PlainSight Privacy Policy
Effective: August 2, 2026
PlainSight explains official documents in plain English. This policy describes what data the app handles and what happens to it.
What we process
- Document text. When you choose a document, text is extracted on your device (photos of documents never leave your phone — only the extracted text does). That text is sent over an encrypted connection to our server, which forwards it to our AI providers, OpenAI and Anthropic, to produce your report.
- Anonymous account identifier. The app creates an anonymous account (a random ID). We do not collect your name, email address, phone number, or contacts, and you never create a password. Everything else described below is stored against this ID.
- Device identifier. Our subscription provider, RevenueCat, sends Apple's vendor identifier (IDFV) with its requests so your purchases stay attached to the right account. This is not the advertising identifier (IDFA) — the app never requests it.
- Purchase state. Whether you have an active subscription or document credits, processed by Apple and RevenueCat. We never see your payment details.
- Product interaction. RevenueCat records subscription-related interactions, such as when a paywall is shown or a purchase completes, so we can tell whether the subscription is working. It never includes document content. PlainSight's own in-app event logging stays on your device and is never transmitted.
How this data is linked to you
Because the items above are stored against your anonymous account ID, Apple's App Store privacy label lists them under “Data Linked to You.” That ID is randomly generated and is not connected to your name, email address, or Apple ID — but it is persistent, so we describe the data as linked rather than anonymous.
What happens to your documents
- Document text sent for analysis is excluded from AI training by our agreements with the AI providers.
- The server copy of your document and report expires 24 hours after analysis and is deleted by an automated sweep that runs every hour.
- Your reports are stored on your device only. Deleting the app deletes them.
- The extracted text of each document, and any follow-up conversation about it, are also kept on your device only, alongside the report. The text is re-sent to our server for the length of a single request when you ask a follow-up question about a report whose 24-hour server copy has already expired; it is not stored there again. Deleting a report deletes its text and conversation with it.
- You can delete server-side data at any time in Settings → Delete my documents, and withdraw AI-analysis consent in Settings → Withdraw AI consent.
Who receives your data
| Who | What they receive | Why |
|---|---|---|
| OpenAI, Anthropic | Document text | To generate your report |
| Google (Firebase) | Anonymous account ID, temporary document copy | Sign-in, server, and temporary storage |
| RevenueCat | Anonymous account ID, device identifier, purchase state | Subscription management |
| Apple | Purchase and payment details | Billing and subscription |
We do not share your data with anyone else, and we do not use data brokers. We require these service providers to protect your data consistently with this policy and applicable App Store requirements.
What we don't do
- No selling of data. No advertising. No AI training on your documents.
- No tracking. We do not link your data with third-party data for advertising or advertising measurement, and we do not share it with data brokers. The app does not request the advertising identifier or show the App Tracking Transparency prompt.
Reminders and notifications
If you allow notifications, deadline reminders are scheduled locally on your device from dates found in your reports. They never pass through our servers.
Contact
Questions or deletion requests: scottiesan@gmail.com