Privacy Policy

Anntique for iOS · Effective 15 September 2026

Anntique identifies a photographed object, finds comparable listings, and estimates what it is worth. This page describes exactly what data that requires, where it goes, and what is kept.

Your identifier

Anntique has no sign-in screen and no user accounts. Instead, before the paywall and before your first scan, the app asks the App Store for a signed proof of your purchase of this app ("AppTransaction") and sends it to our server, which verifies Apple's signature on it. From that proof we learn only a pseudonymous, per-app identifier Apple assigns to your Apple Account's copy of Anntique — the same kind of identifier games commonly use to keep your progress and purchases together across devices. We do not request or receive your name, email address, or any other Apple Account identifier. We do not ask for or collect your phone number, contacts, or precise location. Anntique contains no analytics, no advertising, and no third-party tracking of any kind. No advertising identifier is read, and no data is used to track you across other companies' apps or websites.

Photographs

To identify an object, the photographs you choose are sent to our server and from there to our AI provider for analysis. Before any photograph leaves your device it is downscaled, re-encoded, and stripped of all embedded metadata — including EXIF, GPS coordinates, and TIFF tags. Location data recorded by your camera therefore never leaves your device.

Photographs, any on-device text recognition (OCR) hints, notes you add, and the AI's raw response are processed only to answer that one request. None of them are written to disk or to logs on our server, none are retained afterwards, none are used to train models, and none are ever sold or shared with advertisers. The only thing our server keeps from a scan is the structured, schema- validated result described below.

What stays on your device

Your scan history — the photographs, the identification result, and any note you add — is stored only on your device. It is not uploaded to us and it is not synchronised between devices. Deleting a scan in the app, or deleting the app, removes it.

What our server stores

Because Anntique has paid scans but no user accounts, our server keeps the following. It never contains your photographs, OCR text, notes, or the AI's raw response:

DataWhy
The pseudonymous App Store identifier described above, and a server-generated wallet identifier for it — no name or email To attach your purchases and remaining scans to the same wallet, so they survive reinstalling the app or moving to another device signed into the same Apple Account.
Purchase records reported by Apple (transaction identifiers, product purchased, dates, refund/revocation state), and a ledger of scan units bought and spent To know how many scans you have left, and to avoid charging the same scan twice or crediting the same purchase twice.
Metadata about each scan (scan and round identifiers, timestamps, and a digest of the request), but not the request's content To let a scan safely resume or be retried after a dropped connection or a follow-up photo, without charging you twice.
The structured identification result of a scan, for at most 24 hours or until the app confirms it has received it, whichever comes first So a scan you already paid for can still reach your device if the app was closed before the result arrived.
Your device's push notification token (APNs) To let us notify your device when a scan's result is ready. Removed when you replace it or ask us to delete it.

Our server also keeps operational logs (event names, timestamps, error types, and similar technical metadata — never photographs, OCR text, notes, or AI responses) for a limited period, normally no more than 30 days, used to operate, debug, and secure the service.

Who else processes your data

Retention

Children

Anntique is not directed at children and does not knowingly collect information from them.

Deleting your data

Because there is no user account, there is nothing to delete from within the app beyond your own device's scan history (see "Your choices" below). To have the server-side data described in "What our server stores" deleted — your pseudonymous wallet identifier, push token, and scan metadata — contact us at the address below and we will remove it. Purchase records and the scan-unit ledger are kept regardless, as described under "Retention" above, for accounting, fraud-prevention, and refund handling. Deleting this data does not cancel an active subscription — subscriptions are managed entirely in your Apple Account's subscription settings (Settings › your name › Subscriptions on your device, or in the App Store), and you must cancel there separately to avoid being charged again.

Your choices

Scan history lives on your device: you can delete individual scans or all of them in the app, or remove everything by deleting the app. To ask about your server-side data or the purchase and ledger records described under "Retention" above, contact us at the address below.

Changes

If this policy changes materially, the effective date above will change and the updated policy will be published here before the change takes effect.

Contact

support@uagency.dev