Fotoğrafınızı yüz tanıma veya benzeri bir teknik işlemden geçirmiyoruz; kimliğinizi tekil olarak belirlemek veya doğrulamak için kullanmıyoruz. Fotoğraftan ırk, etnik köken, din, sağlık veya benzeri bir çıkarım da yapmıyoruz.

3.9 Destek

VeriSomut amaçHukuki sebepToplama yöntemiAlıcı grubu
Destek mesajınız (konu, mesaj metni, kullanıcı adınız, kullanıcı numaranız, e-posta adresiniz)Destek talebinizi incelemek ve yanıtlamakm.5/2-c sözleşmenin ifasıVeri kayıt sisteminin parçası olarak otomatik olmayan yolla[EP]

Destek mesajınız veritabanına kaydedilmez; e-posta olarak destek adresine iletilir ve o e-posta kutusunda kalır. Kutu, bir e-posta altyapısı sağlayıcısında barındırılmaktadır.

Dürüst uyarı: e-posta gönderim yapılandırması kapalı olduğunda destek mesajınızın tam metni sunucunun işletim loglarına da yazılır. Bu loglar yedi gün tutulur.

3.10 Cihazınızda kalan veriler

Bazı veriler cihazınızdan hiç çıkmaz; sunucuya gönderilmez. Yine de kişisel verinizdir ve uygulamayı kaldırmadıkça cihazda kalır. Bunların hiçbiri hesabınızı sildiğinizde temizlenmez; cihazdan silmenin tek yolu uygulamayı kaldırmaktır. iOS'ta cihaz parmak izi, uygulamayı kaldırsanız bile kalır.

Tam liste bu metnin sonundaki Ek A bölümündedir.


4. Herkese açık olan veriler — kapatma ayarı yok

Bunu açıkça yazıyoruz çünkü kullanıcıların en sık yanıldığı nokta budur. Aşağıdaki veriler, uygulamayı kullanan diğer kullanıcılar tarafından görülebilir ve şu an bunu kapatan bir ayar uygulamada bulunmamaktadır:

Görünen veriNerede görünür
Kullanıcı adınızLiderlik tablosu, günlük lig, arkadaş listesi, arama sonuçları, düello ve maç ekranları, hediye ekranı
Toplam deneyim puanınız ve seviyenizLiderlik tablosu, arkadaş profili
Profil fotoğrafınızın küçük kopyası (yüklediyseniz)Liderlik tablosu, arkadaş listesi, profil
RozetlerinizArkadaş profili
İstikrar takviminiz (günlük aktivite ısı haritası)Arkadaş profili
Takılı çerçeveniz ve avatarınız, hediye vitriniz, itibar puanınızArkadaş profili
Sezon pass sahibi olduğunuz bilgisiLiderlik satırınız
"Çevrimiçi" veya "son görülme" bilginizArkadaş listesi, profil
Günlük lig deneyim puanınız ve mini oyun skorlarınızGünlük ve haftalık skor tabloları
Düello, canlı meydan okuma ve adam asmaca sonuçlarınızKarşı tarafın maç geçmişi
Ortak listeye eklediğiniz kelimeler ve kullanıcı adınızO listenin diğer üyeleri (en çok dört kişi)
Davet kodunuzKodu paylaştığınız kişiler

Ek olarak: bir düello sonucunu paylaştığınızda rakibinizin kullanıcı adı, oluşturulan görsele gömülü biçimde sizin seçtiğiniz uygulamaya gider. Rakibinize bu konuda bildirim gitmez ve onayı sorulmaz.


5. Saklama süreleri (Kanun m.7; Silme, Yok Etme veya Anonim Hale Getirme Yönetmeliği)

Bu tabloda yalnızca uygulamanın gerçekten yaptığı süreler yazılıdır. Bir kalem için süre tanımlı değilse bunu açıkça yazıyoruz; uydurma bir sayı vermiyoruz.

VeriGerçek süre
Sunucu işletim ve güvenlik loglarıEn son yedi log dosyası tutulur (yedi günlük dosya döngüsü)
Günlük aktivite kaydı (ısı haritası)400 gün; bu pencerenin dışındaki günler her eşitlemede budanır
Erişim anahtarı7 gün
Oturum yenileme kaydı30 günde geçersizleşir; satır silinmez, süresi geçmiş kayıt tabloda kalır
E-posta doğrulama, şifre sıfırlama ve hesap silme kodları15 dakika geçerlidir; sonra kullanılamaz hale gelir
Oynanmakta olan maçın anlık görüntüsüAltı saatten eski kayıtlar saatlik olarak temizlenir
Sınav oturumu kaydıOturum 1 saat, tüketim işareti 6 saat
Canlı bağlantı ve çevrimiçilik kaydı12 saat; her bağlantıda yenilenir, bağlantı koptuğunda hemen silinir
Canlı maç durumu6 saat
Profil fotoğrafının içerik dağıtım ağı önbelleğiBir yıl, değiştirilemez olarak işaretli; silmenizden sonra kopya bir süre yaşayabilir
Uygulama içi satın alma kayıtları ve hak kayıtlarıVergi, muhasebe ve iade süreçleri gereği hesap silindikten sonra da tutulur (kayıt kimliğinizden koparılır); somut yıl sayısı mali müşavir/avukat teyidiyle belirlenecektir
Diğer tüm kalemlerUygulamada tanımlı bir silme süresi yoktur. Bu veriler hesabınız açık kaldığı sürece tutulur. Hesabınızı silme veya belirli bir verinin silinmesini talep etme haklarınız 10. bölümdedir

Dürüstçe söylemek gerekir ki, günlük lig satırları ve ortak listeden sildiğiniz kelimeler için kodun içinde "kısa süre tutulur" yönünde açıklamalar bulunsa da, bu temizlik işlemi henüz yazılmamıştır. Bu yüzden yukarıdaki tabloda "silme süresi yoktur" satırına dahildirler. Ortak listeden bir kelimeyi sildiğinizde kelime fiilen silinmez, "silinmiş" olarak işaretlenir.

İmha yöntemi. Saklama süresi sona eren veya silinmesini talep ettiğiniz veriler için uygulanan yöntemler şunlardır: veritabanı kayıtları için silme (satırın veritabanından kaldırılması); nesne deposundaki fotoğraflar için silme (nesnenin depodan kaldırılması); log dosyaları için yok etme (dosya döngüsü dolduğunda dosyanın bütün olarak kaldırılması); önbellekteki geçici kayıtlar için süre dolduğunda otomatik silme. Vergi ve muhasebe mevzuatı nedeniyle tutulması zorunlu satın alma kayıtları için amaçlanan yöntem anonim hale getirmedir: kullanıcı numarasının kişiyle bağının koparılması.

5.1 Hesabınızı sildiğinizde ne olur — gerçeği

Hesap silme iki adımlıdır: önce parolanızı teyit edersiniz, ardından e-postanıza gelen kodu girersiniz. Tek dokunuşla silme yoktur. Silme akışının adım adım anlatımı ayrı bir belgededir: https://worvento.com/legal/veri-silme. Bu bölümdeki liste ile o belgedeki liste birebir aynı olmak zorundadır; aralarında fark oluşursa o belge esas alınır ve bu bölüm güncellenir.

Gerçekten silinenler: hesap satırınız ve bu satırın içindeki her şey (deneyim puanı, altın, jokerler, rozetler, seriler, IP adresleriniz, cihaz parmak iziniz, tercihleriniz, evcil hayvan durumu, kozmetikler, sezon ve görev durumu, hediye geçmişi, itibar puanı); arkadaşlık kayıtları; engelleme kayıtları; taraf olduğunuz şikâyet kayıtları; oturum yenileme kayıtları; günlük lig satırları; günlük 60 saniye sonuçları; boss sınavı sonuçları; Günün Kelimesi ve Wordle sonuçları; Mini Çengel sonuçları; Kelime Kulesi koşuları; evcil hayvan kaydı; davet kodunuz; ortak liste üyelikleriniz; profil fotoğrafı nesneleri (elden gelen çabayla).

Silinmeyenler — bunu saklamıyoruz:

Kalan veriNeden kalıyor
Kelime bazlı aralıklı tekrar kayıtlarınızBu tablo hesap satırına bağlı değil; silme işlemi bu satırları kapsamıyor
Kelime ustalık işaretlerinizAynı
Karıştırma matrisiniz (hangi kelimeleri karıştırdığınız)Aynı
Düello, canlı meydan okuma ve adam asmaca sonuçlarınızAynı; ayrıca karşı tarafın maç geçmişinin parçası
Meydan okuma zarflarınızAynı
Reklam ödülü işlem kayıtlarınızAynı
Uygulama içi satın alma kayıtları ve hak kayıtlarıVergi, muhasebe ve iade yükümlülükleri
Sahibi olduğunuz ortak listeler ve o listelere eklediğiniz kelimelerAynı; listenin diğer üyeleri için erişilebilir kalıyor
Kullanıcı adınız, size hediye gönderen kişilerin hediye geçmişindeHediye kaydı, gönderenin adını düz metin kopya olarak tutuyor
Cihazınızdaki yerel verilerin tümü (3.10 bölümü)Silme işlemi cihazda hiçbir şey temizlemiyor
Profil fotoğrafının içerik dağıtım ağı önbelleğindeki kopyasıBir yıllık, değiştirilemez önbellek işareti
Destek e-postalarınızDestek e-posta kutusunda kalıyor
Son yedi günün log dosyalarındaki satırlarDosya döngüsü dolduğunda kendiliğinden gider
Yönetim kayıtlarındaki iç kullanıcı numaranız (yalnız yönetici yetkisi kullandıysanız)Kayıt hesap satırına bağlı değil
Yarı kalmış canlı maç anlık görüntüsündeki kullanıcı adınızAltı saatten eski kayıtlar saatlik olarak siliniyor

6. Toplamadığımız veriler

Kullanıcıların en çok sorduğu kalemlerin hiçbirini toplamıyoruz: konum, rehber, telefon numarası, sağlık verisi, mikrofon ve ses kaydı, takvim, kısa mesaj, biyometrik doğrulama, kurulu uygulama listesi, cihazın donanım kimlikleri, pano içeriği, analitik ve çökme raporlama verisi, başka bir hesapla giriş. Kalem kalem tam liste Ek B bölümündedir.

(Bildirim gönderebilmek için cihazınıza ait bir bildirim anahtarı saklıyoruz — bu listede değil; ayrıntısı 3. bölümde.)

Bir istisnayı açıkça yazıyoruz: konum toplamıyoruz, fakat cihazınızın saat dilimi kaymasını günlük sıfırlama için sunucuya gönderiyoruz. Bu değerden kaba bir coğrafi çıkarım yapılabilir. Ayrıca IP adresiniz hem bizim sunucumuza hem de 3.5 bölümünde yazılı dört bağlantı kontrolü adresine ulaşır; IP adresinden de kaba bir konum çıkarımı mümkündür.


7. Bildirim kanalları

Uygulamanın size ulaşabildiği kanallar şunlardır ve hepsini burada yazıyoruz:

  1. Uygulama içi gerçek zamanlı olaylar — uygulama açık ve ön plandayken, canlı maç daveti ve

maç durumu güncellemesi bir WebSocket bağlantısıyla iletilir.

  1. Ana ekran widget'ı — widget'ı eklerseniz, günlük seri gün sayınız cihazınızın widget

deposuna yazılır ve kilit ekranında görünebilir.

  1. E-posta — doğrulama kodu, şifre sıfırlama kodu, hesap silme onay kodu, parola değişikliği

bildirimi ve destek yanıtı.

  1. İşletim sistemi bildirimleri (anlık bildirim) — cihazınızın bildirim merkezinde görünen

bildirimler. İki ayrı gruba ayrılmıştır ve ayrı ayrı açılıp kapatılır:

grupne gönderilirnasıl çalışırvarsayılan
Arkadaş ve oyun bildirimlerioyun daveti, ortak liste daveti, arkadaşlık isteği, hediyeSunucumuz gönderir; bunun için cihazınıza ait bir bildirim anahtarı (Firebase Cloud Messaging kaydı) ve arayüz diliniz saklanıraçık
Hatırlatıcılar ve ipuçlarıgün serisi hatırlatması, kelime dostunuzun beslenme zamanı, gün içi çalışma önerileriCihazınızda kurulur ve tetiklenir; içeriği ve zamanı sunucuya gitmez, sunucu bu bildirimlerden haberdar değildirkapalı — ayrıca onayınız alınır

| Sürüm güncelleme duyuruları | yeni sürüm yayımlandığında bilgilendirme | Sunucumuz bir kez gönderir; ardından cihazınız güncelleme yapılana kadar günde en fazla bir hatırlatma kurar | hizmetin işleyişine bağlı — ayrıca onay alınmaz |

İlk iki grubu Ayarlar → Bildirimler bölümünden istediğiniz an kapatabilirsiniz. Sürüm güncelleme duyuruları hizmetin doğru ve güvenli çalışmasına bağlı olduğundan uygulama içinden kapatılamaz; cihazınızın sistem ayarlarından uygulamanın tüm bildirimlerini kapatabilirsiniz. 22:00 – 08:00 arasında bildirim gönderilmez, günde en fazla iki hatırlatıcı gönderilir ve o gün uygulamayı kullandıysanız kalan hatırlatıcılar iptal edilir. Sürüm güncelleme duyurusu bu iki hatırlatıcıdan ayrıdır ve günde en fazla birdir; güncelleme yapıldığı anda durur.

Anlık bildirimlere ilişkin onay (Kurul'un 14.01.2026 tarihli kamuoyu duyurusu). "Hatırlatıcılar ve ipuçları" grubu, hizmetin işleyişi için zorunlu olmayan, kullanımı özendirmeye yönelik bildirimler içerir. Bu nedenle arkadaş ve oyun bildirimlerinden ayrı, kendi anahtarıyla sunulur ve kurulumda açık gelir; ilk açılışta bu konuda bilgilendirilir, dilediğiniz an Ayarlar > Bildirimler'den kapatabilirsiniz. Kapatma tercihiniz ile onay tarihiniz ve onayladığınız metin sürümü cihazınızda kaydedilir. Gruplar tek bir onaya bağlanmaz; işletim sistemi bildirim izni ayrıca istenir.

Sürüm güncelleme duyuruları neden ayrı onaya bağlı değil. Bu duyurular kullanımı özendirmeye değil, hizmetin sözleşmeye uygun, doğru ve güvenli sunulmasına yöneliktir: eski sürümlerde ödül, ödeme ve güvenlik akışları bozulabilir; kullanıcının bundan haberdar edilmesi hizmetin bir parçasıdır. Bu nedenle işleme dayanağı açık rıza değil, KVKK m.5/2-c (sözleşmenin ifası için gerekli olma) ve m.5/2-f (veri sorumlusunun meşru menfaati) hükümleridir. Kapsamı dardır: yalnız sürüm bilgisi, günde en fazla bir bildirim, gece gönderim yok, güncelleme yapıldığı anda son. Pazarlama içeriği taşımaz.

Pazarlama veya kampanya e-postası göndermiyoruz. Göndermeye başlarsak, bunun için ayrıca ve ayrı bir kutucukla onayınızı isteyeceğiz.


8. Kişisel verilerin aktarıldığı alıcı grupları ve yurt dışına aktarım

Kişisel verilerinizi satmıyoruz. Verinizi veri tacirlerine, reklam borsalarına veya herhangi bir üçüncü kişiye satmıyor, kiralamıyor ve takas etmiyoruz.

Buna karşılık veri paylaşılıyor ve bunu gizlemiyoruz: uygulamayı çalıştırabilmek için aşağıda sayılan alıcılara, aşağıda sayılan kadar veri gidiyor. Bunların bir kısmı bizim adımıza çalışan hizmet sağlayıcılarıdır (veri işleyen); bir kısmı ise verinizi kendi amaçlarıyla da işleyen bağımsız veri sorumlusudur. Reklam sağlayıcısı ikinci gruptadır; bu ayrımı tabloda açıkça gösteriyoruz.

8.1 Alıcı grupları ve aktarım amaçları (Kanun m.10/1-c; Aydınlatma Tebliği m.5/1-ğ)

KısaltmaAlıcı grubuKimAktarım amacıSıfatı
[YB]Yurt dışı barındırma sağlayıcısıHetzner Online GmbH (Almanya) — sunucumuz Finlandiya'da bulunuyor.Sunucu, veritabanı, önbellek ve log dosyalarının barındırılmasıVeri işleyen
[YD]Yurt dışı nesne depolama sağlayıcısıCloudflare, Inc. (ABD) — küresel altyapı; profil fotoğrafları belirli bir ülkeye sabitlenmemiştir. Aktarımda ve saklamada şifrelenir.Profil fotoğrafının saklanması ve dağıtılmasıVeri işleyen
[EP]E-posta gönderim altyapısıGoogle (Gmail)Doğrulama, şifre sıfırlama, hesap silme ve destek e-postalarının iletilmesi ve destek kutusunda saklanmasıBağımsız veri sorumlusu ile işleyen arası karma konum
[RS]Reklam sağlayıcısıGoogle Ireland Limited ve Google LLC (AdMob)Ödüllü reklamın gösterilmesi ve ödülün sunucu tarafında doğrulanmasıBağımsız veri sorumlusu
[MS]Mağaza ve ödeme sağlayıcısıGoogle Commerce Limited ve Google LLC (Play faturalandırma). Apple Distribution International Limited ve Apple Inc. — yalnız uygulama App Store'da yayımlandığındaSatın alma makbuzunun doğrulanması, iade ve abonelik durumunun öğrenilmesiBağımsız veri sorumlusu; Avrupa Ekonomik Alanı'nda kayıtlı satıcı
[FCM]Google LLC (Firebase Cloud Messaging)ABD / küreselBildirimi cihazınıza ulaştırmakVeri işleyen — bildirim jetonu, cihaz platformu, arayüz dili ve bildirimin başlığı/gövdesi aktarılır; gövde bazı bildirimlerde başka bir kullanıcının kullanıcı adını taşır
[DK]Uygulamanın diğer kullanıcıları—Liderlik, lig, arkadaşlık, düello, hediye, ortak liste ve profil gösterimi (4. bölüm)—

Ek olarak, siz "paylaş" dediğinizde oluşturulan görsel ve metin, sizin seçtiğiniz uygulamaya (mesajlaşma uygulaması, sosyal ağ, e-posta) gider. Bu aktarımı siz başlatırsınız; alıcı uygulama bağımsız veri sorumlusudur. Bir kelimeyi sesli okuttuğunuzda kelimenin metni cihazınıza yüklü sesli okuma motoruna gider; motor buluta bağlanıyorsa kelime metni cihaz dışına çıkabilir.

Kullanıcıya açık gizlilik politikaları:

8.2 Yurt dışına aktarım — Kanun m.9 tablosu

Aşağıdakiler Türk hukuku bakımından yurt dışına aktarımdır. Ağustos 2026 itibarıyla Kurul hiçbir ülke, sektör veya uluslararası kuruluş için yeterlilik kararı vermemiştir; bu nedenle doğrudan uygun güvence kademesine (m.9/3-4) geçilir.

Aşağıdaki tablonun son kolonu planlanan dayanağı gösterir: standart sözleşmelerin imzalanması ve imza tarihinden itibaren beş iş günü içinde Kurum'a bildirilmesi işlemi henüz yapılmamıştır.

AlıcıÜlkeAktarılan veriDüzenli miPlanlanan m.9 dayanağı
Hetzner Online GmbHHetzner Online GmbH (Almanya) — sunucumuz Finlandiya'da bulunuyor.Sunucudaki tüm kişisel veriSürekli ve düzenlim.9/3-4 uygun güvence — Kurul'un ilan ettiği standart sözleşme, veri sorumlusundan veri işleyene modülü
Cloudflare, Inc.Cloudflare, Inc. (ABD) — küresel altyapı; profil fotoğrafları belirli bir ülkeye sabitlenmemiştir. Aktarımda ve saklamada şifrelenir.Profil fotoğrafı; ayrıca yükleme ve görüntüleme isteklerinin IP adresiSürekli ve düzenlim.9/3-4 uygun güvence — standart sözleşme, veri sorumlusundan veri işleyene modülü
Google Ireland Limited ve Google LLC (AdMob)İrlanda ve Amerika Birleşik DevletleriReklam kimliği, IP adresi, cihaz sinyalleri, reklam etkileşimleri; ödül doğrulamasında kullanıcı numaranızSürekli ve düzenliAlıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence, veri sorumlusundan veri sorumlusuna modülü
Google Commerce Limited ve Google LLC (Play faturalandırma)İrlanda ve Amerika Birleşik DevletleriUygulama paket adı, ürün kimliği, satın alma anahtarıSürekli ve düzenliAlıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence
Apple Distribution International Limited ve Apple Inc. — yalnız App Store yayımı sonrasıİrlanda ve Amerika Birleşik Devletleriİşlem kimliği ve makbuz doğrulama verisiYayımdan sonra sürekliAlıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence
Google (Gmail)Amerika Birleşik Devletleri ve globalE-posta adresiniz, kullanıcı adınız, altı haneli kodlar, destek mesajınızın tam metniSürekli ve düzenlim.9/3-4 uygun güvence
Google LLC (Firebase Cloud Messaging)Amerika Birleşik Devletleri / küreselBildirim jetonu, cihaz platformu, arayüz dili, bildirimin başlığı ve gövdesiBildirim gönderildikçem.9/3-4 uygun güvence (standart sözleşme planlanıyor)

Kanun m.9/6'daki açık rızaya dayanan yol bu aktarımlar için kullanılamaz. 7499 sayılı Kanunla 1 Haziran 2024'te yürürlüğe giren değişiklikten sonra açık rıza, yurt dışına aktarımda ancak arızi hallerde başvurulabilecek istisnai bir yoldur. Barındırma, depolama, reklam ve e-posta gönderimi sürekli ve düzenli aktarımlar olduğu için "arızi" sayılamaz. Bu nedenle sizden yurt dışına aktarım için açık rıza istemiyoruz; doğru yol standart sözleşmedir.

Aktarımın taşıdığı riskler: verinizin bulunduğu ülkenin veri koruma rejimi Türkiye'den farklı olabilir; oradaki kamu makamlarının erişim yetkileri farklı olabilir; haklarınızı o ülkede kullanmanız ve etkili başvuru yollarına erişmeniz Türkiye'ye kıyasla güç olabilir. Amerika Birleşik Devletleri merkezli sağlayıcılar bakımından, Amerikan makamlarının veri talebi mevzuatı ayrıca değerlendirilmelidir.


9. Otomatik sistemlerle yapılan değerlendirmeler

Aşağıdaki kararlar, insan incelemesi olmadan, otomatik olarak verilebilir:

kaydı üretilir. Bu tek başına hesabınızı engellemez.

hesaplar da askıya alınabilir.

belirli uçlarda istek sayısı sınırlanır.

işlenmez.

Kanun m.11/1-g uyarınca, münhasıran otomatik sistemler aracılığıyla yapılan bir değerlendirme aleyhinize bir sonuç doğurursa buna itiraz etme hakkınız vardır. İtirazınızı 10. bölümdeki kanallardan iletebilirsiniz; talebiniz insan tarafından incelenir.


10. Haklarınız ve başvuru yolu (Kanun m.11, m.13, m.14)

10.1 Kanun m.11'deki haklarınız

Veri sorumlusu olarak bize başvurarak:

a) Kişisel verinizin işlenip işlenmediğini öğrenme, b) İşlenmişse buna ilişkin bilgi talep etme, c) İşlenme amacını ve verinizin amacına uygun kullanılıp kullanılmadığını öğrenme, ç) Yurt içinde veya yurt dışında verinizin aktarıldığı üçüncü kişileri bilme, d) Verinizin eksik veya yanlış işlenmiş olması halinde düzeltilmesini isteme, e) Kanun m.7'deki şartlar çerçevesinde silinmesini veya yok edilmesini isteme, f) (d) ve (e) bentleri uyarınca yapılan işlemlerin, verinizin aktarıldığı üçüncü kişilere bildirilmesini isteme, g) Münhasıran otomatik sistemler aracılığıyla analiz edilmesi suretiyle aleyhinize bir sonuç ortaya çıkmasına itiraz etme, ğ) Kanuna aykırı işleme sebebiyle zarara uğramanız halinde zararın giderilmesini talep etme

haklarına sahipsiniz.

10.2 Başvuruyu nasıl yaparsınız

Veri Sorumlusuna Başvuru Usul ve Esasları Hakkında Tebliğ (RG 10.03.2018/30356) m.5 uyarınca kabul edilen kanallar:

  1. Hesabınızda kayıtlı e-posta adresinizden worvento.info@gmail.com adresine gönderilen

elektronik ileti ile — en pratik yol budur, çünkü kimliğiniz hesabınız üzerinden doğrulanabilir,

  1. Güvenli elektronik imza ile,
  2. Mobil imza ile.

Posta adresi yayımlanmadığı için ıslak imzalı yazılı başvuru kanalı fiilen işletilmemektedir; yazılı başvurular da yukarıdaki e-posta kanalından alınır.

Tebliğ m.5 bir kanal olarak kayıtlı elektronik posta (KEP) adresini de sayar; ancak bizim bir KEP adresimiz bulunmamaktadır, bu nedenle KEP üzerinden başvuru alamıyoruz.

Başvurunuzda şunlar bulunmalıdır: ad ve soyadınız; başvuru yazılıysa imzanız; Türkiye Cumhuriyeti kimlik numaranız (yabancıysanız uyruğunuz ile pasaport veya kimlik numaranız); tebligata esas yerleşim yeri veya iş yeri adresiniz; varsa bildirime esas elektronik posta adresiniz, telefon ve faks numaranız; talep konunuz. Konuya ilişkin bilgi ve belgeleri başvurunuza eklersiniz.

Başvuru dili Tebliğ m.5 uyarınca Türkçedir. Buna karşılık İngilizce yapılan başvuruları da kabul ediyoruz.

10.2.1 Kimliğinizi nasıl doğrularız

Başvuruyu hesabınızda kayıtlı e-posta adresinizden gönderirseniz kimliğiniz o hesap üzerinden doğrulanır; ek belge istemeyiz. Başvuru başka bir adresten veya yazılı olarak gelirse, verinin gerçekten size ait olduğunu anlayabilmek için kimlik teyidi isteriz — aksi halde başka birinin verisini yanlış kişiye vermiş oluruz.

Başkası adına başvuru. İlgili kişi adına vekil olarak başvuruyorsanız, başvuruya bu konuda özel yetki içeren bir vekâletname eklemeniz gerekir. Velayet hakkı sahibi olarak 16 yaşından küçük biri adına başvuruyorsanız 13. bölüme bakınız.

10.3 Süre ve ücret

Talebinizi en kısa sürede ve her halde en geç otuz gün içinde sonuçlandırırız (Kanun m.13/2). Talebin kabulü veya gerekçeli reddi size yazılı olarak veya elektronik ortamda bildirilir.

Başvuru kural olarak ücretsizdir. İşlem ayrıca bir maliyet gerektirirse Kurulca belirlenen tarifedeki ücret alınabilir (Başvuru Tebliği m.7): yazılı cevapta ilk on sayfa ücretsizdir, on sayfanın üzerindeki her sayfa için 1 Türk lirası işlem ücreti alınabilir; cevap bir kayıt ortamında verilecekse kayıt ortamının maliyeti talep edilebilir. Hata bizden kaynaklanıyorsa alınan ücret iade edilir.

10.4 Kurula şikâyet

Başvurunuz reddedilirse, verilen cevabı yetersiz bulursanız veya süresinde cevap verilmezse; cevabı öğrendiğiniz tarihten itibaren otuz gün ve her halde başvuru tarihinden itibaren altmış gün içinde Kişisel Verileri Koruma Kurulu'na şikâyette bulunabilirsiniz (Kanun m.14). Kurul: https://www.kvkk.gov.tr

10.5 Uygulama içi kısa yollar

Uygulama içinden şu işlemleri yapabilirsiniz: profil fotoğrafını kaldırma, hesabı silme (iki adımlı onayla), oturumu kapatma ve destek mesajı gönderme.


11. Veri güvenliği ve veri ihlali (Kanun m.12)

Kanun m.12 uyarınca, kişisel verilerinizin hukuka aykırı işlenmesini ve verilere hukuka aykırı erişilmesini önlemek ve verilerin muhafazasını sağlamak amacıyla teknik ve idari tedbirler almakla yükümlüyüz.

Uygulamada bulunan tedbirler: cihaz ile sunucu arasındaki tüm iletişim TLS ile şifrelenir; parolanız düz metin olarak saklanmaz, BCrypt ile özetlenir; erişim ve oturum yenileme anahtarları cihazda şifreli depoda tutulur; oturum anahtarları iptal edilebilir; başarısız giriş denemeleri sayılır ve hesap geçici olarak kilitlenir; istek sayısı sınırlanır; doğrulama kodları veritabanında özetlenerek tutulur ve on beş dakikada geçersizleşir; ödül ve satın alma işlemlerinde tekrar koruması vardır; profil fotoğrafı adresleri tahmin edilemez üretilir.

Bilinen eksikleri gizlemiyoruz. Bu metnin 3.5, 3.9 ve 5. bölümlerinde işaretlenen noktalar (altı haneli kodların ve destek mesajının işletim loglarına düz metin yazılması, IP adresinin güvenilir olmaması, saklama sürelerinin tanımlı olmaması, hesap silmenin bazı tabloları kapsamaması) giderilmemiştir.

Veri ihlali halinde ne yaparız: kişisel verilerinizin hukuka aykırı olarak başkaları tarafından elde edildiğini öğrendiğimizde, gecikmeksizin ve en geç yetmiş iki saat içinde Kişisel Verileri Koruma Kurulu'na bildiririz (Kanun m.12/5; Kurul'un 24.01.2019 tarihli ve 2019/10 sayılı kararı). Etkilendiğiniz belirlenirse, makul olan en kısa sürede size de bildiririz; bildirimde ihlalin ne zaman gerçekleştiği, hangi veri kategorilerinin etkilendiği, olası sonuçları, alınan ve almanızı önerdiğimiz tedbirler ile bilgi alabileceğiniz iletişim bilgileri yer alır (Kurul'un 18.09.2019 tarihli ve 2019/271 sayılı kararı).


12. Türkiye dışındaki kullanıcılar

Worvento, Türkiye dışında da bazı ülkelerde yayınlanıyor (yukarıdaki Dağıtım bölgesi notunda sayılan ülkeler hariç). Yayın yapılan bazı ülkelerin kendi veri koruma yasaları var — örneğin Brezilya (LGPD), Hindistan (DPDP), Kanada (PIPEDA), Birleşik Arap Emirlikleri (PDPL).

Bu metin 6698 sayılı Kanun esas alınarak yazıldı. Şeffaflık, haklarınız ve verinizin silinmesi konularında bu yasaların istediklerini işlevsel olarak karşılıyor; ancak ülkeye özel ayrı bölümler içermiyor. Hangi ülkede olursanız olun başvuru kanalı aynıdır: worvento.info@gmail.com, ve talebiniz en geç 30 gün içinde sonuçlandırılır.

Amerika Birleşik Devletleri'nde yaşıyorsanız: Kaliforniya (CCPA/CPRA) ve benzeri eyalet yasalarının yıllık ciro (25 milyon ABD doları) ve tüketici sayısı (100.000) eşiklerinin çok altındayız; bu nedenle bu yasalar bakımından kapsamda değiliz. Bu yasaların en kritik noktası olan veri satışı konusunda tutumumuz her hâlde nettir: kişisel verilerinizi satmıyoruz.


13. Çocuklar

Worvento 16 yaşından küçükler için değildir. Kullanım Koşulları'nda 16 yaşını doldurmuş olduğunuzu taahhüt etmeniz istenir.

16 yaşından küçük olduğu tespit edilen bir hesabı askıya alır ve verisini silecek şekilde işleme alırız. Velayet hakkı sahibi olarak 16 yaşından küçük birinin verisinin işlendiğini düşünüyorsanız worvento.info@gmail.com adresine yazın; talebinizi 10. bölümdeki süre içinde sonuçlandırırız.


14. Bu metnin sürümü, güncellenmesi ve gösterildiğinin kaydı

Bu metnin sürümü ve yürürlük tarihi en üstte yazılıdır. İşleme amaçlarımız değişirse, değişikliği uygulamaya almadan önce bu metni güncelleriz ve size uygulama içinde bildiririz (Aydınlatma Tebliği m.5/1-b). Yeni bir özellik, yeni bir alıcı veya yeni bir üçüncü taraf bileşen eklenmesi de bu kapsamdadır.

Bu metin Türkçe ve İngilizce olarak yayımlanmıştır. Çeviri bilgi amaçlıdır; çelişki halinde Türkçe metin geçerlidir.

Aydınlatmanın yerine getirildiğinin ispatı bize aittir (Aydınlatma Tebliği m.5/1-e). Bu nedenle bu metnin hangi sürümünün size ne zaman ve hangi ekranda gösterildiği, sunucu tarafında hesabınıza bağlı olarak kaydedilir. Bu kayıt yalnız ispat amacıyla tutulur ve içeriğinde metin sürümü, gösterim zamanı, kanal ve dil bilgisi bulunur.


15. Bu metin için sizden ne isteniyor

Sizden bu metin için onay, kabul veya rıza istenmiyor. İstenen tek beyan şudur:

☐ Worvento Kişisel Verilerin Korunması Aydınlatma Metni'ni okudum ve anladım.

Bu kutucuk bir rıza kutucuğu değildir; bir bilgilendirme beyanıdır. İşaretlemeniz, herhangi bir işleme faaliyetine rıza verdiğiniz anlamına gelmez. Yalnızca açık rızaya dayanan üç işleme faaliyeti için, ayrı bir belgede ve ayrı ayrı kutucuklarla tercihiniz sorulur: https://worvento.com/legal/acik-riza

15.1 Kayıt ekranında nasıl görünmesi gerekir

Kurul'un 2026/347 sayılı ilke kararı, aşağıdaki yapıyı zorunlu kılar. Kayıt ekranında tek bir birleşik onay kutusu bulunamaz; "Okudum, kabul ediyorum ve açık rıza veriyorum" biçiminde tek bir buton kararda kötü uygulama örneği olarak gösterilmiştir.

Doğru yapı, üç ayrı ve birbirinden görsel olarak ayrılmış bloktan oluşur:

1. blok — Kullanım Koşulları (sözleşme). Ayrı başlık, ayrı bağlantı, ayrı kutucuk. Zorunlu olabilir; hizmetin sözleşmesel temelidir.

☐ Kullanım Koşulları'nı okudum, kabul ediyorum. (zorunlu)

2. blok — Aydınlatma Metni (bilgilendirme). Ayrı başlık, ayrı bağlantı, ayrı beyan alanı. Buraya "kabul ediyorum" yazılamaz.

☐ Kişisel Verilerin Korunması Aydınlatma Metni'ni okudum ve anladım.

3. blok — Açık Rıza (isteğe bağlı). Ayrı başlık altında, iki ayrı ve önceden işaretsiz kutucuk. Hiçbiri kayıt olmanın koşulu değildir; hepsi boş bırakılarak kayıt tamamlanabilir. Ayrıntı Açık Rıza Metni'ndedir.

Üç blok arasında görsel bir ayırıcı bulunur; hiçbir blok diğerinin içine yerleştirilmez.


Ek A — Cihazınızda kalan verilerin tam listesi (3.10 bölümünün eki)

Aşağıdakiler cihazınızdan çıkmaz; sunucuya gönderilmez:

Cihazda kalan veriNe olduğu
Kendi kelime listeniz (MyList)Uygulamaya eklediğiniz kelimeler, anlamları ve notları
Ortak listenin çevrimdışı kopyasıÜyesi olduğunuz ortak listenin cihazdaki önbelleği
On iki mini oyunun kişisel rekoruHer mini oyunda kendi en yüksek skorunuz
Tanıtım turu işaretleriHangi tanıtım ekranını gördüğünüz
Kutlama ve albüm mühürleme işaretleriAynı kutlamanın iki kez gösterilmemesi için
Haftalık karne ve sezon özeti banner işaretleriAynı bilginin tekrar gösterilmemesi için
Tema, ses, titreşim ve sesli okuma tercihleriGörünüm ve ses ayarlarınız
Gün ve saat alışkanlığı sayaçlarıHangi gün ve saatte çalıştığınızın cihaz içi sayacı
Cihaz parmak iziUygulamanın ürettiği rastgele tanımlayıcı. iOS'ta uygulamayı silseniz bile kalır
Kurulum kimliğiUygulamanın ürettiği rastgele tanımlayıcı; uygulama kaldırılınca gider

Ayrıca:

yazılır ve kilit ekranında görünebilir. Günün kelimesi, siz cevaplayana kadar widget'ta gizli tutulur.

dosyası cihazın geçici dizininde kalır ve otomatik silinmez.

çıkış yaptığınızda silinir.

Hesabınızı sildiğinizde bunların hiçbiri temizlenmez. Cihazdan silmenin tek yolu uygulamayı kaldırmaktır; iOS'ta cihaz parmak izi buna rağmen kalır.


Ek B — Toplamadığımız veri kalemlerinin tam listesi (6. bölümün eki)

Aşağıdakilerin hiçbirini toplamıyoruz. Liste, uygulamanın bağımlılıkları ve izinleri taranarak hazırlanmıştır:

bulunmamaktadır

hiç gelmez

Bu listenin istisnası 6. bölümde yazılıdır: saat dilimi kayması ve IP adresi kaba bir konum çıkarımı sağlayabilir.


16. Kaynaklar

(RG 10.03.2018/30356; RG 28.04.2019/30758 ile değişik) m.4, 5, 6

(RG 28.10.2017/30224)

(RG 10.07.2024/32598); KVKK Yurt Dışına Aktarım Rehberi (02.01.2025)

(RG 24.03.2026/33203)

25.12.2025 t. 2025/2451 sayılı kararları (veri ihlali bildirimi)

Rehberi (26.02.2025)

English

Worvento Privacy Notice (Turkish Data Protection Law — Information Notice)

Sürüm: 1.0 · Yürürlük: 8 Ağustos 2026 · Son güncelleme: 8 Ağustos 2026 (Version 1.0 · Effective: 8 August 2026 · Last updated: 8 August 2026)

This is an information-only English translation. In case of any conflict, the Turkish original prevails.

The Turkish original is at https://worvento.com/legal/aydinlatma.


Summary — at a glance

This summary does not replace the detailed sections below; it is an introduction to them. The detailed sections are the binding ones.

QuestionShort answerDetail
Who is the data controller?The Türkiye-based publisher of Worvento — a natural person, not a companySection 1
What data do you process?Account details, learning progress, gamification, social interaction, security records, purchase records; an optional profile photographSection 3
On what basis?Mostly performance of a contract (Law Art. 5/2-c); legitimate interests for security (Art. 5/2-f); legal obligation for purchases (Art. 5/2-ç). Only two items rest on explicit consentSection 3
Do you sell my data?No. We do not sell your personal data. But we do share a limited set of data with a limited set of recipients in order to run the serviceSection 8
What of mine is public?Username, experience points, level, badges, activity heatmap, online status, avatar. There is no setting to turn these offSection 4
Where is the data held?The server is in Finland (Hetzner Online GmbH, Germany). Profile photographs are on Cloudflare, Inc. (USA) infrastructure and are not pinned to a specific countrySection 8
For how long?Logs 7 days, heatmap 400 days, codes 15 minutes. For most other data there is no defined deletion period — it is kept for as long as your account existsSection 5
What if I delete my account?Your account row and most records are deleted, but 12 tables and some items are not. The full list is in 5.1, with nothing withheldSection 5.1
Do you take my location?No — no GPS or network location. But the time-zone offset and your IP address allow a coarse location inferenceSection 6
What can I do?The 8 rights under Law Art. 11; applications are concluded within 30 days at the latestSection 10
Do I have to approve this notice?No. You are only asked to declare "I have read and understood"; no approval or consent is requestedSection 15

0. What this document is and is not

This document is an information notice prepared under Article 10 of Turkish Law No. 6698 on the Protection of Personal Data (the "Law") and Articles 4 and 5 of the Communiqué on the Principles and Procedures to Be Followed in Fulfilling the Obligation to Inform (Official Gazette 10.03.2018/30356).

This is not a consent document. You are not asked to "accept" it; you are only asked to declare that you have read and understood it. The reason is Principle Decision No. 2026/347 of the Turkish Personal Data Protection Board, dated 18.02.2026 (Official Gazette 24.03.2026 / 33203): the information notice and the explicit consent statement must be separate documents; they cannot be merged, nested, or presented under a single approval.

We ask for your explicit consent for only two processing activities: the profile photograph and personalised advertising. Those live in a separate document, the Explicit Consent Statement: https://worvento.com/legal/acik-riza. Reading this notice does not mean you have given any of those consents. We do not ask for your explicit consent for cross-border transfers; the reason is set out in section 8.2.

The Terms of Use is a separate document as well: https://worvento.com/legal/terms

Other related documents:

and the data stored on your device: https://worvento.com/legal/izleme-teknolojileri


1. Identity of the data controller (Law Art. 10/1-a)

The data controller of the Worvento application (com.worvento.app) is a natural person, not a legal entity.

Data controllerThe Türkiye-based publisher of Worvento (a natural person) — the "Publisher" in this notice
E-mail for data protection requestsworvento.info@gmail.com
Support e-mailworvento.info@gmail.com
Websitehttps://api.worvento.com
RepresentativeNo representative has been appointed in Türkiye within the meaning of Law Art. 10/1-a; you contact the controller directly through the channels above. For the European Union and the United Kingdom, see section 12.

We do not have a registered electronic mail (KEP) address, so we cannot receive applications by KEP. The full list of accepted application channels is in section 10.2.

Distribution territory. Worvento is not distributed in the European Union / European Economic Area, the United Kingdom, Switzerland, Japan, South Korea, China or Saudi Arabia, and is not directed at users in those countries. Additional information for users outside Türkiye is in section 12.


2. How we collect personal data (Law Art. 10/1-ç; Information Communiqué Art. 5/1-h)

Article 5/1-h of the Communiqué requires us to state explicitly by which means data is obtained. In Worvento there are two:

  1. By fully automated means — most of the data: what the client application sends to the server

while you use it (registration and login form fields, study results, game results, device identifiers, IP address, time zone offset, purchase receipt, ad reward verification) and what the server itself produces (session records, security counters, operational logs).

  1. By non-automated means as part of a data recording system — as with support and abuse-report

messages: free text you write and send to us, which is then kept in an orderly manner in a mailbox.

The "Collection method" column in the tables below shows which of the two applies to each row.


3. Processing activities table (Law Art. 10/1-b, 1-c, 1-ç)

Each row carries five pieces of information together: which data, which concrete purpose, which legal ground (with the exact sub-paragraph), by which means it is collected, and to which recipient group it is transferred. No blanket reference is made in the legal ground column; each row names its own sub-paragraph.

Recipient group abbreviations: [YB] foreign hosting provider · [YD] foreign object storage provider · [EP] e-mail delivery infrastructure · [RS] advertising provider · [MS] store and payment provider · [DK] other users of the application. Who these are is set out in section 8.

3.1 Account creation and authentication

DataConcrete purposeLegal groundCollection methodRecipient group
UsernameIdentifying your account; showing you on the leaderboard, in the daily league, in friend lists, in duels and on the gift screenArt. 5/2-c performance of a contractFully automated[YB] [DK]
E-mail addressUsing it as your login identity; sending the verification, password reset and account deletion confirmation codes; replying to your support requestArt. 5/2-c performance of a contractFully automated[YB] [EP]
BCrypt hash of your passwordAuthenticating you at login; confirming your password before an account deletion requestArt. 5/2-c performance of a contractFully automated[YB]
SHA-256 hash of the e-mail verification code, time sent, attempt counterVerifying that the e-mail address belongs to you; separating unverified accounts from reward and player-versus-player flowsArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB] [EP]
Hash of the password reset code, time sent, attempt counterLetting you set a new password when you forget yoursArt. 5/2-c performance of a contractFully automated[YB] [EP]
Hash of the account deletion confirmation code, time sent, attempt counterConfirming a deletion request in two steps, preventing accidental deletion or deletion by someone elseArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB] [EP]
Session refresh record (token, creation, expiry, revocation and replacement data)Renewing your session seamlessly when your access key expires; being able to revoke the session when you log out, change your password or your account is suspendedArt. 5/2-c performance of a contractFully automated[YB]
Contents of the access key (user number, e-mail address, username, key identifier)Authenticating you on every requestArt. 5/2-c performance of a contractFully automated[YB]
Failed login counter and account lockout periodTemporarily locking the account against password-guessing attacksArt. 5/2-f legitimate interestFully automated[YB]

Your access key also carries your e-mail address inside it. The key is kept in encrypted storage on your device and is sent to the server on every request.

On the WebSocket connection used for live match and duel events, this key is carried in the query part of the address. The consequence is this: the key may appear in the reverse proxy's access logs.

3.2 Learning data

DataConcrete purposeLegal groundCollection methodRecipient group
Per-word spaced repetition record (stability, difficulty, repetition count, lapse count, state, last review time, next due time)Showing each word again at the right time for you; producing the weekly report cardArt. 5/2-c performance of a contractFully automated[YB]
Word mastery flagsComputing the collection album and golden-word status; deriving your pet's stageArt. 5/2-c performance of a contractFully automated[YB]
Confusion matrix (which two words you confused and how many times)Producing personalised error analysis and drill suggestionsArt. 5/2-c performance of a contractFully automated[YB]
Correct and wrong answer counts, current streak, highest streakShowing your progress; producing level, leaderboard ranking and friend profileArt. 5/2-c performance of a contractFully automated[YB] [DK]
Daily activity record (day → experience points earned that day)Drawing the consistency calendar (heat map)Art. 5/2-c performance of a contractFully automated[YB] [DK]
Exam session record (session id, mode, question count, word ids, start time, consumption marker)Verifying that an exam reward corresponds to a session actually played; preventing the same session from being rewarded twiceArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB]
Learning language preferences, daily experience point goal, onboarding completion stateNot asking again for language choice and the tutorial on a second device; rendering duel and hangman content in your languageArt. 5/2-c performance of a contractFully automated[YB]

3.3 Gamification and in-app economy

DataConcrete purposeLegal groundCollection methodRecipient group
Total experience points, levelProgress indicator; leaderboard and league rankingArt. 5/2-c performance of a contractFully automated[YB] [DK]
Gold balance, joker inventoryKeeping in-app spending on the server side so the balance cannot be altered on the deviceArt. 5/2-c performance of a contractFully automated[YB]
Badge listShowing the achievements you have earned on your own profile and on the profile others seeArt. 5/2-c performance of a contractFully automated[YB] [DK]
Owned cosmetics, equipped frame, equipped avatarStoring appearance items; showing the equipped look on the profile others seeArt. 5/2-c performance of a contractFully automated[YB] [DK]
Season points, season id, season pass status, claimed season tiers, daily and weekly quest progressRunning season progression and quests. The fact that you hold a season pass is visible to others on your leaderboard rowArt. 5/2-c performance of a contractFully automated[YB] [DK]
Streak repair and shield statusCounting your streak repair entitlement on the server side and preventing the same entitlement from being used twiceArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB]
Daily login streak and claimed milestonesGranting the daily login bonus onceArt. 5/2-c performance of a contractFully automated[YB]
Key lists that prevent duplicate rewardsPreventing the same reward from being granted twiceArt. 5/2-c performance of a contractFully automated[YB]
Daily entitlement counters (exam, study, double-points exam, ads, wheel)Counting daily entitlements and caps on the server sideArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB]
Experience point synchronisation counters (last sync day, points accepted that day)Applying the daily acceptance cap and rejecting points forged on the deviceArt. 5/2-f legitimate interestFully automated[YB]
Device time zone offset (minutes) and last reset timeMaking daily entitlements and limits reset at your local midnightArt. 5/2-c performance of a contractFully automated[YB]
Your pet's type, name, equipped accessories, food and reward statusSynchronising the pet economy across devices. This data is shown only to youArt. 5/2-c performance of a contractFully automated[YB]
Mini game results (daily 60 seconds, daily Wordle session and the guesses you entered, Mini Crossword, Word of the Day quiz, Word Tower run, weekly boss exam)Enforcing the one-attempt-per-day rule; resuming an interrupted session; producing daily and weekly score tablesArt. 5/2-c performance of a contractFully automated[YB] [DK]

An honest warning about the time zone offset: we do not collect location data, but a rough geographic inference can be drawn from a time zone offset. This is set out separately in section 6.

3.4 Social layer and public display

DataConcrete purposeLegal groundCollection methodRecipient group
Friendship records (requester, addressee, status, dates)Running the friend list and requests; determining eligibility for duels, gifts and live matchesArt. 5/2-c performance of a contractFully automated[YB] [DK]
Blocked user recordsCutting off interaction with a person you have blockedArt. 5/2-c performance of a contractFully automated[YB]
Received gifts (gift id, sender's username, date), gift showcase, reputation points, owned giftsShowing you your gift history; showing the gifts you select in your profile showcaseArt. 5/2-c performance of a contractFully automated[YB] [DK]
Last seen timeProducing the "online" or "last seen" indicator in the friend list and on profilesArt. 5/2-c performance of a contractFully automated[YB] [DK]
Live connection identifiers (real-time session records)Delivering live match invitations and status updates to the right device; feeding the online indicatorArt. 5/2-c performance of a contractFully automated[YB]
Duel results, live challenge results, hangman results (parties, scores, winner, date)Producing the "matches between you" and "recent matches" listsArt. 5/2-c performance of a contractFully automated[YB] [DK]
Challenge envelope (parties, game type, word list and seed data, scores, status, expiry time)Sending your friend a twenty-four-hour asynchronous challengeArt. 5/2-c performance of a contractFully automated[YB] [DK]
Snapshot of a match in progress (party usernames, answers given, letters tried, remaining time)Not losing an unfinished match when the server restartsArt. 5/2-c performance of a contractFully automated[YB]
Daily league experience point rowsProducing the "winners of the day" rankingArt. 5/2-c performance of a contractFully automated[YB] [DK]
Shared list records (list name, languages, membership records, words added by members)Running a shared word list of up to four peopleArt. 5/2-c performance of a contractFully automated[YB] [DK]
Your invitation code and the invitation code you usedRunning the friend invitation campaign; preventing reuse of the same code and exceeding the per-device limitArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB] [DK]
User report (reporter, reported user, free-text reason up to 500 characters, status, resolution note)Reviewing and deciding on rule violation reportsArt. 5/2-f legitimate interest and Art. 5/2-e protection of a rightBy non-automated means as part of a data recording system (free text)[YB]
Moderation status (administrator authority, whether the account is suspended)Suspending an account in case of a rule violation; authorising administrator actionsArt. 5/2-f legitimate interestFully automated[YB]

An honest warning about report reasons: the free text you write is displayed on the administrator screen together with the usernames of the reporter and the reported user. We advise you not to write personal information there.

3.5 Security, abuse prevention and operations

DataConcrete purposeLegal groundCollection methodRecipient group
IP address at registration and last login IP addressDetecting serial account creation from the same address; investigating abuseArt. 5/2-f legitimate interestFully automated[YB]
Device fingerprint (a random identifier generated by the application)Detecting more accounts than the threshold on the same device; limiting invitation code use per device; propagating a suspension to other accounts on the same deviceArt. 5/2-f legitimate interestFully automated[YB]
Install identifier (a random identifier generated by the application)Distinguishing "same device, different installation"Art. 5/2-f legitimate interestFully automated[YB]
Operational logs (request method, path, status code, duration; slow query text)Monitoring that the server is working; diagnosing faults and performance issuesArt. 5/2-f legitimate interestFully automated[YB]
Security warning logs (device fingerprint, username, IP; suspension record and account numbers on the same device)Keeping a trail of abuse investigationsArt. 5/2-f legitimate interestFully automated[YB]
Contents of sent e-mails (recipient address, username, six-digit code or notification text)Delivering verification, password reset, account deletion confirmation and password change notificationsArt. 5/2-c performance of a contractFully automated[EP]
Connectivity check requests (your public IP address, timestamp)Determining whether the internet connection actually works; preventing the application from hanging on a locked screen while connected to a network without internet access — the request goes only to our own health endpointArt. 5/2-f legitimate interestFully automated[YB]

Connectivity check. The application sends a small request regularly to confirm that your internet connection works. That request goes only to our own server (/health), roughly every 45 seconds. Nothing goes to any third party.

An earlier version of this notice stated that this check sent your IP address to four third-party addresses (one.one.one.one, icanhazip.com, jsonplaceholder.typicode.com, pokeapi.co) roughly every ten seconds, because the defaults of the library we use had not been changed. That design flaw has been fixed; the four transfers declared there no longer happen.

3.6 Purchases

DataConcrete purposeLegal basisCollection methodRecipient group
Purchase record (store, product id, store transaction id, receipt verification data, amount data, date)Preventing the same receipt from granting gold or entitlements twice; granting the first-purchase bonus once; clawing back an entitlement on refund; meeting tax and accounting obligationsArt. 5/2-ç compliance with a legal obligation and Art. 5/2-c performance of a contractFully automated[YB] [MS]
Entitlement records (type, source, grant and expiry time)Keeping ad-free access and premium features open for the correct periodArt. 5/2-c performance of a contractFully automated[YB]

Your payment details never reach us. Card number, your name, address and tax details stay with the store. Only the receipt text issued by the store, the transaction id and the product id reach us.

In-app purchase records are not deleted when you delete your account; tax and accounting legislation and refund processes require this. Details are in section 5.

3.7 Advertising

DataConcrete purposeLegal groundCollection methodRecipient group
Rewarded ad impression and reward counters, cooldown recordApplying the daily ad reward cap; preventing rewards from being farmed by automated meansArt. 5/2-c performance of a contract and Art. 5/2-f legitimate interestFully automated[YB]
Processed ad reward records (the transaction id issued by the advertising provider, reward type, processing time)Preventing the same ad reward from being granted twiceArt. 5/2-f legitimate interestFully automated[YB] [RS]
Your user number and reward type sent to the advertising provider during server-side reward verificationEnsuring the reward is granted by the server rather than the client; preventing reward fraudArt. 5/2-f legitimate interestFully automated[RS]
Advertising identifier and advertising telemetry (data the advertising provider collects with its own software development kit: advertising identifier, IP address, device and operating system information, ad interactions)Serving the rewarded ad; the advertising provider's own measurement and fraud prevention processingExplicit consent — consent item 2 in the Explicit Consent Statement. If you do not consent, only non-personalised ads are shownFully automated[RS]

An honest warning about the user number sent to the advertising provider: so that the server can grant the reward at the end of a rewarded ad, your internal user number is sent to the advertising provider in plain text. This data is therefore not pseudonymised; the record on the advertising provider's side can be matched directly to your account.

3.8 Profile photograph

DataConcrete purposeLegal groundCollection methodRecipient group
The photograph itself (a full-resolution copy and a 128-pixel thumbnail)Showing your avatar in friend lists, on the leaderboard and on the profile screenExplicit consent — consent item 1 in the Explicit Consent StatementFully automated (you choose the photograph)[YD] [DK]
The address of the photographShowing the thumbnail and the full copy to the right peopleExplicit consent — consent item 1 in the Explicit Consent StatementFully automated[YB] [DK]

Uploading a photograph is optional; if you do not upload one, every function of the application remains available. We state four legally important properties of your photograph plainly here:

premium entitlement (ad-free access or a season pass), and this limit is enforced on the server: without the entitlement no upload ticket is issued at all and the server rejects the request. Removing the photograph is free and can always be done; you do not have to pay in order to withdraw your consent. The problem this creates under consent law is flagged separately in the lawyer note in section 2 of the Explicit Consent Statement.

access. Access control rests on "knowing the address"; the address is generated randomly and unpredictably. This is not authentication: anyone who obtains the address can see the photograph, even without an account.** For that reason we make no claim of the form "only premium users can see your photograph".

and to viewers holding a premium entitlement; the thumbnail is visible to everyone as your avatar. This is address secrecy, not access control (see the point above).

network cache may live on for up to one year. The copy is marked with a one-year, immutable cache lifetime when it is created.

We do not put your photograph through facial recognition or any similar technical process; we do not use it to uniquely identify or verify you. Nor do we draw inferences about race, ethnic origin, religion, health or similar matters from it.

3.9 Support

DataConcrete purposeLegal groundCollection methodRecipient group
Your support message (subject, message text, your username, your user number, your e-mail address)Reviewing and answering your support requestArt. 5/2-c performance of a contractBy non-automated means as part of a data recording system[EP]

Your support message is not stored in the database; it is delivered by e-mail to the support address and remains in that mailbox. The mailbox is hosted by an e-mail infrastructure provider.

An honest warning: when the e-mail delivery configuration is off, the full text of your support message is also written to the server's operational logs. Those logs are kept for seven days.

3.10 Data that stays on your device

Some data never leaves your device and is not sent to the server. It is still your personal data and remains on the device unless you uninstall the application. None of it is cleared when you delete your account; the only way to remove it from the device is to uninstall the application. On iOS the device fingerprint survives uninstallation.

The full list is in Appendix A at the end of this notice.


4. Data that is public — there is no switch to turn it off

We state this plainly because it is where users are most often mistaken. The following data can be seen by other users of the application, and there is currently no setting in the application that turns this off:

Visible dataWhere it is visible
Your usernameLeaderboard, daily league, friend list, search results, duel and match screens, gift screen
Your total experience points and levelLeaderboard, friend profile
The thumbnail of your profile photograph (if you uploaded one)Leaderboard, friend list, profile
Your badgesFriend profile
Your consistency calendar (daily activity heat map)Friend profile
Your equipped frame and avatar, gift showcase, reputation pointsFriend profile
The fact that you hold a season passYour leaderboard row
Your "online" or "last seen" informationFriend list, profile
Your daily league experience points and mini game scoresDaily and weekly score tables
Your duel, live challenge and hangman resultsThe other party's match history
The words you add to a shared list, and your usernameThe other members of that list (up to four people)
Your invitation codeThe people you share it with

In addition: when you share a duel result, your opponent's username is embedded in the generated image and goes to the application you choose. Your opponent receives no notification and is not asked for consent.


5. Retention periods (Law Art. 7; Regulation on Erasure, Destruction or Anonymisation)

This table states only what the application actually does. Where no period is defined, we say so plainly; we do not invent a number.

DataActual period
Server operational and security logsThe last seven log files are kept (a seven-day file rotation)
Daily activity record (heat map)400 days; days outside that window are pruned on every sync
Access key7 days
Session refresh recordBecomes invalid after 30 days; the row is not deleted, an expired record remains in the table
E-mail verification, password reset and account deletion codesValid for 15 minutes, then unusable
Snapshot of a match in progressRecords older than six hours are cleared hourly
Exam session recordSession 1 hour, consumption marker 6 hours
Live connection and online status record12 hours; refreshed on every connection, deleted immediately when the connection drops
Live match state6 hours
Content delivery network cache of the profile photographOne year, marked immutable; a copy may live on for a while after you delete it
In-app purchase records and entitlement recordsKept after account deletion for tax, accounting and refund purposes; the period will be fixed in the lawyer note in section 3.6
All other itemsNo deletion period is defined in the application. This data is kept for as long as your account remains open. Your rights to delete your account or to request erasure of specific data are in section 10

To be honest about it, although the code contains comments suggesting that daily league rows and words you delete from a shared list are "kept for a short period", that cleanup job has not been written. They therefore fall under the "no deletion period" row above. When you delete a word from a shared list, the word is not actually deleted; it is marked as deleted.

Method of destruction. The methods applied to data whose retention period has ended or whose erasure you request are: erasure for database records (removal of the row from the database); erasure for photographs in the object store (removal of the object from storage); destruction for log files (removal of the whole file when the rotation completes); and automatic erasure on expiry for temporary cache records. For purchase records that must be retained under tax and accounting legislation, the intended method is anonymisation: severing the link between the user number and the person.

5.1 What happens when you delete your account — the truth

Account deletion has two steps: first you confirm your password, then you enter the code sent to your e-mail. There is no one-tap deletion. The deletion flow is described step by step in a separate document: https://worvento.com/legal/veri-silme. The list in this section and the list in that document must be identical; if they diverge, that document prevails and this section is updated.

What is actually deleted: your account row and everything inside it (experience points, gold, jokers, badges, streaks, your IP addresses, your device fingerprint, your preferences, pet status, cosmetics, season and quest status, gift history, reputation points); friendship records; block records; report records where you are a party; session refresh records; daily league rows; daily 60-second results; boss exam results; Word of the Day and Wordle results; Mini Crossword results; Word Tower runs; the pet record; your invitation code; your shared list memberships; profile photograph objects (on a best-effort basis).

What is not deleted — we are not hiding this:

Remaining dataWhy it remains
Your per-word spaced repetition recordsThis table is not linked to the account row; the deletion process does not cover these rows
Your word mastery flagsSame
Your confusion matrix (which words you confuse)Same
Your duel, live challenge and hangman resultsSame; also part of the other party's match history
Your challenge envelopesSame
Your ad reward transaction recordsSame
In-app purchase records and entitlement recordsTax, accounting and refund obligations
Shared lists you own and the words you added to themSame; they remain accessible to the other members of the list
Your username, in the gift history of people who sent you giftsThe gift record keeps the sender's name as a plain-text copy
All local data on your device (section 3.10)The deletion process clears nothing on the device
The copy of your profile photograph in the content delivery network cacheOne-year immutable cache marking
Your support e-mailsThey remain in the support mailbox
Lines in the last seven days of log filesThey go by themselves when the file rotation completes

6. Data we do not collect

We collect none of the items users ask about most: location, contacts, telephone number, health data, microphone and audio recording, calendar, SMS, biometric authentication, the list of installed applications, the device's hardware identifiers, clipboard contents, analytics and crash reporting data, or sign-in with another account. The full item-by-item list is in Appendix B.

(We do store a device notification token so that we can send you notifications — it is not in this list; details in section 3.)

We state one exception plainly: we do not collect location, but we do send your device's time zone offset to the server for daily resets. A rough geographic inference can be drawn from that value. In addition, your IP address reaches both our server and the four connectivity check addresses named in section 3.5; a rough location inference is possible from an IP address as well.


7. Notification channels

These are all the channels through which the app can reach you:

  1. In-app real-time events — while the app is open and in the foreground, live match

invitations and match state updates are delivered over a WebSocket connection.

  1. Home screen widget — if you add the widget, your daily streak count is written to your

device's widget store and may be visible on the lock screen.

  1. Email — verification code, password reset code, account deletion confirmation code,

password change notice and support replies.

  1. Operating system notifications (push) — notifications shown in your device's

notification centre. They are split into two groups that are turned on and off separately:

groupwhat is senthow it worksdefault
Friend and game notificationsgame invitations, shared list invitations, friend requests, giftsSent by our server; this requires storing a notification token for your device (Firebase Cloud Messaging registration) and your interface languageon
Reminders and nudgesstreak reminders, your word companion's feeding time, practice suggestions during the dayScheduled and triggered on your device; neither their content nor their timing is sent to our server, and the server is not aware of themoff — separate consent is requested

You can turn either group off at any time under Settings → Notifications. No reminders are sent between 22:00 and 08:00, at most two reminders per day are sent, and any remaining reminders are cancelled if you have used the app that day.

Consent for push notifications (Turkish DPA public announcement of 14 January 2026). The "Reminders and nudges" group contains notifications that are not necessary for the operation of the service and are intended to encourage use. For this reason it is offered separately from friend and game notifications, with its own switch, and is off by default; when you turn it on, the date of your consent and the version of the text you consented to are recorded on your device. The two groups are never tied to a single consent.

We do not send marketing or campaign emails. If we start doing so, we will ask for your consent separately, with its own checkbox.

8. Recipient groups and cross-border transfers

We do not sell your personal data. We do not sell, rent or barter your data to data brokers, ad exchanges or any third party.

Data is, however, shared, and we do not hide it: in order to run the application, the data listed below goes to the recipients listed below. Some of them are service providers acting on our behalf (data processors); others are independent controllers that also process your data for their own purposes. The advertising provider falls in the second group; we mark that distinction plainly in the table.

8.1 Recipient groups and transfer purposes (Law Art. 10/1-c; Information Communiqué Art. 5/1-ğ)

CodeRecipient groupWhoTransfer purposeCapacity
[YB]Foreign hosting providerHetzner Online GmbH (Germany) — our server is located in Finland.Hosting the server, database, cache and log filesData processor
[YD]Foreign object storage providerCloudflare, Inc. (USA) — global infrastructure; profile photographs are not pinned to a specific country. They are encrypted in transit and at rest.Storing and delivering the profile photographData processor
[EP]E-mail delivery infrastructureGoogle (Gmail)Delivering verification, password reset, account deletion and support e-mails and keeping them in the support mailboxA mixed position between independent controller and processor
[RS]Advertising providerGoogle Ireland Limited and Google LLC (AdMob)Serving the rewarded ad and verifying the reward on the server sideIndependent data controller
[MS]Store and payment providerGoogle Commerce Limited and Google LLC (Play billing). Apple Distribution International Limited and Apple Inc. — only once the application is published on the App StoreVerifying the purchase receipt, learning refund and entitlement statusIndependent data controller; merchant of record in the European Economic Area
[FCM]Google LLC (Firebase Cloud Messaging)USA / globalDelivering the notification to your deviceProcessor — the notification token, device platform, interface language and the title/body of the notification are transferred; the body of some notifications carries another user's username
[DK]Other users of the application—Leaderboard, league, friendship, duel, gift, shared list and profile display (section 4)—

In addition, when you tap "share" the generated image and text go to the application you select (a messaging app, a social network, e-mail). You initiate that transfer; the receiving application is an independent controller. When you have a word read aloud, the text of the word goes to the text-to-speech engine installed on your device; if that engine connects to the cloud, the word text may leave the device.

Publicly available privacy policies:

8.2 Cross-border transfers — the Law Art. 9 table

The following are cross-border transfers under Turkish law. As of August 2026 the Board has issued no adequacy decision for any country, sector or international organisation; the analysis therefore moves directly to the appropriate safeguards tier (Art. 9/3-4).

The last column of the table below shows the planned basis: the standard contracts have not yet been signed, nor notified to the Authority within five business days of signature.

RecipientCountryData transferredRegular?Planned Law Art. 9 basis
Hetzner Online GmbHHetzner Online GmbH (Germany) — our server is located in Finland.All personal data on the serverContinuous and regularArt. 9/3-4 appropriate safeguards — the Board's published standard contract, controller-to-processor module
Cloudflare, Inc.Cloudflare, Inc. (USA) — global infrastructure; profile photographs are not pinned to a specific country. They are encrypted in transit and at rest.The profile photograph; also the IP address of upload and view requestsContinuous and regularArt. 9/3-4 appropriate safeguards — standard contract, controller-to-processor module
Google Ireland Limited and Google LLC (AdMob)Ireland and the United StatesAdvertising identifier, IP address, device signals, ad interactions; your user number during reward verificationContinuous and regularThe recipient is an independent controller → Art. 9/3-4 appropriate safeguards, controller-to-controller module
Google Commerce Limited and Google LLC (Play billing)Ireland and the United StatesApplication package name, product id, purchase tokenContinuous and regularThe recipient is an independent controller → Art. 9/3-4 appropriate safeguards
Apple Distribution International Limited and Apple Inc. — only after App Store publicationIreland and the United StatesTransaction id and receipt verification dataContinuous after publicationThe recipient is an independent controller → Art. 9/3-4 appropriate safeguards
Google (Gmail)The United States and globalYour e-mail address, your username, six-digit codes, the full text of your support messageContinuous and regularArt. 9/3-4 appropriate safeguards
Google LLC (Firebase Cloud Messaging)The United States / globalNotification token, device platform, interface language, the title and body of the notificationWhenever a notification is sentAppropriate safeguard under Art. 9/3-4 (standard contract planned)

The explicit-consent route in Law Art. 9/6 cannot be used for these transfers. Since the amendment introduced by Law No. 7499, in force on 1 June 2024, explicit consent is an exceptional route available only for incidental transfers. Hosting, storage, advertising and e-mail delivery are continuous and regular transfers and cannot be characterised as "incidental". We therefore do not ask for your explicit consent for cross-border transfers; the correct route is the standard contract.

Risks the transfer carries: the data protection regime of the country where your data sits may differ from Türkiye's; the access powers of public authorities there may differ; exercising your rights and reaching effective remedies in that country may be harder than in Türkiye. For US-headquartered providers, US government data access legislation must also be assessed.


9. Decisions taken by automated systems

The following decisions may be taken automatically, without human review:

fingerprint, a warning record is produced. This alone does not block your account.

fingerprint may also be suspended.

recorded.

request counts are limited on certain endpoints.

a second time.

Under Law Art. 11/1-g you have the right to object if an assessment made solely by automated systems produces an adverse result for you. You may submit your objection through the channels in section 10; your request will be reviewed by a human.


10. Your rights and how to apply (Law Art. 11, 13, 14)

10.1 Your rights under Law Art. 11

By applying to us as data controller you have the right to:

a) learn whether your personal data is being processed, b) request information if it has been processed, c) learn the purpose of processing and whether your data is used in line with that purpose, ç) know the third parties to whom your data is transferred, in Türkiye or abroad, d) request rectification if your data has been processed incompletely or inaccurately, e) request erasure or destruction within the conditions of Law Art. 7, f) request that the operations carried out under (d) and (e) be notified to the third parties to whom your data has been transferred, g) object to an adverse outcome arising from analysis carried out solely by automated systems, ğ) claim compensation for damage suffered as a result of unlawful processing.

10.2 How to apply

Channels accepted under Article 5 of the Communiqué on the Principles and Procedures for Applications to the Data Controller (Official Gazette 10.03.2018/30356):

  1. By electronic message sent from the e-mail address registered to your account to

worvento.info@gmail.com — this is the most practical route, because your identity can be verified through your account,

  1. By secure electronic signature,
  2. By mobile signature.

Because no postal address is published, the hand-signed written channel is not operated in practice; written applications are also received through the e-mail channel above.

Article 5 of the Communiqué also lists a registered electronic mail (KEP) address as a channel; however we do not have a KEP address, so we cannot receive applications by KEP.

Your application must contain: your name and surname; your signature if it is written; your Turkish identity number (if you are a foreign national, your nationality and passport or identity number); your address of residence or place of business for service of notice; your e-mail address, telephone and fax number if any; and the subject of your request. Attach any relevant information and documents.

The language of application is Turkish under Article 5 of the Communiqué. However, we also accept applications made in English.

10.2.1 How we verify your identity

If you send your application from the e-mail address registered to your account, your identity is verified through that account and we ask for no further document. If the application arrives from another address or in writing, we ask for identity confirmation so that we can establish that the data really is yours — otherwise we would be handing someone else's data to the wrong person.

Applications on behalf of another person. If you apply as a representative of the data subject, you must attach a power of attorney containing specific authority for this purpose. If you are applying as the holder of parental authority on behalf of someone under 16, see section 13.

10.3 Time limit and fees

We will conclude your request as soon as possible and in any event within thirty days (Law Art. 13/2). Acceptance or a reasoned rejection will be communicated to you in writing or electronically.

Applications are free of charge as a rule. If the operation requires an additional cost, the fee in the tariff set by the Board may be charged (Communiqué Art. 7): in a written reply the first ten pages are free and a processing fee of 1 Turkish lira may be charged for each page beyond ten; if the reply is provided on a recording medium, the cost of the medium may be charged. If the error is attributable to us, any fee charged is refunded.

10.4 Complaint to the Board

If your application is rejected, if you find the reply insufficient, or if no reply is given in time, you may complain to the Personal Data Protection Board within thirty days of learning the reply and in any event within sixty days of the date of application (Law Art. 14). The Board: https://www.kvkk.gov.tr

10.5 In-app shortcuts

Inside the application you can: remove your profile photograph, delete your account (with two-step confirmation), log out, and send a support message.


11. Data security and data breaches (Law Art. 12)

Under Law Art. 12 we are obliged to take technical and administrative measures to prevent unlawful processing of your personal data, to prevent unlawful access to it, and to ensure its preservation.

Measures present in the application: all communication between device and server is encrypted with TLS; your password is not stored in plain text but hashed with BCrypt; access and session refresh keys are kept in encrypted storage on the device; session keys can be revoked; failed login attempts are counted and the account is temporarily locked; request counts are limited; verification codes are stored hashed in the database and expire in fifteen minutes; ad and purchase operations have replay protection; profile photograph addresses are generated unpredictably.

We are not hiding the known gaps. The points flagged in sections 3.5, 3.9 and 5 of this notice (six-digit codes and support message bodies written to operational logs in plain text, the IP address being unreliable, retention periods being undefined, account deletion not covering certain tables) have not been remedied.

What we do in the event of a breach: when we learn that your personal data has been unlawfully obtained by others, we notify the Personal Data Protection Board without delay and within seventy-two hours at the latest (Law Art. 12/5; Board decision no. 2019/10 of 24.01.2019). If you are found to be affected, we also notify you as soon as reasonably possible; the notification states when the breach occurred, which data categories were affected, its likely consequences, the measures taken and those we recommend you take, and contact details from which you can obtain information (Board decision no. 2019/271 of 18.09.2019).


12. Users outside Türkiye

Worvento is published in some countries outside Türkiye (other than those listed in the Distribution territory note above). Some of those countries have their own data protection laws — for example Brazil (LGPD), India (DPDP), Canada (PIPEDA) and the United Arab Emirates (PDPL).

This notice was written on the basis of Law No. 6698. In matters of transparency, your rights and the deletion of your data it meets what those laws require in substance, but it does not contain country-specific chapters. Wherever you are, the request channel is the same: worvento.info@gmail.com, and your request is concluded within 30 days at the latest.

If you live in the United States: we are far below the annual revenue (USD 25 million) and consumer-count (100,000) thresholds of the California statutes (CCPA/CPRA) and comparable state laws, so we are out of their scope. On the point that matters most under those laws — the sale of data — our position is unambiguous in any case: we do not sell your personal data.


13. Children

Worvento is not for people under 16. The Terms of Use ask you to warrant that you are at least 16.

If an account is found to belong to a person under 16, we suspend it and process it for erasure. If you hold parental authority and believe the data of a person under 16 is being processed, write to worvento.info@gmail.com; we will conclude your request within the period in section 10.


14. Version, updates and the record that this notice was shown

The version and effective date of this notice are at the top. If our processing purposes change, we update this notice and inform you inside the application before putting the change into effect (Information Communiqué Art. 5/1-b). Adding a new feature, a new recipient or a new third-party component falls within this too.

This notice is published in Turkish and English. The translation is for information; in case of conflict the Turkish text prevails.

The burden of proving that the duty to inform was fulfilled rests on us (Information Communiqué Art. 5/1-e). For that reason, which version of this notice was shown to you, when and on which screen is recorded on the server against your account. This record is kept solely for evidentiary purposes and contains the text version, the time it was shown, the channel and the language.


15. What we ask of you for this notice

We do not ask for your approval, acceptance or consent for this notice. The only declaration requested is:

☐ I have read and understood the Worvento Privacy Notice.

This checkbox is not a consent box; it is a declaration of having been informed. Ticking it does not mean you have consented to any processing activity. Your preferences are asked separately, in a separate document and with separate checkboxes, for the two processing activities that do rest on explicit consent: https://worvento.com/legal/acik-riza

15.1 How it must appear on the registration screen

Board Principle Decision No. 2026/347 makes the following structure mandatory. The registration screen cannot contain a single combined approval box; a single button reading "I have read, I accept and I give my explicit consent" is cited in the decision as an example of bad practice.

The correct structure consists of three separate, visually distinct blocks:

Block 1 — Terms of Use (contract). Separate heading, separate link, separate checkbox. It may be mandatory; it is the contractual basis of the service.

☐ I have read and accept the Terms of Use. (mandatory)

Block 2 — Privacy Notice (information). Separate heading, separate link, separate declaration area. "I accept" cannot be written here.

☐ I have read and understood the Privacy Notice.

Block 3 — Explicit consent (optional). Under its own heading, two separate and pre-unchecked boxes. None of them is a condition of registering; registration can be completed with all of them left empty. Details are in the Explicit Consent Statement.

A visual separator sits between the three blocks; no block is nested inside another.


Appendix A — Full list of data that stays on your device (annex to section 3.10)

The following never leaves your device and is not sent to the server:

Data kept on the deviceWhat it is
Your own word list (MyList)The words you added to the application, their meanings and your notes
Offline copy of a shared listThe device-side cache of a shared list you belong to
Personal best of twelve mini gamesYour own highest score in each mini game
Tour flagsWhich introduction screens you have seen
Celebration and album sealing flagsSo the same celebration is not shown twice
Weekly report card and season summary banner flagsSo the same information is not shown again
Theme, sound, haptic and text-to-speech preferencesYour appearance and sound settings
Day and hour habit countersAn on-device counter of which days and hours you study
Device fingerprintA random identifier generated by the application. On iOS it survives even if you delete the application
Install identifierA random identifier generated by the application; it goes when the application is uninstalled

In addition:

device's widget store and may be visible on the lock screen. The word of the day is kept hidden in the widget until you answer it.

remains in the device's temporary directory and is not deleted automatically.

are deleted when you log out.

None of this is cleared when you delete your account. The only way to remove it from the device is to uninstall the application; on iOS the device fingerprint survives even then.


Appendix B — Full list of data we do not collect (annex to section 6)

We collect none of the following. The list was compiled by scanning the application's dependencies and permissions:

identifier**

component at all

reach us

The exception to this list is stated in section 6: the time-zone offset and your IP address may allow a coarse location inference.


16. Sources

(Official Gazette 10.03.2018/30356; amended by Official Gazette 28.04.2019/30758), Arts. 4, 5, 6

(Official Gazette 10.03.2018/30356), Arts. 5, 6, 7

(Official Gazette 28.10.2017/30224)

(Official Gazette 10.07.2024/32598); KVKK Guidelines on Transfers Abroad (02.01.2025)

(Official Gazette 24.03.2026/33203)

No. 2025/2451 of 25.12.2025 (data breach notification)

Categories of Personal Data (26.02.2025)