← Back to Home
1. Introduction
Welcome to My Storage List. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our iOS app ("the App").
My Storage List is designed with privacy as a core principle. Your data stays on your device, and we have no access to your storage inventory.
2. Data Controller
My Storage List is the data controller responsible for your personal data. If you have any questions about this privacy policy or our data practices, please contact us at privacy@mystoragelist.com.
3. Information We Collect
3.1 Data You Provide Directly
When you use the App, you create and store the following information locally on your device:
- Storage Box Data: Names, descriptions, and locations of your storage boxes
- Item Data: Names, descriptions, quantities, and photos of items you add
- Photos: Images you capture or select for documenting your items
- QR Code Data: Information encoded in QR codes you generate
Important: All of this data is stored locally on your device and in your personal iCloud account (if you enable iCloud sync). We do not have access to this data.
3.2 Data Collected Automatically
- Device Information: Device model, iOS version, app version (for debugging and compatibility)
- Crash Reports: Anonymous crash logs to help us fix bugs (opt-in only)
- Analytics: Basic usage statistics if you opt-in (number of boxes created, features used)
3.3 Data We Do NOT Collect
We do not collect, store, or have access to:
- Your storage inventory or item lists
- Your photos or images
- Your location data
- Your personal identifying information
- Your browsing history or behavior outside the app
4. How We Use Your Information
The limited data we collect is used solely to:
- Provide and maintain the App's functionality
- Improve app performance and user experience
- Fix bugs and technical issues
- Provide customer support when you contact us
- Comply with legal obligations
We do NOT use your data for:
- Advertising or marketing purposes
- Selling or sharing with third parties
- Profiling or behavior tracking
- Any purpose other than operating the App
5. Legal Basis for Processing (GDPR)
Under the General Data Protection Regulation (GDPR), we process your data based on:
- Contract Performance: To provide the services you've requested by using the App
- Legitimate Interests: To improve the App and ensure its security and stability
- Consent: For optional features like analytics and crash reporting
- Legal Obligations: To comply with applicable laws and regulations
6. Your Rights Under GDPR
If you are in the European Union (EU) or European Economic Area (EEA), you have the following rights:
- Right to Access: Request a copy of the personal data we hold about you
- Right to Rectification: Request correction of inaccurate data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Restrict Processing: Request limitation of how we process your data
- Right to Data Portability: Request your data in a machine-readable format
- Right to Object: Object to processing of your data
- Right to Withdraw Consent: Withdraw consent at any time for consent-based processing
- Right to Lodge a Complaint: File a complaint with your local data protection authority
To exercise any of these rights, please contact us at privacy@mystoragelist.com.
7. Data Storage and Security
7.1 Where Your Data is Stored
- Local Storage: All your storage inventory data is stored on your iOS device using SwiftData
- iCloud (Optional): If you enable iCloud sync, your data is synced to your personal iCloud account, protected by Apple's end-to-end encryption
- Our Servers: We do not operate servers that store your inventory data
7.2 Security Measures
We implement the following security measures:
- On-device data encryption using iOS security features
- Secure storage of optional API keys in iOS Keychain
- Apple's iCloud security when you enable sync
- Regular security audits and updates
- No server-side storage of your personal inventory data
7.3 API Key Security
If you choose to use OpenAI enhanced recognition features:
- Your API key is encrypted and stored locally in iOS Keychain
- We never have access to your API key
- The key is only used to make direct requests from your device to OpenAI
- You can delete your API key at any time in Settings
8. Data Retention
Your storage inventory data remains on your device and in your iCloud account for as long as you have the App installed and iCloud sync enabled. You have complete control over your data:
- Delete individual items or boxes at any time through the App
- Delete all data by uninstalling the App
- Remove iCloud data through iOS Settings → [Your Name] → iCloud → Manage Storage
Crash reports and analytics data (if you opted in) are retained for up to 90 days and then automatically deleted.
9. Third-Party Services
9.1 Apple Services
The App uses the following Apple services:
- iCloud: Optional data sync (governed by Apple's Privacy Policy)
- StoreKit: In-app purchases (Apple processes payment information)
- Apple Intelligence: On-device AI processing (no data leaves your device)
Your use of Apple services is governed by Apple's Privacy Policy: https://www.apple.com/legal/privacy/
9.2 OpenAI (Optional)
If you provide your own OpenAI API key for enhanced recognition:
- Photos are sent directly from your device to OpenAI's API
- OpenAI processes the images according to their privacy policy
- We do not intercept, store, or have access to this data
- You can disable this feature at any time
OpenAI's Privacy Policy: https://openai.com/privacy/
9.3 No Other Third Parties
We do not share your data with any other third-party services, analytics providers, or advertisers.
10. International Data Transfers
Your data is primarily stored on your device in your location. If you enable iCloud sync:
- Data may be transferred to Apple's data centers worldwide
- Transfers are protected by Apple's security measures and standard contractual clauses
- Apple complies with GDPR and other data protection regulations
If you use OpenAI enhanced recognition:
- Image data is sent to OpenAI's servers (may be located outside your country)
- This is optional and requires your explicit action to enable
- Governed by OpenAI's terms and privacy policy
11. Children's Privacy
The App is rated 4+ and is suitable for all ages. However:
- We do not knowingly collect personal information from children under 13
- The App does not contain any age-inappropriate content
- No account creation or personal information is required to use the App
- We comply with the Children's Online Privacy Protection Act (COPPA)
If we learn we have collected personal information from a child under 13, we will delete it immediately.
12. Cookies and Tracking Technologies
The iOS app does not use cookies or web-based tracking technologies.
Our website (mystoragelist.com) may use cookies for functionality and analytics. You can manage cookie preferences through the cookie banner on the website.
13. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to Know: What personal information we collect and how we use it
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt out of sale of personal information (note: we do not sell personal information)
- Right to Non-Discrimination: Equal service and price even if you exercise your rights
To exercise these rights, contact us at privacy@mystoragelist.com.
14. Changes to This Privacy Policy
We may update this privacy policy from time to time to reflect:
- Changes in the App's functionality
- Changes in legal requirements
- Improvements to our privacy practices
When we make significant changes, we will:
- Update the "Last Updated" date at the top
- Notify you through the App or via email
- Request your consent if required by law
We encourage you to review this policy periodically.
15. Contact Us
We will respond to all requests within 30 days as required by GDPR.
16. Supervisory Authority
If you are in the EU/EEA and have concerns about how we handle your data, you have the right to lodge a complaint with your local data protection supervisory authority.
List of EU supervisory authorities: https://edpb.europa.eu/about-edpb/board/members_en