Uygulama / App: Worvento · Paket kimliği / Package name: com.worvento.app
Sürüm: 1.0 · Yürürlük: 8 Ağustos 2026 · Son güncelleme: 8 Ağustos 2026
Bu özet, aşağıdaki ayrıntılı bölümlerin yerine geçmez; onlara giriş niteliğindedir. Bağlayıcı olan ayrıntılı bölümlerdir.
| Soru | Kısa cevap | Ayrıntı |
|---|---|---|
| Veri sorumlusu kim? | Worvento'nun Türkiye'de yerleşik yayıncısı — bir gerçek kişi, şirket değil | 1. bölüm |
| Hangi verileri işliyorsunuz? | Hesap bilgileri, öğrenme ilerlemesi, oyunlaştırma, sosyal etkileşim, güvenlik kayıtları, satın alma kayıtları; isteğe bağlı profil fotoğrafı | 3. bölüm |
| Neye dayanarak? | Çoğu için sözleşmenin ifası (Kanun m.5/2-c); güvenlik için meşru menfaat (m.5/2-f); satın alma için hukuki yükümlülük (m.5/2-ç). Yalnız iki kalem açık rızaya dayanır | 3. bölüm |
| Verimi satıyor musunuz? | Hayır. Kişisel verilerinizi satmıyoruz. Ama hizmeti çalıştırmak için sayılı alıcılarla sayılı veriyi paylaşıyoruz | 8. bölüm |
| Neyim herkese açık? | Kullanıcı adı, deneyim puanı, seviye, rozetler, ısı haritası, çevrimiçi durumu, avatar. Bunları kapatan bir ayar yok | 4. bölüm |
| Veri nerede tutuluyor? | Sunucu Finlandiya'da (Hetzner Online GmbH, Almanya). Profil fotoğrafları Cloudflare, Inc. (ABD) altyapısında, belirli bir ülkeye sabitlenmemiş | 8. bölüm |
| Ne kadar süre? | Loglar 7 gün, ısı haritası 400 gün, kodlar 15 dakika. Diğer verilerin çoğu için tanımlı bir silme süresi yok — hesabınız açık kaldığı sürece tutulur | 5. bölüm |
| Hesabımı silersem ne olur? | Hesap satırınız ve çoğu kayıt silinir, fakat 12 tablo ve bazı kalemler silinmez. Tam liste 5.1'de, hiçbiri saklanmadan | 5.1 bölümü |
| Konumumu alıyor musunuz? | Hayır — GPS veya ağ konumu yok. Ama saat dilimi kayması ve IP adresi kaba bir konum çıkarımı sağlar | 6. bölüm |
| Ne yapabilirim? | Kanun m.11'deki 8 hak; başvurularınız en geç 30 günde sonuçlanır | 10. bölüm |
| Bu metni onaylamam gerekiyor mu? | Hayır. Yalnızca "okudum ve anladım" beyanı istenir; onay veya rıza istenmez | 15. bölüm |
Bu metin, 6698 sayılı Kişisel Verilerin Korunması Kanunu'nun (kısaca "Kanun") 10. maddesi ve Aydınlatma Yükümlülüğünün Yerine Getirilmesinde Uyulacak Usul ve Esaslar Hakkında Tebliğ'in (RG 10.03.2018/30356) 4. ve 5. maddeleri uyarınca hazırlanmış bir bilgilendirmedir.
Bu metin bir onay veya rıza belgesi değildir. Sizden bu metin için "kabul ediyorum" demeniz istenmez; yalnızca okuduğunuzu ve anladığınızı beyan etmeniz istenir. Bunun nedeni, Kişisel Verileri Koruma Kurulu'nun 18.02.2026 tarihli ve 2026/347 sayılı ilke kararıdır (Resmî Gazete 24.03.2026 / 33203): aydınlatma metni ile açık rıza metni ayrı belgeler olmak zorundadır, birleştirilemez ve tek bir onay kutusuyla sunulamaz.
Yalnızca iki işleme faaliyeti için sizden açık rıza istiyoruz: profil fotoğrafı ve kişiselleştirilmiş reklam. Onlar ayrı bir belgede, Açık Rıza Metni'nde toplanmıştır: https://worvento.com/legal/acik-riza. Bu metni okumak, o rızaları vermiş sayılmanıza yol açmaz. Yurt dışına aktarım için sizden açık rıza istemiyoruz; nedeni 8.2 bölümünde yazılıdır.
Kullanım Koşulları sözleşmesi de ayrı bir belgedir: https://worvento.com/legal/terms
İlgili diğer belgeler:
https://worvento.com/legal/veri-silme saklanan verilerin ayrıntılı listesi: https://worvento.com/legal/izleme-teknolojileri
https://worvento.com/legal/basvuruWorvento uygulamasının (com.worvento.app) veri sorumlusu bir gerçek kişidir; tüzel kişi değildir.
| Veri sorumlusu | Worvento'nun Türkiye'de yerleşik yayıncısı (gerçek kişi) — bu metinde kısaca "Yayıncı" |
| Kişisel veri başvuruları için e-posta | worvento.info@gmail.com (tek kanal) |
| Destek e-postası | worvento.info@gmail.com |
| İnternet adresi | https://api.worvento.com |
| Temsilci | Kanun m.10/1-a anlamında Türkiye'de atanmış bir temsilci bulunmamaktadır; başvurularınızı doğrudan yukarıdaki kanallardan iletirsiniz. Avrupa Birliği ve Birleşik Krallık bakımından 12. bölüme bakınız. |
Kayıtlı elektronik posta (KEP) adresimiz bulunmamaktadır; bu nedenle KEP üzerinden başvuru alamıyoruz. Kabul edilen başvuru kanallarının tamamı 10.2 bölümündedir.
Dağıtım bölgesi. Worvento; Avrupa Birliği/Avrupa Ekonomik Alanı, Birleşik Krallık, İsviçre, Japonya, Güney Kore, Çin ve Suudi Arabistan'da dağıtılmamaktadır ve bu ülkelerdeki kullanıcılara yönelik değildir. Türkiye dışındaki kullanıcılar için ek bilgiler 12. bölümdedir.
Aydınlatma Tebliği m.5/1-h, verinin hangi yolla elde edildiğinin açıkça yazılmasını ister. Worvento'da iki yol vardır:
sırasında istemci uygulamasının sunucuya gönderdiği veriler (kayıt ve giriş formu alanları, çalışma sonuçları, oyun sonuçları, cihaz tanımlayıcıları, IP adresi, saat dilimi kayması, satın alma makbuzu, reklam ödülü doğrulaması) ve sunucunun kendi ürettiği kayıtlar (oturum kayıtları, güvenlik sayaçları, işletim logları).
mesajlarında olduğu gibi, sizin serbest metin olarak yazıp bize ilettiğiniz ve sonrasında e-posta kutusunda düzenli biçimde saklanan veriler.
Aşağıdaki tabloların "Toplama yöntemi" kolonu her satır için bu ikisinden hangisinin geçerli olduğunu gösterir.
Aşağıdaki tablolarda her satır beş bilgiyi birlikte taşır: hangi veri, hangi somut amaç, hangi hukuki sebep (bent numarasıyla), hangi yolla toplandığı ve hangi alıcı grubuna aktarıldığı. Hukuki sebep kolonunda toplu atıf yapılmaz; her satırda ilgili bent tek tek yazılıdır.
Alıcı grubu kısaltmaları: [YB] yurt dışı barındırma sağlayıcısı · [YD] yurt dışı nesne depolama sağlayıcısı · [EP] e-posta gönderim altyapısı · [RS] reklam sağlayıcısı · [MS] mağaza ve ödeme sağlayıcısı · [DK] uygulamanın diğer kullanıcıları. Bu grupların kim olduğu 8. bölümdedir.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Kullanıcı adı | Hesabınızı tanımlamak; liderlik tablosunda, lig sıralamasında, arkadaş listesinde, düelloda ve hediye ekranında sizi göstermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| E-posta adresi | Giriş kimliği olarak kullanmak; doğrulama, şifre sıfırlama ve hesap silme onay kodunu göndermek; destek talebinize yanıt vermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [EP] |
| Parolanın BCrypt özeti | Girişinizde kimliğinizi doğrulamak; hesap silme talebinden önce parolayı teyit etmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| E-posta doğrulama kodunun SHA-256 özeti, gönderim anı, deneme sayacı | E-posta adresinizin size ait olduğunu doğrulamak; doğrulanmamış hesapları ödül ve oyuncu-karşı-oyuncu akışlarından ayırmak | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] [EP] |
| Şifre sıfırlama kodunun özeti, gönderim anı, deneme sayacı | Parolanızı unuttuğunuzda yeni parola belirlemenizi sağlamak | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [EP] |
| Hesap silme onay kodunun özeti, gönderim anı, deneme sayacı | Hesap silme talebini iki adımda doğrulamak, yanlışlıkla veya başkası tarafından silinmeyi önlemek | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] [EP] |
| Oturum yenileme kaydı (token, oluşturma, sona erme, iptal ve devir bilgisi) | Erişim anahtarınız dolduğunda oturumu kesintisiz yenilemek; çıkış yaptığınızda, parolanızı değiştirdiğinizde veya hesabınız askıya alındığında oturumu iptal edebilmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Erişim anahtarının içeriği (kullanıcı numarası, e-posta adresi, kullanıcı adı, anahtar kimliği) | Her istekte kimliğinizi doğrulamak | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Başarısız giriş sayacı ve hesap kilidi süresi | Parolanızı deneyerek kırma girişimlerine karşı hesabı geçici olarak kilitlemek | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
Erişim anahtarınızın içinde e-posta adresiniz de taşınır. Bu anahtar cihazınızda şifreli depoda tutulur ve her istekte sunucuya gönderilir.
Canlı maç ve düello bildirimleri için kurulan WebSocket bağlantısında bu anahtar adres satırının sorgu kısmında taşınır. Bunun sonucu şudur: ters vekil sunucunun erişim kayıtlarına anahtar düşebilir.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Kelime bazlı aralıklı tekrar kaydı (kararlılık, güçlük, tekrar sayısı, unutma sayısı, durum, son tekrar anı, sıradaki tekrar anı) | Her kelimeyi size özel doğru zamanda tekrar göstermek; haftalık karneyi üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Kelime ustalık işaretleri | Koleksiyon albümünü ve altın kelime durumunu hesaplamak; evcil hayvanın evresini türetmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Karıştırma matrisi (hangi iki kelimeyi kaç kez karıştırdığınız) | Size özel hata analizi yapmak ve tekrar önerisi üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Doğru ve yanlış cevap sayıları, güncel seri, en yüksek seri | İlerlemenizi göstermek; seviye, liderlik sıralaması ve arkadaş profilini üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Günlük aktivite kaydı (gün → o gün kazanılan deneyim puanı) | İstikrar takvimini (ısı haritasını) çizmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Sınav oturumu kaydı (oturum kimliği, mod, soru sayısı, kelime kimlikleri, başlangıç anı, tüketim işareti) | Sınav ödülünün gerçekten oynanmış bir oturuma karşılık geldiğini doğrulamak; aynı oturumun tekrar ödüllendirilmesini engellemek | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Öğrenme dili tercihleri, günlük deneyim puanı hedefi, tanıtım turunun tamamlanma durumu | İkinci cihazda dil seçimini ve tanıtım turunu tekrar sormamak; düello ve adam asmaca içeriğini sizin dilinizde göstermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Toplam deneyim puanı, seviye | İlerleme göstergesi; liderlik ve lig sıralaması | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Altın bakiyesi, joker envanteri | Uygulama içi harcamaları sunucu tarafında tutmak, bakiyenin cihazda değiştirilmesini engellemek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Rozet listesi | Kazandığınız başarımları kendi profilinizde ve başkalarının gördüğü profilde göstermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Sahip olunan kozmetikler, takılı çerçeve, takılı avatar | Görünüm eşyalarını saklamak; takılı görünümü başkalarının gördüğü profilde göstermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Sezon puanı, sezon kimliği, sezon pass durumu, alınan sezon kademeleri, günlük ve haftalık görev ilerlemesi | Sezon ilerlemesini ve görevleri yürütmek. Sezon pass sahibi olduğunuz bilgisi liderlik satırınızda başkalarına görünür | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Seri onarma ve kalkan durumu | Serinizi onarma hakkını sunucu tarafında saymak ve aynı hakkın tekrar kullanılmasını engellemek | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Günlük giriş serisi ve alınan kilometre taşları | Günlük giriş ödülünü bir kez vermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Ödül tekrarını engelleyen anahtar listeleri | Aynı ödülün iki kez verilmesini engellemek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Günlük hak sayaçları (sınav, çalışma, çift puanlı sınav, reklam, çark) | Günlük hakları ve tavanları sunucu tarafında saymak | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Deneyim puanı senkronizasyon sayaçları (son senkronizasyon günü, o gün kabul edilen puan) | Günlük kabul tavanını uygulamak, cihazda üretilmiş sahte puanın kabul edilmesini engellemek | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Cihaz saat dilimi kayması (dakika) ve son sıfırlama anı | Günlük hakların ve limitlerin sizin yerel gece yarınızda sıfırlanmasını sağlamak | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Evcil hayvanın türü, adı, takılı aksesuarları, mama ve ödül durumu | Evcil hayvan ekonomisini cihazlar arasında eşitlemek. Bu veriler yalnız size gösterilir | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Mini oyun sonuçları (günlük 60 saniye, günlük Wordle oturumu ve girdiğiniz tahminler, Mini Çengel, Günün Kelimesi quizi, Kelime Kulesi koşusu, haftalık boss sınavı) | Her oyunda günde tek deneme kuralını uygulamak; oturumu yarıda kalırsa devam ettirmek; günlük ve haftalık skor tablolarını üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
Saat dilimi kayması hakkında dürüst uyarı: konum verisi toplamıyoruz, fakat saat dilimi kaymasından kaba bir coğrafi çıkarım yapılabilir. Bunu 6. bölümde ayrıca yazıyoruz.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Arkadaşlık kayıtları (istek gönderen, alan, durum, tarihler) | Arkadaş listesini ve istekleri yürütmek; düello, hediye ve canlı maç yetkisini belirlemek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Engellenen kullanıcı kayıtları | Engellediğiniz kişinin sizinle etkileşimini kesmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Alınan hediyeler (hediye kimliği, gönderenin kullanıcı adı, tarih), hediye vitrini, itibar puanı, sahip olunan hediyeler | Hediye geçmişini size göstermek; seçtiğiniz hediyeleri profil vitrininizde göstermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Son görülme anı | Arkadaş listesinde ve profilde "çevrimiçi" veya "son görülme" göstergesini üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Canlı bağlantı kimlikleri (gerçek zamanlı oturum kayıtları) | Canlı maç davetini ve durum güncellemesini doğru cihaza iletmek; çevrimiçi göstergesini beslemek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Düello sonuçları, canlı meydan okuma sonuçları, adam asmaca sonuçları (taraflar, skorlar, kazanan, tarih) | "Aranızdaki maçlar" ve "son maçlar" listelerini üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Meydan okuma zarfı (taraflar, oyun türü, kelime listesi ve tohum verisi, skorlar, durum, sona erme anı) | Arkadaşınıza yirmi dört saatlik asenkron meydan okuma göndermek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Oynanmakta olan maçın anlık görüntüsü (taraf kullanıcı adları, verilen cevaplar, denenen harfler, kalan süre) | Sunucu yeniden başladığında yarıda kalan maçı kaybetmemek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
| Günlük lig deneyim puanı satırları | "Günün kazananları" sıralamasını üretmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Ortak liste kayıtları (liste adı, diller, üyelik kayıtları, üyelerin eklediği kelimeler) | En çok dört kişilik ortak kelime listesini yürütmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [DK] |
| Davet kodunuz ve kullandığınız davet kodu | Arkadaş davet kampanyasını yürütmek; aynı kodun tekrar kullanılmasını ve cihaz başına sınırı aşmayı engellemek | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] [DK] |
| Kullanıcı şikâyeti (şikâyet eden, şikâyet edilen, en çok 500 karakter serbest metin gerekçe, durum, çözüm notu) | Kural ihlali bildirimlerini incelemek ve karara bağlamak | m.5/2-f meşru menfaat ve m.5/2-e bir hakkın korunması | Veri kayıt sisteminin parçası olarak otomatik olmayan yolla (serbest metin) | [YB] |
| Moderasyon durumu (yönetici yetkisi, hesabın askıda olup olmadığı) | Kural ihlali halinde hesabı askıya almak; yönetici işlemlerini yetkilendirmek | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
Şikâyet gerekçesi hakkında dürüst uyarı: yazdığınız serbest metin, yönetici ekranında şikâyet eden ve şikâyet edilen kullanıcı adlarıyla birlikte görüntülenir. Kişisel bilgi yazmamanızı öneririz.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Kayıt anındaki IP adresi ve son giriş IP adresi | Aynı adresten seri hesap açılmasını tespit etmek; kötüye kullanım incelemesi yapmak | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Cihaz parmak izi (uygulamanın ürettiği rastgele bir tanımlayıcı) | Aynı cihazda eşiği aşan sayıda hesap açılmasını tespit etmek; davet kodu kullanımını cihaz başına sınırlamak; bir hesap askıya alındığında aynı cihazdaki diğer hesaplara yayılmasını sağlamak | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Kurulum kimliği (uygulamanın ürettiği rastgele bir tanımlayıcı) | "Aynı cihaz, farklı kurulum" ayrımını yapmak | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| İşletim logları (istek yöntemi, yol, durum kodu, süre; yavaş sorgu metni) | Sunucunun çalıştığını izlemek, arıza ve performans sorunlarını gidermek | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Güvenlik uyarı logları (cihaz parmak izi, kullanıcı adı, IP; askıya alma kaydı ve aynı cihazdaki hesap numaraları) | Kötüye kullanım incelemesinin izini tutmak | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| Gönderilen e-postaların içeriği (alıcı adresi, kullanıcı adı, altı haneli kod veya bildirim metni) | Doğrulama, şifre sıfırlama, hesap silme onayı ve parola değişikliği bildirimini iletmek | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [EP] |
| Bağlantı kontrolü istekleri (genel IP adresiniz, zaman damgası) | İnternet bağlantısının gerçekten çalıştığını anlamak; internete çıkışı olmayan ağa bağlıyken uygulamanın kilitli ekranda takılmasını önlemek — istek yalnız kendi sunucumuzun sağlık ucuna gider | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
Bağlantı kontrolü. Uygulama, internet bağlantınızın çalıştığını doğrulamak için düzenli olarak küçük bir istek gönderiyor. Bu istek yalnız kendi sunucumuza gidiyor (/health), yaklaşık 45 saniyede bir. Üçüncü tarafa hiçbir şey gitmiyor.
Bu metnin daha önceki sürümünde, kullandığımız kütüphanenin varsayılanları değiştirilmediği için bu kontrolün IP adresinizi dört üçüncü taraf adrese (one.one.one.one, icanhazip.com, jsonplaceholder.typicode.com, pokeapi.co) yaklaşık on saniyede bir gönderdiği yazıyordu. O tasarım kusuru düzeltildi; orada beyan edilen dört aktarım artık yapılmıyor.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Satın alma kaydı (mağaza, ürün kimliği, mağaza işlem kimliği, makbuz doğrulama verisi, tutar bilgisi, tarih) | Aynı makbuzun iki kez altın veya hak vermesini engellemek; ilk satın alma bonusunu bir kez vermek; iade halinde verilen hakkı geri almak; vergi ve muhasebe yükümlülüklerini yerine getirmek | m.5/2-ç hukuki yükümlülüğün yerine getirilmesi ve m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] [MS] |
| Hak kayıtları (hak türü, kaynağı, verilme ve sona erme anı) | Reklamsız erişim ve premium özellikleri doğru süre boyunca açık tutmak | m.5/2-c sözleşmenin ifası | Tamamen otomatik | [YB] |
Ödeme bilgileriniz bize hiç gelmez. Kart numarası, adınız, adresiniz ve vergi bilginiz mağazada kalır. Bize yalnızca mağazanın verdiği makbuz metni, işlem kimliği ve ürün kimliği ulaşır.
Uygulama içi satın alma kayıtları, hesabınızı sildiğinizde de silinmez; vergi ve muhasebe mevzuatı ile iade süreçleri bunu gerektirir. Ayrıntı 5. bölümdedir.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Ödüllü reklam gösterim ve ödül sayaçları, bekleme süresi kaydı | Günlük reklam ödülü tavanını uygulamak; otomatik araçlarla ödül toplanmasını engellemek | m.5/2-c sözleşmenin ifası ve m.5/2-f meşru menfaat | Tamamen otomatik | [YB] |
| İşlenmiş reklam ödülü kayıtları (reklam sağlayıcısının verdiği işlem kimliği, ödül türü, işleme anı) | Aynı reklam ödülünün iki kez verilmesini engellemek | m.5/2-f meşru menfaat | Tamamen otomatik | [YB] [RS] |
| Sunucu taraflı ödül doğrulamasında reklam sağlayıcısına gönderilen kullanıcı numaranız ve ödül türü | Ödülü istemcinin değil sunucunun vermesini sağlamak; ödül sahtekârlığını engellemek | m.5/2-f meşru menfaat | Tamamen otomatik | [RS] |
| Reklam kimliği ve reklam telemetrisi (reklam sağlayıcısının kendi yazılım geliştirme kitiyle topladığı veriler: reklam kimliği, IP adresi, cihaz ve işletim sistemi bilgisi, reklam etkileşimleri) | Ödüllü reklamın gösterilmesi; reklam sağlayıcısının ölçüm ve dolandırıcılık önleme işlemleri | Açık rıza — Açık Rıza Metni'ndeki 2. rıza kalemi. Rıza vermezseniz yalnız kişiselleştirilmemiş reklam gösterilir | Tamamen otomatik | [RS] |
Reklam sağlayıcısına gönderilen kullanıcı numarası hakkında dürüst uyarı: ödüllü reklamın sonunda ödülü sunucunun verebilmesi için reklam sağlayıcısına iç kullanıcı numaranız düz metin olarak gönderiliyor. Yani bu veri takma adlı değildir; reklam sağlayıcısı tarafındaki kayıt doğrudan hesabınızla eşleşebilir.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Profil fotoğrafının kendisi (tam çözünürlüklü kopya ve 128 piksellik küçük kopya) | Arkadaş listesinde, liderlik tablosunda ve profil ekranında avatarınızı göstermek | Açık rıza — Açık Rıza Metni'ndeki 1. rıza kalemi | Tamamen otomatik (fotoğrafı siz seçersiniz) | [YD] [DK] |
| Fotoğrafın adresi | Küçük kopyayı ve tam kopyayı doğru kişilere göstermek | Açık rıza — Açık Rıza Metni'ndeki 1. rıza kalemi | Tamamen otomatik | [YB] [DK] |
Fotoğraf yüklemek isteğe bağlıdır; yüklemezseniz uygulamanın tüm işlevleri açık kalır. Fotoğrafınızın hukuken önemli dört özelliğini burada açıkça yazıyoruz:
sezon pass) hakkı bulunan hesaplara açıktır ve bu sınır sunucuda uygulanır: hakkınız yoksa yükleme bileti hiç üretilmez, sunucu talebi reddeder. Fotoğrafı kaldırmak ücretsizdir ve her zaman yapılabilir; yani rızanızı geri almak için ödeme yapmanız gerekmez. Bir işleme faaliyetinin ücrete bağlanmasının rıza hukuku bakımından doğurduğu sorun Açık Rıza Metni'nin
saklanır. Erişim kontrolü "adresi bilmek" üzerinedir; adres rastgele ve tahmin edilemez üretilir. Bu bir kimlik doğrulaması değildir: adresi eline geçiren herkes, hesabı olmasa bile fotoğrafı görebilir. Bu nedenle "fotoğrafınızı yalnız premium kullanıcılar görebilir" biçiminde bir koruma iddia etmiyoruz.
görüntüleyicilere gönderir; küçük kopya ise avatar olarak herkese görünür. Bu bir erişim kontrolü değil, adres gizliliğidir (yukarıdaki maddeye bakınız).
bir yıla kadar yaşayabilir. Kopya, oluşturulurken bir yıllık ve değiştirilemez önbellek ömrüyle işaretlenir.
Fotoğrafınızı yüz tanıma veya benzeri bir teknik işlemden geçirmiyoruz; kimliğinizi tekil olarak belirlemek veya doğrulamak için kullanmıyoruz. Fotoğraftan ırk, etnik köken, din, sağlık veya benzeri bir çıkarım da yapmıyoruz.
| Veri | Somut amaç | Hukuki sebep | Toplama yöntemi | Alıcı grubu |
|---|---|---|---|---|
| Destek mesajınız (konu, mesaj metni, kullanıcı adınız, kullanıcı numaranız, e-posta adresiniz) | Destek talebinizi incelemek ve yanıtlamak | m.5/2-c sözleşmenin ifası | Veri kayıt sisteminin parçası olarak otomatik olmayan yolla | [EP] |
Destek mesajınız veritabanına kaydedilmez; e-posta olarak destek adresine iletilir ve o e-posta kutusunda kalır. Kutu, bir e-posta altyapısı sağlayıcısında barındırılmaktadır.
Dürüst uyarı: e-posta gönderim yapılandırması kapalı olduğunda destek mesajınızın tam metni sunucunun işletim loglarına da yazılır. Bu loglar yedi gün tutulur.
Bazı veriler cihazınızdan hiç çıkmaz; sunucuya gönderilmez. Yine de kişisel verinizdir ve uygulamayı kaldırmadıkça cihazda kalır. Bunların hiçbiri hesabınızı sildiğinizde temizlenmez; cihazdan silmenin tek yolu uygulamayı kaldırmaktır. iOS'ta cihaz parmak izi, uygulamayı kaldırsanız bile kalır.
Tam liste bu metnin sonundaki Ek A bölümündedir.
Bunu açıkça yazıyoruz çünkü kullanıcıların en sık yanıldığı nokta budur. Aşağıdaki veriler, uygulamayı kullanan diğer kullanıcılar tarafından görülebilir ve şu an bunu kapatan bir ayar uygulamada bulunmamaktadır:
| Görünen veri | Nerede görünür |
|---|---|
| Kullanıcı adınız | Liderlik tablosu, günlük lig, arkadaş listesi, arama sonuçları, düello ve maç ekranları, hediye ekranı |
| Toplam deneyim puanınız ve seviyeniz | Liderlik tablosu, arkadaş profili |
| Profil fotoğrafınızın küçük kopyası (yüklediyseniz) | Liderlik tablosu, arkadaş listesi, profil |
| Rozetleriniz | Arkadaş profili |
| İstikrar takviminiz (günlük aktivite ısı haritası) | Arkadaş profili |
| Takılı çerçeveniz ve avatarınız, hediye vitriniz, itibar puanınız | Arkadaş profili |
| Sezon pass sahibi olduğunuz bilgisi | Liderlik satırınız |
| "Çevrimiçi" veya "son görülme" bilginiz | Arkadaş listesi, profil |
| Günlük lig deneyim puanınız ve mini oyun skorlarınız | Günlük ve haftalık skor tabloları |
| Düello, canlı meydan okuma ve adam asmaca sonuçlarınız | Karşı tarafın maç geçmişi |
| Ortak listeye eklediğiniz kelimeler ve kullanıcı adınız | O listenin diğer üyeleri (en çok dört kişi) |
| Davet kodunuz | Kodu paylaştığınız kişiler |
Ek olarak: bir düello sonucunu paylaştığınızda rakibinizin kullanıcı adı, oluşturulan görsele gömülü biçimde sizin seçtiğiniz uygulamaya gider. Rakibinize bu konuda bildirim gitmez ve onayı sorulmaz.
Bu tabloda yalnızca uygulamanın gerçekten yaptığı süreler yazılıdır. Bir kalem için süre tanımlı değilse bunu açıkça yazıyoruz; uydurma bir sayı vermiyoruz.
| Veri | Gerçek süre |
|---|---|
| Sunucu işletim ve güvenlik logları | En son yedi log dosyası tutulur (yedi günlük dosya döngüsü) |
| Günlük aktivite kaydı (ısı haritası) | 400 gün; bu pencerenin dışındaki günler her eşitlemede budanır |
| Erişim anahtarı | 7 gün |
| Oturum yenileme kaydı | 30 günde geçersizleşir; satır silinmez, süresi geçmiş kayıt tabloda kalır |
| E-posta doğrulama, şifre sıfırlama ve hesap silme kodları | 15 dakika geçerlidir; sonra kullanılamaz hale gelir |
| Oynanmakta olan maçın anlık görüntüsü | Altı saatten eski kayıtlar saatlik olarak temizlenir |
| Sınav oturumu kaydı | Oturum 1 saat, tüketim işareti 6 saat |
| Canlı bağlantı ve çevrimiçilik kaydı | 12 saat; her bağlantıda yenilenir, bağlantı koptuğunda hemen silinir |
| Canlı maç durumu | 6 saat |
| Profil fotoğrafının içerik dağıtım ağı önbelleği | Bir yıl, değiştirilemez olarak işaretli; silmenizden sonra kopya bir süre yaşayabilir |
| Uygulama içi satın alma kayıtları ve hak kayıtları | Vergi, muhasebe ve iade süreçleri gereği hesap silindikten sonra da tutulur (kayıt kimliğinizden koparılır); somut yıl sayısı mali müşavir/avukat teyidiyle belirlenecektir |
| Diğer tüm kalemler | Uygulamada tanımlı bir silme süresi yoktur. Bu veriler hesabınız açık kaldığı sürece tutulur. Hesabınızı silme veya belirli bir verinin silinmesini talep etme haklarınız 10. bölümdedir |
Dürüstçe söylemek gerekir ki, günlük lig satırları ve ortak listeden sildiğiniz kelimeler için kodun içinde "kısa süre tutulur" yönünde açıklamalar bulunsa da, bu temizlik işlemi henüz yazılmamıştır. Bu yüzden yukarıdaki tabloda "silme süresi yoktur" satırına dahildirler. Ortak listeden bir kelimeyi sildiğinizde kelime fiilen silinmez, "silinmiş" olarak işaretlenir.
İmha yöntemi. Saklama süresi sona eren veya silinmesini talep ettiğiniz veriler için uygulanan yöntemler şunlardır: veritabanı kayıtları için silme (satırın veritabanından kaldırılması); nesne deposundaki fotoğraflar için silme (nesnenin depodan kaldırılması); log dosyaları için yok etme (dosya döngüsü dolduğunda dosyanın bütün olarak kaldırılması); önbellekteki geçici kayıtlar için süre dolduğunda otomatik silme. Vergi ve muhasebe mevzuatı nedeniyle tutulması zorunlu satın alma kayıtları için amaçlanan yöntem anonim hale getirmedir: kullanıcı numarasının kişiyle bağının koparılması.
Hesap silme iki adımlıdır: önce parolanızı teyit edersiniz, ardından e-postanıza gelen kodu girersiniz. Tek dokunuşla silme yoktur. Silme akışının adım adım anlatımı ayrı bir belgededir: https://worvento.com/legal/veri-silme. Bu bölümdeki liste ile o belgedeki liste birebir aynı olmak zorundadır; aralarında fark oluşursa o belge esas alınır ve bu bölüm güncellenir.
Gerçekten silinenler: hesap satırınız ve bu satırın içindeki her şey (deneyim puanı, altın, jokerler, rozetler, seriler, IP adresleriniz, cihaz parmak iziniz, tercihleriniz, evcil hayvan durumu, kozmetikler, sezon ve görev durumu, hediye geçmişi, itibar puanı); arkadaşlık kayıtları; engelleme kayıtları; taraf olduğunuz şikâyet kayıtları; oturum yenileme kayıtları; günlük lig satırları; günlük 60 saniye sonuçları; boss sınavı sonuçları; Günün Kelimesi ve Wordle sonuçları; Mini Çengel sonuçları; Kelime Kulesi koşuları; evcil hayvan kaydı; davet kodunuz; ortak liste üyelikleriniz; profil fotoğrafı nesneleri (elden gelen çabayla).
Silinmeyenler — bunu saklamıyoruz:
| Kalan veri | Neden kalıyor |
|---|---|
| Kelime bazlı aralıklı tekrar kayıtlarınız | Bu tablo hesap satırına bağlı değil; silme işlemi bu satırları kapsamıyor |
| Kelime ustalık işaretleriniz | Aynı |
| Karıştırma matrisiniz (hangi kelimeleri karıştırdığınız) | Aynı |
| Düello, canlı meydan okuma ve adam asmaca sonuçlarınız | Aynı; ayrıca karşı tarafın maç geçmişinin parçası |
| Meydan okuma zarflarınız | Aynı |
| Reklam ödülü işlem kayıtlarınız | Aynı |
| Uygulama içi satın alma kayıtları ve hak kayıtları | Vergi, muhasebe ve iade yükümlülükleri |
| Sahibi olduğunuz ortak listeler ve o listelere eklediğiniz kelimeler | Aynı; listenin diğer üyeleri için erişilebilir kalıyor |
| Kullanıcı adınız, size hediye gönderen kişilerin hediye geçmişinde | Hediye kaydı, gönderenin adını düz metin kopya olarak tutuyor |
| Cihazınızdaki yerel verilerin tümü (3.10 bölümü) | Silme işlemi cihazda hiçbir şey temizlemiyor |
| Profil fotoğrafının içerik dağıtım ağı önbelleğindeki kopyası | Bir yıllık, değiştirilemez önbellek işareti |
| Destek e-postalarınız | Destek e-posta kutusunda kalıyor |
| Son yedi günün log dosyalarındaki satırlar | Dosya döngüsü dolduğunda kendiliğinden gider |
| Yönetim kayıtlarındaki iç kullanıcı numaranız (yalnız yönetici yetkisi kullandıysanız) | Kayıt hesap satırına bağlı değil |
| Yarı kalmış canlı maç anlık görüntüsündeki kullanıcı adınız | Altı saatten eski kayıtlar saatlik olarak siliniyor |
Kullanıcıların en çok sorduğu kalemlerin hiçbirini toplamıyoruz: konum, rehber, telefon numarası, sağlık verisi, mikrofon ve ses kaydı, takvim, kısa mesaj, biyometrik doğrulama, kurulu uygulama listesi, cihazın donanım kimlikleri, pano içeriği, analitik ve çökme raporlama verisi, başka bir hesapla giriş. Kalem kalem tam liste Ek B bölümündedir.
(Bildirim gönderebilmek için cihazınıza ait bir bildirim anahtarı saklıyoruz — bu listede değil; ayrıntısı 3. bölümde.)
Bir istisnayı açıkça yazıyoruz: konum toplamıyoruz, fakat cihazınızın saat dilimi kaymasını günlük sıfırlama için sunucuya gönderiyoruz. Bu değerden kaba bir coğrafi çıkarım yapılabilir. Ayrıca IP adresiniz hem bizim sunucumuza hem de 3.5 bölümünde yazılı dört bağlantı kontrolü adresine ulaşır; IP adresinden de kaba bir konum çıkarımı mümkündür.
Uygulamanın size ulaşabildiği kanallar şunlardır ve hepsini burada yazıyoruz:
maç durumu güncellemesi bir WebSocket bağlantısıyla iletilir.
deposuna yazılır ve kilit ekranında görünebilir.
bildirimi ve destek yanıtı.
bildirimler. İki ayrı gruba ayrılmıştır ve ayrı ayrı açılıp kapatılır:
| grup | ne gönderilir | nasıl çalışır | varsayılan |
|---|---|---|---|
| Arkadaş ve oyun bildirimleri | oyun daveti, ortak liste daveti, arkadaşlık isteği, hediye | Sunucumuz gönderir; bunun için cihazınıza ait bir bildirim anahtarı (Firebase Cloud Messaging kaydı) ve arayüz diliniz saklanır | açık |
| Hatırlatıcılar ve ipuçları | gün serisi hatırlatması, kelime dostunuzun beslenme zamanı, gün içi çalışma önerileri | Cihazınızda kurulur ve tetiklenir; içeriği ve zamanı sunucuya gitmez, sunucu bu bildirimlerden haberdar değildir | kapalı — ayrıca onayınız alınır |
| Sürüm güncelleme duyuruları | yeni sürüm yayımlandığında bilgilendirme | Sunucumuz bir kez gönderir; ardından cihazınız güncelleme yapılana kadar günde en fazla bir hatırlatma kurar | hizmetin işleyişine bağlı — ayrıca onay alınmaz |
İlk iki grubu Ayarlar → Bildirimler bölümünden istediğiniz an kapatabilirsiniz. Sürüm güncelleme duyuruları hizmetin doğru ve güvenli çalışmasına bağlı olduğundan uygulama içinden kapatılamaz; cihazınızın sistem ayarlarından uygulamanın tüm bildirimlerini kapatabilirsiniz. 22:00 – 08:00 arasında bildirim gönderilmez, günde en fazla iki hatırlatıcı gönderilir ve o gün uygulamayı kullandıysanız kalan hatırlatıcılar iptal edilir. Sürüm güncelleme duyurusu bu iki hatırlatıcıdan ayrıdır ve günde en fazla birdir; güncelleme yapıldığı anda durur.
Anlık bildirimlere ilişkin onay (Kurul'un 14.01.2026 tarihli kamuoyu duyurusu). "Hatırlatıcılar ve ipuçları" grubu, hizmetin işleyişi için zorunlu olmayan, kullanımı özendirmeye yönelik bildirimler içerir. Bu nedenle arkadaş ve oyun bildirimlerinden ayrı, kendi anahtarıyla sunulur ve kurulumda açık gelir; ilk açılışta bu konuda bilgilendirilir, dilediğiniz an Ayarlar > Bildirimler'den kapatabilirsiniz. Kapatma tercihiniz ile onay tarihiniz ve onayladığınız metin sürümü cihazınızda kaydedilir. Gruplar tek bir onaya bağlanmaz; işletim sistemi bildirim izni ayrıca istenir.
Sürüm güncelleme duyuruları neden ayrı onaya bağlı değil. Bu duyurular kullanımı özendirmeye değil, hizmetin sözleşmeye uygun, doğru ve güvenli sunulmasına yöneliktir: eski sürümlerde ödül, ödeme ve güvenlik akışları bozulabilir; kullanıcının bundan haberdar edilmesi hizmetin bir parçasıdır. Bu nedenle işleme dayanağı açık rıza değil, KVKK m.5/2-c (sözleşmenin ifası için gerekli olma) ve m.5/2-f (veri sorumlusunun meşru menfaati) hükümleridir. Kapsamı dardır: yalnız sürüm bilgisi, günde en fazla bir bildirim, gece gönderim yok, güncelleme yapıldığı anda son. Pazarlama içeriği taşımaz.
Pazarlama veya kampanya e-postası göndermiyoruz. Göndermeye başlarsak, bunun için ayrıca ve ayrı bir kutucukla onayınızı isteyeceğiz.
Kişisel verilerinizi satmıyoruz. Verinizi veri tacirlerine, reklam borsalarına veya herhangi bir üçüncü kişiye satmıyor, kiralamıyor ve takas etmiyoruz.
Buna karşılık veri paylaşılıyor ve bunu gizlemiyoruz: uygulamayı çalıştırabilmek için aşağıda sayılan alıcılara, aşağıda sayılan kadar veri gidiyor. Bunların bir kısmı bizim adımıza çalışan hizmet sağlayıcılarıdır (veri işleyen); bir kısmı ise verinizi kendi amaçlarıyla da işleyen bağımsız veri sorumlusudur. Reklam sağlayıcısı ikinci gruptadır; bu ayrımı tabloda açıkça gösteriyoruz.
| Kısaltma | Alıcı grubu | Kim | Aktarım amacı | Sıfatı |
|---|---|---|---|---|
| [YB] | Yurt dışı barındırma sağlayıcısı | Hetzner Online GmbH (Almanya) — sunucumuz Finlandiya'da bulunuyor. | Sunucu, veritabanı, önbellek ve log dosyalarının barındırılması | Veri işleyen |
| [YD] | Yurt dışı nesne depolama sağlayıcısı | Cloudflare, Inc. (ABD) — küresel altyapı; profil fotoğrafları belirli bir ülkeye sabitlenmemiştir. Aktarımda ve saklamada şifrelenir. | Profil fotoğrafının saklanması ve dağıtılması | Veri işleyen |
| [EP] | E-posta gönderim altyapısı | Google (Gmail) | Doğrulama, şifre sıfırlama, hesap silme ve destek e-postalarının iletilmesi ve destek kutusunda saklanması | Bağımsız veri sorumlusu ile işleyen arası karma konum |
| [RS] | Reklam sağlayıcısı | Google Ireland Limited ve Google LLC (AdMob) | Ödüllü reklamın gösterilmesi ve ödülün sunucu tarafında doğrulanması | Bağımsız veri sorumlusu |
| [MS] | Mağaza ve ödeme sağlayıcısı | Google Commerce Limited ve Google LLC (Play faturalandırma). Apple Distribution International Limited ve Apple Inc. — yalnız uygulama App Store'da yayımlandığında | Satın alma makbuzunun doğrulanması, iade ve abonelik durumunun öğrenilmesi | Bağımsız veri sorumlusu; Avrupa Ekonomik Alanı'nda kayıtlı satıcı |
| [FCM] | Google LLC (Firebase Cloud Messaging) | ABD / küresel | Bildirimi cihazınıza ulaştırmak | Veri işleyen — bildirim jetonu, cihaz platformu, arayüz dili ve bildirimin başlığı/gövdesi aktarılır; gövde bazı bildirimlerde başka bir kullanıcının kullanıcı adını taşır |
| [DK] | Uygulamanın diğer kullanıcıları | — | Liderlik, lig, arkadaşlık, düello, hediye, ortak liste ve profil gösterimi (4. bölüm) | — |
Ek olarak, siz "paylaş" dediğinizde oluşturulan görsel ve metin, sizin seçtiğiniz uygulamaya (mesajlaşma uygulaması, sosyal ağ, e-posta) gider. Bu aktarımı siz başlatırsınız; alıcı uygulama bağımsız veri sorumlusudur. Bir kelimeyi sesli okuttuğunuzda kelimenin metni cihazınıza yüklü sesli okuma motoruna gider; motor buluta bağlanıyorsa kelime metni cihaz dışına çıkabilir.
Kullanıcıya açık gizlilik politikaları:
Aşağıdakiler Türk hukuku bakımından yurt dışına aktarımdır. Ağustos 2026 itibarıyla Kurul hiçbir ülke, sektör veya uluslararası kuruluş için yeterlilik kararı vermemiştir; bu nedenle doğrudan uygun güvence kademesine (m.9/3-4) geçilir.
Aşağıdaki tablonun son kolonu planlanan dayanağı gösterir: standart sözleşmelerin imzalanması ve imza tarihinden itibaren beş iş günü içinde Kurum'a bildirilmesi işlemi henüz yapılmamıştır.
| Alıcı | Ülke | Aktarılan veri | Düzenli mi | Planlanan m.9 dayanağı |
|---|---|---|---|---|
| Hetzner Online GmbH | Hetzner Online GmbH (Almanya) — sunucumuz Finlandiya'da bulunuyor. | Sunucudaki tüm kişisel veri | Sürekli ve düzenli | m.9/3-4 uygun güvence — Kurul'un ilan ettiği standart sözleşme, veri sorumlusundan veri işleyene modülü |
| Cloudflare, Inc. | Cloudflare, Inc. (ABD) — küresel altyapı; profil fotoğrafları belirli bir ülkeye sabitlenmemiştir. Aktarımda ve saklamada şifrelenir. | Profil fotoğrafı; ayrıca yükleme ve görüntüleme isteklerinin IP adresi | Sürekli ve düzenli | m.9/3-4 uygun güvence — standart sözleşme, veri sorumlusundan veri işleyene modülü |
| Google Ireland Limited ve Google LLC (AdMob) | İrlanda ve Amerika Birleşik Devletleri | Reklam kimliği, IP adresi, cihaz sinyalleri, reklam etkileşimleri; ödül doğrulamasında kullanıcı numaranız | Sürekli ve düzenli | Alıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence, veri sorumlusundan veri sorumlusuna modülü |
| Google Commerce Limited ve Google LLC (Play faturalandırma) | İrlanda ve Amerika Birleşik Devletleri | Uygulama paket adı, ürün kimliği, satın alma anahtarı | Sürekli ve düzenli | Alıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence |
| Apple Distribution International Limited ve Apple Inc. — yalnız App Store yayımı sonrası | İrlanda ve Amerika Birleşik Devletleri | İşlem kimliği ve makbuz doğrulama verisi | Yayımdan sonra sürekli | Alıcı bağımsız veri sorumlusudur → m.9/3-4 uygun güvence |
| Google (Gmail) | Amerika Birleşik Devletleri ve global | E-posta adresiniz, kullanıcı adınız, altı haneli kodlar, destek mesajınızın tam metni | Sürekli ve düzenli | m.9/3-4 uygun güvence |
| Google LLC (Firebase Cloud Messaging) | Amerika Birleşik Devletleri / küresel | Bildirim jetonu, cihaz platformu, arayüz dili, bildirimin başlığı ve gövdesi | Bildirim gönderildikçe | m.9/3-4 uygun güvence (standart sözleşme planlanıyor) |
Kanun m.9/6'daki açık rızaya dayanan yol bu aktarımlar için kullanılamaz. 7499 sayılı Kanunla 1 Haziran 2024'te yürürlüğe giren değişiklikten sonra açık rıza, yurt dışına aktarımda ancak arızi hallerde başvurulabilecek istisnai bir yoldur. Barındırma, depolama, reklam ve e-posta gönderimi sürekli ve düzenli aktarımlar olduğu için "arızi" sayılamaz. Bu nedenle sizden yurt dışına aktarım için açık rıza istemiyoruz; doğru yol standart sözleşmedir.
Aktarımın taşıdığı riskler: verinizin bulunduğu ülkenin veri koruma rejimi Türkiye'den farklı olabilir; oradaki kamu makamlarının erişim yetkileri farklı olabilir; haklarınızı o ülkede kullanmanız ve etkili başvuru yollarına erişmeniz Türkiye'ye kıyasla güç olabilir. Amerika Birleşik Devletleri merkezli sağlayıcılar bakımından, Amerikan makamlarının veri talebi mevzuatı ayrıca değerlendirilmelidir.
Aşağıdaki kararlar, insan incelemesi olmadan, otomatik olarak verilebilir:
kaydı üretilir. Bu tek başına hesabınızı engellemez.
hesaplar da askıya alınabilir.
belirli uçlarda istek sayısı sınırlanır.
işlenmez.
Kanun m.11/1-g uyarınca, münhasıran otomatik sistemler aracılığıyla yapılan bir değerlendirme aleyhinize bir sonuç doğurursa buna itiraz etme hakkınız vardır. İtirazınızı 10. bölümdeki kanallardan iletebilirsiniz; talebiniz insan tarafından incelenir.
Veri sorumlusu olarak bize başvurarak:
a) Kişisel verinizin işlenip işlenmediğini öğrenme, b) İşlenmişse buna ilişkin bilgi talep etme, c) İşlenme amacını ve verinizin amacına uygun kullanılıp kullanılmadığını öğrenme, ç) Yurt içinde veya yurt dışında verinizin aktarıldığı üçüncü kişileri bilme, d) Verinizin eksik veya yanlış işlenmiş olması halinde düzeltilmesini isteme, e) Kanun m.7'deki şartlar çerçevesinde silinmesini veya yok edilmesini isteme, f) (d) ve (e) bentleri uyarınca yapılan işlemlerin, verinizin aktarıldığı üçüncü kişilere bildirilmesini isteme, g) Münhasıran otomatik sistemler aracılığıyla analiz edilmesi suretiyle aleyhinize bir sonuç ortaya çıkmasına itiraz etme, ğ) Kanuna aykırı işleme sebebiyle zarara uğramanız halinde zararın giderilmesini talep etme
haklarına sahipsiniz.
Veri Sorumlusuna Başvuru Usul ve Esasları Hakkında Tebliğ (RG 10.03.2018/30356) m.5 uyarınca kabul edilen kanallar:
elektronik ileti ile — en pratik yol budur, çünkü kimliğiniz hesabınız üzerinden doğrulanabilir,
Posta adresi yayımlanmadığı için ıslak imzalı yazılı başvuru kanalı fiilen işletilmemektedir; yazılı başvurular da yukarıdaki e-posta kanalından alınır.
Tebliğ m.5 bir kanal olarak kayıtlı elektronik posta (KEP) adresini de sayar; ancak bizim bir KEP adresimiz bulunmamaktadır, bu nedenle KEP üzerinden başvuru alamıyoruz.
Başvurunuzda şunlar bulunmalıdır: ad ve soyadınız; başvuru yazılıysa imzanız; Türkiye Cumhuriyeti kimlik numaranız (yabancıysanız uyruğunuz ile pasaport veya kimlik numaranız); tebligata esas yerleşim yeri veya iş yeri adresiniz; varsa bildirime esas elektronik posta adresiniz, telefon ve faks numaranız; talep konunuz. Konuya ilişkin bilgi ve belgeleri başvurunuza eklersiniz.
Başvuru dili Tebliğ m.5 uyarınca Türkçedir. Buna karşılık İngilizce yapılan başvuruları da kabul ediyoruz.
Başvuruyu hesabınızda kayıtlı e-posta adresinizden gönderirseniz kimliğiniz o hesap üzerinden doğrulanır; ek belge istemeyiz. Başvuru başka bir adresten veya yazılı olarak gelirse, verinin gerçekten size ait olduğunu anlayabilmek için kimlik teyidi isteriz — aksi halde başka birinin verisini yanlış kişiye vermiş oluruz.
Başkası adına başvuru. İlgili kişi adına vekil olarak başvuruyorsanız, başvuruya bu konuda özel yetki içeren bir vekâletname eklemeniz gerekir. Velayet hakkı sahibi olarak 16 yaşından küçük biri adına başvuruyorsanız 13. bölüme bakınız.
Talebinizi en kısa sürede ve her halde en geç otuz gün içinde sonuçlandırırız (Kanun m.13/2). Talebin kabulü veya gerekçeli reddi size yazılı olarak veya elektronik ortamda bildirilir.
Başvuru kural olarak ücretsizdir. İşlem ayrıca bir maliyet gerektirirse Kurulca belirlenen tarifedeki ücret alınabilir (Başvuru Tebliği m.7): yazılı cevapta ilk on sayfa ücretsizdir, on sayfanın üzerindeki her sayfa için 1 Türk lirası işlem ücreti alınabilir; cevap bir kayıt ortamında verilecekse kayıt ortamının maliyeti talep edilebilir. Hata bizden kaynaklanıyorsa alınan ücret iade edilir.
Başvurunuz reddedilirse, verilen cevabı yetersiz bulursanız veya süresinde cevap verilmezse; cevabı öğrendiğiniz tarihten itibaren otuz gün ve her halde başvuru tarihinden itibaren altmış gün içinde Kişisel Verileri Koruma Kurulu'na şikâyette bulunabilirsiniz (Kanun m.14). Kurul: https://www.kvkk.gov.tr
Uygulama içinden şu işlemleri yapabilirsiniz: profil fotoğrafını kaldırma, hesabı silme (iki adımlı onayla), oturumu kapatma ve destek mesajı gönderme.
Kanun m.12 uyarınca, kişisel verilerinizin hukuka aykırı işlenmesini ve verilere hukuka aykırı erişilmesini önlemek ve verilerin muhafazasını sağlamak amacıyla teknik ve idari tedbirler almakla yükümlüyüz.
Uygulamada bulunan tedbirler: cihaz ile sunucu arasındaki tüm iletişim TLS ile şifrelenir; parolanız düz metin olarak saklanmaz, BCrypt ile özetlenir; erişim ve oturum yenileme anahtarları cihazda şifreli depoda tutulur; oturum anahtarları iptal edilebilir; başarısız giriş denemeleri sayılır ve hesap geçici olarak kilitlenir; istek sayısı sınırlanır; doğrulama kodları veritabanında özetlenerek tutulur ve on beş dakikada geçersizleşir; ödül ve satın alma işlemlerinde tekrar koruması vardır; profil fotoğrafı adresleri tahmin edilemez üretilir.
Bilinen eksikleri gizlemiyoruz. Bu metnin 3.5, 3.9 ve 5. bölümlerinde işaretlenen noktalar (altı haneli kodların ve destek mesajının işletim loglarına düz metin yazılması, IP adresinin güvenilir olmaması, saklama sürelerinin tanımlı olmaması, hesap silmenin bazı tabloları kapsamaması) giderilmemiştir.
Veri ihlali halinde ne yaparız: kişisel verilerinizin hukuka aykırı olarak başkaları tarafından elde edildiğini öğrendiğimizde, gecikmeksizin ve en geç yetmiş iki saat içinde Kişisel Verileri Koruma Kurulu'na bildiririz (Kanun m.12/5; Kurul'un 24.01.2019 tarihli ve 2019/10 sayılı kararı). Etkilendiğiniz belirlenirse, makul olan en kısa sürede size de bildiririz; bildirimde ihlalin ne zaman gerçekleştiği, hangi veri kategorilerinin etkilendiği, olası sonuçları, alınan ve almanızı önerdiğimiz tedbirler ile bilgi alabileceğiniz iletişim bilgileri yer alır (Kurul'un 18.09.2019 tarihli ve 2019/271 sayılı kararı).
Worvento, Türkiye dışında da bazı ülkelerde yayınlanıyor (yukarıdaki Dağıtım bölgesi notunda sayılan ülkeler hariç). Yayın yapılan bazı ülkelerin kendi veri koruma yasaları var — örneğin Brezilya (LGPD), Hindistan (DPDP), Kanada (PIPEDA), Birleşik Arap Emirlikleri (PDPL).
Bu metin 6698 sayılı Kanun esas alınarak yazıldı. Şeffaflık, haklarınız ve verinizin silinmesi konularında bu yasaların istediklerini işlevsel olarak karşılıyor; ancak ülkeye özel ayrı bölümler içermiyor. Hangi ülkede olursanız olun başvuru kanalı aynıdır: worvento.info@gmail.com, ve talebiniz en geç 30 gün içinde sonuçlandırılır.
Amerika Birleşik Devletleri'nde yaşıyorsanız: Kaliforniya (CCPA/CPRA) ve benzeri eyalet yasalarının yıllık ciro (25 milyon ABD doları) ve tüketici sayısı (100.000) eşiklerinin çok altındayız; bu nedenle bu yasalar bakımından kapsamda değiliz. Bu yasaların en kritik noktası olan veri satışı konusunda tutumumuz her hâlde nettir: kişisel verilerinizi satmıyoruz.
Worvento 16 yaşından küçükler için değildir. Kullanım Koşulları'nda 16 yaşını doldurmuş olduğunuzu taahhüt etmeniz istenir.
16 yaşından küçük olduğu tespit edilen bir hesabı askıya alır ve verisini silecek şekilde işleme alırız. Velayet hakkı sahibi olarak 16 yaşından küçük birinin verisinin işlendiğini düşünüyorsanız worvento.info@gmail.com adresine yazın; talebinizi 10. bölümdeki süre içinde sonuçlandırırız.
Bu metnin sürümü ve yürürlük tarihi en üstte yazılıdır. İşleme amaçlarımız değişirse, değişikliği uygulamaya almadan önce bu metni güncelleriz ve size uygulama içinde bildiririz (Aydınlatma Tebliği m.5/1-b). Yeni bir özellik, yeni bir alıcı veya yeni bir üçüncü taraf bileşen eklenmesi de bu kapsamdadır.
Bu metin Türkçe ve İngilizce olarak yayımlanmıştır. Çeviri bilgi amaçlıdır; çelişki halinde Türkçe metin geçerlidir.
Aydınlatmanın yerine getirildiğinin ispatı bize aittir (Aydınlatma Tebliği m.5/1-e). Bu nedenle bu metnin hangi sürümünün size ne zaman ve hangi ekranda gösterildiği, sunucu tarafında hesabınıza bağlı olarak kaydedilir. Bu kayıt yalnız ispat amacıyla tutulur ve içeriğinde metin sürümü, gösterim zamanı, kanal ve dil bilgisi bulunur.
Sizden bu metin için onay, kabul veya rıza istenmiyor. İstenen tek beyan şudur:
☐ Worvento Kişisel Verilerin Korunması Aydınlatma Metni'ni okudum ve anladım.
Bu kutucuk bir rıza kutucuğu değildir; bir bilgilendirme beyanıdır. İşaretlemeniz, herhangi bir işleme faaliyetine rıza verdiğiniz anlamına gelmez. Yalnızca açık rızaya dayanan üç işleme faaliyeti için, ayrı bir belgede ve ayrı ayrı kutucuklarla tercihiniz sorulur: https://worvento.com/legal/acik-riza
Kurul'un 2026/347 sayılı ilke kararı, aşağıdaki yapıyı zorunlu kılar. Kayıt ekranında tek bir birleşik onay kutusu bulunamaz; "Okudum, kabul ediyorum ve açık rıza veriyorum" biçiminde tek bir buton kararda kötü uygulama örneği olarak gösterilmiştir.
Doğru yapı, üç ayrı ve birbirinden görsel olarak ayrılmış bloktan oluşur:
1. blok — Kullanım Koşulları (sözleşme). Ayrı başlık, ayrı bağlantı, ayrı kutucuk. Zorunlu olabilir; hizmetin sözleşmesel temelidir.
☐ Kullanım Koşulları'nı okudum, kabul ediyorum. (zorunlu)
2. blok — Aydınlatma Metni (bilgilendirme). Ayrı başlık, ayrı bağlantı, ayrı beyan alanı. Buraya "kabul ediyorum" yazılamaz.
☐ Kişisel Verilerin Korunması Aydınlatma Metni'ni okudum ve anladım.
3. blok — Açık Rıza (isteğe bağlı). Ayrı başlık altında, iki ayrı ve önceden işaretsiz kutucuk. Hiçbiri kayıt olmanın koşulu değildir; hepsi boş bırakılarak kayıt tamamlanabilir. Ayrıntı Açık Rıza Metni'ndedir.
Üç blok arasında görsel bir ayırıcı bulunur; hiçbir blok diğerinin içine yerleştirilmez.
Aşağıdakiler cihazınızdan çıkmaz; sunucuya gönderilmez:
| Cihazda kalan veri | Ne olduğu |
|---|---|
| Kendi kelime listeniz (MyList) | Uygulamaya eklediğiniz kelimeler, anlamları ve notları |
| Ortak listenin çevrimdışı kopyası | Üyesi olduğunuz ortak listenin cihazdaki önbelleği |
| On iki mini oyunun kişisel rekoru | Her mini oyunda kendi en yüksek skorunuz |
| Tanıtım turu işaretleri | Hangi tanıtım ekranını gördüğünüz |
| Kutlama ve albüm mühürleme işaretleri | Aynı kutlamanın iki kez gösterilmemesi için |
| Haftalık karne ve sezon özeti banner işaretleri | Aynı bilginin tekrar gösterilmemesi için |
| Tema, ses, titreşim ve sesli okuma tercihleri | Görünüm ve ses ayarlarınız |
| Gün ve saat alışkanlığı sayaçları | Hangi gün ve saatte çalıştığınızın cihaz içi sayacı |
| Cihaz parmak izi | Uygulamanın ürettiği rastgele tanımlayıcı. iOS'ta uygulamayı silseniz bile kalır |
| Kurulum kimliği | Uygulamanın ürettiği rastgele tanımlayıcı; uygulama kaldırılınca gider |
Ayrıca:
yazılır ve kilit ekranında görünebilir. Günün kelimesi, siz cevaplayana kadar widget'ta gizli tutulur.
dosyası cihazın geçici dizininde kalır ve otomatik silinmez.
çıkış yaptığınızda silinir.
Hesabınızı sildiğinizde bunların hiçbiri temizlenmez. Cihazdan silmenin tek yolu uygulamayı kaldırmaktır; iOS'ta cihaz parmak izi buna rağmen kalır.
Aşağıdakilerin hiçbirini toplamıyoruz. Liste, uygulamanın bağımlılıkları ve izinleri taranarak hazırlanmıştır:
bulunmamaktadır
hiç gelmez
Bu listenin istisnası 6. bölümde yazılıdır: saat dilimi kayması ve IP adresi kaba bir konum çıkarımı sağlayabilir.
(RG 10.03.2018/30356; RG 28.04.2019/30758 ile değişik) m.4, 5, 6
(RG 28.10.2017/30224)
(RG 10.07.2024/32598); KVKK Yurt Dışına Aktarım Rehberi (02.01.2025)
(RG 24.03.2026/33203)
25.12.2025 t. 2025/2451 sayılı kararları (veri ihlali bildirimi)
Rehberi (26.02.2025)
Sürüm: 1.0 · Yürürlük: 8 Ağustos 2026 · Son güncelleme: 8 Ağustos 2026 (Version 1.0 · Effective: 8 August 2026 · Last updated: 8 August 2026)
This is an information-only English translation. In case of any conflict, the Turkish original prevails.
The Turkish original is at https://worvento.com/legal/aydinlatma.
This summary does not replace the detailed sections below; it is an introduction to them. The detailed sections are the binding ones.
| Question | Short answer | Detail |
|---|---|---|
| Who is the data controller? | The Türkiye-based publisher of Worvento — a natural person, not a company | Section 1 |
| What data do you process? | Account details, learning progress, gamification, social interaction, security records, purchase records; an optional profile photograph | Section 3 |
| On what basis? | Mostly performance of a contract (Law Art. 5/2-c); legitimate interests for security (Art. 5/2-f); legal obligation for purchases (Art. 5/2-ç). Only two items rest on explicit consent | Section 3 |
| Do you sell my data? | No. We do not sell your personal data. But we do share a limited set of data with a limited set of recipients in order to run the service | Section 8 |
| What of mine is public? | Username, experience points, level, badges, activity heatmap, online status, avatar. There is no setting to turn these off | Section 4 |
| Where is the data held? | The server is in Finland (Hetzner Online GmbH, Germany). Profile photographs are on Cloudflare, Inc. (USA) infrastructure and are not pinned to a specific country | Section 8 |
| For how long? | Logs 7 days, heatmap 400 days, codes 15 minutes. For most other data there is no defined deletion period — it is kept for as long as your account exists | Section 5 |
| What if I delete my account? | Your account row and most records are deleted, but 12 tables and some items are not. The full list is in 5.1, with nothing withheld | Section 5.1 |
| Do you take my location? | No — no GPS or network location. But the time-zone offset and your IP address allow a coarse location inference | Section 6 |
| What can I do? | The 8 rights under Law Art. 11; applications are concluded within 30 days at the latest | Section 10 |
| Do I have to approve this notice? | No. You are only asked to declare "I have read and understood"; no approval or consent is requested | Section 15 |
This document is an information notice prepared under Article 10 of Turkish Law No. 6698 on the Protection of Personal Data (the "Law") and Articles 4 and 5 of the Communiqué on the Principles and Procedures to Be Followed in Fulfilling the Obligation to Inform (Official Gazette 10.03.2018/30356).
This is not a consent document. You are not asked to "accept" it; you are only asked to declare that you have read and understood it. The reason is Principle Decision No. 2026/347 of the Turkish Personal Data Protection Board, dated 18.02.2026 (Official Gazette 24.03.2026 / 33203): the information notice and the explicit consent statement must be separate documents; they cannot be merged, nested, or presented under a single approval.
We ask for your explicit consent for only two processing activities: the profile photograph and personalised advertising. Those live in a separate document, the Explicit Consent Statement: https://worvento.com/legal/acik-riza. Reading this notice does not mean you have given any of those consents. We do not ask for your explicit consent for cross-border transfers; the reason is set out in section 8.2.
The Terms of Use is a separate document as well: https://worvento.com/legal/terms
Other related documents:
https://worvento.com/legal/veri-silme and the data stored on your device: https://worvento.com/legal/izleme-teknolojileri
https://worvento.com/legal/basvuruThe data controller of the Worvento application (com.worvento.app) is a natural person, not a legal entity.
| Data controller | The Türkiye-based publisher of Worvento (a natural person) — the "Publisher" in this notice |
| E-mail for data protection requests | worvento.info@gmail.com |
| Support e-mail | worvento.info@gmail.com |
| Website | https://api.worvento.com |
| Representative | No representative has been appointed in Türkiye within the meaning of Law Art. 10/1-a; you contact the controller directly through the channels above. For the European Union and the United Kingdom, see section 12. |
We do not have a registered electronic mail (KEP) address, so we cannot receive applications by KEP. The full list of accepted application channels is in section 10.2.
Distribution territory. Worvento is not distributed in the European Union / European Economic Area, the United Kingdom, Switzerland, Japan, South Korea, China or Saudi Arabia, and is not directed at users in those countries. Additional information for users outside Türkiye is in section 12.
Article 5/1-h of the Communiqué requires us to state explicitly by which means data is obtained. In Worvento there are two:
while you use it (registration and login form fields, study results, game results, device identifiers, IP address, time zone offset, purchase receipt, ad reward verification) and what the server itself produces (session records, security counters, operational logs).
messages: free text you write and send to us, which is then kept in an orderly manner in a mailbox.
The "Collection method" column in the tables below shows which of the two applies to each row.
Each row carries five pieces of information together: which data, which concrete purpose, which legal ground (with the exact sub-paragraph), by which means it is collected, and to which recipient group it is transferred. No blanket reference is made in the legal ground column; each row names its own sub-paragraph.
Recipient group abbreviations: [YB] foreign hosting provider · [YD] foreign object storage provider · [EP] e-mail delivery infrastructure · [RS] advertising provider · [MS] store and payment provider · [DK] other users of the application. Who these are is set out in section 8.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Username | Identifying your account; showing you on the leaderboard, in the daily league, in friend lists, in duels and on the gift screen | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| E-mail address | Using it as your login identity; sending the verification, password reset and account deletion confirmation codes; replying to your support request | Art. 5/2-c performance of a contract | Fully automated | [YB] [EP] |
| BCrypt hash of your password | Authenticating you at login; confirming your password before an account deletion request | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| SHA-256 hash of the e-mail verification code, time sent, attempt counter | Verifying that the e-mail address belongs to you; separating unverified accounts from reward and player-versus-player flows | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] [EP] |
| Hash of the password reset code, time sent, attempt counter | Letting you set a new password when you forget yours | Art. 5/2-c performance of a contract | Fully automated | [YB] [EP] |
| Hash of the account deletion confirmation code, time sent, attempt counter | Confirming a deletion request in two steps, preventing accidental deletion or deletion by someone else | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] [EP] |
| Session refresh record (token, creation, expiry, revocation and replacement data) | Renewing your session seamlessly when your access key expires; being able to revoke the session when you log out, change your password or your account is suspended | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Contents of the access key (user number, e-mail address, username, key identifier) | Authenticating you on every request | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Failed login counter and account lockout period | Temporarily locking the account against password-guessing attacks | Art. 5/2-f legitimate interest | Fully automated | [YB] |
Your access key also carries your e-mail address inside it. The key is kept in encrypted storage on your device and is sent to the server on every request.
On the WebSocket connection used for live match and duel events, this key is carried in the query part of the address. The consequence is this: the key may appear in the reverse proxy's access logs.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Per-word spaced repetition record (stability, difficulty, repetition count, lapse count, state, last review time, next due time) | Showing each word again at the right time for you; producing the weekly report card | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Word mastery flags | Computing the collection album and golden-word status; deriving your pet's stage | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Confusion matrix (which two words you confused and how many times) | Producing personalised error analysis and drill suggestions | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Correct and wrong answer counts, current streak, highest streak | Showing your progress; producing level, leaderboard ranking and friend profile | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Daily activity record (day → experience points earned that day) | Drawing the consistency calendar (heat map) | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Exam session record (session id, mode, question count, word ids, start time, consumption marker) | Verifying that an exam reward corresponds to a session actually played; preventing the same session from being rewarded twice | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Learning language preferences, daily experience point goal, onboarding completion state | Not asking again for language choice and the tutorial on a second device; rendering duel and hangman content in your language | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Total experience points, level | Progress indicator; leaderboard and league ranking | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Gold balance, joker inventory | Keeping in-app spending on the server side so the balance cannot be altered on the device | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Badge list | Showing the achievements you have earned on your own profile and on the profile others see | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Owned cosmetics, equipped frame, equipped avatar | Storing appearance items; showing the equipped look on the profile others see | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Season points, season id, season pass status, claimed season tiers, daily and weekly quest progress | Running season progression and quests. The fact that you hold a season pass is visible to others on your leaderboard row | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Streak repair and shield status | Counting your streak repair entitlement on the server side and preventing the same entitlement from being used twice | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Daily login streak and claimed milestones | Granting the daily login bonus once | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Key lists that prevent duplicate rewards | Preventing the same reward from being granted twice | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Daily entitlement counters (exam, study, double-points exam, ads, wheel) | Counting daily entitlements and caps on the server side | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Experience point synchronisation counters (last sync day, points accepted that day) | Applying the daily acceptance cap and rejecting points forged on the device | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Device time zone offset (minutes) and last reset time | Making daily entitlements and limits reset at your local midnight | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Your pet's type, name, equipped accessories, food and reward status | Synchronising the pet economy across devices. This data is shown only to you | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Mini game results (daily 60 seconds, daily Wordle session and the guesses you entered, Mini Crossword, Word of the Day quiz, Word Tower run, weekly boss exam) | Enforcing the one-attempt-per-day rule; resuming an interrupted session; producing daily and weekly score tables | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
An honest warning about the time zone offset: we do not collect location data, but a rough geographic inference can be drawn from a time zone offset. This is set out separately in section 6.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Friendship records (requester, addressee, status, dates) | Running the friend list and requests; determining eligibility for duels, gifts and live matches | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Blocked user records | Cutting off interaction with a person you have blocked | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Received gifts (gift id, sender's username, date), gift showcase, reputation points, owned gifts | Showing you your gift history; showing the gifts you select in your profile showcase | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Last seen time | Producing the "online" or "last seen" indicator in the friend list and on profiles | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Live connection identifiers (real-time session records) | Delivering live match invitations and status updates to the right device; feeding the online indicator | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Duel results, live challenge results, hangman results (parties, scores, winner, date) | Producing the "matches between you" and "recent matches" lists | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Challenge envelope (parties, game type, word list and seed data, scores, status, expiry time) | Sending your friend a twenty-four-hour asynchronous challenge | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Snapshot of a match in progress (party usernames, answers given, letters tried, remaining time) | Not losing an unfinished match when the server restarts | Art. 5/2-c performance of a contract | Fully automated | [YB] |
| Daily league experience point rows | Producing the "winners of the day" ranking | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Shared list records (list name, languages, membership records, words added by members) | Running a shared word list of up to four people | Art. 5/2-c performance of a contract | Fully automated | [YB] [DK] |
| Your invitation code and the invitation code you used | Running the friend invitation campaign; preventing reuse of the same code and exceeding the per-device limit | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] [DK] |
| User report (reporter, reported user, free-text reason up to 500 characters, status, resolution note) | Reviewing and deciding on rule violation reports | Art. 5/2-f legitimate interest and Art. 5/2-e protection of a right | By non-automated means as part of a data recording system (free text) | [YB] |
| Moderation status (administrator authority, whether the account is suspended) | Suspending an account in case of a rule violation; authorising administrator actions | Art. 5/2-f legitimate interest | Fully automated | [YB] |
An honest warning about report reasons: the free text you write is displayed on the administrator screen together with the usernames of the reporter and the reported user. We advise you not to write personal information there.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| IP address at registration and last login IP address | Detecting serial account creation from the same address; investigating abuse | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Device fingerprint (a random identifier generated by the application) | Detecting more accounts than the threshold on the same device; limiting invitation code use per device; propagating a suspension to other accounts on the same device | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Install identifier (a random identifier generated by the application) | Distinguishing "same device, different installation" | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Operational logs (request method, path, status code, duration; slow query text) | Monitoring that the server is working; diagnosing faults and performance issues | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Security warning logs (device fingerprint, username, IP; suspension record and account numbers on the same device) | Keeping a trail of abuse investigations | Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Contents of sent e-mails (recipient address, username, six-digit code or notification text) | Delivering verification, password reset, account deletion confirmation and password change notifications | Art. 5/2-c performance of a contract | Fully automated | [EP] |
| Connectivity check requests (your public IP address, timestamp) | Determining whether the internet connection actually works; preventing the application from hanging on a locked screen while connected to a network without internet access — the request goes only to our own health endpoint | Art. 5/2-f legitimate interest | Fully automated | [YB] |
Connectivity check. The application sends a small request regularly to confirm that your internet connection works. That request goes only to our own server (/health), roughly every 45 seconds. Nothing goes to any third party.
An earlier version of this notice stated that this check sent your IP address to four third-party addresses (one.one.one.one, icanhazip.com, jsonplaceholder.typicode.com, pokeapi.co) roughly every ten seconds, because the defaults of the library we use had not been changed. That design flaw has been fixed; the four transfers declared there no longer happen.
| Data | Concrete purpose | Legal basis | Collection method | Recipient group |
|---|---|---|---|---|
| Purchase record (store, product id, store transaction id, receipt verification data, amount data, date) | Preventing the same receipt from granting gold or entitlements twice; granting the first-purchase bonus once; clawing back an entitlement on refund; meeting tax and accounting obligations | Art. 5/2-ç compliance with a legal obligation and Art. 5/2-c performance of a contract | Fully automated | [YB] [MS] |
| Entitlement records (type, source, grant and expiry time) | Keeping ad-free access and premium features open for the correct period | Art. 5/2-c performance of a contract | Fully automated | [YB] |
Your payment details never reach us. Card number, your name, address and tax details stay with the store. Only the receipt text issued by the store, the transaction id and the product id reach us.
In-app purchase records are not deleted when you delete your account; tax and accounting legislation and refund processes require this. Details are in section 5.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Rewarded ad impression and reward counters, cooldown record | Applying the daily ad reward cap; preventing rewards from being farmed by automated means | Art. 5/2-c performance of a contract and Art. 5/2-f legitimate interest | Fully automated | [YB] |
| Processed ad reward records (the transaction id issued by the advertising provider, reward type, processing time) | Preventing the same ad reward from being granted twice | Art. 5/2-f legitimate interest | Fully automated | [YB] [RS] |
| Your user number and reward type sent to the advertising provider during server-side reward verification | Ensuring the reward is granted by the server rather than the client; preventing reward fraud | Art. 5/2-f legitimate interest | Fully automated | [RS] |
| Advertising identifier and advertising telemetry (data the advertising provider collects with its own software development kit: advertising identifier, IP address, device and operating system information, ad interactions) | Serving the rewarded ad; the advertising provider's own measurement and fraud prevention processing | Explicit consent — consent item 2 in the Explicit Consent Statement. If you do not consent, only non-personalised ads are shown | Fully automated | [RS] |
An honest warning about the user number sent to the advertising provider: so that the server can grant the reward at the end of a rewarded ad, your internal user number is sent to the advertising provider in plain text. This data is therefore not pseudonymised; the record on the advertising provider's side can be matched directly to your account.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| The photograph itself (a full-resolution copy and a 128-pixel thumbnail) | Showing your avatar in friend lists, on the leaderboard and on the profile screen | Explicit consent — consent item 1 in the Explicit Consent Statement | Fully automated (you choose the photograph) | [YD] [DK] |
| The address of the photograph | Showing the thumbnail and the full copy to the right people | Explicit consent — consent item 1 in the Explicit Consent Statement | Fully automated | [YB] [DK] |
Uploading a photograph is optional; if you do not upload one, every function of the application remains available. We state four legally important properties of your photograph plainly here:
premium entitlement (ad-free access or a season pass), and this limit is enforced on the server: without the entitlement no upload ticket is issued at all and the server rejects the request. Removing the photograph is free and can always be done; you do not have to pay in order to withdraw your consent. The problem this creates under consent law is flagged separately in the lawyer note in section 2 of the Explicit Consent Statement.
access. Access control rests on "knowing the address"; the address is generated randomly and unpredictably. This is not authentication: anyone who obtains the address can see the photograph, even without an account.** For that reason we make no claim of the form "only premium users can see your photograph".
and to viewers holding a premium entitlement; the thumbnail is visible to everyone as your avatar. This is address secrecy, not access control (see the point above).
network cache may live on for up to one year. The copy is marked with a one-year, immutable cache lifetime when it is created.
We do not put your photograph through facial recognition or any similar technical process; we do not use it to uniquely identify or verify you. Nor do we draw inferences about race, ethnic origin, religion, health or similar matters from it.
| Data | Concrete purpose | Legal ground | Collection method | Recipient group |
|---|---|---|---|---|
| Your support message (subject, message text, your username, your user number, your e-mail address) | Reviewing and answering your support request | Art. 5/2-c performance of a contract | By non-automated means as part of a data recording system | [EP] |
Your support message is not stored in the database; it is delivered by e-mail to the support address and remains in that mailbox. The mailbox is hosted by an e-mail infrastructure provider.
An honest warning: when the e-mail delivery configuration is off, the full text of your support message is also written to the server's operational logs. Those logs are kept for seven days.
Some data never leaves your device and is not sent to the server. It is still your personal data and remains on the device unless you uninstall the application. None of it is cleared when you delete your account; the only way to remove it from the device is to uninstall the application. On iOS the device fingerprint survives uninstallation.
The full list is in Appendix A at the end of this notice.
We state this plainly because it is where users are most often mistaken. The following data can be seen by other users of the application, and there is currently no setting in the application that turns this off:
| Visible data | Where it is visible |
|---|---|
| Your username | Leaderboard, daily league, friend list, search results, duel and match screens, gift screen |
| Your total experience points and level | Leaderboard, friend profile |
| The thumbnail of your profile photograph (if you uploaded one) | Leaderboard, friend list, profile |
| Your badges | Friend profile |
| Your consistency calendar (daily activity heat map) | Friend profile |
| Your equipped frame and avatar, gift showcase, reputation points | Friend profile |
| The fact that you hold a season pass | Your leaderboard row |
| Your "online" or "last seen" information | Friend list, profile |
| Your daily league experience points and mini game scores | Daily and weekly score tables |
| Your duel, live challenge and hangman results | The other party's match history |
| The words you add to a shared list, and your username | The other members of that list (up to four people) |
| Your invitation code | The people you share it with |
In addition: when you share a duel result, your opponent's username is embedded in the generated image and goes to the application you choose. Your opponent receives no notification and is not asked for consent.
This table states only what the application actually does. Where no period is defined, we say so plainly; we do not invent a number.
| Data | Actual period |
|---|---|
| Server operational and security logs | The last seven log files are kept (a seven-day file rotation) |
| Daily activity record (heat map) | 400 days; days outside that window are pruned on every sync |
| Access key | 7 days |
| Session refresh record | Becomes invalid after 30 days; the row is not deleted, an expired record remains in the table |
| E-mail verification, password reset and account deletion codes | Valid for 15 minutes, then unusable |
| Snapshot of a match in progress | Records older than six hours are cleared hourly |
| Exam session record | Session 1 hour, consumption marker 6 hours |
| Live connection and online status record | 12 hours; refreshed on every connection, deleted immediately when the connection drops |
| Live match state | 6 hours |
| Content delivery network cache of the profile photograph | One year, marked immutable; a copy may live on for a while after you delete it |
| In-app purchase records and entitlement records | Kept after account deletion for tax, accounting and refund purposes; the period will be fixed in the lawyer note in section 3.6 |
| All other items | No deletion period is defined in the application. This data is kept for as long as your account remains open. Your rights to delete your account or to request erasure of specific data are in section 10 |
To be honest about it, although the code contains comments suggesting that daily league rows and words you delete from a shared list are "kept for a short period", that cleanup job has not been written. They therefore fall under the "no deletion period" row above. When you delete a word from a shared list, the word is not actually deleted; it is marked as deleted.
Method of destruction. The methods applied to data whose retention period has ended or whose erasure you request are: erasure for database records (removal of the row from the database); erasure for photographs in the object store (removal of the object from storage); destruction for log files (removal of the whole file when the rotation completes); and automatic erasure on expiry for temporary cache records. For purchase records that must be retained under tax and accounting legislation, the intended method is anonymisation: severing the link between the user number and the person.
Account deletion has two steps: first you confirm your password, then you enter the code sent to your e-mail. There is no one-tap deletion. The deletion flow is described step by step in a separate document: https://worvento.com/legal/veri-silme. The list in this section and the list in that document must be identical; if they diverge, that document prevails and this section is updated.
What is actually deleted: your account row and everything inside it (experience points, gold, jokers, badges, streaks, your IP addresses, your device fingerprint, your preferences, pet status, cosmetics, season and quest status, gift history, reputation points); friendship records; block records; report records where you are a party; session refresh records; daily league rows; daily 60-second results; boss exam results; Word of the Day and Wordle results; Mini Crossword results; Word Tower runs; the pet record; your invitation code; your shared list memberships; profile photograph objects (on a best-effort basis).
What is not deleted — we are not hiding this:
| Remaining data | Why it remains |
|---|---|
| Your per-word spaced repetition records | This table is not linked to the account row; the deletion process does not cover these rows |
| Your word mastery flags | Same |
| Your confusion matrix (which words you confuse) | Same |
| Your duel, live challenge and hangman results | Same; also part of the other party's match history |
| Your challenge envelopes | Same |
| Your ad reward transaction records | Same |
| In-app purchase records and entitlement records | Tax, accounting and refund obligations |
| Shared lists you own and the words you added to them | Same; they remain accessible to the other members of the list |
| Your username, in the gift history of people who sent you gifts | The gift record keeps the sender's name as a plain-text copy |
| All local data on your device (section 3.10) | The deletion process clears nothing on the device |
| The copy of your profile photograph in the content delivery network cache | One-year immutable cache marking |
| Your support e-mails | They remain in the support mailbox |
| Lines in the last seven days of log files | They go by themselves when the file rotation completes |
We collect none of the items users ask about most: location, contacts, telephone number, health data, microphone and audio recording, calendar, SMS, biometric authentication, the list of installed applications, the device's hardware identifiers, clipboard contents, analytics and crash reporting data, or sign-in with another account. The full item-by-item list is in Appendix B.
(We do store a device notification token so that we can send you notifications — it is not in this list; details in section 3.)
We state one exception plainly: we do not collect location, but we do send your device's time zone offset to the server for daily resets. A rough geographic inference can be drawn from that value. In addition, your IP address reaches both our server and the four connectivity check addresses named in section 3.5; a rough location inference is possible from an IP address as well.
These are all the channels through which the app can reach you:
invitations and match state updates are delivered over a WebSocket connection.
device's widget store and may be visible on the lock screen.
password change notice and support replies.
notification centre. They are split into two groups that are turned on and off separately:
| group | what is sent | how it works | default |
|---|---|---|---|
| Friend and game notifications | game invitations, shared list invitations, friend requests, gifts | Sent by our server; this requires storing a notification token for your device (Firebase Cloud Messaging registration) and your interface language | on |
| Reminders and nudges | streak reminders, your word companion's feeding time, practice suggestions during the day | Scheduled and triggered on your device; neither their content nor their timing is sent to our server, and the server is not aware of them | off — separate consent is requested |
You can turn either group off at any time under Settings → Notifications. No reminders are sent between 22:00 and 08:00, at most two reminders per day are sent, and any remaining reminders are cancelled if you have used the app that day.
Consent for push notifications (Turkish DPA public announcement of 14 January 2026). The "Reminders and nudges" group contains notifications that are not necessary for the operation of the service and are intended to encourage use. For this reason it is offered separately from friend and game notifications, with its own switch, and is off by default; when you turn it on, the date of your consent and the version of the text you consented to are recorded on your device. The two groups are never tied to a single consent.
We do not send marketing or campaign emails. If we start doing so, we will ask for your consent separately, with its own checkbox.
We do not sell your personal data. We do not sell, rent or barter your data to data brokers, ad exchanges or any third party.
Data is, however, shared, and we do not hide it: in order to run the application, the data listed below goes to the recipients listed below. Some of them are service providers acting on our behalf (data processors); others are independent controllers that also process your data for their own purposes. The advertising provider falls in the second group; we mark that distinction plainly in the table.
| Code | Recipient group | Who | Transfer purpose | Capacity |
|---|---|---|---|---|
| [YB] | Foreign hosting provider | Hetzner Online GmbH (Germany) — our server is located in Finland. | Hosting the server, database, cache and log files | Data processor |
| [YD] | Foreign object storage provider | Cloudflare, Inc. (USA) — global infrastructure; profile photographs are not pinned to a specific country. They are encrypted in transit and at rest. | Storing and delivering the profile photograph | Data processor |
| [EP] | E-mail delivery infrastructure | Google (Gmail) | Delivering verification, password reset, account deletion and support e-mails and keeping them in the support mailbox | A mixed position between independent controller and processor |
| [RS] | Advertising provider | Google Ireland Limited and Google LLC (AdMob) | Serving the rewarded ad and verifying the reward on the server side | Independent data controller |
| [MS] | Store and payment provider | Google Commerce Limited and Google LLC (Play billing). Apple Distribution International Limited and Apple Inc. — only once the application is published on the App Store | Verifying the purchase receipt, learning refund and entitlement status | Independent data controller; merchant of record in the European Economic Area |
| [FCM] | Google LLC (Firebase Cloud Messaging) | USA / global | Delivering the notification to your device | Processor — the notification token, device platform, interface language and the title/body of the notification are transferred; the body of some notifications carries another user's username |
| [DK] | Other users of the application | — | Leaderboard, league, friendship, duel, gift, shared list and profile display (section 4) | — |
In addition, when you tap "share" the generated image and text go to the application you select (a messaging app, a social network, e-mail). You initiate that transfer; the receiving application is an independent controller. When you have a word read aloud, the text of the word goes to the text-to-speech engine installed on your device; if that engine connects to the cloud, the word text may leave the device.
Publicly available privacy policies:
The following are cross-border transfers under Turkish law. As of August 2026 the Board has issued no adequacy decision for any country, sector or international organisation; the analysis therefore moves directly to the appropriate safeguards tier (Art. 9/3-4).
The last column of the table below shows the planned basis: the standard contracts have not yet been signed, nor notified to the Authority within five business days of signature.
| Recipient | Country | Data transferred | Regular? | Planned Law Art. 9 basis |
|---|---|---|---|---|
| Hetzner Online GmbH | Hetzner Online GmbH (Germany) — our server is located in Finland. | All personal data on the server | Continuous and regular | Art. 9/3-4 appropriate safeguards — the Board's published standard contract, controller-to-processor module |
| Cloudflare, Inc. | Cloudflare, Inc. (USA) — global infrastructure; profile photographs are not pinned to a specific country. They are encrypted in transit and at rest. | The profile photograph; also the IP address of upload and view requests | Continuous and regular | Art. 9/3-4 appropriate safeguards — standard contract, controller-to-processor module |
| Google Ireland Limited and Google LLC (AdMob) | Ireland and the United States | Advertising identifier, IP address, device signals, ad interactions; your user number during reward verification | Continuous and regular | The recipient is an independent controller → Art. 9/3-4 appropriate safeguards, controller-to-controller module |
| Google Commerce Limited and Google LLC (Play billing) | Ireland and the United States | Application package name, product id, purchase token | Continuous and regular | The recipient is an independent controller → Art. 9/3-4 appropriate safeguards |
| Apple Distribution International Limited and Apple Inc. — only after App Store publication | Ireland and the United States | Transaction id and receipt verification data | Continuous after publication | The recipient is an independent controller → Art. 9/3-4 appropriate safeguards |
| Google (Gmail) | The United States and global | Your e-mail address, your username, six-digit codes, the full text of your support message | Continuous and regular | Art. 9/3-4 appropriate safeguards |
| Google LLC (Firebase Cloud Messaging) | The United States / global | Notification token, device platform, interface language, the title and body of the notification | Whenever a notification is sent | Appropriate safeguard under Art. 9/3-4 (standard contract planned) |
The explicit-consent route in Law Art. 9/6 cannot be used for these transfers. Since the amendment introduced by Law No. 7499, in force on 1 June 2024, explicit consent is an exceptional route available only for incidental transfers. Hosting, storage, advertising and e-mail delivery are continuous and regular transfers and cannot be characterised as "incidental". We therefore do not ask for your explicit consent for cross-border transfers; the correct route is the standard contract.
Risks the transfer carries: the data protection regime of the country where your data sits may differ from Türkiye's; the access powers of public authorities there may differ; exercising your rights and reaching effective remedies in that country may be harder than in Türkiye. For US-headquartered providers, US government data access legislation must also be assessed.
The following decisions may be taken automatically, without human review:
fingerprint, a warning record is produced. This alone does not block your account.
fingerprint may also be suspended.
recorded.
request counts are limited on certain endpoints.
a second time.
Under Law Art. 11/1-g you have the right to object if an assessment made solely by automated systems produces an adverse result for you. You may submit your objection through the channels in section 10; your request will be reviewed by a human.
By applying to us as data controller you have the right to:
a) learn whether your personal data is being processed, b) request information if it has been processed, c) learn the purpose of processing and whether your data is used in line with that purpose, ç) know the third parties to whom your data is transferred, in Türkiye or abroad, d) request rectification if your data has been processed incompletely or inaccurately, e) request erasure or destruction within the conditions of Law Art. 7, f) request that the operations carried out under (d) and (e) be notified to the third parties to whom your data has been transferred, g) object to an adverse outcome arising from analysis carried out solely by automated systems, ğ) claim compensation for damage suffered as a result of unlawful processing.
Channels accepted under Article 5 of the Communiqué on the Principles and Procedures for Applications to the Data Controller (Official Gazette 10.03.2018/30356):
worvento.info@gmail.com — this is the most practical route, because your identity can be verified through your account,
Because no postal address is published, the hand-signed written channel is not operated in practice; written applications are also received through the e-mail channel above.
Article 5 of the Communiqué also lists a registered electronic mail (KEP) address as a channel; however we do not have a KEP address, so we cannot receive applications by KEP.
Your application must contain: your name and surname; your signature if it is written; your Turkish identity number (if you are a foreign national, your nationality and passport or identity number); your address of residence or place of business for service of notice; your e-mail address, telephone and fax number if any; and the subject of your request. Attach any relevant information and documents.
The language of application is Turkish under Article 5 of the Communiqué. However, we also accept applications made in English.
If you send your application from the e-mail address registered to your account, your identity is verified through that account and we ask for no further document. If the application arrives from another address or in writing, we ask for identity confirmation so that we can establish that the data really is yours — otherwise we would be handing someone else's data to the wrong person.
Applications on behalf of another person. If you apply as a representative of the data subject, you must attach a power of attorney containing specific authority for this purpose. If you are applying as the holder of parental authority on behalf of someone under 16, see section 13.
We will conclude your request as soon as possible and in any event within thirty days (Law Art. 13/2). Acceptance or a reasoned rejection will be communicated to you in writing or electronically.
Applications are free of charge as a rule. If the operation requires an additional cost, the fee in the tariff set by the Board may be charged (Communiqué Art. 7): in a written reply the first ten pages are free and a processing fee of 1 Turkish lira may be charged for each page beyond ten; if the reply is provided on a recording medium, the cost of the medium may be charged. If the error is attributable to us, any fee charged is refunded.
If your application is rejected, if you find the reply insufficient, or if no reply is given in time, you may complain to the Personal Data Protection Board within thirty days of learning the reply and in any event within sixty days of the date of application (Law Art. 14). The Board: https://www.kvkk.gov.tr
Inside the application you can: remove your profile photograph, delete your account (with two-step confirmation), log out, and send a support message.
Under Law Art. 12 we are obliged to take technical and administrative measures to prevent unlawful processing of your personal data, to prevent unlawful access to it, and to ensure its preservation.
Measures present in the application: all communication between device and server is encrypted with TLS; your password is not stored in plain text but hashed with BCrypt; access and session refresh keys are kept in encrypted storage on the device; session keys can be revoked; failed login attempts are counted and the account is temporarily locked; request counts are limited; verification codes are stored hashed in the database and expire in fifteen minutes; ad and purchase operations have replay protection; profile photograph addresses are generated unpredictably.
We are not hiding the known gaps. The points flagged in sections 3.5, 3.9 and 5 of this notice (six-digit codes and support message bodies written to operational logs in plain text, the IP address being unreliable, retention periods being undefined, account deletion not covering certain tables) have not been remedied.
What we do in the event of a breach: when we learn that your personal data has been unlawfully obtained by others, we notify the Personal Data Protection Board without delay and within seventy-two hours at the latest (Law Art. 12/5; Board decision no. 2019/10 of 24.01.2019). If you are found to be affected, we also notify you as soon as reasonably possible; the notification states when the breach occurred, which data categories were affected, its likely consequences, the measures taken and those we recommend you take, and contact details from which you can obtain information (Board decision no. 2019/271 of 18.09.2019).
Worvento is published in some countries outside Türkiye (other than those listed in the Distribution territory note above). Some of those countries have their own data protection laws — for example Brazil (LGPD), India (DPDP), Canada (PIPEDA) and the United Arab Emirates (PDPL).
This notice was written on the basis of Law No. 6698. In matters of transparency, your rights and the deletion of your data it meets what those laws require in substance, but it does not contain country-specific chapters. Wherever you are, the request channel is the same: worvento.info@gmail.com, and your request is concluded within 30 days at the latest.
If you live in the United States: we are far below the annual revenue (USD 25 million) and consumer-count (100,000) thresholds of the California statutes (CCPA/CPRA) and comparable state laws, so we are out of their scope. On the point that matters most under those laws — the sale of data — our position is unambiguous in any case: we do not sell your personal data.
Worvento is not for people under 16. The Terms of Use ask you to warrant that you are at least 16.
If an account is found to belong to a person under 16, we suspend it and process it for erasure. If you hold parental authority and believe the data of a person under 16 is being processed, write to worvento.info@gmail.com; we will conclude your request within the period in section 10.
The version and effective date of this notice are at the top. If our processing purposes change, we update this notice and inform you inside the application before putting the change into effect (Information Communiqué Art. 5/1-b). Adding a new feature, a new recipient or a new third-party component falls within this too.
This notice is published in Turkish and English. The translation is for information; in case of conflict the Turkish text prevails.
The burden of proving that the duty to inform was fulfilled rests on us (Information Communiqué Art. 5/1-e). For that reason, which version of this notice was shown to you, when and on which screen is recorded on the server against your account. This record is kept solely for evidentiary purposes and contains the text version, the time it was shown, the channel and the language.
We do not ask for your approval, acceptance or consent for this notice. The only declaration requested is:
☐ I have read and understood the Worvento Privacy Notice.
This checkbox is not a consent box; it is a declaration of having been informed. Ticking it does not mean you have consented to any processing activity. Your preferences are asked separately, in a separate document and with separate checkboxes, for the two processing activities that do rest on explicit consent: https://worvento.com/legal/acik-riza
Board Principle Decision No. 2026/347 makes the following structure mandatory. The registration screen cannot contain a single combined approval box; a single button reading "I have read, I accept and I give my explicit consent" is cited in the decision as an example of bad practice.
The correct structure consists of three separate, visually distinct blocks:
Block 1 — Terms of Use (contract). Separate heading, separate link, separate checkbox. It may be mandatory; it is the contractual basis of the service.
☐ I have read and accept the Terms of Use. (mandatory)
Block 2 — Privacy Notice (information). Separate heading, separate link, separate declaration area. "I accept" cannot be written here.
☐ I have read and understood the Privacy Notice.
Block 3 — Explicit consent (optional). Under its own heading, two separate and pre-unchecked boxes. None of them is a condition of registering; registration can be completed with all of them left empty. Details are in the Explicit Consent Statement.
A visual separator sits between the three blocks; no block is nested inside another.
The following never leaves your device and is not sent to the server:
| Data kept on the device | What it is |
|---|---|
| Your own word list (MyList) | The words you added to the application, their meanings and your notes |
| Offline copy of a shared list | The device-side cache of a shared list you belong to |
| Personal best of twelve mini games | Your own highest score in each mini game |
| Tour flags | Which introduction screens you have seen |
| Celebration and album sealing flags | So the same celebration is not shown twice |
| Weekly report card and season summary banner flags | So the same information is not shown again |
| Theme, sound, haptic and text-to-speech preferences | Your appearance and sound settings |
| Day and hour habit counters | An on-device counter of which days and hours you study |
| Device fingerprint | A random identifier generated by the application. On iOS it survives even if you delete the application |
| Install identifier | A random identifier generated by the application; it goes when the application is uninstalled |
In addition:
device's widget store and may be visible on the lock screen. The word of the day is kept hidden in the widget until you answer it.
remains in the device's temporary directory and is not deleted automatically.
are deleted when you log out.
None of this is cleared when you delete your account. The only way to remove it from the device is to uninstall the application; on iOS the device fingerprint survives even then.
We collect none of the following. The list was compiled by scanning the application's dependencies and permissions:
identifier**
component at all
reach us
The exception to this list is stated in section 6: the time-zone offset and your IP address may allow a coarse location inference.
(Official Gazette 10.03.2018/30356; amended by Official Gazette 28.04.2019/30758), Arts. 4, 5, 6
(Official Gazette 10.03.2018/30356), Arts. 5, 6, 7
(Official Gazette 28.10.2017/30224)
(Official Gazette 10.07.2024/32598); KVKK Guidelines on Transfers Abroad (02.01.2025)
(Official Gazette 24.03.2026/33203)
No. 2025/2451 of 25.12.2025 (data breach notification)
Categories of Personal Data (26.02.2025)