Privacy Policy
Stash Pic is a private photo and video vault for iPhone. This policy explains what information the current version of Stash Pic handles, where it is stored, and the choices available to you.
Summary
The Stash Pic app does not operate user accounts or send vault data to developer-controlled cloud servers. The current app does not include advertising, analytics or tracking SDKs, does not track you across apps or websites, and does not sell personal information.
Your vault is stored on your device and in the private iCloud storage associated with your Apple Account. Stash Pic uses Apple services, including iCloud, Keychain, Photos and device-owner authentication, to provide its features.
Information handled by Stash Pic
Photos, videos and Live Photos
Stash Pic accesses only the media you select or otherwise expressly authorise through Apple Photos. It handles the selected media to create and manage your private vault.
Original media is encrypted with AES-256-GCM before it is committed to the Stash Pic iCloud vault. Temporary plaintext files may be created on your device during import, viewing or export. Stash Pic removes its temporary decrypted files after use and when the app moves to the background.
Media metadata and previews
Stash Pic may process and store information associated with selected media, including:
- original filename and media type;
- capture date and time;
- location coordinates when present in the selected Photos asset;
- dimensions and video duration;
- PhotoKit source identifiers;
- integrity values and internal vault identifiers; and
- virtual-folder membership.
Stash Pic also creates local JPEG previews for gallery display.
The current version does not encrypt local previews, metadata files, the local SQLite gallery index or iCloud metadata records. This information remains inside Stash Pic's application storage or its iCloud container, but it is not protected by the vault's media-encryption layer.
Encryption key and recovery card
Stash Pic stores the vault master key in Apple's synchronisable Keychain. The key may synchronise between devices signed into your Apple Account when iCloud Keychain is available.
If you export a recovery card, Stash Pic encrypts the recovery package using the password you provide and allows you to choose where to save the resulting PNG. Stash Pic does not automatically upload the recovery card or send the recovery password to the developer. Anyone with both the recovery card and its password may be able to access your vault, so they should be stored separately and securely.
Preferences and operational information
Stash Pic stores app-only preferences and operational state on your device, such as gallery settings, resumable-import state, recovery-export completion and restoration progress. It may inspect file names, file sizes, timestamps, iCloud availability and network type to manage storage, synchronisation and downloads. This information is used for app functionality and is not sent to the developer.
Authentication
Stash Pic asks iOS to authenticate you using device-owner authentication, which may use Face ID, Touch ID or the device passcode. Apple performs the authentication. Stash Pic receives only the success, failure or cancellation result and does not receive your biometric data or device passcode.
Website contact form
If you contact support through this website, the name, email address, topic and message you enter are sent to support@rnodern.dev so the developer can read and reply to your request. Do not include vault media, recovery cards, recovery passwords or encryption keys.
The form uses an essential, short-lived security cookie, a hidden bot check and temporary rate-limiting records to reduce spam and abuse. These measures are used only to protect the form. Contact messages may be retained in the support mailbox for as long as reasonably needed to answer the request, maintain support history or meet legal obligations. Contact information is not used for advertising or marketing.
How information is used
Stash Pic handles the information described above only to provide features you request, including:
- importing, encrypting, displaying and exporting vault media;
- synchronising vault records through your iCloud account;
- organising and searching your local gallery;
- resuming interrupted work and restoring local gallery data;
- displaying storage and iCloud status;
- authenticating access to the app; and
- creating and verifying recovery cards.
The current version does not use vault information for advertising, analytics, profiling, marketing or tracking.
Storage and disclosure
Stash Pic does not send vault data to servers operated by the developer. Data may be processed or stored by Apple when you use Apple services, including iCloud, iCloud Keychain, Photos, the Files interface and device backup. Apple's handling of that information is governed by your agreement with Apple and Apple's privacy policy.
Stash Pic does not sell or rent personal information. It does not disclose vault information to third-party advertisers or data brokers. Information may leave the app only when you deliberately use an Apple system interface or app feature to export, save, share or delete content.
Your choices and control
You can:
- decline or change Photos permission in iOS Settings;
- choose which Photos items to import;
- choose whether to delete a source item from Apple Photos after a successful vault import;
- choose where to save an exported recovery card or reconstructed media;
- delete individual vault items; and
- use Stash Pic's guarded full-vault deletion action to remove known Stash Pic vault records from the device and its iCloud container.
Deleting Stash Pic from a device may not delete data already stored in iCloud, iCloud Keychain, Apple Photos, Files, backups or another device. Use the relevant Stash Pic and Apple controls for those locations before uninstalling if you want the information removed.
Data retention
Vault media and metadata remain until you delete them through Stash Pic or the relevant Apple service. Local previews, indexes, preferences and operational state remain until removed by the app, deleted through app controls, or removed with the app's local data. Some information may continue to exist in iCloud, backups, exported files, recovery cards or other synchronised devices according to your Apple settings and actions.
The developer does not maintain a separate server-side copy of your vault.
Security
Stash Pic uses AES-256-GCM encryption for original vault media and relies on Apple Keychain for the master key. No storage or security system can guarantee absolute security. Keep your Apple Account, device passcode, recovery card and recovery password secure.
The app's current encryption boundary does not include previews or metadata, as explained above.
Children
Stash Pic is not designed to collect personal information from children, and the developer does not knowingly collect personal information from children through developer-operated services. Parents and guardians should supervise a child's use of the device, Apple Account and stored media.
International use
Apple may process or store iCloud and related service data in locations described in Apple's terms and privacy information. The developer does not control Apple's infrastructure or international data handling.
Changes to this policy
This policy may be updated when Stash Pic's features or data practices change. The effective date at the top will be updated. Material changes will be communicated through the app, its App Store listing or the published policy page where appropriate.
Contact
For privacy questions or requests, use the contact form or use the App Support link on Stash Pic's App Store product page.