Your camera, Album, and Diary
PictoPop keeps your original photos, edited versions, silent movies, creative recipes, custom frames, notes, and preferences on your device. These features work without a Social account. Album contents and private diary entries are not automatically uploaded.
Camera permission lets you take photos and silent movies. PictoPop does not record microphone audio. The system photo picker lets you select images to import, and Photos permission is used when you choose to export. Face effects use on-device processing. Facial landmarks or image measurements may be retained locally with editable creations or drafts so you can reopen them. They are not used to verify your identity.
Purchases
Apple processes payments. RevenueCat processes purchase history, access status, an anonymous app user identifier, a device vendor identifier (IDFV), and app/store information to manage access, restore purchases, and provide purchase and access analytics. When you use Customer Center, RevenueCat also processes interaction events such as opening it or selecting a purchase-management option. Your photos and diary entries are not sent to RevenueCat, and the app does not link your Social email or identity to its purchase identifier. We do not receive your payment card details.
Optional camera-shell referrals
Referral rewards are separate from Social and do not require Social signup. A customer with active Full Pack access can choose one of eight eligible camera shells for each verified new friend who downloads and opens PictoPop through their referral. The friend can use the free app. Using an earned shell still requires active Full Pack access; saved rewards remain available if access later resumes.
When you use referrals, the app sends an Apple-signed app transaction proof (AppTransaction) to our Cloudflare-hosted service. We verify it to identify the app acquisition, check its original acquisition date, restore the correct reward record, and prevent a reinstall or the same acquisition from earning duplicate credits. A new acquisition can be credited to only one inviter.
The referral service stores a hashed acquisition identifier, the signed original acquisition date, a random referral code, relationships between inviter and referred acquisition, earned credits, chosen shell identifiers, and timestamps. The signed proof and raw Apple transaction identifier are not stored or logged by our referral service. Short-lived, hashed IP-address and account rate-limit records help protect the service from abuse.
We retain the separate referral ledger to restore earned shells and prevent duplicate rewards. Deleting the app, local creations, or a Social account does not erase this ledger or reset referral eligibility. To ask about referral data or request deletion, contact help@usefullyyours.com. We may need to verify your request and retain records where needed for security, fraud prevention, or legal obligations; there is no in-app referral-ledger deletion control.
Sharing, backups, and deletion
You choose when to export or share a creation, and the receiving service handles that copy under its own policies. Device backups and Photos synchronization depend on your Apple settings. Delete local creations and notes in the app; export important work before removing the app.
Deleting a Social post hides it and queues its image for removal. Deleting a Social account removes account-linked records and queues stored images for deletion; some security, moderation, or legally required records may need to be retained. Processing is not always immediate. Account deletion leaves your local Album in place. Copies already saved by someone else cannot be recalled by the app.
Deleting local data or a Social account does not cancel an App Store subscription or erase Apple or RevenueCat purchase records. Manage subscriptions in your Apple Account settings. The separate referral records described above remain subject to their own retention and request process. For help with deletion or support records, contact help@usefullyyours.com.
Website and support privacy
The Usefully Yours website privacy policy explains support correspondence, hosting, retention, international processing, your applicable rights, and how to make a request.
We’re here to help.
For questions about your data, your rights, or these terms, write to help@usefullyyours.com.
Services used by Social
When Social is enabled, Cloudflare provides the backend, database, and private image storage; Resend delivers email login codes; Apple provides Sign in with Apple; and OpenAI processes submitted images and text for moderation and to read text visible in posted images. Posted content is therefore processed by these services for safety checks, not only by your friends. Provider retention and security practices also apply.