Your pictures stay yours
Privacy Policy
A plain-language account of what stays on your iPhone, what limited telemetry leaves it, and why.
Effective August 27, 2026
01
The short version
Grainroom is designed as a private camera. Your photographs and edits are processed on your iPhone and are not uploaded to us. Optional, pseudonymous app-usage and diagnostic sharing through PostHog is off by default. You can turn it on or off at any time in Grainroom's Settings.
We do not require an account, collect your name or email address in the app, use advertising trackers, sell personal information, or enable session replay.
02
Information we collect
Usage and product interaction
If you enable analytics in Grainroom's Settings, we collect events such as app installation, opening, updating, backgrounding, and the Camera or Library screen being viewed. We also collect selections and actions such as the camera, film, effect stack, effect or camera-control values, front or back camera, flash and auto-save state, settings changes, camera-permission outcome, coarse library filters, and whether save, share, delete, capture, or darkroom operations succeeded or failed. Batch sizes are grouped into broad ranges.
Device and diagnostic information
When analytics is enabled, PostHog assigns a random identifier to the app installation. Events may include ordinary technical metadata supplied by the SDK, such as app version, build, operating-system and device information. Crash and error reports may include an error message, stack trace, the stage that failed, processing duration, and limited camera or effect context. Network information, including an IP address, may be processed when your device sends an event, but we disable PostHog's geographic enrichment.
Permissions and local information
Grainroom requests camera access to take photographs and add-only Photos access when you ask it to save photographs. Your shots, edits, app settings, and library state remain on your device. Apple controls these permissions, and you can change them in iOS Settings.
03
What analytics excludes
Our analytics event allowlist is designed not to collect:
- your photographs, thumbnails, image pixels, filenames, or photo-library contents;
- precise or approximate location;
- contacts, advertising identifiers, or data from other apps;
- typed text, audio, screen recordings, or touch-by-touch session replay; or
- your name, email address, or an account profile.
Error reports can sometimes contain unexpected technical information. We limit accepted error context and redact recognizable local file paths before sending reports.
04
How we use information
We use the limited information described above to:
- measure feature adoption and understand which cameras, films, effects, and settings are useful;
- diagnose crashes, failed processing, corrupted local state, and permission problems;
- maintain security, reliability, and performance; and
- make product and design decisions using aggregate trends.
We do not use this information for third-party advertising or cross-app tracking.
05
Service providers and disclosure
We use PostHog to process product analytics and error reports on our behalf. PostHog may process data in the region associated with our PostHog project and under its contractual safeguards.
We may also disclose information if reasonably necessary to comply with law, protect people or rights, investigate abuse, or complete a business reorganization. We do not sell personal information or share it for cross-context behavioral advertising.
06
Retention and security
We keep analytics and diagnostic information only while it is reasonably useful for the purposes above, then delete or aggregate it, subject to operational backups and legal requirements. Information stored locally remains until you delete it in Grainroom, remove it from Photos, clear the app's data, or uninstall the app, as applicable.
We use reasonable administrative and technical safeguards, but no storage or transmission system can be guaranteed completely secure.
07
Your choices and rights
You control camera and Photos permissions through iOS Settings. Optional analytics and diagnostics are off by default, and you can change that choice at any time in Grainroom's Settings. Depending on where you live, you may have rights to access, correct, delete, restrict, or object to processing of personal information, or to appeal a response.
Grainroom does not associate analytics with an account, name, or email. This protects your identity but may mean we cannot connect an anonymous event to you without enough technical information to verify the request. To make a privacy request, email us at contact@grainroom.app and include “Privacy request” in your message. We may need to verify the request.
08
Children and international use
Grainroom is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided personal information, contact us so we can investigate and delete it where appropriate.
Grainroom and its providers may process information in countries other than yours. Those countries may have different data-protection laws; where required, we use recognized transfer safeguards.
09
Changes and contact
We may update this policy as Grainroom changes. We will post the revised version here and change the effective date. If a change materially affects how we handle information, we will provide additional notice when appropriate.
For questions or privacy requests, email contact@grainroom.app.