Privacy Policy
Last updated 2 September 2026
Attic ("the app", "we", "us") is an antique and collectible identifier for iPhone. This policy explains what the app handles, where that data lives, and what you can do about it.
The short version. Attic has no login screen and never asks for your name, email, or phone number. Your scans and collection stay on your iPhone and sync through your own iCloud account, which we cannot read. Scan photos are sent to Google's Gemini model only to produce an identification. A random anonymous ID (Firebase Authentication) remembers your free-scan allowance in Firestore. We collect basic usage analytics through Firebase — never your photos, item names, or collection contents. There is no crash reporting SDK, no advertising, and no cross-app tracking.
Summary
- We do not ask for your name, email address, phone number, or any visible account login.
- Your collection (photos, results, purchase log) is stored on your device and, if you are signed in to iCloud, in your private iCloud account — not on an Attic server we can browse.
- Scan photos are sent to Google (Gemini, via Firebase AI Logic) for identification only.
- Your free scan count is stored in Firebase Firestore under an anonymous Firebase Authentication ID (no personal details).
- We use Firebase Analytics for basic product events (screens, scans, paywall, errors). Events contain counts and categories only — never photos, item names, or collection data.
- We use no crash reporting SDK, no advertising SDK, and no Advertising Identifier (IDFA).
- Subscriptions are processed by Apple. We never receive your card number or billing details.
- We do not sell or share your data with anyone for marketing.
What the app handles
Scan photos
Photos you take or choose are saved on your device using Apple's SwiftData framework. Before anything else happens they are downscaled — to a maximum of 1600 pixels when added to a scan, and to a maximum of 1280 pixels for the copies sent for identification.
Up to three photos from a scan are transmitted over an encrypted connection to Google's Gemini model so it can identify the piece. Attic has no server of its own in that path and keeps no copy of your photos outside your device and your iCloud account. Google's handling of the request is governed by its own terms, linked below.
Identification results
The result Attic saves alongside your photos — name, category, era, materials, maker's marks, value range, confidence, verdict, suggested max buy price, and the reasoning text — is stored on your device and in your iCloud account. Nowhere else.
Your purchase log
If you record what you paid for a piece, where you bought it, the date, a note, or mark it as a favourite, that information is stored with the item on your device and in your iCloud account. It is yours; we never see it.
iCloud sync
When you are signed in to iCloud, your collection syncs through Apple's CloudKit into the private database of your own iCloud account (container iCloud.com.attic.antique). A private CloudKit database is only accessible to you — the developer of an app cannot read, browse, or export it. If iCloud is unavailable or you are signed out, the app simply saves locally and keeps working.
Free scan count
The number of free scans you have used is stored on your device and synced to Firebase Firestore under an anonymous account created automatically when you first open the app. This account has no name, email, or phone number — only a random ID so Attic can remember your allowance if you delete and reinstall the app.
Anonymous sign-in
Attic signs you in anonymously through Firebase Authentication on first launch. No login screen, password, or personal details are required. The anonymous ID is used only to enforce the free scan limit and is not linked to your Apple ID or iCloud account.
Abuse prevention (App Check)
Identification requests are protected by Firebase App Check using Apple's App Attest. Your device produces a cryptographic token proving the request comes from a genuine, unmodified copy of Attic. This token contains no personal information and does not identify you.
Subscriptions and purchases
- Payment processing. All purchases and renewals are handled by Apple through the App Store and StoreKit. We do not collect, store, or have access to your card number, bank details, or Apple ID credentials.
- What the app learns. On your device, Attic asks StoreKit whether you currently hold an active Attic Pro entitlement, so it can unlock unlimited scans and support Restore Purchases. Nothing about this is uploaded to us.
- Apple ID. Your subscription is associated with your Apple ID by Apple. Manage or cancel it in Settings → your name → Subscriptions.
Apple's App Privacy label for Attic declares "Purchase History" as linked to you, because Apple associates the subscription with your Apple ID. It is not used for tracking and it is not sent to us.
Analytics, crash reporting, and advertising
Attic uses Google Analytics for Firebase to understand how the app is used — for example which screens are opened, whether a scan succeeded or failed, and paywall interactions. Events include counts and categories (such as item category or error reason) but never your photos, item names, collection contents, or any text that could identify a specific piece you scanned.
Analytics is disabled during in-app screenshot capture builds. Attic does not use the Advertising Identifier (IDFA), does not ask for App Tracking Transparency permission, and performs no cross-app or cross-site tracking. The app's privacy manifest declares NSPrivacyTracking as false with no tracking domains.
There is no crash reporting SDK and no advertising SDK.
Permissions the app asks for
| Permission | Why |
|---|---|
| Camera | To photograph antiques and collectibles for identification. Declining it means you can still scan using photos from your library. |
| Photo library | To import photos of pieces you have already shot. Attic only receives the images you explicitly pick. |
Third parties
- Google — Firebase AI Logic and the Gemini model process your scan photos to return an identification; Firebase Authentication provides an anonymous ID for scan-quota enforcement; Firebase Firestore stores your free-scan count against that ID; Firebase Analytics receives basic usage events; Firebase App Check verifies the app. See Firebase Privacy, Firebase AI Logic data governance, and the Google Privacy Policy.
- Apple — iCloud/CloudKit sync, App Store purchases and subscriptions. See the Apple Privacy Policy.
- eBay — tapping "See sold comps" opens a standard eBay search in your browser using the item's description. It is an ordinary web link; we send no personal data with it.
What we do not do
- No advertising or ad networks.
- No behavioural profiling and no tracking for advertising.
- No use of the Advertising Identifier (IDFA).
- No sale of personal data.
- No collection or storage of payment details.
- No account, so nothing to breach on our end.
Retention and deletion
Individual items. Swipe any piece in your Collection to delete it. That removes the item, its photos and its purchase log from your device, and the deletion propagates to your iCloud copy.
Everything. Deleting the app removes the data stored on that device. Your free-scan count in Firestore is tied to an anonymous Firebase ID and may persist across reinstall if Firebase restores the session on your device. To remove the iCloud copy of your collection, go to Settings → your name → iCloud → Manage Account Storage and delete Attic's data, which is held under your own Apple account.
Subscriptions. Deleting the app does not cancel a subscription. Cancel through Apple in Settings → your name → Subscriptions. Apple retains purchase records under its own policies.
Children's privacy
Attic is not directed at children under 13, and the app collects no identifying personal information from anyone.
Your rights
Depending on where you live — for example under the GDPR or the CCPA — you may have rights to access, correct, export or delete personal data held about you. In Attic's case there is very little to exercise them against: we hold no accounts and no copy of your collection. Your data sits in your device and your own Apple account, where you can view and delete it directly, and billing records are held by Apple. If you have a question or a request, write to us at the address below and we will answer.
A note on valuations
Value ranges, confidence ratings and verdicts are automated estimates generated for information only. They are not a professional appraisal or financial advice. See the Terms of Use.
Changes to this policy
We may update this policy as the app changes. Material changes appear here with a new "Last updated" date.
Contact
Attic
Email: melikyanhaykaz@gmail.com