ThriftVault is a personal flip tracker for thrift resellers, operated by ThriftVault LLC. This policy explains how your data is handled when you use the app.
ThriftVault does not collect, transmit, or store any personal data on external servers.
All data you enter, item names, prices, photos, notes, and settings, is stored only on your device using local storage (AsyncStorage). Nothing leaves your device.
ThriftVault may request access to your camera and photo library so you can attach photos to the items in your vault. Photos you add are saved locally on your device. The only exception is the AI scan feature, which sends a photo to one of our third-party AI providers (Google Gemini or, as a fallback, Anthropic Claude) for analysis (see Section 4). Photos are never stored on external servers or shared for any other purpose.
ThriftVault uses Sentry for crash and error reporting. If the app crashes or encounters an error, a diagnostic report is automatically sent to Sentry's servers. This report may include device type, OS version, app version, and a stack trace. No personal data, vault contents, photos, or item details are included. Sentry is used solely to improve app stability. See Sentry's Privacy Policy for details.
ThriftVault does not use advertising networks, behavioral analytics, or user-tracking technologies. We do not know who you are or what items you track.
ThriftVault uses Google's Gemini API as the primary AI scan provider and Anthropic's Claude API as a fallback when Gemini is unavailable or overloaded. When you scan an item, the photo is sent to whichever provider is currently serving the request, Google's servers in most cases and Anthropic's servers when the fallback is triggered. Each provider may retain and process the photo in accordance with their respective API terms, which may include using it to improve their services. ThriftVault does not store your photos on any external server. No other data (vault items, prices, notes, personal info) is ever transmitted to either provider. See Google's Gemini API Terms and Anthropic's Privacy Policy for details on how each provider handles data sent to their API.
ThriftVault uses RevenueCat to manage subscriptions and in-app purchases. When you subscribe, purchase data (such as your subscription status and transaction identifiers) is processed by Apple and RevenueCat. RevenueCat may collect anonymous device identifiers to manage your entitlements. No personal information such as your name or email is shared with RevenueCat. See RevenueCat's Privacy Policy for details.
ThriftVault uses Tally to host the "Send Feedback" form in the app's Profile screen. When you submit feedback, the form contents along with your app version, platform, and current subscription tier are sent to Tally's servers. No personal information such as your name or email is shared unless you choose to include it in your feedback message. See Tally's Privacy Policy for details.
There is no backend and no account system. Network requests made by the app are limited to: the Gemini and Claude APIs (AI scans), RevenueCat (subscription management), Tally (Send Feedback form submissions), and Sentry (crash reports).
ThriftVault does not retain your data. Your vault (item names, prices, photos, notes, and settings) stays on your device until you delete it or uninstall the app. The third-party services described in Sections 3 and 4 retain the limited data sent to them only for as long as stated in their own privacy policies, linked above. We keep no server-side copy of your data to retain, export, or delete on your behalf.
If you are in the European Economic Area (EEA) or the United Kingdom, the General Data Protection Regulation (GDPR) requires us to identify a legal basis for each purpose for which data is processed by the third-party services described in Sections 3 and 4:
ThriftVault is operated from the United States, and the third-party services above (Google, Anthropic, Apple, RevenueCat, Sentry, and Tally) process data on servers in the United States. If you use the app from the EEA or the UK, data sent to these services (such as a scan photo, a crash report, subscription identifiers, or feedback you submit) is transferred outside the EEA and UK. Where required, these providers rely on the European Commission's Standard Contractual Clauses (and the UK Addendum) as the safeguard for such transfers. See each provider's linked privacy policy for the specific transfer mechanism they use.
If you are in the EEA or the UK, you have the right to access, correct, erase, port, restrict, or object to the processing of your personal data, and to withdraw consent at any time. Because ThriftVault stores your vault only on your device and keeps no server-side account, you can exercise most of these rights yourself: view and edit any item in the app, delete individual items, or uninstall the app to erase everything at once. For the limited data held by the third-party services in Sections 3 and 4, contact that provider directly using their linked privacy policy, or email us at contact@thriftvaultapp.com and we will help where we can. You also have the right to lodge a complaint with your local data protection authority.
Because all data lives on your device, it will be lost if you delete the app or switch devices without a manual backup. ThriftVault has no way to restore lost data. iCloud backup may preserve your data if you have iCloud backup enabled for your device, but this is controlled entirely by Apple and your device settings, not by ThriftVault.
ThriftVault is not directed at children under 13. We do not collect any information from children.
If this policy changes, we will update the "Last updated" date above and publish the revised policy at the same URL. Continued use of the app after a policy change constitutes acceptance of the updated terms.
This policy is governed by the laws of the State of Tennessee.
Questions about this policy? Email ThriftVault LLC at contact@thriftvaultapp.com.