InStamp Privacy Policy
Effective date: August 26, 2026
This Privacy Policy describes how Drink More Warm Water, LLC (“we”, “us”, or “our”) handles information in connection with the InStamp mobile application (the “App”).
InStamp is designed to be private by default. The App turns your photos into stamp-style keepsakes entirely on your device. We do not require an account, we do not show ads, we do not track you across other companies’ apps or websites, and we never sell your data. The App does send us anonymous crash reports, performance measurements, and usage statistics so we can keep it working well — Section 2.5 lists exactly what they contain.
1. Summary
- Your photos never leave your device, unless you turn on iCloud Sync, in which case they are stored in your personal iCloud account — which we cannot access.
- Location is optional and used only to print a place name on your stamp’s postmark.
- The only data shared with third parties is the purchase information needed to process and validate your InStamp Pro purchase (Apple and RevenueCat), and the anonymous diagnostics and usage statistics described in Section 2.5 (Google Firebase).
- We have no servers of our own. We cannot see your photos, your stamps, or your location.
2. Information the App Processes
2.1 Photos and Camera
The App processes photos you choose to import and pictures you take with the in-app camera in order to create stamps. All image processing happens locally on your device. Finished stamps and the photos they are made from are stored in the App’s local storage on your device.
If you choose “Save Image”, the finished stamp is written to your device’s photo library. The App requests add-only access for this; it cannot browse your photo library.
2.2 Location (Optional)
If you grant the “While Using the App” location permission, the App reads your approximate location (accurate to roughly 100 meters) while the camera is open, and converts it to a place name using Apple’s geocoding service, so the postmark on your stamp can show where it was made.
When you import an existing photo, the App may read the location stored in that photo’s own metadata (EXIF) for the same purpose.
Location is used only to render the postmark text. It is stored only as part of the stamp you create, on your device (and in your iCloud if you enable sync). You can decline or revoke the location permission at any time in Settings; the App remains fully functional without it.
2.3 Purchase Information
InStamp Pro is sold through Apple’s App Store. When you make a purchase, the transaction is processed by Apple under Apple’s own terms and privacy policy.
We use RevenueCat (RevenueCat, Inc.) to validate purchases and manage entitlements. For this purpose, RevenueCat receives purchase receipt data and a randomly generated, pseudonymous app user identifier. It does not receive your name, email address, Apple ID, photos, or location. RevenueCat’s privacy policy is available at revenuecat.com/privacy.
2.4 Local Settings
Preferences such as your language choice, appearance settings, and the App’s free-tier usage counter are stored locally on your device and, where applicable, in your personal iCloud key-value storage. They are not transmitted to us.
2.5 Diagnostics and Usage Analytics
To find crashes and keep the App fast, the App uses three services from Google Firebase (Google LLC):
- Firebase Crashlytics collects crash and error reports: the stack trace, the device model, operating-system version, App version, free memory and disk space at the time of the crash, and the pseudonymous app user identifier described in Section 2.3 — so that if you contact support about a crash, we can find its report.
- Firebase Performance Monitoring collects timing measurements: how long the App takes to launch, how long its network requests take, and how long composing a stamp for sharing takes, together with the device model, operating-system version, and App version.
- Google Analytics for Firebase collects anonymous usage statistics: which screens are viewed, and a small set of in-app actions — creating a stamp, sharing a stamp, creating a collection, seeing the InStamp Pro screen, completing a purchase, and tapping the “More Apps” recommendation in Settings — each tagged only with non-identifying labels such as the chosen share style. Analytics uses a random per-installation identifier that is reset when you reinstall the App. The App does not use the advertising identifier (IDFA) and does not ask for, or perform, cross-app tracking.
None of these services receive your photos, stamps, location, name, email address, or Apple ID. The data is processed by Google under Google’s privacy policy (policies.google.com/privacy) and Firebase’s data-processing terms (firebase.google.com/support/privacy).
3. iCloud Sync (InStamp Pro)
If you enable iCloud Sync, your stamps and collections are stored in the private CloudKit database of your own iCloud account and synced across your devices signed in to the same Apple ID. This data is governed by Apple’s iCloud terms and is protected by Apple’s encryption. We have no ability to read, access, or share it. You can turn off iCloud Sync at any time in the App’s settings, or manage iCloud data in your device’s iCloud settings.
4. What We Do Not Do
- We do not link crash reports, performance measurements, or usage statistics to your name, email address, Apple ID, photos, or location; they carry only random identifiers.
- We do not use advertising networks, the advertising identifier (IDFA), or cross-app tracking technologies.
- We do not sell, rent, or share your personal information with third parties for their own purposes.
- We do not require or store account credentials — there is no InStamp account.
5. Data Retention and Deletion
Your stamps, photos, and settings live on your device (and in your iCloud, if sync is on):
- Delete individual content at any time inside the App.
- Delete everything local by uninstalling the App.
- Delete synced data by disabling iCloud Sync and removing InStamp data in iOS Settings → your Apple ID → iCloud → Manage Storage.
Purchase records are retained by Apple and RevenueCat as required to keep your entitlement (e.g., a lifetime purchase) valid and to comply with financial record-keeping obligations.
Diagnostics and usage data (Section 2.5) are retained by Google Firebase for a limited period — crash reports for 90 days, and analytics data for no longer than 14 months — and then deleted.
6. Security
Your content is protected by iOS’s built-in protections (sandboxing and device encryption) and, for synced data, by Apple’s iCloud security. Because we operate no servers, there is no server-side database of user content that could be breached.
7. Children’s Privacy
The App is not directed at children under 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect personal information from children. The App’s on-device design means no personal information is collected from any user beyond what is described above.
8. Your Rights
Depending on where you live (e.g., GDPR in the EEA/UK, CCPA/CPRA in California), you may have rights to access, correct, delete, or port your personal data, and to object to or restrict certain processing. Because your content is stored on your device and in your own iCloud account, you can exercise access and deletion directly, as described in Section 5. For anything relating to purchase data held via RevenueCat, or diagnostics data held via Google Firebase, contact us and we will assist.
You will not be discriminated against for exercising any privacy right.
9. International Transfers
The purchase-validation data described in Section 2.3 is processed by RevenueCat in the United States, and the diagnostics and usage data described in Section 2.5 by Google in the United States. Apple processes App Store and iCloud data in accordance with its own policies.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be reflected by an updated effective date, and, where appropriate, highlighted in the App. Continued use of the App after changes take effect constitutes acceptance of the revised policy.
11. Contact
If you have questions about this Privacy Policy or your data, contact us at:
- Email: [email protected]
- Developer: Drink More Warm Water, LLC