Legal · Document 02 of 02
Privacy Policy
What the apps collect, why they need it, who else sees it, and how to make it all go away.
The short version
I don't sell your data. I don't use it for advertising. I don't track you across other companies' apps and websites. What the apps collect exists to make the features work.
The longer version below explains each category in detail, because "we care about your privacy" is not a policy. If anything here is unclear, ask me and I'll answer plainly.
Who is responsible
I am Hoang Minh Duc, an independent app developer, and I'm the data controller for the apps this policy covers. There is no company, no data team, and no third-party support desk behind this — questions come to me directly at binggu1996@gmail.com.
What this policy covers
This policy applies to every mobile application published on the App Store under the developer name Hoang Minh Duc, and to this website. Throughout this document they are referred to as "the apps".
Apps differ, and none of them collects everything described here. A section applies to an app only where that app has the feature in question: an app without maps never asks for your location, and an app without accounts never asks for an email address. Each app's App Store listing carries a privacy summary showing what that specific app collects, and iOS asks your permission before any sensitive data is used.
What is collected
An overview of the categories. The sections that follow go into detail.
| Category | Examples | Why | When it applies |
|---|---|---|---|
| Account details | Email address, display name, sign-in identifier | To sign you in and restore your content across devices | Apps with accounts |
| Content you create | Text you write, prompts, notes, saved items, uploads | To store your work and produce what you asked for | Apps that save your work |
| Location | Approximate or precise position, saved places | To show what's around you and provide location features | Apps with maps or location |
| Photos and media | Images or audio you choose to attach | To store them with the entry you attached them to | Apps that accept media |
| Purchase status | Whether a subscription is active, product identifiers | To unlock paid features and restore purchases | Apps with paid features |
| Diagnostics | Crash logs, error traces, performance data | To find and fix bugs | All apps |
| Usage data | Which screens and features are opened, session counts | To understand what's used and what to improve | All apps |
| Device data | Device model, OS version, language, region, app version | To support devices correctly and diagnose issues | All apps |
The apps do not collect contacts, health data, or browsing history, and they never collect payment card details — those go to Apple and never reach me.
Information you provide
This is anything you type, record, or upload while using an app, plus whatever you write when you email me for support.
Content you keep private stays associated with your account and is not shown to other users. Content you deliberately publish through a sharing or community feature becomes visible to others, along with the display name you chose.
Location data
Apps with maps or location features only. An app asks for location permission the first time it needs it, and iOS controls what you grant. If you decline, the app keeps working — you'll enter or search for places manually instead.
- Location is used to show what's near you, provide navigation where an app offers it, and fetch information relevant to where you are.
- Places you deliberately save keep their coordinates, because that's the point of saving them.
- Background location is only used if you enable a feature that needs it, and you can revoke that at any time in Settings → Privacy & Security → Location Services.
- Location is not sold, and is not shared with advertisers.
Photos, camera, and microphone
Apps with these features only. Access is requested at the moment you use a feature that needs it — attaching an image, taking a photo, recording audio — and an app only reaches the items you select. Media you attach is stored with the entry it belongs to so it's there next time, and it is not scanned for anything else.
Notifications
If you allow notifications, Apple issues a device token that lets an app send you messages. The token identifies a device, not you personally, and is used only to deliver notifications from that app. Turn them off any time in Settings → Notifications.
How AI features handle your content
Apps with AI features only. These features can't run entirely on your device. When you ask an app to generate or analyse something, the necessary input is sent over an encrypted connection to an AI provider, which returns the result.
- Only what's needed for the request is sent — typically your input and its immediate context, not everything you've stored.
- Requests are sent under my developer account, not under your name.
- AI providers may retain requests briefly for abuse monitoring and reliability, under their own terms.
- I do not use your private content to train AI models, and I do not sell it.
If you'd rather not have something processed by an AI provider, don't put it into a request.
Purchases and subscriptions
All payments run through Apple's In-App Purchase system. Apple processes the payment and stores your billing details; I never see your card number, address, or full Apple Account details.
What I receive is the state of your entitlement — whether a subscription is active, which product was bought, and when it expires — so the app can unlock paid features and restore purchases on a new device.
Analytics and crash reports
The apps collect aggregated usage and crash data so I can tell which features matter and what's broken. This covers screens opened, feature usage counts, session length, app version, device model, and OS version, plus stack traces when something crashes.
This data is used in aggregate to improve the apps. It is not used to build an advertising profile of you and is not sold. You can also turn off Apple's own sharing in Settings → Privacy & Security → Analytics & Improvements.
Service providers
Running apps alone still means relying on other companies. These are the categories of provider involved, and what each one handles. Not every app uses every category.
| Provider | Role | Data involved |
|---|---|---|
| Apple | App distribution, payments, sign-in, push notifications | Purchase and subscription status, device tokens |
| Google (Firebase) | Hosting, database, authentication, crash reporting, analytics | Account details, stored content, diagnostics, usage events |
| AI model providers | Generating and analysing content on request | The input and context needed for each request |
| Data providers | Maps, forecasts, and other reference data, where an app uses them | The parameters needed to return data, such as coordinates |
Each provider may only use the data to deliver its service to me. None of them are permitted to sell it. I may add or change providers as the apps evolve; this list will be updated when that happens.
Tracking and advertising
The apps do not show third-party advertising and do not track you across apps and websites owned by other companies. If a future feature ever required that, iOS would ask for your permission first through App Tracking Transparency, and declining would remain a real option.
Legal bases for processing
If you're in the EEA or the UK, the GDPR requires a legal basis for each kind of processing. Mine are:
- Performance of a contract — running your account, storing your content, delivering paid features.
- Consent — location, photos, microphone, and notifications, each requested through an iOS permission prompt you can withdraw at any time.
- Legitimate interests — keeping the apps secure, preventing abuse, fixing crashes, and understanding aggregate usage.
- Legal obligation — where a law requires records to be kept or information to be produced.
How long data is kept
- Account and content: kept while your account is active, and deleted when you delete your account or ask me to.
- Backups: deleted content can persist in encrypted backups for up to 30 days before being overwritten.
- Diagnostics and analytics: typically retained for up to 14 months, then removed or fully anonymised.
- Purchase records: kept as long as tax and accounting rules require.
- Support emails: kept while relevant to your issue and for a reasonable period afterwards.
How data is protected
Data travels over encrypted connections (HTTPS/TLS) and is stored on infrastructure operated by the providers listed above, with access limited to me. Content you keep locally is protected by your device's own encryption and passcode.
No system is perfectly secure, so I won't claim otherwise. If a breach affects your personal data, I'll notify you and the relevant authority as required by law.
Children
The apps are not directed at children under 13, and I don't knowingly collect personal data from them. Age ratings on the App Store describe an app's content, not the ability to consent to data processing.
If you're a parent or guardian and believe a child has provided personal data, email me and I'll delete it promptly.
International transfers
I'm based in Vietnam, and the providers above operate servers in several countries, including the United States and the European Union. Using the apps means your data may be processed outside your own country.
Where personal data leaves the EEA or the UK, transfers rely on the safeguards the relevant provider has in place, such as Standard Contractual Clauses.
Your rights
Depending on where you live, you may have the right to:
- Access the personal data held about you, and get a copy of it.
- Correct data that's wrong or incomplete.
- Delete your data ("right to be forgotten").
- Restrict or object to certain processing.
- Withdraw consent — for location, media, or notifications, directly in iOS Settings.
- Receive your data in a portable, machine-readable format.
- Complain to your local data protection authority.
Californian residents additionally have the rights described in the CCPA/CPRA, including the right to know what is collected and to opt out of the sale or sharing of personal information. I don't sell or share personal information as those laws define it, and exercising any of these rights will never result in worse service.
To exercise a right, email binggu1996@gmail.com from the address linked to your account. I'll respond within 30 days.
Deleting your data
Two ways to do it:
- In the app — where an app has accounts, deleting your account in its settings removes the account and its stored content.
- By email — write to binggu1996@gmail.com from your account address with the app name and a request to delete. I'll confirm once it's done, normally within 30 days.
Deleting an account removes your stored content and profile. Anonymised aggregate statistics that can no longer identify you, and records I'm legally required to keep such as purchase history, remain.
Deleting an app from your device doesn't delete server-side data by itself, and it doesn't cancel a subscription — cancel that in Settings → your name → Subscriptions.
Changes to this policy
This policy will change as the apps do. The effective date at the top always reflects the current version, and material changes will be announced in the app or by email where I have your address. Continuing to use the apps after an update means you accept the revised policy.
Contact
Privacy questions, requests, or complaints go straight to me:
Hoang Minh Duc — independent app developer, Vietnam. See also the Terms of Use.