Privacy Policy
Instant Context ("the App") is provided by Instant Context. This policy explains what data we collect, how we use it, and the choices you have. The App uses device capabilities (e.g., Camera, Microphone) and third‑party services such as Google AdMob, RevenueCat, Supabase, Google Cloud Vision, Google Generative AI (Gemini), and SerpApi.
Account & Usage Information
Account Information
- Email address (when you sign up)
- Authentication credentials (managed securely via Supabase Auth)
Usage Data
- Scan history (images you process)
- OCR text extracted from your scans
- Daily scan quota usage
- Subscription/purchase information (via RevenueCat)
- App usage analytics (via PostHog)
Device Information
- Device type and model
- Operating system version
- App version
- Unique device identifiers (for analytics)
Advertising Data (Free Users)
- Ad interaction data (via Google AdMob)
- Ad watch history for bonus scan tracking
Summary
- Purpose: Provide core features (camera/microphone capture), display ads, manage subscriptions, and sync data you explicitly submit.
- Key partners: Google AdMob (ads), RevenueCat (in‑app purchases/subscriptions), Supabase (backend data storage/processing), Google Cloud Vision and Google Generative AI / Gemini (scan identification), SerpApi (visual product matching and shopping prices).
- Sensitive permissions: Camera and Microphone are requested to enable features you choose to use.
Data We Collect
1. Data you provide
Content you capture or submit (e.g., images, audio, text queries). This remains on‑device unless you choose to upload/sync or use features that call remote APIs.
2. Device and usage data
App crash logs, basic diagnostics, and performance metrics.
3. Advertising data (Google AdMob)
AdMob may collect the Android Advertising ID (AAID), IP address, coarse location (derived from IP), device information, and ad interaction data for ad delivery and measurement. See Google’s policies: policies.google.com/technologies/ads.
4. Purchase data (RevenueCat)
RevenueCat processes purchase receipts and related metadata to validate, manage, and restore subscriptions. See RevenueCat’s privacy: revenuecat.com/privacy.
5. Backend data (Supabase)
When features are used that sync or store data, Supabase processes the data you submit (e.g., account info, app content). Supabase privacy: supabase.com/privacy.
AI Processing Services
Instant Context uses multiple AI and visual-search providers to identify objects and (when you choose) look up prices. Paid API keys stay on our servers; the App calls Supabase Edge Functions that forward requests on your behalf. When you scan an object while signed in:
1. Visual Analysis (Google Cloud Vision)
- Your captured image is sent over an encrypted connection to a Supabase Edge Function that calls the Google Cloud Vision API for labels, logos, on-image text (OCR), and related visual signals used to help identify the subject.
- Google processes the image to return those analysis results. See Google Cloud Privacy Notice.
- No Instant Context API keys or advertising identifiers are included in that image payload.
2. Identification & Narrative (Google Generative AI / Gemini)
- Your captured image (and related scan context) is transmitted over an encrypted connection to a Supabase Edge Function that calls Google Generative AI ("Gemini") for product identification and the written summary shown in results.
- Google processes that data to generate the identification response. Under Google’s current Gemini API terms, images submitted via the API are not used to train Google’s generative models. See Google Gemini API Terms.
- No Instant Context API keys or advertising identifiers are included in that image payload.
3. Visual Product Matching (SerpApi / Google Lens–style lookup)
- To improve brand and model accuracy, a copy of your scan photo may be uploaded to Supabase Storage so it is reachable at a temporary public image URL.
- That URL (not the raw bytes from your phone in the SerpApi request body) is sent to a Supabase Edge Function that calls SerpApi’s Google Lens–compatible visual search engine. SerpApi fetches the image from that URL to return publicly available visual matches (for example, similar product pages and titles).
- Device language/region settings may be forwarded as locale parameters so results better match your market. See SerpApi Legal.
- If you are not signed in, or if upload/lookup fails, the App continues without this step and falls back to Vision + Gemini identification alone.
4. Price Matching (Google Gemini & SerpApi Shopping)
- When you use the price comparison feature, a short text query (product name) is sent to a Supabase Edge Function that calls Google Gemini for relevance filtering and SerpApi (Google Shopping) for live pricing data.
- Only the product name string is transmitted for that shopping lookup — no scan image is included in the shopping request.
- SerpApi processes the query to return publicly available shopping results. See SerpApi Legal.
Data Handling Guarantees
- All API communications use TLS encryption in transit.
- Scan photos may be retained in your account history (and related storage) as long as needed for History and related features, or until you delete them / your account where applicable.
- Third-party AI and search providers process data to fulfill the API request. Retention and training practices are governed by each provider’s current terms and privacy policies (linked below).
Additional Analytics
- PostHog: App usage analytics and performance monitoring
How We Use Data
- Provide and improve App functionality.
- Deliver and measure advertisements.
- Process purchases/subscriptions and maintain entitlements.
- Diagnose and fix issues.
Sharing
We share data with service providers listed above only to operate the App. We do not sell personal data.
Data Retention
User‑generated content is retained only as long as needed for the feature you use or as required by law. Ad/purchase telemetry is retained per partner policies (AdMob/RevenueCat).
Security
We use industry‑standard measures to protect data. No method of transmission or storage is 100% secure.
Children’s Privacy
The App is not directed to children under the applicable age limits and should not be used by them.
Your Choices and Controls
- Ad personalization: Limit ad personalization via device settings for Ads (Android: Settings → Google → Ads).
- Camera/Microphone: Disable permissions in system settings; features depending on them will not work.
- Account/data requests: Contact us to access, correct, or delete data stored with our services where applicable.
International Transfers
Our partners may process data globally. Safeguards are applied per partner policies and applicable laws.
Contact
Email: support@instantcontext.app
Legal Basis (GDPR)
We process your data based on:
- Consent: You agree to our terms when signing up
- Contract: Necessary to provide our service
- Legitimate Interest: Service improvement and security
- Legal Obligation: Compliance with applicable laws
Children's Privacy
InstantContext is not intended for users under 13. We do not knowingly collect data from children under 13.
Changes to This Policy
We may update this policy from time to time. The latest version will be available at this URL.