Privacy Policy
Effective: July 19, 2026 · applies to the BoltSnap iOS app and boltsnap.app
The short version: your photo is sent to an AI service once, to identify the part —
then it's gone. BoltSnap does not store scan or donated photos on its servers in the
technical beta. We don't sell data. We don't run ads.
1. What the app processes
- Part photos. When you scan, the photo is transmitted securely to our AI processing
provider (Anthropic) to identify the part, and the structured answer comes back. The photo is
processed for this request and is not stored on our servers. Photos you save in
"My Parts" live locally on your device only.
- Optional recognition contribution. Each saved part has an off-by-default switch that
prepares one photo plus your engineer-confirmed answer in a local export queue. The beta does
not upload this queue automatically. Turning the switch off or deleting the part removes its
queued copy; an export leaves the device only when you explicitly share it.
- Technical telemetry. Product events stay in local Apple unified logs while remote
analytics is disabled. The API receives a random install identifier only to enforce a daily
fairness limit. Cloudflare operational logs contain bounded status, latency, model/version and
token counts, but not that identifier, image bytes, labels, model answers, names or contacts.
- Purchases. The first technical beta is free and contains no subscription or purchase
path. Apple processes only normal App Store/TestFlight distribution data.
2. What we do NOT do
- No selling or renting of personal data. Ever.
- No advertising networks or trackers in the app.
- No accessing your photo library beyond the pictures you take or pick for a scan.
- No precise location collection.
3. Service providers
The technical beta uses Anthropic for one-request AI image analysis,
Cloudflare for website/API hosting and privacy-limited operational telemetry, and
Apple for iOS/TestFlight distribution. PostHog analytics, RevenueCat and subscriptions are
not active. If that changes, this policy and the App Store privacy disclosures will be updated first.
4. Data retention
- Scan photos: not retained on our servers after processing.
- "My Parts" entries: on your device, until you delete them or the app.
- Optional contribution queue: on your device until you revoke it, delete the part/app, or
explicitly export it. BoltSnap has no automatic server copy in this beta.
- Local product events: retained by the operating system according to its log policy.
- Cloudflare operational telemetry: retained according to the configured Cloudflare account
policy and excludes image bytes, recognition answers and the install identifier.
5. Your choices
- Scanning is always opt-in — the camera runs only on the scan screen.
- Photo donation is per-photo and off by default.
- Deleting the app deletes all locally stored parts and photos.
6. Your rights & contact
Depending on where you live (GDPR, CCPA and similar), you may have rights to access, correct or
delete your data. Device-only saved parts and contribution queues are controlled directly in the
app. For any other privacy request, email
[email protected]. We answer within 30 days, usually much faster.
7. Changes
If this policy changes materially, we'll update this page and the effective date above.