Privacy Policy
This Privacy Policy explains how the Kosher Basviva mobile application, website, and related services (collectively, the “Services”) collect, use, store, disclose, and protect personal information.
The Services are operated by YB, an individual based in Israel, trading under the name “Kosher Basviva” (“Kosher Basviva,” “we,” “us,” or “our”).
1. Scope
This Policy applies when you use the Kosher Basviva application, browse the related Kosher Basviva website, create an account, search for restaurants, use location-based features, receive push notifications, view advertisements, contact us, or submit restaurant information, corrections, photographs, or other content.
This Policy should be read together with our Terms of Use.
2. Information We Collect
2.1 Information you provide
- Account information: name, telephone number, email address, internal user identifier, and account credentials or authentication information.
- Google sign-in information: information made available by Google according to the permissions you approve, such as your name, email address, Google account identifier, and profile image, where applicable.
- Restaurant submissions: restaurant name, address, location, contact information, opening hours, category, kosher certification information, notes, corrections, photographs, image metadata, and other information you choose to submit.
- Communications: messages, support requests, reports, feedback, and other information you send to us.
2.2 Information collected automatically
- Usage and search logs: search terms, selected filters, restaurant pages viewed, actions taken in the Services, dates and times, session information, and time spent using features.
- Technical and security information: Internet Protocol (IP) address, device type, operating system, app version, language, browser or user-agent information, identifiers, network information, and server or security logs.
- Location information: precise or approximate device location when you grant permission or choose a location-based feature. An IP address may also be used to estimate a general location.
- Push-notification information: Firebase Cloud Messaging token, app installation identifier, app version, notification preferences, and, where enabled, delivery or interaction information.
- Advertising information: advertising identifiers, device or app identifiers, IP address, general location, ad interactions, and diagnostic information collected through advertising SDKs.
- Diagnostics: crash, performance, error, and troubleshooting information, where diagnostic services are enabled.
2.3 Information from third parties
We may receive information from authentication, advertising, mapping, hosting, security, analytics, and messaging providers. The information received depends on the provider, your settings, the permissions you grant, and the way you use the Services.
3. Whether You Must Provide Information
Providing personal information is generally voluntary. You may normally search for restaurants without creating an account. However, some features—such as account functions, saved preferences, submissions, location-based search, and push notifications—cannot operate without the relevant information or permission.
You may disable location or notification permissions through your device settings, although doing so may limit the relevant features.
4. How We Use Information
We use personal information to:
- provide, operate, maintain, and improve the Services;
- authenticate users and manage accounts;
- display nearby restaurants and calculate distance-based results;
- save preferences, favorites, and other account settings;
- review, verify, edit, publish, and update restaurant information;
- send service messages and push notifications;
- display, measure, secure, and manage advertisements;
- understand searches and usage patterns and improve data quality;
- detect abuse, fraud, technical failures, and security incidents;
- respond to requests, reports, and support inquiries;
- enforce our Terms of Use and protect users, restaurants, and our legal rights; and
- comply with applicable legal and regulatory obligations.
5. Legal Bases for Processing
Where the General Data Protection Regulation (“GDPR”), UK GDPR, or similar law applies, we process information on one or more of the following bases:
- Performance of a contract: to provide requested account and app functions.
- Legitimate interests: to operate, secure, troubleshoot, and improve the Services, maintain the restaurant database, and prevent misuse, provided those interests are not overridden by your rights.
- Consent: for optional permissions, personalized advertising, certain analytics or storage technologies, and marketing communications where consent is legally required.
- Legal obligation: where processing is necessary to comply with law.
6. Restaurant Submissions and Public Content
Restaurant information and photographs submitted through the Services are intended for review and possible inclusion in the Kosher Basviva database. We may verify, edit, translate, combine, format, reject, or publish a submission in the application, website, or related Kosher Basviva services.
Published restaurant details and images may be visible to the public. Do not submit identity documents, private correspondence, private addresses, photographs of people, or other personal information unless it is necessary, lawful, and you have authority to provide it.
Deleting your account does not necessarily require removal of factual restaurant information that has been incorporated into the public database. Where reasonably possible, personal attribution connected to such content will be removed upon a valid deletion request, unless retention is required for legal, security, or dispute purposes.
7. Advertising
The Services are free and may display advertisements through Google AdMob or other advertising partners. Advertising providers may automatically collect or receive information such as IP address, general location, app interactions, diagnostic data, and device or advertising identifiers for ad delivery, measurement, analytics, and fraud prevention.
Depending on your region, device settings, age settings, consent choices, and our ad configuration, advertisements may be personalized, non-personalized, or limited. Where required by law, we will request consent before using personal information or device storage for personalized advertising. You may be able to review or change advertising privacy choices through an in-app consent screen, Google settings, or your device settings.
We do not sell account details or our internal search logs for monetary payment. Certain privacy laws may define some advertising-related disclosures as “sharing” or “targeted advertising” even where no money is paid to us.
8. When We Disclose Information
We may disclose information:
- To service providers: providers that support authentication, messaging, hosting, storage, mapping, security, analytics, diagnostics, communications, and advertising.
- At your direction: when you choose to submit public restaurant information, use an external link, or otherwise request a disclosure.
- For legal and safety reasons: where reasonably necessary to comply with law, legal process, or a lawful government request; investigate fraud or abuse; enforce our terms; or protect rights, property, and safety.
- In connection with a transfer: if the Services or their assets are transferred, reorganized, or assigned, subject to appropriate privacy protections.
We do not claim that only anonymized information is transmitted to third parties. Some third-party SDKs process personal information as described in this Policy and in their own privacy documentation.
9. Third-Party Services
The Services may use the following Google services:
- Google Sign-In and Firebase Authentication for account access;
- Firebase Cloud Messaging for push notifications;
- Google AdMob for advertisements;
- Google Maps or related location services for maps and location-based features; and
- Firebase diagnostic or analytics services, if enabled in the application.
Additional information is available in the providers’ documentation:
- Google Privacy Policy
- How Google uses information from sites or apps that use its services
- Firebase privacy and security information
- Google Mobile Ads data disclosure information
Third-party services operate under their own terms and privacy practices. Their processing may vary based on SDK versions, configuration, consent, and region.
10. Data Retention
We retain information only for as long as reasonably necessary for the purposes described in this Policy:
- Account information: while the account is active and for a limited period afterward as needed to complete deletion, maintain backups, resolve disputes, prevent abuse, or meet legal obligations.
- Usage, IP, and security logs: generally for up to 24 months, unless a longer period is reasonably required for security, investigation, dispute resolution, or legal compliance.
- Restaurant submissions: for as long as the information remains relevant to the restaurant database, including after an account is deleted, subject to applicable rights and removal requests.
- Support communications: for as long as needed to respond, document the issue, and protect legal rights.
- Aggregated or de-identified information: may be retained for longer where it no longer reasonably identifies an individual.
Third-party providers may apply their own retention periods. We may retain limited information where required by law or reasonably necessary to prevent fraud, enforce agreements, establish or defend legal claims, or protect the security of the Services.
11. Account and Data Deletion
You may request access to, correction of, or deletion of your personal information and account by contacting us at kosher.basviva@gmail.com.
We may ask for reasonable verification before processing a request. Deletion requests are subject to information we must or are permitted to retain for security, legal, fraud-prevention, dispute, and record-keeping purposes. Data controlled independently by a third-party provider may also need to be managed through that provider.
12. Your Privacy Rights
Depending on your location and applicable law, you may have rights to request access, correction, deletion, restriction, portability, or objection; withdraw consent; and complain to a data-protection authority.
Under Israeli privacy law, you may have rights to review personal information held about you and request correction where the information is incomplete, inaccurate, or outdated. Exercising a right will not result in unlawful discrimination.
Withdrawal of consent does not affect processing already carried out lawfully before withdrawal. Some requests may be limited where an exception applies or where fulfilling the request would adversely affect the rights of another person.
13. International Transfers
The Services and their providers may process information in Israel, the United States, the European Economic Area, and other countries. Privacy laws in those countries may differ from those in your place of residence. Where required, we rely on appropriate safeguards, such as adequacy decisions, contractual protections, or another legally recognized transfer mechanism.
14. Security
We use reasonable administrative, technical, and organizational safeguards appropriate to the nature of the information, including access controls and encrypted connections where supported. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
If a personal-data breach occurs, we will assess it and provide notices where required by applicable law.
15. Children
The Services are not directed to children under 16, or a higher minimum age where required by applicable law. We do not knowingly collect personal information from a child in violation of applicable law.
If you believe a child has provided personal information without valid parental or guardian authorization, contact us so that we can review and, where appropriate, delete the information.
16. External Links and Restaurant Information
The Services may link to restaurant websites, navigation services, telephone services, social networks, or other third-party resources. We are not responsible for the privacy practices of independent third parties.
Restaurant details are compiled from multiple sources and user submissions and may change. Users should independently verify important information, including kosher certification, allergens, opening hours, accessibility, location, and availability.
17. Changes to This Policy
We may update this Policy to reflect changes in the Services, technology, providers, or law. The updated version will be posted with a revised effective date. Where required, we will provide additional notice or obtain consent.
18. Contact Us
Controller / Service operator: Yosef Haim Berman, operating as Kosher Basviva
Country: Israel
Privacy email:
kosher.basviva@gmail.com
Please include enough information for us to identify your account or request, but do not send passwords, full identity documents, or other unnecessary sensitive information.