Legal
Privacy Policy
How Lifemap handles your photos, your location, and your account.
Last updated 8 August 2026
This policy explains what Lifemap collects, why, who else touches it, and what you can do about it. It covers the Lifemap iOS app and this website. Lifemap is made and run by an independent developer, who is the data controller and is reachable at abdlpr.erfan.dev@gmail.com.
1. What we collect, and why
Your photos. When you add a photo, the app keeps its own copy and uploads it to our servers, so that losing your phone does not lose your map. We store the image itself, the date it was taken, any note you write, and the moment it was grouped into. We never use your photos to train anything, and no other user can see them.
Where a photo was taken. This is the whole point of the app, so it is worth being exact about where the coordinates come from. A photo taken with the camera uses your device location at that moment. A photo picked from your library uses the coordinates already stored inside the file by the camera that shot it — that is read on your device, not by us, and we only receive the resulting coordinates. If neither is available the photo is saved anyway, as unplaced, until you place it by hand. We do not track your location in the background, and the app never asks for background location.
You stay in control of this. In the app's privacy settings you can turn off using a photo's stored location entirely, or turn off precise location — which makes the app ask for a deliberately coarse fix and round it to roughly a kilometre before it is saved.
Your account. You sign in with Apple or with Google, and we receive an email address and, when the provider sends one, a name. We store the email address, a display name you can change, and an identifier from the provider. We never receive your Apple or Google password. If you use Hide My Email, we only ever see Apple's relay address, which is what we will reply to.
Diagnostics. If the app crashes or hits an error, we receive a report describing what went wrong — the error, where in the code it happened, the app version, and the device model and OS version. It carries a numeric account id so we can tell whether a bug hits one person or everyone. It does not carry your email, your name, your photos, or the text of your notes.
How the app is used. We record a small, fixed list of product events — a photo was added, an upload succeeded or failed, a moment was viewed or shared, the paywall was seen, a purchase completed. They are counts and categories, not content: we log that a note was edited, never what it said, and screen names are recorded without the parameters attached to them, because those can contain note text. There is no autocapture and no session recording — we cannot watch a replay of your screen, because that feature is switched off.
Purchases. If you subscribe, Apple handles the payment and we never see your card. We receive the fact that a subscription is active and when it expires, which is what unlocks the paid features. We do not receive your billing address or payment details.
Notifications. If you allow them, we hold a push token for your device and the notification categories you chose, so a message can be sent to the right people. Notifications are opt-in, the app never asks on first launch, and you can turn them off in the app or in iOS Settings.
Where an install came from.When the app is first opened, our attribution provider records that an install happened and, if it followed an advert, which campaign it came from. On iOS this uses Apple's own SKAdNetwork, which reports back in aggregate. We do not use the advertising identifier (IDFA), and the app never shows the “Ask App not to Track” prompt — we deliberately gave up the more detailed reporting that would require.
2. What we never do
- We do not sell or rent your personal data. Ever.
- We do not show ads inside the app.
- We do not track you across other companies' apps or websites, and we do not build advertising profiles.
- We do not record your screen or your keystrokes.
- We do not make your photos, notes, or places visible to other users — there is no feed, no profile, and no sharing except the image you explicitly export yourself.
- We do not send your email address or your name to any of the third-party services in section 3.
3. Who else handles your data
We use a small number of specialist companies to run the service. They process data on our instructions, under contract, and for no purpose of their own:
- Cloudinary — stores and delivers the image files themselves.
- Neon — the database holding your account, your photo records, coordinates, and notes.
- Sentry — crash and error reports (numeric account id only).
- PostHog — the product events described above (numeric account id only).
- OneSignal — delivers push notifications (device push token and numeric account id).
- RevenueCat, with Apple — manage subscription status (numeric account id; Apple takes the payment).
- AppsFlyer — install attribution, as described above.
- Apple and Google — only when you sign in with them, to confirm who you are.
Beyond these, we disclose data only if the law genuinely requires it, or to protect someone's safety or our rights. If Lifemap were ever transferred to someone else, we would tell you in the app before it happened.
4. Where your data is held
Our servers and the services above operate in the United States and the European Union, so if you are elsewhere your data is transferred and processed there. Where the law requires a safeguard for that transfer, our contracts with these providers include the European Commission's standard contractual clauses. Everything travels over an encrypted connection.
5. How long we keep it
Your photos and their details are kept until you delete them or delete your account — this is a place to keep things, so we do not quietly expire them. Deleting a photo in the app removes it from our servers and from our image host.
Deleting your account deletes your data.You can do it from inside the app, in Settings, without emailing anyone. It removes your image files, your photo and moment records, and your account itself, and it withdraws our access to your Apple sign-in. This is not a deactivation and it cannot be undone. Diagnostic and usage records that carry only a numeric id may persist for a short period in our providers' systems before ageing out, and are no longer connected to an account once it is gone.
6. Your rights
Depending on where you live — including in the UK, the EEA and California — you have the right to ask for a copy of your data, to correct it, to have it deleted, to object to or restrict how we use it, and to complain to your data protection regulator. You will never be treated differently for exercising any of them.
Deletion is built into the app, as above. For anything else, email abdlpr.erfan.dev@gmail.com and we will respond within 30 days. We rely on your consent for location and notifications — both of which you can withdraw at any time in Settings — and, for the rest, on the fact that we need it to provide a service you asked for, or on our legitimate interest in keeping the app working and secure.
7. Children
Lifemap is not intended for children under 13, and we do not knowingly collect their data. If you believe a child has given us personal information, email us and we will delete it.
8. Changes to this policy
If we change what we collect or who processes it, we will update this page and the date at the top of it, and tell you in the app when the change is significant. The current version always lives here.
9. Contact
Questions, requests, or complaints about privacy: abdlpr.erfan.dev@gmail.com.