Privacy Policy
Last Updated: April 15, 2025
1. Introduction
At TCGDex, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
We are committed to protecting your personal information and your right to privacy. If you have any questions about this Privacy Policy, please contact us at [email protected].
2. Information We Collect
Personal Information You Provide:
- Account information (email address, username, password) when you create an account with Supabase
- Profile information (optional display name, profile picture)
- Collection data (images and details of your Pokémon cards)
- Transaction information when you purchase a subscription through RevenueCat
- Device token for push notifications (if you opt in to receive notifications)
Information Automatically Collected:
- Device information (device type, operating system, unique device identifiers)
- Usage data (how you interact with the app, features you use)
- Error reports to improve app functionality
- Camera data when you use the card scanning feature (not stored unless you save a card)
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the App's functionality
- Process your transactions through RevenueCat
- Manage your account and provide you with customer support
- Perform analytics to optimize the App experience
- Detect and prevent fraudulent activity and security incidents
- Send you push notifications about app updates, new features, or relevant information (only if you opt in)
- Comply with legal obligations
4. Privacy-First Principles
TCGDex operates under privacy-first principles:
- Data Minimization: We only collect information that is necessary to provide our services
- Local Processing: Card recognition happens on your device whenever possible
- User Control: You have full control over your data and can delete it at any time
- No Data Selling: We do not sell your personal information to third parties
- Transparency: We clearly communicate our data practices
5. Data Sharing and Disclosure
We may share your information with:
- Service Providers: We use Supabase for user authentication and data storage, RevenueCat for subscription management, and Firebase Cloud Messaging (FCM) for push notifications.
- Legal Requirements: We may disclose your information if required to do so by law or in response to valid legal requests.
We do not share or sell your personal information with third parties for marketing purposes.
6. User Rights and Choices
You have several rights regarding your personal information:
- Access and Update: You can access and update your account information through the App settings
- Data Export: You can export your collection data at any time
- Account Deletion: You can delete your account and associated data through the App settings
- Subscription Management: You can manage or cancel your subscription through your device's app store settings
- Push Notifications: You can opt in or out of push notifications through your device settings or the App settings
- Marketing Communications: You can opt out of marketing communications
7. Push Notifications
We use Firebase Cloud Messaging (FCM) to send push notifications to your device. Push notifications are only sent if you have opted in to receive them. These notifications may include:
- Updates about app features or improvements
- Notifications about card collection events
- Reminders about your card collection activity
- Information about price changes for cards in your collection
You can opt out of receiving push notifications at any time by adjusting your device settings or through the App settings. Please note that opting out of push notifications will not delete your device token from our database immediately, but it will be removed during our regular data cleanup processes or when you delete your account.
8. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized or unlawful processing, accidental loss, destruction, or damage.
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.
9. Data Retention
We retain your personal information for as long as your account is active or as needed to provide you with our services.
When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to maintain certain information for legal purposes or to protect our legal interests.
10. Children's Privacy
Our App is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
11. Third-Party Services
Our App uses third-party services that may collect information used to identify you:
- Supabase: For user authentication and data storage. Supabase Privacy Policy
- RevenueCat: For subscription management. RevenueCat Privacy Policy
- Firebase Cloud Messaging: For push notifications. Firebase Privacy Policy
We encourage you to review the privacy policies of these third-party services.
12. International Data Transfers
Your information may be transferred to and processed in countries other than the country in which you reside. These countries may have data protection laws that are different from your country.
We take appropriate measures to ensure that your personal information remains protected in accordance with this Privacy Policy.
13. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
14. Contact Us
If you have any questions about this Privacy Policy, please contact us:
Email: [email protected]