Privacy Policy

Last updated: 27 July 2026

Photolio ("Photolio", "we", "us") is a photo-first contacts app operated by Jun Wang. This policy explains what information the app collects, how we use it, and the choices you have. By using Photolio you agree to this policy.

The short version

Information we collect

The information we process depends on whether you create an account.

How we use information

Safety review and operator access

Safety reports and externally shared identity revisions may be reviewed manually by authorized Photolio operators. Operators may access the report details, captured profile snapshot, relevant photo previews, and account identifiers needed to investigate and act on the case. Operator decisions and access-related actions are recorded in restricted audit records. This information is not exposed to other app users or sent to general analytics.

Photolio currently does not send report text, reported profile snapshots, or publication-review content to an external moderation provider. Review is performed using Photolio's own restricted operator tools. Our infrastructure provider, Supabase, stores and processes this data on our behalf as described below.

How we store and process information

When you create an account, your data is stored and processed using Supabase (authentication, database, and file storage), our cloud infrastructure provider, on our behalf. Data is transmitted over encrypted connections (HTTPS/TLS) and protected by row-level access controls so that, in general, only you can access your own data.

If you choose Sign in with Apple or Google Sign-In, that provider processes the sign-in request under its own privacy terms. Photolio receives the account identifier and the name or email you authorize it to share. Google Sign-In may also process device, coarse-location, and usage information to provide, secure, and measure its sign-in service; Photolio does not receive those additional fields. See Apple's Privacy Policy and Google's Privacy Policy.

Anonymous Public Profile pages are delivered through Cloudflare. Cloudflare processes the web request as our hosting and security provider, while the approved profile projection and approved thumbnail are fetched through controlled Photolio endpoints. Photolio does not make the underlying photo Storage bucket public or expose private Storage paths or signed URLs on these pages.

If you use the app as a guest (without signing in), your data stays on your device and is not uploaded to our servers.

If you buy a subscription, your purchase is handled by Apple (the App Store) and recorded through RevenueCat, our subscription-management provider, which verifies your entitlement and keeps your subscription status in sync. We share an account identifier and subscription events (such as purchases, renewals, and expirations) with RevenueCat for this purpose; we do not receive your payment-card details. See RevenueCat's privacy policy at revenuecat.com/privacy.

Sharing your information

We do not sell your personal information. We share information only:

Public Profile choices and limits

Anonymous access is a separate owner choice and is off by default. You can turn it off at any time in that identity's Public Profile settings; changing the identity to Followers only or Private, a safety takedown, Profile deletion, or account deletion also prevents new anonymous page and avatar responses. Turning anonymous access off does not release or change the Username.

A claimed Username is permanent: it cannot be edited, transferred, released, or reused by another account, including after the Profile or account is deleted. A signed-in Block applies to interactions and signed-in access checks, but it cannot identify or prevent an anonymous person from opening a page that you chose to make available without login. Disable anonymous access or change Visibility when you need to stop new anonymous access.

Photolio applies no-store and noindex controls and stops serving a page after it becomes ineligible, but recipients, browsers, link-preview services, search tools, or other third parties may take screenshots or retain copies outside Photolio. We cannot recall those external copies.

Data retention and deletion

We keep your account data for as long as your account exists. You can permanently delete your account at any time in the app at Settings → Account → Delete Account. Deletion removes your profiles, photos, contact details, and account identity from our servers. The clear Username-to-Profile mapping is deleted, but the versioned, keyed one-way Username fingerprint remains without an account or Profile link solely to prevent the permanently reserved Username from being claimed again. This action is irreversible. Guest-created app data can be removed by deleting the app from your device.

Safety reports, their private operator cases, and related captured evidence are deleted when either the reporting account or the reported account is deleted. Publication-review records are deleted with the associated profile. After account deletion, only non-linkable hourly aggregate counters may remain; they contain no account/profile/report identifier, content, path, snapshot, operator note, or raw error and cannot be used to reconstruct the deleted account's activity.

If you subscribe and later let your subscription lapse, your account returns to the free identity and photo limits. We keep your cloud-stored photos for 90 days so you can resubscribe or retrieve them, after which they are deleted from our cloud storage. Your contact details and other text information remain available and continue to sync within the free tier. At any time you can save your photos onto your device or export a complete copy of your data (see “Your rights”).

Your rights

Depending on where you live, you may have rights to access, correct, or delete your personal information, or to object to or restrict certain processing. You can exercise the core of these rights directly in the app (editing your content and deleting your account), or by contacting us at the address below. You can also export a complete copy of your data at any time from Settings → Your Data → Export my data, and download your cloud photos onto your device.

Children's privacy

Photolio is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, please contact us and we will delete it.

Security

We use encryption in transit and access controls to protect your information. No method of transmission or storage is completely secure, but we work to protect your data and to limit access to it.

Changes to this policy

We may update this policy from time to time. When we do, we will revise the "Last updated" date above and, where appropriate, provide additional notice.

Governing law

This policy is governed by the laws of Singapore, without regard to conflict-of-law principles.

Contact us

Questions about this policy or your data? Email us at [email protected].