SwipeTidy

Privacy Policy

Updated: December 2025

We respect your privacy and are committed to protecting your personal data. Here's what you need to know about how we protect your privacy:

  • Your photos never leave your device—SwipeTidy works entirely on your phone. We never upload, access, or store your photos on any external servers.
  • No ads, no tracking—we don't serve ads or track you across other apps.
  • Authentication is minimal—we use Clerk for secure sign-in, storing only what's essential for your account.
  • You're in control—you decide which photos to keep or delete. Nothing is permanently removed without your explicit confirmation.
  • Local-first by design—all sorting, progress, and swipe decisions are stored on your device.

This privacy policy explains how we handle your personal data when you use SwipeTidy (the "App") and tells you about your privacy rights and how the law protects you.

01

Important Information and Who We Are

Purpose of This Privacy Policy

in short

We only collect and use your data when it's necessary—whether to provide you with services, comply with the law, protect your rights, or meet our business obligations. We'll always be transparent about how we handle your data.

This privacy policy explains how SwipeTidy processes your personal data through your use of our App, including any data you may provide when creating an account or using our features.

Our App is designed to help you organize and declutter your photo library through an intuitive swipe-based interface. All photo processing happens locally on your device—we never access, view, upload, or store your photos on our servers.

It is important that you read this privacy policy together with any other notices we may provide when collecting or processing personal data, so you are fully aware of how and why we use your data.

Data Controller

in short

SwipeTidy is responsible for keeping your data safe. We use industry-standard security for authentication, but your photos and swipe decisions remain private on your device.

SwipeTidy is the data controller responsible for the personal data described in this privacy policy.

If you have any questions about this privacy policy, including any requests to exercise your legal rights in relation to your personal data, please contact us:

Email: brittjamesg@gmail.com

You have the right to make a complaint at any time to the relevant data protection authority in your jurisdiction. We would, however, appreciate the opportunity to address your concerns before you approach a regulator—please contact us first.

Changes to This Privacy Policy

We keep our privacy policy under regular review. Any updates will be posted on this page. It is important that the personal data we hold about you is accurate and current. Please keep us informed if your personal data changes during your relationship with us.

Third-Party Links

Our App may include links to third-party websites, services, or applications. Clicking on those links may allow third parties to collect or share data about you. We do not control these third-party services and are not responsible for their privacy statements. We encourage you to read the privacy policy of every service you interact with.

02

The Data We Collect About You

Types of Data

in short

We collect basic account information (like your email) when you sign up. Your photos never leave your device—all decisions and preferences are stored locally. We may collect anonymous usage data to improve the app.

Personal data, or personal information, means any information about an individual from which that person can be identified. It does not include data where the identity has been removed (anonymous data).

We may collect, use, store and transfer different kinds of personal data about you which we have grouped together as follows:

– Identity Data includes your email address and authentication identifiers. If you sign in with Google, Facebook, or Apple, we receive only basic profile information (such as your name and email) from those providers—never your passwords.

– Contact Data includes the email address you use to create your account or sign in via social providers.

– Technical Data includes your device type, operating system version, app version, and crash/error reports if you opt in. This helps us diagnose issues and improve app stability.

– Usage Data includes anonymous, aggregated information about how you interact with the app (e.g., features used, session duration). This data cannot identify you personally and helps us understand how to improve SwipeTidy.

We also collect, use and share Aggregated Data such as statistical or demographic data for any purpose. Aggregated Data could be derived from your personal data but is not considered personal data in law as this data will not directly or indirectly reveal your identity. However, if we combine or connect Aggregated Data with your personal data so that it can directly or indirectly identify you, we treat the combined data as personal data which will be used in accordance with this privacy policy.

We do not directly collect any Special Categories of Personal Data about you (this includes details about your race or ethnicity, religious or philosophical beliefs, sex life, sexual orientation, political opinions, trade union membership, information about your health, and genetic and biometric data). We do not collect any information about criminal convictions and offences.

What We Do NOT Collect

Your photos and videos — We never upload, access, or store your media files on our servers. All photos remain on your device.

Location data — SwipeTidy does not request or use your location.

Contacts or address book — We never access your contacts.

Browsing history — We do not track your activity outside the app.

Third-Party Authentication

When you sign up or sign in using Google, Facebook, or Apple, we use Clerk as our authentication provider. These services share limited profile information with us (typically name and email) according to your permissions. We do not receive or store your passwords from these services.

If You Fail to Provide Personal Data

Where we need to collect personal data by law, or under the terms of a contract we have with you, and you fail to provide that data when requested, we may not be able to perform the contract we have or are trying to enter into with you (for example, to provide you with our services).

03

How Is Your Personal Data Collected

Collection Methods

We use different methods to collect personal data from and about you including through:

— Direct interactions. You may provide us with Identity and Contact Data when you:

  • Create an account using email or Apple Sign-In
  • Contact us for support via email
  • Subscribe to our communications or marketing updates

— On-device storage. When you use SwipeTidy, certain data is stored locally on your device and never transmitted to our servers:

  • Your photo library metadata (filenames, dates, dimensions) used to display and organize photos within the app
  • Your swipe decisions (kept/discarded) and review progress
  • App preferences and settings
  • Authentication session tokens (stored securely in iOS Keychain / Android Encrypted SharedPreferences)

— Third-party authentication services. When you sign in using Apple Sign-In or email-based authentication, our authentication provider (Clerk) may collect limited Identity Data to verify your account. Clerk's data handling is governed by their privacy policy.

— Automated technologies. We do not use tracking cookies, advertising identifiers, or cross-app tracking. We do not collect analytics or usage data unless explicitly disclosed in future updates to this policy.

04

How We Use Your Personal Data

Legal Basis

We will only use your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:

– Where we need to perform the contract we are about to enter into or have entered into with you.

– Where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests.

– Where we need to comply with a legal obligation.

Generally, we do not rely on consent as a legal basis for processing your personal data although we will get your consent before sending direct marketing communications to you via email or text message. You have the right to withdraw consent to marketing at any time by contacting us.

Purposes for Which We Will Use Your Personal Data

1. To register you as a new user

  • Type of data: Identity (email address) and Contact data
  • Lawful basis: Performance of a contract with you
  • How it works: When you sign up for SwipeTidy using email, Google, Facebook, or Apple Sign-In, our authentication provider (Clerk) collects and stores your email address to create and manage your account. Your authentication tokens are stored securely on your device.

2. To operate and provide our Services

  • Type of data: Technical data (device type, app version) and Usage data (app interactions, preferences)
  • Lawful basis: Performance of a contract with you; Necessary for our legitimate interests (to deliver and improve our services)
  • How it works: SwipeTidy accesses your device's photo library with your explicit permission to display photos for sorting. Your photos never leave your device—all processing happens locally. Your sorting decisions (kept/discarded photo IDs), preferences (haptics, sort order), and progress are stored exclusively on your device using secure local storage.

3. To manage our relationship with you

  • Type of data: Identity and Contact data
  • Lawful basis: Performance of a contract with you; Necessary to comply with a legal obligation; Necessary for our legitimate interests (to keep our records updated)
  • How it works: We may use your email address to notify you about important changes to our terms or privacy policy, service disruptions, or security issues affecting your account.

4. To improve our Services and user experience

  • Type of data: Anonymous Technical and Usage data
  • Lawful basis: Necessary for our legitimate interests (to understand how users interact with the app, identify issues, and develop improvements)
  • How it works: We may collect anonymized, aggregated data about app usage patterns—such as which features are used most frequently or common error states—to help us improve SwipeTidy. This data cannot be used to identify you personally.
05

Disclosures of Your Personal Data

Who We Share Data With

in short

We may share your data with trusted partners who help us run our business (like authentication providers or professional advisers) or when required by law. Your photos never leave your device, and any partners we work with are bound by strict confidentiality and security rules.

When required for the purposes stated above, we may share your personal data with:

1. Authentication service providers — We use Clerk to manage user accounts and authentication. Clerk processes your identity data (such as email address and name) solely to provide secure sign-in functionality. Clerk is bound by their own privacy policy and data protection obligations.

2. Professional advisers — including lawyers, accountants, auditors, and insurers who provide us with legal, financial, or insurance services.

3. Government authorities and regulators — such as tax authorities, law enforcement, or data protection regulators in applicable jurisdictions, when required by law or to protect our legal rights.

4. Anonymous analytics providers — We may use analytics tools to collect anonymized usage data (such as app feature usage, crash reports, and performance metrics) to improve SwipeTidy. This data cannot identify you personally and never includes your photos, photo decisions, or account credentials.

5. Third parties in business transfers — If SwipeTidy is sold, merged, or transfers assets to another company, your personal data may be transferred to the new owners. They would be required to use your data in accordance with this privacy policy. We will notify you of any such change.

Important: Your photos, swipe decisions, and library data are stored only on your device and are never uploaded to our servers or shared with any third party.

We require all third parties to respect the security of your personal data and to treat it in accordance with the law. We do not allow our third-party service providers to use your personal data for their own purposes and only permit them to process your personal data for specified purposes and in accordance with our instructions.

06

Data Security

How We Protect Your Data

in short

We take your data security seriously. Your photos never leave your device, and we use industry-standard security measures to protect any personal information we do collect. If a data breach occurs, we'll inform you and the relevant authorities as required.

Your Photos Stay Private

SwipeTidy operates on a privacy-first model. Your photos and videos are accessed locally on your device using the native media library and are never uploaded, transmitted, or stored on our servers. All photo decisions (keep, delete, organize) happen entirely on your device.

Authentication Security

We use Clerk, a trusted third-party authentication provider, to securely manage your account. When you sign in using Google, Facebook, Apple, or email/password:

  • Your credentials are handled directly by Clerk and the respective OAuth providers
  • We never see or store your passwords
  • Authentication tokens are stored securely on your device using encrypted storage (SecureStore)
Local Data Protection

Any app settings and preferences you configure are stored locally on your device using encrypted secure storage. This includes:

  • Your app preferences (haptics, sort order, confirmation settings)
  • Your session authentication tokens
  • Your photo organization progress
Access Controls

We limit access to any personal data we collect to those employees, contractors, and service providers who have a legitimate business need. They are bound by confidentiality obligations and are only permitted to process your data according to our instructions.

Breach Response

We have procedures in place to handle any suspected personal data breach. Should a breach occur that affects your personal data, we will notify you and any applicable regulatory authority where legally required to do so.

07

Data Retention

How Long Will You Use My Personal Data For?

in short

Your photos and swipe decisions stay on your device—we never store them. Account data is retained only while your account is active or as required by law. You're in full control.

On-Device Data

All photo-related data—including your swipe decisions, kept/discarded lists, session progress, and app preferences—are stored exclusively on your device. We never upload or retain your photos or decisions on our servers. This data persists on your device until you:

  • Clear the app's storage or cache
  • Uninstall SwipeTidy
  • Sign out (which clears authentication tokens)
Account Data

If you create an account with SwipeTidy (via email or Apple Sign-In), we retain your account information (such as your email address and authentication credentials) only for as long as your account remains active. We may retain certain data for a longer period in the event of a complaint, to comply with legal obligations, or if we reasonably believe there is a prospect of litigation.

Retention Criteria

To determine appropriate retention periods, we consider:

  • The nature and sensitivity of the data
  • The potential risk of harm from unauthorized use or disclosure
  • The purposes for which we process your data and whether those purposes can be achieved through other means
  • Applicable legal, regulatory, and accounting requirements
Anonymized Data

In some circumstances, we may anonymize usage data (so that it can no longer be associated with you) for analytics or research purposes. Anonymized data may be retained indefinitely to help us improve SwipeTidy.

Deleting Your Data

You can delete your on-device data at any time by:

1. Clearing app data — Settings → Apps → SwipeTidy → Clear Data

2. Signing out — Settings → Account → Sign Out (clears authentication tokens)

3. Uninstalling the app — Removes all locally stored data

To delete your account entirely, contact us at brittjamesg@gmail.com, and we will remove your account data from our authentication provider within 30 days.

08

Your Legal Rights

Your Rights Under Data Protection Laws

in short

You have rights to access, correct, delete, restrict, transfer, or object to how we use your data. You can also withdraw your consent at any time. We'll handle your requests promptly, and there's no fee unless the request is excessive.

Under certain circumstances, you have rights under data protection laws in relation to your personal data. These rights are described in detail below.

Request access to your personal data (commonly known as a "data subject access request"). This enables you to receive a copy of the personal data we hold about you and to check that we are lawfully processing it.

Request correction of the personal data that we hold about you. This enables you to have any incomplete or inaccurate data we hold about you corrected, though we may need to verify the accuracy of the new data you provide to us.

Request erasure of your personal data. This enables you to ask us to delete or remove personal data where there is no good reason for us continuing to process it. You also have the right to ask us to delete or remove your personal data where you have successfully exercised your right to object to processing (see below), where we may have processed your information unlawfully, or where we are required to erase your personal data to comply with local law. Note, however, that we may not always be able to comply with your request of erasure for specific legal reasons which will be communicated to you at the time of your request.

Object to processing of your personal data where we are relying on a legitimate interest (or those of a third party) and there is something about your particular situation which makes you want to object to processing on this ground as you feel it impacts on your fundamental rights and freedoms. You also have the right to object where we are processing your personal data for direct marketing purposes. In some cases, we may demonstrate that we have compelling legitimate grounds to process your information which override your rights and freedoms.

Request restriction of processing of your personal data. This enables you to ask us to suspend the processing of your personal data in the following scenarios:

  • If you want us to establish the data's accuracy.
  • Where our use of the data is unlawful but you do not want us to erase it.
  • Where you need us to hold the data even if we no longer require it as you need it to establish, exercise, or defend legal claims.
  • You have objected to our use of your data but we need to verify whether we have overriding legitimate grounds to use it.

Request the transfer of your personal data to you or to a third party. We will provide to you, or a third party you have chosen, your personal data in a structured, commonly used, machine-readable format. Note that this right only applies to automated information which you initially provided consent for us to use or where we used the information to perform a contract with you.

Withdraw consent at any time where we are relying on consent to process your personal data. However, this will not affect the lawfulness of any processing carried out before you withdraw your consent. If you withdraw your consent, we may not be able to provide certain products or services to you. We will advise you if this is the case at the time you withdraw your consent.

You will not have to pay a fee to access your personal data (or to exercise any of the other rights). However, we may charge a reasonable fee if your request is clearly unfounded, repetitive, or excessive. Alternatively, we could refuse to comply with your request in these circumstances.

What We May Need From You

We may need to request specific information from you to help us confirm your identity and ensure your right to access your personal data (or to exercise any of your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it. We may also contact you to ask you for further information in relation to your request to speed up our response.

Time Limit to Respond

We try to respond to all legitimate requests within one month. Occasionally it could take us longer than a month if your request is particularly complex or you have made a number of requests. In this case, we will notify you and keep you updated.

How to Exercise Your Rights

To exercise any of your rights, please contact us at:

Email: brittjamesg@gmail.com