VinylCue Legal
VinylCue Privacy Policy
This Privacy Policy explains how VinylCue collects, uses, stores, and protects information when you use the VinylCue mobile app and related services.
VinylCue helps people scan, identify, value, organize, and revisit vinyl records. The app is not a professional appraisal, authentication, grading, or investment advisory service.
Information We Collect
We collect the anonymous account and authentication identifier created through Supabase Auth to operate your account.
We collect product records and inputs needed for the features you use, such as scan mode and source, record images, barcode, search or catalog-number text, matrix or runout inputs, identification and price results, selected condition, history, collection items, CSV export requests, feedback notes, and account deletion requests.
When you scan or upload an image of a cover or label, we store the image in Cloudflare R2 with the related scan record, retain related identification records in our first-party services, and send the necessary image and request data to OpenRouter for image evidence extraction. Barcode and confirmed matrix/runout text may be used without sharing an image with OpenRouter. We then use Discogs record metadata and price data, where available, to identify releases and present reference information.
- Authentication and account identifiers from Supabase Auth.
- Purchase and entitlement status from RevenueCat and the App Store.
- Firebase Analytics app-instance or device identifiers, app version, screen views, and low-cardinality product interaction events used for first-party product analytics.
- Tenjin attribution analytics app-instance or device identifiers, basic device environment information such as app version, OS version, device model, and locale, and selected low-cardinality custom event names used for attribution measurement.
- Support or feedback content you choose to send, including notes attached to scan results.
How We Use Information
We use information to provide record lookup, price range estimation, history, collection, subscription, restore purchase, feedback, account deletion, and cache management features.
We use product activity needed to provide, maintain, and improve VinylCue. We do not sell personal information.
Firebase Analytics does not send your search text, feedback notes, barcodes, matrix or runout text, record identifiers, scan identifiers, collection item identifiers, Supabase user ID, or ATT authorization status. VinylCue does not set a Firebase Analytics account User-ID or use this data to track you across other companies’ apps or websites.
Tenjin attribution analytics does not receive your search text, feedback notes, barcodes, matrix or runout text, business record identifiers, Supabase user ID, IDFA, or ATT authorization status. VinylCue sends selected low-cardinality custom event names to Tenjin for attribution measurement; purchase and renewal revenue remains handled and reported through RevenueCat and the App Store and is not sent as Tenjin custom events. We do not use Tenjin custom events to track you across other companies’ apps or websites.
AI Image Processing
When you choose a cover or label camera scan or confirm an imported image, you instruct VinylCue to upload the image to our server, store it with the related scan in Cloudflare R2, and share it with OpenRouter, a third-party AI provider, to identify the record.
If you do not want to submit an image for this processing, you may use barcode or text search instead.
Payments and Subscriptions
Purchases are handled by Apple through the App Store. VinylCue receives purchase, subscription, product, entitlement, and renewal status through RevenueCat, but we do not receive or store your full payment card details.
Deleting your VinylCue account does not cancel an active App Store subscription. You must manage or cancel an App Store subscription through Apple.
Service Providers
We use service providers to operate VinylCue, including Supabase for authentication and first-party data, Apple App Store services and RevenueCat for purchases and entitlement status, Firebase Analytics for privacy-preserving first-party product analytics, Tenjin for attribution analytics, Cloudflare R2 for scan objects, Redis-compatible services for short-lived caching, OpenRouter for image evidence extraction, and Discogs for record metadata and market data.
We provide these services only the information needed for their respective function. We require service providers that process user data on our behalf to use it only for the requested service and maintain protections consistent with this Privacy Policy. Their handling of data is also subject to their own terms and privacy practices.
Retention
Account, collection, history, and feedback records are kept while your account is active and are deleted through the account-deletion process, unless a shorter product action removes them first. User-owned scan images in Cloudflare R2 are kept with the related scan records until account deletion or earlier operational cleanup.
Redis-compatible cache entries are short-lived and expire automatically. App Store and RevenueCat purchase or entitlement records, Firebase Analytics and Tenjin analytics data, security records, backups, and non-identifying deletion audit records may be retained for the period needed for subscription administration, configured analytics retention, fraud prevention, backup rotation, or legal compliance. We do not use those exceptions to keep first-party content indefinitely.
Account Deletion
You can submit an account deletion request from Settings. After a confirmed request, we restrict access to protected VinylCue features while a background deletion process runs.
That process deletes first-party user data in our database, user-owned R2 scan objects, and the related Supabase Auth account. Once completed, we retain only a non-identifying deletion audit record needed to document the request lifecycle.
Your Choices
You can manage subscriptions through your Apple account, restore purchases from Settings, clear local cache from Settings, and request account deletion from Settings.
When you choose Collection export, VinylCue generates a CSV containing the selected collection data and presents it through the iOS Share Sheet. Any recipient or service you choose to share with handles the exported file under its own rules.
VinylCue currently presents the App Tracking Transparency system permission prompt to preserve a future advertising-attribution choice. The current version does not track you across other companies’ apps or websites, read the advertising identifier, use the authorization result, or share your data for that purpose. Denying this permission does not limit core app features, and you can manage it in iOS Settings.
International Use
VinylCue is operated from the United States and may process information in the United States and other locations where our service providers operate.
Children
VinylCue is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
Changes to This Policy
We may update this Privacy Policy as VinylCue changes. The Last Updated date above shows when this policy was most recently revised.
Contact
Questions about this Privacy Policy may be sent to contact@voispark.com.