RedactIt
LEGAL / PRIVACY

Privacy Policy

Last updated: June 8, 2025 · Effective: June 8, 2025

RedactIt is built on the principle that your sensitive data should never leave your control. This policy explains exactly what we collect, how we use it, and your rights.

1. What We Collect

We collect only what is necessary to provide the RedactIt service:

  • Account information — name and email address when you create an account via Google Sign-In or email.
  • Scan records — the text you submit for scanning is transmitted to Google Gemini API solely to perform detection and redaction. We do not permanently store the raw input text on our servers. Scan results (detected entity types, redaction summary, timestamps) are stored to power your scan history.
  • Usage data — anonymized analytics such as scan counts, feature usage, and crash reports to improve the app.
  • Subscription data — purchase status managed by RevenueCat. We never store your payment card details.

2. How We Use Your Data

  • To authenticate you and maintain your session.
  • To process your scan requests through Google Gemini and return redacted results.
  • To persist your scan history on-device across app closes, relaunches, and extended inactivity. Cloud account recovery is planned for a future update.
  • To enforce free-tier limits (5 scans/day) and premium entitlements.
  • To diagnose bugs and improve app performance.

We do not sell your data to third parties, use it for advertising, or share it with anyone except as described in this policy.

3. Google Gemini API

Text you submit for scanning is sent to the Google Gemini API to detect and redact PII/PHI. Google processes this data under its own privacy terms. We recommend you review Google's Privacy Policy . We do not send any identifying account information alongside scan text.

4. Data Storage & Security

Scan history and account data are stored in a secured PostgreSQL database. Data is encrypted in transit (TLS) and at rest. Access is restricted to authorized services only.

We retain scan history records for as long as your account is active, or until you delete them. You can delete individual records or your entire history at any time from within the app.

5. RevenueCat & Subscriptions

In-app subscription purchases are handled by Apple's App Store and managed via RevenueCat. We receive only your subscription status and entitlements — never your payment details. RevenueCat's privacy policy is available at revenuecat.com/privacy.

6. Your Rights

  • Access & export — you may request a copy of your stored data.
  • Deletion — you may request full account and data deletion at any time.
  • Correction — you may update your account information through the app settings.

To exercise any of these rights, visit our support page.

7. Children's Privacy

RedactIt is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us data, please contact support and we will delete it promptly.

8. Changes to This Policy

We may update this policy from time to time. We will notify you of material changes via the app or by email. Continued use after the effective date constitutes acceptance of the updated policy.

9. Contact

Questions about this policy? Visit our support page or reach out through the app.

Privacy questions are welcome. We believe clear policies are part of a trustworthy product.