Legal

Privacy Policy

Last updated: 16 September 2026

Introduction

This Privacy Policy explains how MuntligB1 collects, uses, and protects your personal data when you use our service to prepare for the Norwegian oral language exam (Norskprøve).

MuntligB1 is operated by BANI YOUNES, a sole proprietorship registered in Norway. We process your data in line with the EU General Data Protection Regulation (GDPR) and the Norwegian Personal Data Act (Personopplysningsloven).

If you have any questions about this policy or how we handle your data, email us at privacy@muntligb1.com.

Who is responsible for your data

The data controller responsible for your personal data is:

Legal entityBANI YOUNES (sole proprietorship)
Organization number934 103 424
CountryNorway
Contactprivacy@muntligb1.com

What data we collect

We collect only the data needed to provide and improve the service:

Account data — Your email address, your display name, and — only if you created the account with an email and a password — a hashed (encrypted) password. If you choose Sign in with Apple or Google sign-in instead, we receive your email address and your name from Apple or Google, and no password exists for that account. Apple lets you choose Hide My Email, and we then receive a forwarding address Apple generates instead of your own.
Usage data — Your progress per topic, streaks, weak topics, assessment results, and practice history.
Audio data — Voice recordings you make during speaking exercises. These are transient — sent to our transcription provider, converted to text, and never stored on our servers.
AI feedback data — Transcripts of your speaking practice, sent to our AI provider for evaluation and feedback.
AI feedback reports — If you choose Report this feedback, we send the reason you selected, the app surface, the language, the feedback text and — when you are signed in — your user ID to our monitored support inbox. A report sent without a signed-in session is marked anonymous.
Speech and AI consent record — For signed-in mobile-app users, the version of the speech/AI disclosure you accepted, when you accepted it, and when you later withdrew it.
Analytics and ad-measurement data — Page views, clicks, session recordings, device information, whether a free-sample form was completed, and whether a PDF, app-pass or simulation-pass purchase was verified. Meta Pixel receives the page address with the PageView event. After the free-sample form receives its generic success response, we send the Lead event. When our payment provider and payment ledger confirm a purchase, Meta Conversions API receives a Purchase event with the value in NOK, product details and a unique event identifier. To match that server event to an earlier ad interaction, we send a SHA-256 digest of the normalized buyer email and, when available, Meta’s _fbp browser identifier and _fbc click identifier. A digest is pseudonymous rather than anonymous, but it does not reveal the readable email address. If the browser also sends the same Purchase through Meta Pixel, the matching event identifier lets Meta count it once. We record and send this only after the buyer has accepted the current Marketing disclosure. A purchase is not sent to Meta without that consent.
Cookies — Essential session cookies that keep you signed in, and optional analytics and advertising-measurement cookies (see the Cookies section below).
Practising without an account — When you practise without signing in, we store your answer (text or transcribed speech) without linking it to an account. We use it to give you feedback and to improve our practice exercises. These answers are deleted automatically after 30 days. You don't need to include personal details in your answers.
Signing up for the free sample — If you ask for the free sample of exam questions, we store your email address, the support language you chose, the exact wording of the consent you agreed to — including your confirmation that you are at least 15 years old — when you submitted the form with the consent box ticked, and whether you later unsubscribed. Some older requests still use email confirmation. For those requests, we also store whether you confirmed the address. While you remain subscribed, we also record which messages in the series we tried to send or sent, when that happened, and the delivery reference from our email provider. We use that record to prevent duplicates and enforce the frequency limit, and delete it when you unsubscribe. As technical evidence of the signup and any later unsubscribe, we also store, for up to 30 days, a one-way hash of your IP address — a fingerprint that lets us tell two events apart, not the address itself — and your browser type. A hash is not encryption and cannot be turned back into the original, but it is pseudonymised rather than anonymous, so we still treat it as your personal data. We also keep a keyed code derived from your email address, so that after you unsubscribe we can honour it without keeping the address itself readable. Our own database keeps only a hash of each confirmation and unsubscribe link, so a working link cannot be read out of it. The working link does exist: it is in the email we send you, and it passes through our email provider, Resend, which keeps message content and delivery logs for 30 days while our account is active. A confirmation link stops working seven days after you ask for the sample. An unsubscribe link is meant to keep working, so an old email can always be used to leave. We never sell your email address.
Free-sample download link — For the free-sample download, our database stores only a SHA-256 hash of the download code, never the working code itself. The link stops working 30 days after it is issued or after three attempts to use the code, whichever comes first.
Buying the question pack (PDF) — If you buy the complete question pack as a PDF, we store the delivery email address, which edition you selected, the price and currency, which payment provider you used and its payment reference — never your full card or bank details, your Vipps account details or your PayPal login details, which stay with the provider — the exact wording of the acknowledgement you agreed to at checkout and when you agreed to it, and a fingerprint (hash) of the file we made for you. A separate PDF purchase uses the delivery address you enter and does not require an account. The B1 Pass and PDF bundle does require a signed-in account and uses the verified account email address that we show and ask you to confirm before payment. Your copy is prepared for you personally: the delivery email address and order reference are printed on every page, and the file is stored privately and can only be fetched through the link we email you. As technical evidence of the checkout and of each download we also keep, for up to 30 days, a one-way hash of your IP address and your browser type. The download link carries a code; our own database keeps only a hash of it, and the link stops working after a set number of days and downloads. The email that carries it passes through our email provider, Resend, which keeps message content and delivery logs for 30 days while our account is active.
Operational signup, sale and payment-failure alerts — When a free-sample signup is recorded or a payment for a PDF or B1 Pass and PDF bundle is verified, we queue one internal notification for the operator. A signup alert contains only a masked email address and the selected languages. A sale alert contains the order reference, edition, payment method, amount and fulfilment status. It never contains card details, payment tokens or an IP address. When payment-failure monitoring is active, it covers certain failure events verified by Stripe or PayPal; Vipps payments are not included. For a monitored failure, we store the payment provider, a SHA-256 hash of its payment or order reference, whether the source is an app payment or PDF order, an internal order or payment identifier, the product category, amount and currency, a broad reason category and the time received. The hash is pseudonymous rather than anonymous because we can compare it with a reference that may still be held in the ordinary payment or order record. This failure record never contains an email address, account ID, IP address, browser information, card or wallet details, the provider’s raw payload or full message, or its raw reference. We wait 30 minutes and check the matching payment or order record. If the payment was later captured or refunded, or there is no matching local record, we leave the event out of alerts. Otherwise, we combine it with other reportable failures in at most one internal digest per payment provider per UTC hour. The digest contains only the payment provider, total count, counts by product, amount ranges by currency and the time window; it contains no buyer or provider identifiers. Resend delivers internal alerts to the operator.

When you have an account, we record how you use the app — for example which topics you open, when you start speaking practice, and when you complete an exercise — so we can see where learners get stuck and improve the app. We only store the type of action and when it happened, linked to your account. You can object to this, and if you delete your account, this history is deleted with it.

Why we are allowed to process your data

Under GDPR Article 6, we rely on the following legal bases:

Contract — Processing necessary to deliver the service you sign up for — your account, progress tracking, and exam practice.
Legitimate interest — Improving the product, fixing problems, keeping the service secure, and monitoring selected provider-verified Stripe and PayPal payment failures so we can identify checkout problems and keep payment operations reliable. Payment-failure monitoring makes no automated decision about the buyer and does not decide whether a buyer receives access; provider-verified settlement still controls fulfilment.
Consent — Sharing microphone audio with Deepgram and transcripts with Anthropic in the mobile app; non-essential analytics; advertising measurement through Meta Pixel and Conversions API; and the MuntligB1 email series if you have asked for it. The mobile app asks before the first speech or AI transfer and keeps those features off if you decline. The cookie controls let you accept or decline optional measurement (see the Cookies section). For the email series, the consent box starts unticked and must be actively selected before the form can be submitted. The sample is then sent immediately, and every email carries an unsubscribe link.

How we use your data

  • To deliver the service: your account, saved progress, and practice history.
  • To transcribe your speech and give you feedback on your spoken Norwegian.
  • To respond to support requests, review AI feedback reports and communicate with you about your account.
  • To understand how the service is used so we can improve it.
  • To measure whether our Meta ads lead to visits, free-sample signups and verified PDF, app-pass or simulation-pass purchases, if you consent to marketing cookies.
  • To send you the MuntligB1 email series if you asked for it: the free sample of exam questions first, and then normally one or two emails per month — never more than four in a calendar month — with practice tips, news about the complete question pack and the app, and offers. The support language you choose determines which version of the sample we send. The language of the page you use determines whether the sample and later emails are written in English or Norwegian.
  • To deliver a question pack you bought as a PDF: to prepare your personal copy, email you the download link, answer support questions about the order, and keep the purchase record.
  • To monitor selected provider-verified Stripe and PayPal payment failures, distinguish them from payments that are later captured or refunded and events without a matching local payment or order, and alert the operator to checkout problems without including buyer identifiers in the alert.

Third parties who process your data

We use trusted providers and platforms to run and measure the service. Each receives only the data needed for its stated purpose. Their legal role depends on the service and the applicable terms.

ProviderPurposeRegionRetentionNotes
SupabaseDatabase, authentication, file storageEU (eu-west-3, Paris, France)Until account deletionGDPR-compliant region
Apple (Sign in with Apple)Signing you in to the iPhone app, if you choose itApple Distribution International Ltd., Ireland (EU), with transfers to the United States under Apple’s own safeguardsPer Apple’s policiesApple gives us the name and email address on your Apple Account and an identifier that is unique to MuntligB1. If you choose Hide My Email, we receive an address Apple generates and forwards from, never your own. Apple states that it does not keep a history of which apps you sign in to, or when.
Google (Google sign-in)Signing you in on the website and in the iPhone app, if you choose itUnited States, with SCCsPer Google’s policiesGoogle gives us the name, email address and profile picture on your Google Account. In the iPhone app, Google’s sign-in code runs on your device and opens Google’s own sign-in screen. This is separate from Google Analytics and does not require analytics consent.
DeepgramSpeech-to-text transcriptionEU (api.eu.deepgram.com)Not retained beyond transcriptionEvery request opts out of model-improvement use; GDPR processor, SCCs in place
Anthropic (Claude API)AI feedback on speaking exercisesUS with SCCsNormally deleted within 30 days; exceptions may applyCommercial API data is not used for model training by default
NetlifyHosting, serverless functionsUS with SCCsPer Netlify policyStandard hosting provider
ResendSending email — account and purchase messages, internal operational alerts, AI feedback reports and, if you asked for it, the MuntligB1 email seriesUS, with SCCs and the EU–US Data Privacy Framework (sending region EU/Ireland only)30 days for email and log data while our account is activeMessage content, delivery logs, webhook payloads and account records are stored in the United States
Zoho MailHosting MuntligB1’s monitored support inbox, including submitted AI feedback reportsEU data centre (MuntligB1’s Zoho EU account)Until no longer needed to investigate and respond, or earlier on a valid deletion requestA signed-in report may contain a user ID and the reported feedback text
StripePayment processing (one-time exam passes, including the B1 Pass and PDF bundle, and the question-pack PDF if you pay with Stripe)US/EU with SCCsPer Stripe policy / as required by Norwegian accounting lawWe never store full card details
Vipps MobilePayPayment processing (one-time exam passes, and the question-pack PDF if you pay with Vipps)Norway/EUPer Vipps MobilePay policy / as required by Norwegian accounting lawWe never see your bank or card details; we receive a payment reference and the amount
Apple (App Store)Selling and charging for a pass bought inside the iOS appIreland (Apple Distribution International), with transfers outside the EEA under Apple's safeguardsPer Apple policy / as required by Norwegian accounting lawWe never see your Apple Account details or payment details; we receive Apple's signed record of the purchase — a transaction number, the product, the price, the time of purchase and the account identifier the app supplied so the pass reaches the right account
PayPalPayment processing (the question-pack PDF, if you pay with PayPal)EU (PayPal (Europe), Luxembourg), with transfers to the US under PayPal's safeguards (SCCs)Per PayPal policy / as required by Norwegian accounting lawWe never see your PayPal login or card details; we receive a payment reference, the amount and the payment status
Microsoft Azure (Speech)Text-to-speech (spoken prompts/example answers)EU (Norway East), with SCCsNot retained beyond generating the audioProcesses text only
Google AnalyticsUsage analyticsUS with SCCsPer Google policyRequires consent (see Cookies section)
Microsoft ClaritySession replay analyticsUS with SCCsPer Microsoft policyRequires consent (see Cookies section)
Meta Platforms Ireland (Meta Pixel and Conversions API)Measuring visits, free-sample signups and verified purchases from Meta adsEU/US; Meta’s Global Data Transfer Addendum applies where relevantEvent Data: up to 2 years; MuntligB1 checkout matching snapshots and terminal send records: 90 daysMuntligB1 and Meta Ireland are joint controllers for relevant collection and transmission; Meta is an independent controller afterward. Requires Marketing consent. A server-side Purchase includes a SHA-256 email digest and optional Meta browser or click identifiers, never the readable email address.

International data transfers

We host your account data and audio transcription in the EU wherever possible — Supabase (database, authentication, storage) runs in eu-west-3 (Paris, France), and Deepgram transcription uses its EU endpoint.

Some providers process data in the United States: Anthropic (AI feedback), Netlify (hosting), Resend (email — see below), our analytics tools and Meta’s advertising-measurement platform. Transfers use the safeguards stated in each provider’s applicable terms, including Standard Contractual Clauses (SCCs) where relevant. Meta transfers are also governed by its Global Data Transfer Addendum where applicable.

Resend deserves a specific note, because its Ireland setting is easy to misread: it controls only the region mail is sent from. Your email address, the content of the messages we send you, their metadata and the delivery logs are stored in the United States. Those transfers are covered by Standard Contractual Clauses and by the EU–US Data Privacy Framework.

How long we keep your data

We keep your data only as long as needed:

Account and usage data — Kept until you delete your account. Deletion removes your login, profile, progress, mistakes, practice history, saved transcripts and saved AI feedback from MuntligB1. Purchase and payment accounting records — including the delivery email address, checkout acknowledgement and any later refund, reversal or dispute — may be retained for five full years after the end of the relevant accounting year, as Norwegian bookkeeping rules require. They are detached from your account. We also keep a deletion audit record containing only a one-way hash of the former account ID, the deletion time and reason, solely to demonstrate that the deletion was completed. We keep this audit record for three years after deletion and then delete it automatically. Three years is MuntligB1’s own documented policy, not a period set by Norwegian law.
Sign in with Apple link — If you sign in with Apple, we keep one token Apple gives us for as long as your account exists, and we use it for one thing only: when you delete your account, we ask Apple to remove MuntligB1 from your Apple Account. Apple requires us to make that request. If it cannot be completed at the moment you delete, the token and a one-way hash of your former account ID are kept for up to 30 more days while we try again, and are then deleted. They contain no email address and no IP address.
Audio recordings — Not stored. Sent for transcription and discarded immediately afterward.
AI feedback transcripts — Anthropic normally deletes commercial API inputs and outputs within 30 days and does not use them to train its models by default. It states exceptions for enforcing its Usage Policy (which may involve retention for up to two years), complying with law, and different retention settings agreed by contract. A transcript and its feedback may also be saved to your MuntligB1 account until you delete the account.
Submitted AI feedback reports — A report you explicitly submit is delivered through Resend to MuntligB1’s monitored Zoho support inbox. That inbox copy is not automatically erased when you delete your account. We keep it only as long as needed to investigate and respond. Email privacy@muntligb1.com to request deletion of a submitted report. Resend separately keeps the message content and delivery logs for 30 days while our account is active.
Analytics and ad-measurement data — Meta may retain Event Data from Meta Pixel and Conversions API for up to two years under its Business Tools Terms. We delete our own checkout matching snapshot and terminal Meta send record after 90 days. Google Analytics and Microsoft Clarity retain data according to the configured periods and criteria described in their policies.
Practising without an account — These answers are deleted automatically after 30 days.
Free sample sign-up — Some older requests still use email confirmation. If you never confirm your address for one of those requests, everything about the request is deleted 30 days after you first submitted it — your address, the request record, the hashed IP address and the browser information. Submitting the form again does not move that deadline. Nothing is kept, because you never consented to anything and there is nothing for us to prove. When you submit the current form with the consent box ticked, we keep your address, the consent record and the record of messages in the series while you remain subscribed. Unsubscribing stops all future emails in the series immediately, deletes that message record, and leaves the sample you were already sent usable. After you unsubscribe we remove your readable email address from the mailing record and keep only a keyed code derived from it, together with the record that consent was given and withdrawn — the minimum needed to honour your opt-out and to show both decisions if we ever have to. Our lawful basis for keeping that small record is our legitimate interest in respecting the opt-out and being able to prove it. We keep it for three years after you unsubscribe and then delete it automatically; three years is MuntligB1's own documented policy, not a period set by Norwegian law. If you want to join again later, that is a fresh signup with a fresh checked-box decision — the old consent is never switched back on. The hashed IP address and browser information we hold as technical evidence — from a request, signup, confirmation or unsubscribe — are deleted no later than 30 days after that event in every case. That 30-day period is our own policy rather than one set by law. Separately, our email provider Resend keeps the content and delivery logs of the messages it sends us for 30 days while our account is active — that is their retention policy, not ours.
Question-pack purchases — The record of a completed purchase — the delivery address, the edition, the amount, the order reference, the acknowledgement you agreed to and the fingerprint of your file — is an accounting record. We keep it for five full years after the end of the accounting year of the purchase or any later refund, reversal or dispute, in line with Norwegian bookkeeping rules. It is not deleted when a download link expires. Your personalised file is kept privately until that same retention deadline, and both the file and the order record are then deleted automatically. An order that was started but never paid is deleted whole 90 days after it was started. The hashed IP address and browser information behind a checkout or a download are deleted no later than 30 days after that event; those 30 days are our own policy, not a period set by law. If your payment is refunded or disputed, the download link stops working; a file you have already downloaded stays on your device.
Payment-failure monitoring — We automatically delete each payment-failure event record 90 days after receiving it, regardless of processing state or whether it was left out of alerts or included in a digest. We also delete each payment-failure digest record 90 days after it was created, whether it was sent, remained queued or needed manual review. Ninety days is MuntligB1’s own retention practice, not a period set by law.

Your rights

Under GDPR, you have the following rights over your personal data:

Access — Request a copy of the data we hold about you.
Rectification — Correct data that is inaccurate or incomplete.
Erasure — Request full deletion of your account and data (the 'right to be forgotten').
Restriction — Ask us to limit how we process your data.
Portability — Receive your data in a portable, machine-readable format.
Objection — Object to processing based on legitimate interest.
Withdraw consent — You can withdraw your consent to speech and AI sharing in the mobile app from Account settings; future speech and AI transfers are blocked immediately and the rest of the app remains available. You can also withdraw consent to analytics and advertising measurement and to the MuntligB1 email series at any time. Every email in the series has its own unsubscribe link; it takes effect immediately, and you do not need an account or a password to use it.
Complaint — Lodge a complaint with Datatilsynet, the Norwegian Data Protection Authority (datatilsynet.no).

To exercise any of these rights, email us at privacy@muntligb1.com. You can delete your account yourself at any time — go to your account settings and choose “Delete account”. This permanently erases your account and cannot be undone. Some records are kept, as described under “How long we keep your data”.

Cookies, analytics and advertising measurement

We use essential cookies to keep you signed in and to make the service work. These are always active and cannot be turned off.

With your consent, Google Analytics and Microsoft Clarity help us understand how the service is used, while Meta Pixel and Conversions API measure whether Meta ads lead to page visits, free-sample form completions and verified purchases. These tools may set optional cookies; Clarity may record session activity. A server-side Meta Purchase carries the verified value in NOK, product details, a unique event identifier, a SHA-256 digest of the normalized buyer email and, when available, Meta browser or click identifiers. We never send Meta the readable email address.

You control whether these tools run. The public consent banner lets you accept or decline all optional measurement, while the in-app controls also let you choose analytics and marketing separately. You can change your choice at any time by clicking “Manage cookies” in the footer. Your preference is stored for 12 months, after which we’ll ask again.

Children

MuntligB1 is not directed at children. We do not knowingly collect data from anyone under 13. If you believe a child has provided us with personal data, email privacy@muntligb1.com and we will delete it.

How we protect your data

  • Passwords are stored hashed, never in plain text.
  • All data is transmitted over encrypted connections (HTTPS).
  • Your account data and transcription are stored in EU-region infrastructure wherever possible.

Changes to this policy

We may update this policy from time to time. If we make a material change, we will notify you by email or with an in-app notice. The “last updated” date below always reflects the current version.

Contact us

For any privacy questions or to exercise your rights, email privacy@muntligb1.com.

You also have the right to contact or lodge a complaint with the Norwegian Data Protection Authority: Datatilsynet, datatilsynet.no.

Terms of Service

Last updated: 20 September 2026

Operator: Bani Younes (enkeltpersonforetak), Org. no. 934 103 424, St. Halvards gate 22, 0192 Oslo, Norway. Email: support@muntligb1.com.

1. Service

MuntligB1 is an online study aid for the oral part of Norskprøve. It is a practice aid only — not affiliated with HK-dir or any official body, and no exam result is guaranteed.

2. Accounts

You're responsible for your login and account activity; personal, non-commercial use only; don't share or resell access.

3. Tiers

Some content is open; some requires a free account; premium content requires an exam pass (a one-time purchase). We won't remove access during a pass's active period.

4. Price & passes

MuntligB1 is sold as one-time exam passes. When offered, A2–B1 Simulation Pass · 7 days and B1–B2 Simulation Pass · 7 days each cost 99 kr. They include only the corresponding exam simulation and AI feedback; training topics and PDFs are not included. The 90-day B1 Pass is 499 kr and the 90-day Full Pass is 899 kr. Prices include Norwegian MVA where applicable. A pass is a single charge — there is no subscription and no automatic renewal. You are charged once, immediately, when you buy, and access is counted from the moment of purchase for the stated 7-, 14- or 90-day period. The 14-day pass grants B1 app access, but no B2 access or PDF benefit. If the service becomes permanently unavailable during your access period, we will refund a proportional amount for any unused days. Pass payments made on this website are processed by Vipps or Stripe; we never store your full card or bank details. A pass bought inside the iOS app is sold and charged by Apple through the App Store: Apple is the seller for that purchase, Apple issues the receipt, and a refund is asked of Apple rather than of us. The price, the 90-day period and the rule that nothing renews are the same either way.

4A. Question-pack PDFs

The complete question pack is available either as a separate one-time PDF purchase at the total price shown before checkout, or as one selected language edition included at no additional charge when you buy the 499 kr B1 Pass and PDF bundle. Neither option is a subscription and neither renews. A separate PDF purchase is paid through Vipps, Stripe or PayPal. The bundle is bought from a signed-in MuntligB1 account through Vipps or Stripe, and the selected PDF is delivered to the verified account email address shown and confirmed before payment. We never receive your full bank or card details, or your Vipps-account or PayPal-login details. After payment, we prepare a personal copy with the delivery email address and order reference printed on every page and send its download link by email. The copy is licensed only for your personal, non-transferable use. When you expressly ask us to deliver it immediately and acknowledge that the right of withdrawal will be lost, the 14-day right of withdrawal falls away when delivery begins. The delivery email confirms your express request for immediate delivery and your acknowledgement that the right of withdrawal is lost when delivery begins. This does not limit your mandatory rights if the PDF is defective or not delivered as agreed.

5. Immediate access & withdrawal

MuntligB1 is a digital service. When you buy a pass, you expressly ask us to start access immediately, before the 14-day withdrawal period ends. Starting access does not by itself remove the right of withdrawal. If you withdraw after access has started, you may have to pay a proportional amount for the part of the service already provided. If the service is fully provided before the withdrawal period ends, the right ends when the agreement has been fully performed. See the Right of Withdrawal page.

6. Access & refunds

An exam pass does not renew and there is nothing to cancel — access ends automatically after the purchased 7-day, 14-day or 90-day period. No partial refunds except where required by law. Statutory consumer rights unaffected — including your right to complain about a defective digital service (reklamasjon) under the Digital Services Act (digitalytelsesloven).

7. Acceptable use

No breaking security, scraping/copying content, reselling access, or unlawful use. We may suspend accounts that do.

8. Intellectual property

All content belongs to Bani Younes or its licensors; personal non-transferable use only.

9. Liability

Provided "as is"; no guarantee of uninterrupted/error-free service or any exam outcome. Nothing limits mandatory consumer rights under Norwegian law — including your defect and complaint rights (reklamasjon) under the Digital Services Act (digitalytelsesloven). Otherwise liability is capped at what you paid in the prior 12 months.

10. Defects & complaints (reklamasjon)

MuntligB1 is a digital service covered by the Norwegian Digital Services Act (digitalytelsesloven). If the service is defective — for example, it does not work as described — you may complain (reklamere) and may be entitled to a remedy such as having the defect corrected or a price reduction. Unlike physical goods, there is no fixed two- or five-year complaint deadline; you must complain within a reasonable time after you discover the defect. These rights apply in addition to these terms and are not limited by them.

11. Changes

We may update these terms; material changes notified by email/in-app.

12. Law & complaints

These terms are governed by Norwegian law, including the Contracts Act (avtaleloven), the Marketing Control Act (markedsføringsloven), the E-commerce Act (ehandelsloven), the Right of Withdrawal Act (angrerettloven) and the Digital Services Act (digitalytelsesloven) where applicable. Contact support@muntligb1.com first. Unresolved complaints may be brought to Forbrukertilsynet or Forbrukerrådet, and a formal complaint may be lodged with Forbrukerklageutvalget. You may bring proceedings where you live in the EEA.

Right of Withdrawal (Angrerett)

Last updated: 14 September 2026

Seller: Bani Younes (enkeltpersonforetak), Org. no. 934 103 424, St. Halvards gate 22, 0192 Oslo, Norway. Email: support@muntligb1.com.

Your 14-day right

As a consumer buying a service online, Norwegian law (angrerettloven) normally gives you 14 days to withdraw, counting from when the agreement was made, without giving a reason.

What immediate access means

MuntligB1 is a digital service. At checkout, you expressly ask us to start access immediately, before the withdrawal period ends. Starting access does not by itself remove your 14-day right. If you withdraw after access has started, you may have to pay a proportional amount for the part of the service already provided. If the service is fully provided before the withdrawal period ends, the right ends when the agreement has been fully performed.

You're protected anyway

A pass is a single one-time charge — it does not renew, and there are no further charges. Access ends automatically after the purchased 7-day, 14-day or 90-day period.

How to withdraw

Email support@muntligb1.com with a clear statement. Any clear message is enough; we confirm receipt by email. You may also use the standardized withdrawal form (angreskjema) available at regjeringen.no.

Standardized withdrawal form: standard withdrawal form (angreskjema)

Refunds

Any refund due under law is processed without undue delay and within 14 days, to your original payment method. If access started at your express request, the refund may be reduced by the proportional value of the service already provided before you withdrew.

Questions

support@muntligb1.com. You may also contact Forbrukertilsynet or Forbrukerrådet, or lodge a formal complaint with Forbrukerklageutvalget. As a digital service, MuntligB1 is also covered by digitalytelsesloven (see the Terms of Service for the full list of applicable laws).