Privacy Policy

Prime Subs Keeper

Effective date: 2026-10-05

This policy explains how this application handles information and how to contact us about privacy.

Information we process

Prime Subs Keeper stores the subscription names, prices, currencies, billing cycles, renewal dates, categories, status, icon colors and manually recorded payment entries you provide. Your optional local name, budget, manual exchange rates, reminder preferences and appearance settings are stored in a protected file on your device. No account, email address, password, bank connection or payment card information is requested. If you choose Back up now, a snapshot of these records and settings is sent to the backend. The backend creates a random installation secret, stores its separate hashed identifier and timestamps, and stores your snapshot encrypted in PostgreSQL. The secret is kept in your device Keychain and sent with authorized backup requests. Our Railway-hosted API and public pages receive network information such as IP addresses, request paths, timing and technical error details as part of hosting. We do not use advertising or analytics SDKs or tracking cookies.

How we use information

Local data powers your subscription list, scheduled-charge calendar, estimates, manual payment history, currency conversion, budget and CSV export. Optional local notifications remind you of renewals and budget thresholds. The optional backend stores and restores your private backup, verifies authorization and lets you delete it. Technical request information is used to operate the service, limit requests and investigate availability or security problems. The public privacy contact is valerijkzlvskj@gmail.com; the app does not send email or provide a messaging form.

Service providers and sharing

Railway provides backend hosting, PostgreSQL storage and network infrastructure and may process request and infrastructure logs. The application backend decrypts a snapshot in memory when an authorized request supplies the installation secret. We do not sell your records or share them with advertisers. CSV files remain local until you choose a destination in the iOS share sheet; that chosen app or recipient then handles the exported data under its own practices. Apple provides iOS, device storage, Keychain and notification functionality. Local notifications are scheduled on the device, not through a remote push provider. Information may be disclosed if required by applicable law.

Data retention

Local records remain until you erase them in Settings or remove the app's local storage. Exported copies and any device backups you control may remain separately. Keychain items can survive app removal; server deletion clears the connected installation secret in the app. A server snapshot remains until replaced by a later manual backup or deleted using its installation secret. There is no automatic expiry currently configured. We do not claim a fixed Railway infrastructure-log retention period. No application-managed historical snapshot archive is implemented. Any infrastructure backup or residual storage copy follows the hosting provider's retention and deletion processes and may not disappear immediately when an active database row is deleted.

Deleting your information

Settings provides separate actions to erase local records and to delete the connected server backup. Server deletion removes the installation database row, including its encrypted snapshot, and clears the connected secret after a successful response. Local records remain unless you erase them separately. Restoring a backup replaces local records and settings only after your explicit restore action. Deletion does not recall exported CSV files, copies held by recipients, device backups or residual infrastructure copies. Anyone holding the installation secret can restore or delete that backup. If the secret is lost, the application cannot recover the backup or reliably identify it for deletion from an email request. You may contact valerijkzlvskj@gmail.com with privacy questions, but do not email installation secrets or financial records.

Permissions and your choices

Notification permission is optional and requested only when you enable renewal and budget alerts. You can disable reminders in the app or withdraw notification permission in iPhone Settings. Permission withdrawal stops notification delivery; it does not erase your records. The app does not request location, camera, microphone, contacts or photo-library access and contains no geographic maps. Sharing an export is initiated by you using the system share sheet.

Your privacy rights

You can inspect and edit records in the app, export subscriptions and payment history as CSV, and delete local and server data separately. Depending on where you live, you may have additional rights concerning access, correction, deletion, restriction or complaints to a relevant authority. Contact valerijkzlvskj@gmail.com to ask about these rights or this policy. There is no user account or email-to-installation directory, so we may be unable to locate an installation from your email address alone. Never include your private installation secret in correspondence.

Security

The deployed API uses HTTPS. Each installation receives its own random secret; private endpoints verify it on the server and do not allow public access to snapshots. The secret is stored in Keychain with device-only accessibility. Local files use iOS file protection. Server snapshots are encrypted with AES-256-GCM using a key derived from the installation secret; the stored installation identifier is derived separately and does not reveal that encryption key. The secret is nevertheless presented to the service to authorize operations, so this is not a claim that the server never sees the data. Application logs avoid snapshot contents and secrets, although infrastructure may retain technical request metadata. No storage or transmission method guarantees absolute security. Keep your secret and exported files private.

Children’s privacy

Prime Subs Keeper is a general personal-finance organization utility intended for people managing their own subscription spending. It is not designed specifically for children and does not solicit ages or knowingly seek children's personal information. A parent or guardian with concerns may contact valerijkzlvskj@gmail.com. Because there are no accounts, we cannot determine a user's age from an account profile.

Changes to this policy

We may update this policy when the app's processing or service practices change. The current policy and effective date are published on this page and accessible through Settings in the app. Material processing changes will be reflected in the policy and relevant application controls before those changes are used. Please review this page periodically. Privacy questions can be sent to valerijkzlvskj@gmail.com.