Privacy Policy
Last updated: 2026-10-03
In short
- The free version needs no account. Your records, photos and recognized text stay on this device and are never uploaded to our servers.
- An account is needed only to verify a Premium subscription. The server then stores only your sign-in details, device list and subscription status.
- The free version shows Google ads. We do not pass your records, photos or recognized text to ads.
- Text recognition runs on the device. Google ML Kit does send usage statistics (device and performance information, not photo content) to Google.
- This version has no cloud sync and uploads no user content.
This policy explains, based on how the app actually works, how Keepin 1.0.0 (the “app”), made by WEFTWARE (the “developer”), handles information. It is not legal advice, and we will update it when the app changes.
1. What stays on your device
- Records (product, store, amount, dates, notes, tags), receipt and document photos and PDFs, recognized text, app settings and reminder settings.
- These are kept in the app’s private storage. Creating an account does not upload them.
- CSV/PDF exports and encrypted backup files go only where you send them with the share sheet. The app does not add its own database encryption and relies on the device’s lock and encryption. Optional app lock (Premium) and hiding notification content are available.
- The app does not read your whole photo library — only the photos and files you pick.
2. What the server stores if you create an account
An account is used only to verify Premium; it is not needed for the free version.
| Information | Purpose | Processed by |
|---|---|---|
| Email, sign-in ID, password (stored only as a hash) | ID/email sign-up and sign-in, sending verification emails | Supabase (auth), Resend (email delivery), Cloudflare (API) |
| Apple / Google / Kakao sign-in identifier; the email the provider returns (only if it does — Kakao’s email is not requested, and Apple may give a private relay address); the name, nickname or profile photo URL the provider returns | Social sign-in. The app does not display or use the name or photo | Supabase (auth), the sign-in provider |
| Registered devices (up to 3): device identifier, platform, last seen | Limiting devices per account, sign-out and removal | Supabase (database) |
| Subscription data: product, original transaction ID, expiry, refund/revocation status | Verifying Premium, restoring purchases, reflecting renewals and cancellations | Apple / Google, Cloudflare (API), Supabase |
- We do not store IP addresses of API requests; rate limiting uses only an irreversible hash. Auth tokens are not stored.
- Payment details (such as card numbers) are handled by the App Store / Google Play; neither the app nor the developer can see them.
3. Ads (free version)
- The free version uses Google Mobile Ads (AdMob). When an ad is requested, device identifiers such as the advertising ID, approximate location derived from the IP address, ad interactions and diagnostics go to Google for ad delivery, measurement and fraud prevention.
- On iOS the app does not show the App Tracking Transparency prompt, does not track you with the advertising identifier (IDFA), and sends non-personalized ad requests.
- In regions that require consent (EEA, UK, Switzerland and others), Google’s consent form is shown first, and you can change your choice under More > Ad privacy options.
- Premium loads no ads.
4. Text recognition (Google ML Kit)
Text in photos is read on the device with the Google ML Kit model bundled in the app. Photos and recognized text are not sent to Google. ML Kit does send usage statistics (device and app information, an installation identifier, processing time, image size and format, error codes) to Google to improve the feature and diagnose errors. This applies to both Free and Premium.
5. Permissions
- Notifications: asked when you set your first reminder. Notification content is created on the device.
- Camera: asked when you tap to take a photo.
- Biometrics (Face ID etc.): asked when you turn on app lock. The operating system handles biometric data; the app only receives success or failure.
- The app keeps working if you decline a permission.
6. Retention and deletion
- Deleting a record also deletes its attachments, recognized text and scheduled reminders. More > Delete all removes all data on the device, and uninstalling the app removes the app’s data.
- You can delete your account in the app. After you request it, your sign-in data, device list and subscription link on the server are deleted within 7 days. Records on your device remain. Cancel the subscription separately in the App Store / Google Play.
- Device backups such as iCloud or Google are handled by the operating system under your account.
- If a law requires us to keep certain information (for example purchase or tax records), we keep it only for that period.
7. Service providers and international transfers
The app uses Supabase (authentication, database), Cloudflare (server API), Resend (authentication email), Google (ads, ML Kit), Apple and Google (payments, sign-in) and Kakao (sign-in). These services may run servers outside your country. We do not use or sell information for purposes beyond those listed above.
8. Children
The app is not directed to children. If we learn we received a child’s information, we delete it.
9. Your choices and contact
You can ask to access, correct or delete your account data from the in-app account screen or at support@weftware.com. Privacy contact: WEFTWARE (support@weftware.com).
10. Changes
When this policy changes we update the date above, and mention important changes in the app’s release notes.