Privacy Policy
Last updated 2026-05-19Photodrift is built so that this policy can be short. We do not collect any data about you or your photos. Everything happens on your iPhone. This page exists so the contract is explicit.
What we collect
Nothing. The privacy nutrition label in the App Store reads "Data Not Collected". That is accurate.
- No name, email, phone number, or other contact information.
- No analytics. No crash reports that phone home. No SDK that tracks usage.
- No advertising identifiers. No cookies (this website doesn't set any).
- No location, no contacts, no calendar, no microphone, no camera.
What stays on your device
When you scan your library, the entire pipeline runs on your iPhone using Apple's Vision framework. This includes:
- Feature prints (perceptual hashes) for near-duplicate detection.
- Laplacian variance for blur scoring.
- Asset metadata (creation date, dimensions, byte size) for instant duplicate matching.
Feature prints are cached locally on your device so re-scans are faster. You can clear that cache anytime from Settings → Diagnostics. None of this is sent off the phone. When you swipe-left to trash, the deletion is handed to PhotoKit — iOS shows the standard "Delete N photos?" confirmation, and the photos go to Recently Deleted where they're recoverable for 30 days.
Permissions we ask for
- Photo library read & write (so we can scan your library and stage deletions). Granting "Full Access" gives you the best scan coverage; "Limited Access" works too but will only scan the photos you've selected.
That's the only iOS permission Photodrift requests.
In-app purchases
Photodrift offers one in-app purchase: Photodrift Pro for $9.99, a one-time non-consumable that unlocks all detection categories (near-duplicates, blurry shots, screenshots) and the full-library deep scan.
- StoreKit handles the transaction. Photodrift never sees your Apple ID, payment method, or any personally identifiable receipt content — Apple handles the purchase flow entirely on-device through StoreKit 2.
- The unlock flag lives on your device. Photodrift stores a single boolean ("is paid?") in your local app preferences. That's it — no entitlement server, no user account.
- Restore purchase works on any device signed into the same Apple ID. Settings → Premium → Restore purchase. This uses Apple's standard StoreKit restore — again, we see nothing beyond the boolean result.
Third-party services
- Apple Vision, PhotoKit, and StoreKit frameworks. These are on-device system APIs. The IAP request goes from your device to Apple — Photodrift doesn't have its own backend.
- Firebase Hosting. This website (the one you're reading) is served by Firebase Hosting. Standard server logs (IP address, user agent, requested URL, timestamp) are kept by Google for operational purposes. We do not set any cookies or analytics tags on the site itself.
The Photodrift iOS app has no analytics, no crash reporting that calls home, and no networking outside what StoreKit needs for the IAP. This is auditable — any meaningful change would require an App Store update.
Children
Photodrift is not directed at children under 13 and does not knowingly collect any data from anyone. The app is rated 4+ in the App Store because it has no objectionable content, not because it's targeted at children.
Your rights
Because we do not collect data, there is no data of yours we hold or process. There is no account to delete, no export to request. If you delete the app, all local state goes with it — including the feature print cache, your "Pro" unlock flag, and any in-progress swipe session. To re-unlock Pro on a fresh install, use Restore Purchase.
Changes to this policy
If we change anything material about what data the app collects or how it processes photos, we'll update this page, change the "Last updated" date at the top, and bump the in-app version notes so existing users see the change before opening the app.
Contact
Questions? Concerns? Email support@suprun.ca. This is a small project run by one person — replies usually within a day or two.