Home Privacy Terms Support
Privacy Policy

Amar Patente Privacy Policy

Last updated 13 August 2026 Applies to Amar Patente 1.3.0 · GMF IT CENTER

Who we are and how to contact us

Last updated: 13 August 2026. This version describes Amar Patente app version 1.3.0. Older versions of the app may behave differently.

This policy is written to be read, not to protect us. Where the app does something we are not happy about, we say so instead of leaving it out.

Amar Patente is an educational app for the Italian driving theory exam (patente B). Its study content comes from the publicly available Italian driving theory question set for categories A and B (patente AB). The app is made and operated by GMF IT CENTER.

GMF IT CENTER is the data controller for the personal data described in this policy. That means we decide why and how it is used, and you can hold us responsible for it.

Contact us about privacy at [email protected]. This is the same address as the Email button under "Legal & Help" in the app's Home menu, so the app and this page point to one mailbox. Website: amarpatente.com. Please use email for privacy requests, so there is a written record.

This policy is published in English. Many of our users read Bengali or Italian, so we are preparing translations of it. You can write to us in English, Italian or Bengali.

To answer a request about your data, we need something that identifies it: the email address on your account, or the anonymous identifier that guest data is filed under. See How long we keep data for what that means in practice.

What this policy covers

  • The Amar Patente app for Android, downloaded from Google Play.
  • The Amar Patente app for iPhone and iPad, downloaded from the App Store.
  • The web version of the app at app.amarpatente.com.
  • This website, amarpatente.com.

The three versions of the app — Android, iPhone and web — all talk to a single server of ours at admin.amarpatente.com. That server is where accounts and quiz progress are stored. The website amarpatente.com is separate and stores nothing about you.

amarpatente.com runs on WordPress. The pages we wrote ourselves load no advertising script, no analytics and no external fonts, and their fonts are served from our own domain. We must add one caveat: WordPress plugins can add scripts and cookies to a page without appearing in the markup we wrote, and we have not finished checking which plugins are active on the live site. Until we publish that check here, please assume this website may set cookies beyond the strictly necessary ones. If it does, we will name them here and ask for your consent before they run.

The web version of the app at app.amarpatente.com is different from this website: it loads Google AdSense and Google Fonts, and it does not ask for your consent first. This is explained in Advertising and Your advertising choices.

This policy does not cover other companies' websites. The app and this site link out to the App Store, Google Play, Amazon, WhatsApp, italia360.it.com, shikhunitalian.com, bustafacile.com and ronaldoroy.com. Nothing is sent to those sites until you tap a link. Once you do, their own privacy policies apply.

Ebooks open as PDF files. On a phone, the file opens in your device's browser at the address we hold for that ebook. Where that address is not on our own domain, the site hosting the file sees your IP address and browser like any other website you open.

What we collect when you use the app as a guest

You can use the whole app without an account. As a guest we never ask for your name, email address, phone number, postal address, photo or documents. The app does not ask for access to your location, camera, microphone, contacts, photos, calendar or files, and it has no push notifications.

An anonymous device identifier. The first time you open the app, it generates a random identifier that looks like anon_ followed by a random string. It is not taken from your phone's hardware or from any account. It is stored on your device and sent to our server together with your quiz activity.

Your quiz activity, stored on our server. Each time you answer a question we send and store: which question it was, whether you got it right, the mode (practice, exam or review), the chapter, and the time. We also keep a per-chapter summary: attempts, correct answers, mistakes and last activity.

A message inside app version 1.3.0 tells you that without an account your progress "stays on this device only". That is not accurate, and we are correcting the message. Guest progress is sent to and stored on our server. It is filed under the random device identifier above rather than under your name, but it is on our server.

Kept on your device only, never sent to us:

  • Two flags that record you have seen the welcome screens.
  • Your last advertising consent answer.
  • Questions, chapters, hints and images downloaded for offline study.

The language you chose for the app. It is stored on your device, and it is also sent to our server with every AI Teacher question, so the answer comes back in the language you are reading in. From there it becomes part of the prompt sent to Google (see AI Teacher). It is not attached to any other request, and it is not sent at all if you never use AI Teacher.

Ebook unlocks earned by watching a rewarded ad. While you are a guest, these stay on your device and last 7 days. The first time you create an account or sign in on that device, the app sends that list of unlocks to our server so the unlocks follow your account rather than the phone. After that, each new unlock is sent to our server as it happens.

Technical information. Like any internet service, our server receives your IP address and your app or browser user agent with every request. We do not save your IP address in our own database in readable form: it is used in the moment and, for the abuse controls described below and in AI Teacher, stored only as a hash. It is, however, written to our hosting provider's ordinary web server access logs, together with the time and the address requested — as happens on every website you visit. On the requests that read your statistics, the device identifier is placed in the web address rather than in the body of the request, so it lands in those logs too. We are moving it into the request body, and we are asking our provider how long those logs are kept.

Your guest identifier stays on the device after you sign out, and it becomes permanently linked to your email address if you ever create an account on that device. The next section explains this, because it matters.

What we collect when you use an account

An account is optional. Everything in the app works without one. Its only purpose is to keep your progress when you change device or reinstall.

If you create an account we collect:

  • Your email address. This is the only personal detail we ask for. We do not ask for your name, age, phone number or country.
  • Your password. It is sent to our server over an encrypted connection and stored only as a bcrypt hash. We never store it in readable form, and it is never saved on your device.
  • A sign-in token. A long random string that keeps you signed in. It is stored on your device and on our server, and it is valid for 365 days.
  • An account identifier, and the date the account was created.
  • Which ebooks you unlocked by watching a rewarded ad, and when.

Your email address is never verified. We do not send a confirmation email, because the app sends no email at all. This has a direct consequence: there is no "forgot password" function. If you lose your password you cannot sign in, and you cannot use the in-app delete button either, because deletion asks for your password. Email us and we will delete the account by hand.

Your guest history becomes linked to your email address. The first time you register or sign in on a device, the app sends that device's anonymous identifier to our server. We then move all quiz history recorded under it onto your account, and we permanently record which device identifier was absorbed by which account. From that moment, everything you studied on that device as a guest is connected to your email address. This happens only the first time for a given device identifier; a second attempt is refused and moves nothing. So if you sign out and study again as a guest, that later progress stays under the guest identifier and is never added to your account.

Protection against password guessing. When a sign-in or sign-up fails, we store a counter against a SHA-256 hash of the email address used and of the IP address it came from. We never store the address or the IP itself. Be clear about what that protects: the hashes are unsalted, so they cannot be read back on their own, but somebody who already suspects a particular address can hash it and check whether a row matches. We therefore still treat these rows as personal data. Adding a secret salt is on our list of fixes.

You can change your email address and your password inside the app. Both require your current password. Changing your password signs out every other device.

Everything the app sends to our server — your email address, your password, your sign-in token and your quiz activity — travels over an encrypted HTTPS connection. The app sets no first-party cookies, and it talks to no server of ours other than admin.amarpatente.com.

Do you have to give us any of this?

  • Your email address and password: only if you want an account. No law requires you to have one, and nothing in the app is locked without one. If you do not give them, we cannot create the account or move your progress to another device. That is the only consequence.
  • The text you type into AI Teacher: entirely up to you. If you never use AI Teacher, nothing of yours is sent to Google's language model.
  • Your advertising consent: entirely up to you, and refusing costs you nothing. Rewarded content still unlocks for free (see Your advertising choices).
  • The guest device identifier and your quiz answers: these you cannot currently decline. They are created and sent the first time you open the app, because that is how the app remembers your progress, and there is no setting to switch it off yet. If that is not acceptable to you, the only options today are to clear the app's storage, which gives you a fresh identifier, or not to use the app. We think you should be able to switch it off, and we are working on it.

Advertising and what Google receives

The app is free and paid for by advertising. All advertising is Google's.

We use no other ad network. There is no analytics, no crash reporting and no tracking or attribution SDK anywhere in the app. We checked this specifically. We do not sell personal data, and we do not share it with data brokers. We never send your quiz history or your AI Teacher questions to any advertising system.

In the Android and iPhone apps we use Google AdMob (the Google Mobile Ads SDK) to show a bottom banner and rewarded videos. Once it is started, Google's SDK collects your advertising identifier (the Android advertising ID or the iOS IDFA), your IP address, device and operating system information, and your interactions with the ads. This happens inside Google's SDK. Our own code never reads or stores your advertising identifier; it passes only the ad slot and a flag saying whether ads may be personalised.

You can reset or limit the advertising identifier in your device settings. On iPhone and iPad, iOS shows you Apple's tracking permission prompt before the ad system starts, and you can change that answer later in iOS Settings.

In the web version we use Google AdSense.

Something we must state plainly. Two Google requests happen when the app opens, regardless of your advertising answer and before you have given one: the Google AdSense script and the Google Fonts stylesheet. This is true in the web version and also inside the Android and iPhone apps, because they open the same start page. Even when no ad is displayed, those requests tell Google your IP address, your user agent and which page you opened. We are fixing this: the fonts are moving to our own server, and the AdSense script is moving behind the same consent check as the rest of our advertising. Until that update ships, opening the app causes a request to Google whatever you answered. Nothing about your quiz answers, your email address or your AI Teacher questions is included in those requests.

We store one thing on your device about advertising: your last consent answer, so that a temporary failure to reach Google's consent service does not silently change your choice. The formal consent record itself is stored by Google's software, not by us.

AI Teacher and Google Gemini

AI Teacher lets you type a study question in your own words and get an explanation. Please read this section before you use it.

What leaves your device when you ask a question:

  • The question text, exactly as you typed it.
  • The language code of the app interface.
  • A second random identifier used only by AI Teacher, generated on your device.
  • Your sign-in token, if you are signed in.

What happens on our server. We build a prompt containing teacher instructions, up to about 2,200 characters of matching material from our own question, hint and vocabulary database, and your question unchanged. We send that prompt to Google's Gemini API.

What Google receives. Google receives the text of your question, the study material we attach to it, and the language you have chosen for the app, because the model has to be told which language to answer in. The request is made from our server, not from your device, so Google receives our server's IP address and not yours. It contains no email address, no account identifier, no device identifier and no sign-in token.

What we store. We do not store your question or the answer in our database. Nothing writes them to any table, and the app's server code keeps no logs of its own. We store only a daily counter, filed under a SHA-256 hash of the AI Teacher device identifier, to enforce the daily limit on free questions and to count the extra questions you earn by watching a rewarded ad. If the app sends no device identifier, we use a hash of your IP address and user agent for the same counter instead. Once your question has reached Google, Google's own terms and retention apply to it. We cannot delete it there, and we cannot tell you how long Google keeps it.

What stays on your device. Your recent AI Teacher questions and their answers — the question text as well as the answer — are cached in the app's local storage for 7 days, up to 50 questions, so that asking the same thing twice does not use up your daily allowance. That cache is not removed when you delete your account. Deleting the app or clearing its storage removes it.

Please do not type personal information into AI Teacher. Do not type your name, address, phone number, licence or document numbers, or anything about your health or immigration status. We do not want special category data — anything revealing your health, ethnic origin, religion or immigration status — and we have no lawful condition under Article 9 of the GDPR to process it here. If you type it anyway, that text is sent to Google with the rest of your question and we cannot recall it. We are adding a warning at the point where you type, not only here. Ask about road rules, signs and Italian vocabulary.

One technical detail worth knowing: when the app finds no match in our own database — which includes most questions written in Bengali or Arabic script — your question is sent straight to Google rather than answered from our own material.

Who else sees your data

We use a small number of providers. Each one is listed here with what it actually receives.

  • Namecheap (web hosting and MySQL database, shared cPanel hosting). This is where our server runs. It holds everything we store: account email addresses, password hashes, sign-in tokens, quiz answers, statistics, hashed device keys and hashed sign-in attempt counters. Its web server also keeps standard access logs, which record IP addresses, times and requested addresses.
  • Google — Gemini API. Receives the text of your AI Teacher question, the study material we attach to it, and your interface language. Receives no identifier of any kind, and sees our server's IP address rather than yours.
  • Google — AdMob and the Google Mobile Ads SDK, in the Android and iPhone apps. Receives your advertising identifier, IP address, device and operating system information, and your ad interactions.
  • Google — AdSense, in the web app and, as explained in Advertising, also from inside the native apps. Receives your IP address, user agent, the page address and any advertising cookies it sets.
  • Google — User Messaging Platform, the consent form. Receives and stores your advertising consent choice.
  • Google — Google Fonts. Receives your IP address, user agent and referring page every time the app or web app opens.
  • Apple. Distributes the iPhone app, handles the tracking permission prompt, and processes install measurement through SKAdNetwork, for which only Google's advertising network is registered.
  • Google Play. Distributes the Android app.
  • Your device's speech engine, when you tap to hear a question read aloud. The Italian text is handed to the engine built into your device — usually Google's on Android, Apple's on iPhone. Our app makes no network request for this, never opens the microphone and uploads no audio. What that engine does with the text afterwards is a setting of your device and is outside our control; some engines fetch or synthesise voices online.
  • GitHub and GitHub Actions. Used to store our source code and to publish updates. They receive no user data.

We may also disclose data if we are legally required to, for example by a valid order from a court or a public authority. We do not sell personal data, and we have no advertising, analytics or attribution partner other than Google.

Your advertising choices

In the EEA, the UK and other regions where it is required, the Android and iPhone apps ask for your advertising consent through Google's consent form before requesting any AdMob ad.

Exactly what happens with each answer:

  • If you consent, ads are requested. Whether they are personalised follows the choice recorded by Google's consent form.
  • If you refuse, or have not answered yet, the AdMob system is never started and no AdMob ad is requested at all — not even a non-personalised one. The separate AdSense script described below still loads.
  • If we cannot reach Google's consent service, for example because you are offline, the app reuses the last consent answer stored on your device — including one that allowed personalised ads. If there is no stored answer to reuse, ads are requested but forced to be non-personalised.

So refusing is not the same as choosing non-personalised ads. Refusing means no AdMob ad is requested.

Refusing costs you no study content. If you refuse consent, or if you are using the web version, rewarded content such as ebook unlocks and extra AI Teacher questions is unlocked for you without an ad. What does not work is a broken ad: if an ad is available but fails to load, fails to display, or you close it before the end, the reward is not given and you can try again.

How to change your choice:

  • In the app: open the Home screen menu, go to "Legal & Help", and tap "Ad Privacy Settings". This reopens Google's consent form, where you can change or withdraw your consent. This option appears when Google reports that your region requires it.
  • On Android: Settings, then Google, then Ads, where you can reset or delete your advertising ID and opt out of ad personalisation.
  • On iPhone or iPad: Settings, then Privacy & Security, then Tracking, where you can withdraw the permission you gave the app.

Two limits you should know about. The web version at app.amarpatente.com has no consent form at all: it is never asked, so there is nothing there to withdraw, and Google AdSense loads on every visit. If you do not want that, use the Android or iPhone app until we add a consent banner, and in the meantime you can control Google ad personalisation at adssettings.google.com and cookies through your browser. Second, as described in Advertising, the Google AdSense script and Google Fonts load when the app opens whatever your answer is, including inside the Android and iPhone apps.

The app is not directed at children: the setting that marks users as under the age of consent is switched off, and ad content is limited to the "General" rating.

Transfers outside the EEA

Yes, some of your data is transferred outside the European Economic Area.

Google and Apple are United States companies, so your advertising identifiers, the ad requests from your device and the text of your AI Teacher questions are processed in the United States. Google is certified under the EU–US Data Privacy Framework, and we rely on the European Commission's adequacy decision for it. Google's data processing terms, which include the European Commission's Standard Contractual Clauses as a fallback, are published at privacy.google.com/businesses. Apple's terms are at apple.com/legal/privacy.

Our server and database are hosted with Namecheap. We have not yet confirmed in writing which data-centre region they sit in, so we cannot yet tell you whether your account email address and your quiz progress are stored inside or outside the EEA. We are asking the provider, and we will update this section with the answer. Where the answer is outside the EEA, we rely on the Standard Contractual Clauses in Namecheap's data processing agreement.

Countries outside the EEA do not always give personal data the same legal protection as EU law. If you want a copy of the clauses we rely on for any of these providers, email us and we will send you the document or a link to it, free of charge, within one month.

How long we keep data, and what deletion actually removes

We have to be honest here: the app deletes nothing automatically. There is no clean-up job. Data is kept until it is deleted, either by you or by us on request, which means it can stay indefinitely if nobody asks. Setting and enforcing real retention periods is work we have scheduled. Until it ships, you can email us at any time and we will remove your data straight away.

What this means in practice:

  • Quiz answers and statistics are kept until you delete your account, or until you ask us to delete guest data.
  • Sign-in tokens are valid for 365 days. Expired ones stop working immediately, but the rows are not yet removed from the database.
  • Failed sign-in counters, which contain a hash of an email address or an IP address, are cleared when a sign-in with the same key next succeeds. If it never succeeds, they are not removed.
  • AI Teacher daily counters, filed under a hashed device key, are kept with no clean-up. They contain no readable identifier.
  • On your device: cached AI Teacher questions and answers expire after 7 days, and ebook unlocks after 7 days. Everything else stays until you clear the app's storage or uninstall the app.
  • Web server access logs kept by our hosting provider: we are confirming the period with them, and we will state it here rather than invent one.

Deleting your account

If you are signed in, tap the profile icon at the top right of the Home screen to open the Profile screen, scroll to "Delete account", and confirm with your password. It happens immediately, it cannot be undone, and there is no grace period and no confirmation email. It permanently deletes your account row including your email address and password hash, every quiz answer and statistic recorded against your account, all your sign-in sessions, the record linking your old guest identifier to the account, and your ebook unlocks.

What deleting your account does not remove. We state this plainly, because it has been described elsewhere as removing everything:

  • Quiz history recorded on this device while you were signed out. Progress is filed under your account only while you are signed in. Your guest history was moved onto the account once, the first time you signed in on that device; anything you answered as a guest afterwards, and anything you studied as a guest on another device, is still on our server under an anonymous device identifier. Deleting the account does not touch it. That identifier also stays on the device after deletion and keeps sending new guest progress to our server. Email us if you want that erased too, and tell us it is a guest record.
  • AI Teacher daily counters. They are filed under a hashed device key that was never connected to your account, so we cannot find them from your account.
  • Failed sign-in rows containing a hash of your email address, if any failures were recorded and never cleared by a successful sign-in. They hold no readable address and no password, but somebody who already knew your address could check whether a row matches it.
  • Everything on your device: the guest identifier, the AI Teacher identifier, your cached AI Teacher questions and answers, any ebook you unlocked before you had an account, your language and your ad consent answer. Clear the app's storage or uninstall the app to remove these.
  • Anything Google keeps from AI Teacher prompts or from ad requests, and our hosting provider's web server access logs.

If you use the app as a guest

There is no delete button for guest data, because the app cannot prove that the device is yours. Worse, the app does not currently show you your own device identifier, so we cannot simply ask you for it. We are adding a way to see it, and a delete button next to it.

Until then there are two routes. The simpler one: create an account on the same device — your guest progress moves into that account the first time you sign in — and then delete the account, which erases it. Otherwise email us, and we will tell you how to read the identifier off your device. If you send it to us, treat it like a password: study records are looked up by that identifier, so send it to nobody else and delete the message once we have confirmed the erasure. Clearing the app's storage or uninstalling the app also cuts the link between you and everything recorded under that identifier, although the rows stay on our server until we delete them.

If you forget your password. There is no password reset, so you can neither sign in nor use the delete button. Email us from the address on the account and we will delete it for you.

Your rights

If you are in the EU or the EEA, the GDPR gives you the rights below. If you are in the United Kingdom, the UK GDPR gives you the same rights. If you are anywhere else, we apply these rights to you as well — we do not run a weaker policy for the rest of the world. Using them is free.

  • Access. Ask us for a copy of the data we hold about you, and for confirmation of how it is used.
  • Rectification. Have wrong data corrected. You can change your email address and your password yourself in the app.
  • Erasure. Have your data deleted. Signed-in users can do this in the app immediately, as described above.
  • Restriction. Ask us to stop using your data while a dispute or a correction is being sorted out.
  • Portability. If you have an account, receive the data you gave us and the progress recorded under it in a machine-readable form, and ask us to pass it to someone else where that is technically feasible. This right covers data we process on the basis of your consent or of our contract with you; it does not extend to the hashed counters we keep for abuse control.
  • Objection. Object to processing we base on legitimate interests — that is the abuse controls and the server logs described in Why we use your data. If we refuse an objection because the processing protects other people's accounts from password guessing, we will tell you so and explain why.
  • Withdraw consent. In the Android and iPhone apps you can withdraw your advertising consent at any time using the steps in Your advertising choices, and withdrawing is as easy as giving it. In the web version we do not yet ask for consent and give you no way to withdraw it, because the consent form is not built there. Withdrawing does not affect ads served before you withdrew.

How to use these rights: email [email protected]. We will answer within one month. If a request is complicated we may need up to two further months, and we will tell you inside the first month if that happens.

Two practical points. First, there is no self-service export in the app yet, so we handle access and portability requests by hand. Second, to find your data we need something that identifies it: the email address on your account, or the device identifier for guest data. For guest data we hold no name, email address or any other detail, so we may genuinely be unable to locate your records. Under Article 11(2) of the GDPR we are not obliged to collect extra information just to identify you. But if you can give us anything that pins the record down, we will act on it, and we will not refuse a request simply because it arrived without an identifier.

If you think we have handled your data badly, you can complain to a supervisory authority. In Italy this is the Garante per la protezione dei dati personali (garanteprivacy.it). In the United Kingdom it is the Information Commissioner's Office (ico.org.uk). You can also complain to the authority in the country where you live or work, and you have the right to go to court. We would rather you told us first, but you do not have to.

Children

Amar Patente is made for people studying for the Italian driving theory exam, so it is aimed at adults and older teenagers. It is not designed for or directed at children.

In Italy, a person must be at least 14 years old to consent on their own to an online service like this one. Elsewhere in the EU and the EEA the age is set nationally, between 13 and 16; if you are outside Italy, your own country's threshold applies. We do not knowingly collect personal data from children below that age. We do not ask for your date of birth, and the app has no age check, so we rely on you and, where relevant, on the age ratings of the App Store and Google Play.

The app is not set up as child-directed for advertising purposes: the setting that marks users as under the age of consent is switched off, and ad content is limited to the "General" rating.

If you are a parent or guardian and you believe a child has given us personal data — an email address, or a question typed into AI Teacher — email [email protected] and we will delete it.

Changes to this policy

We will update this policy when the app changes. The date at the top always shows the current version.

If we make a change that matters to you — a new provider receiving your data, a new kind of data collected, or a new purpose — we will say so in the app rather than quietly editing this page, and where the law requires consent we will ask you again.

This version describes app version 1.3.0. If you are running an older version, some of what is written here may not match your app. Updating from the App Store or Google Play is the best way to be sure.

Several things named in this policy are not finished yet, and they affect you directly: there is no password reset, no data export button, and no delete button for guest data, so those requests go through email; and the two Google requests described in Advertising are not yet behind your consent. We keep a longer internal list of technical work, including security hardening. We do not publish that list, because describing weaknesses before they are fixed would put your data at greater risk, not less. If you are a security researcher, email us and we will answer.