1. Scope
This policy applies to the Cloakshot apps for iOS and Android, the iOS Cloakshot extension, and this website. The app is published and maintained by Spawn Lau.
2. Data collection
Cloakshot has no account, advertising SDK, cross-app tracking, developer-operated behavioral analytics, or crash-reporting SDK. RevenueCat and the applicable app store process an anonymous app-user ID and purchase history to validate Cloakshot Pro, restore purchases, prevent fraud, and provide purchase analytics.
Official Apple and Google codes are redeemed by their respective stores. Apple's system redemption sheet receives an App Store code, which Cloakshot cannot read. On Android, Cloakshot temporarily holds the code entered in the redemption dialog to open Google Play's HTTPS redemption page. The app does not save that code or send it to Cloakshot's servers. RevenueCat receives the resulting store purchase during a user-initiated purchase sync.
If you choose to start the free 14-day trial, Cloakshot sends a random installation identifier, the app and platform identifiers, and an ephemeral Apple DeviceCheck or Google Play Integrity token to Cloakshot's trial service at trial.cloakshot.aside0.com. Older app builds may use gifts.aside0.com, which reaches the same Cloakshot trial-only service. The service converts the random installation identifier to a keyed hash and does not retain the raw identifier or platform token. Apple or Google verifies the token and maintains a small device-state marker used to prevent the same device from restarting the offer after reinstalling. Cloakshot's service stores the keyed hash, an opaque trial identifier, the platform, and server-issued trial timestamps. No account, payment, store code, image, scan result, or advertising identifier is included.
On Android, Google ML Kit collects operational SDK metrics for diagnostics and usage analytics, including app and device information, a per-install identifier not intended to identify a user or physical device, performance and API-configuration metrics, feature-event types, and error codes. Google states that ML Kit does not send image input or detector output and does not transfer these metrics to third parties.
The app does not upload images, detected text, barcode payloads, metadata values, file paths, or scan results.
3. Information processed on the device
When you explicitly choose or share an image, the app may process the following information locally:
- The selected image and its orientation.
- Possible visible text, face regions, QR codes, and other supported barcode regions.
- The presence of GPS and common removable metadata.
- Category labels, bounding rectangles, scan status, and degradation warnings.
Apple Vision, ImageIO, bundled ML Kit components, ONNX models, and local rules perform this work on the device. The review interface uses categories, image regions, and recognized text for local word and character editing. This content is not uploaded.
4. Photo access and the Share Extension
The main app accesses only photos you choose through the iOS or Android system photo picker or otherwise explicitly provide. The Cloakshot extension receives the single image you intentionally send to it from the iOS Share Sheet.
You can manage photo access in system Settings. Removing access prevents new photo selection but does not affect images outside the app.
5. Local storage and deletion
Images you import are copied into the app-private Local Album together with local share history. The original image outside the app is not modified. You can delete Local Album items in the app; uninstalling the app removes its private container according to the operating system's behavior.
Normalized scan inputs and safe-copy work files remain in the app sandbox or iOS shared App Group container and are not uploaded. Temporary cleanup is best effort, including orphan cleanup on a later app launch.
6. Sharing, tracking, and sale
The app does not sell data, share data with advertisers or data brokers, or track you across apps and websites owned by other companies. It does not request Apple's App Tracking Transparency permission or collect advertising identifiers.
7. This website and support email
This static website does not use analytics, advertising, cookies, account forms, or tracking scripts. Selecting the email-support link opens your email provider. If you contact support, you choose what to send, and your email provider and ours process that message under their own terms. Support messages are used only to respond, troubleshoot, prevent abuse, and meet legal obligations.
Please do not email an original sensitive photo. Prefer a synthetic or already-redacted example.
8. Platform services
Apple or Google processes store transactions, platform-code redemption, and optional trial device verification under its own policy. RevenueCat receives anonymous purchase history and entitlement status for app functionality, fraud prevention, and purchase analytics. RevenueCat automatic device-identifier collection and diagnostics are disabled, and no attribution integrations are used. Android ML Kit may contact Google for the operational metrics described above; image input, recognized content, scan results, and safe-copy processing remain on-device.
9. Children
Cloakshot is not directed specifically to children. It does not knowingly collect personal information from children. A parent or guardian with a concern may contact us.
10. Security and detection limits
On-device processing reduces exposure but cannot guarantee complete detection or absolute security. Automatic scanning may miss content or produce false positives. Safe Export creates a separate image, flattens selected masks into its pixels, applies the metadata choices shown in Review, and verifies both outcomes, but it cannot detect what was never selected. Metadata removal is selected by default. Always inspect the entire image yourself before sharing.
11. Policy changes
If the app's data practices or capabilities change, this policy will be updated before or when the relevant release becomes available. The effective date above identifies the current version.
12. Contact
For privacy or support questions, email spawnlauplay@gmail.com.