1. Scope and operator
This policy explains how Fireshark HK, the publisher and operator of ScanFolio TCG, handles information in the mobile app and this support website.
2. Card photos and scan processing
You choose whether to use the camera or photo library. A selected card image is sent over HTTPS to the ScanFolio scan service only when you start a scan. The server temporarily writes the upload for processing and attempts to delete the image immediately after the request finishes, whether the scan succeeds or fails.
For matching and card-number recognition, the release service may send image bytes to configured cloud processors such as Amazon Bedrock and Google Cloud Vision. The final published version of this policy must name only the processors enabled in production.
3. Operational scan records
The server does not retain the card photo itself after processing. It records a scan ID, random server filename, file type and size, a SHA-256 content hash, provider/model details, success or failure status, bounded OCR diagnostics, and returned card candidates. Full OCR text, card-photo bytes, account identifiers, and provider credentials are deliberately excluded.
4. Information stored on your device
Your confirmed scan history, collection, language, theme, and display-currency settings are stored locally by the app and are not synced to ScanFolio servers. The MVP has no ScanFolio account or cloud collection sync. Your operating system may include app data in a device backup or transfer according to platform settings. You can delete individual items or clear the collection/history in the app; removing the app removes its active local data, subject to any separate OS-managed backup.
5. Crash diagnostics
Release builds use Firebase Crashlytics for stability diagnostics. Reports can include stack traces, app state, app version, operating system/device details, crash time, a Crashlytics installation UUID, and a Firebase installation ID. Scan photos, OCR text, search queries, collection contents, scan history, email addresses, advertising IDs, and custom user IDs are not attached by our reporting boundary. Google states that Crashlytics keeps crash traces and associated identifiers for 90 days before removal begins.
6. Website and support messages
Firebase Hosting may process IP addresses and standard request data to deliver and protect this website. If you email support, we receive the address and content you choose to send and use them only to answer, troubleshoot, prevent abuse, and meet legal obligations. Do not send card photos, passwords, API keys, or payment information in a support message.
7. Sharing, subscriptions, advertising, and tracking
Cloud hosting, scan-processing, crash-reporting, RevenueCat, and the applicable app store act as service providers for the purposes described above. ScanFolio has no login. Each installation receives up to five free scans per day and may optionally buy an auto-renewing unlimited-scan subscription. RevenueCat and the store process the anonymous installation identifier and purchase-entitlement information needed to verify access; ScanFolio does not receive your store payment details. We do not sell personal data, display advertising, build advertising profiles, use an advertising ID, or include cross-app tracking.
8. Retention, deletion, and choices
- Temporary uploaded photos: deleted on a best-effort basis immediately after scan processing.
- Local collection/history: retained until you delete it or remove the app; an OS-managed backup may retain a separate copy under platform settings.
- Crashlytics records: retained under Firebase's published Crashlytics schedule.
- Support messages and operational scan records: final production periods must be approved before launch.
You can deny camera/photo access and use other app features. For a privacy or deletion request, use the support page and include only the minimum information needed to locate the record, such as a scan ID.
9. Contact and changes
Contact the publisher through the support page. We will update the effective date and re-review store disclosures when data practices change.