1. Data controller
The publisher of CertiKeep controls the processing activities it determines:
Mathieu Gaillac, 1 rue Victor Segalen, 29600 Plourin-lès-Morlaix, France — +33 7 61 32 93 97.
Privacy contact: mathieugaillac4@gmail.com
2. Data stored only on your device
When you create a record, CertiKeep may store the following in the app’s local space:
- a photo or file of a receipt, invoice, or warranty document;
- text recognised from that document;
- the product, retailer, dates, duration, category, price, currency, serial number, and notes you confirm;
- your selected reminders and app preferences.
Text recognition runs on the device. In the version described by this policy, the publisher does not receive these documents or their contents and does not provide an account or cloud sync. Apple states that data processed only on device is not “collected” for the App Privacy label.
3. Data processed for purchases
Apple processes purchases and subscriptions through the App Store. CertiKeep uses RevenueCat to validate receipts, provide Pro entitlements, restore purchases, and measure subscription performance.
CertiKeep initializes RevenueCat without a developer-supplied App User ID. RevenueCat therefore generates and caches a random anonymous App User ID. RevenueCat may receive the Apple receipt, purchase history, subscription state, last-seen time, device type, operating system, locale, currency, ATT authorization status, and network information such as an IP address, as described in its documentation. CertiKeep’s code does not call RevenueCat login or customer-attribute APIs, supply an advertising identifier, or enable advertising-attribution APIs; automatic device-identifier collection is disabled. RevenueCat uses purchase history for receipt validation, entitlement functionality, fraud prevention, Customer History, Charts, and subscription analytics. If the build or RevenueCat integrations change, this policy and the App Privacy answers will be reviewed before release.
The publisher does not receive your card number or bank details. Read the Apple Privacy Policy and RevenueCat Privacy Policy for their practices and retention periods.
4. Local product log
CertiKeep may write limited technical events to session memory and device system logs to check the product journey. The version described here does not send them to a remote analytics service. Adding network analytics or crash reporting later would require an update to this policy.
5. Permissions
- Camera: used only when you choose to scan a document. Manual entry remains available if you decline.
- Notifications: used for the warranty reminders you schedule. You may decline or disable them in iOS Settings.
6. Purposes
Local data is used to create, display, search, edit, and remind you about your records. Purchase data is used to provide paid features, restore entitlements, prevent fraud, and produce RevenueCat subscription analytics. CertiKeep does not sell your data or use it for targeted advertising.
7. Retention and deletion
- A local record and its document remain until you delete the record or the app.
- Deleting a record cancels its associated notifications.
- Deleting the app removes its local container according to iOS behaviour.
RevenueCat keeps the transaction record for as long as the publisher uses it to manage entitlements and subscription analytics, and for any additional period required by applicable legal obligations or the publisher’s contract with RevenueCat. After a verified request through the privacy contact, the publisher can locate the record using the anonymous purchase identifier and instruct RevenueCat to delete the customer unless retention is legally required. Deleting a RevenueCat customer does not cancel an Apple subscription; Apple subscription cancellation and Apple transaction records are managed separately through the user’s Apple Account. If the app is used again while an Apple purchase remains active, RevenueCat may recreate an anonymous customer to restore the entitlement.
8. Security and sharing
Records use the app’s protected storage on iOS. You control sharing initiated through the system share sheet. No system is completely risk-free: protect your device with a passcode, Face ID, or Touch ID, and redact sensitive details before sharing a document.
CertiKeep shares data only with service providers needed for the functionality described above and requires, through applicable contractual and legal obligations, protection consistent with this policy. RevenueCat processes end-user data as the publisher’s processor.
9. International transfers
Apple and RevenueCat may process purchase data in different countries under their infrastructure and contractual safeguards. CertiKeep does not transfer local proof-of-purchase documents in the version described here.
10. Your choices and rights
You can view, correct, and delete records in the app, revoke camera or notification access in iOS, and manage your subscription through your Apple account. For a request concerning purchase data processed for CertiKeep, use the privacy contact above. The publisher will respond under applicable law after reasonable verification.
11. Children
CertiKeep is a general utility and is not designed to knowingly collect children’s data. No account is requested. A parent or representative may use the privacy contact to report a concern.
12. Changes
The version date at the top of this page will change if the practices materially change. Additional notice will be provided in the app when required by law.
13. Related pages
Read our support page and terms of use.