Privacy Policy
Effective and last updated: 22 September 2026
This policy explains how Project Null0 (“we”, “us”), the provider and data controller for Viking Forge, handles information in the mobile app and on vikingforge.app. Viking Forge is the rebranded successor to Radar: Tasks & Habits. This policy describes Viking Forge; older Radar versions may use different services.
1. Information we handle
- Your workspace: tasks, projects, habits, notes, checklists, schedules, completion history, preferences and files you choose to attach. The app keeps a local working copy on your device.
- Your account: email address, account identifier, sign-in method, verification and session information, and optional name or profile photo. Email/password authentication stores a password hash, not a readable password. Apple or Google sign-in supplies the information you authorize that provider to share.
- Purchases: store transaction and product identifiers, purchase status, renewals, expiry, refunds and related app/customer identifiers used to verify access. Apple or Google handles payment details; we do not receive your full payment-card number.
- Support: the subject, message, optional reply address and screenshot you submit, plus information needed to respond.
- Technical information: network requests, IP addresses, device/app and browser information, errors and security information processed by our infrastructure and service providers to deliver and protect the service.
2. Local storage and cloud synchronization
Continuing without an account keeps your workspace on the device. When you sign in and have eligible access, supported workspace data and private files can synchronize with your account. Cloud synchronization uses Cloudflare Workers, D1 and R2. Viking Forge does not use the former Radar Firebase backend. Signing out does not cancel a store subscription.
3. Permissions and optional features
Photo and file access is used for items you select, such as attachments, a profile photo or a support screenshot. Microphone and speech-recognition access is requested when you use voice entry. Speech may be processed by your device's operating-system speech provider, including Apple or Google, according to its settings and policies. Viking Forge does not persist a voice-entry audio recording; the resulting text can become part of your workspace. You can revoke permissions in device settings.
4. Why we process information
We process information to provide your workspace, authenticate accounts, synchronize data, verify and restore subscription access, respond to requests and maintain security. Where GDPR applies, our legal bases are performance of the service contract, legitimate interests in securing and maintaining the service and responding to support requests, compliance with legal obligations, and consent where required for an optional activity. Withdrawing consent does not affect earlier lawful processing. Without the information needed for an account or purchase verification, those features cannot work.
5. Service providers and sharing
- Cloudflare: app API, account infrastructure, database, private-file storage and security.
- RevenueCat: subscription validation, entitlement status and restoration, using purchase and app/customer identifiers.
- Apple and Google: app distribution, store billing, optional sign-in and operating-system features.
- OVHcloud: email delivery and support correspondence.
- Vercel: hosting this website and processing the technical requests needed to serve and secure it.
We may disclose information when legally required or necessary to protect rights and prevent abuse. We do not sell your personal information or use it for advertising profiling. This website includes no analytics scripts, advertising trackers, account forms or application-set cookies. Hosting providers may process necessary technical and security data.
6. International processing
Our providers may process information outside your country, including outside the European Economic Area. Where required, transfers rely on applicable adequacy decisions or contractual safeguards such as the European Commission's standard contractual clauses. Contact us for information about the safeguards relevant to your data.
7. Retention and deletion
Local information remains on your device until removed through the app or device controls. Account and synchronized information is retained while needed to provide the service. You can request account deletion in the app's account settings or contact us. Deletion removes account/workspace records and starts cleanup of associated private files and the RevenueCat customer profile; provider cleanup may require retries. Copies in provider backups, security records, support correspondence or records required by law may remain for the period needed for their original purpose or legal obligation. We do not promise immediate erasure of every provider backup or store transaction record.
Deleting the app does not by itself delete a cloud account. Deleting an account does not cancel a subscription with Apple or Google; cancel it separately in the store. Files you export or share are controlled by you and the destination service.
8. Your rights
Depending on your location, you may request access, correction, deletion, restriction or portability of your information, and object to processing based on legitimate interests. You may withdraw consent where consent is the basis and complain to your local data-protection authority. We may need to verify your identity to protect your account. Contact contact@projectnull0.com to exercise these rights or ask about retention and transfers.
9. Children
Viking Forge is not directed at children below the age at which they can lawfully use the service and provide any required consent. If you believe a child has supplied personal information without the necessary authorization, contact us so we can investigate and take appropriate action.
10. Changes and contact
We may update this policy when the service or applicable requirements change. The date above identifies the current version; material changes will be communicated where required. Questions and privacy requests: contact@projectnull0.com, Project Null0.