PlanKept Privacy Policy

Effective Date: 2026-05-31
Version: 1.2.10

This Privacy Policy explains how PlanKept handles personal information when you use the PlanKept app, the public app page under /apps/PlanKept/, the support and legal pages under /PlanKept/, the external wish-list flow, and related surfaces that link to this policy.

PlanKept is provided by Aleksander Jałtuszyk (“Developer”, “we”, “us”, or “our”). Country: Poland.

PlanKept is designed to be local-first. That means the core product is intended to keep most user content on your device by default. Because features, providers, and platform capabilities can change over time, this policy describes our data practices by category and principle instead of by trying to freeze every implementation detail.

This policy is also intended to support transparency obligations under applicable privacy laws, including the GDPR in the EEA, the UK GDPR, the Swiss FADP, and applicable U.S. state privacy laws such as the CCPA/CPRA where they apply.

If you download, select, or use a local or third-party AI model through PlanKept, that model may be governed by its own terms, use restrictions, or license. PlanKept lists those model terms near the relevant download or selection surface. By using a selected model, you agree to the listed model terms in addition to PlanKept’s own legal terms.

PlanKept does not operate a custom developer backend, developer-controlled analytics service, app account server, or telemetry pipeline for the app. The PlanKept website and hosted legal documents are static pages served through GitHub Pages. GitHub may process technical request metadata, such as IP address and request information, under GitHub’s own privacy practices when those pages or the hosted legal manifest are loaded.

Contact:

Summary

1. Information We Collect

PlanKept is primarily local-first. The app stores most user-created content and settings on your device, and we do not receive that local app content unless you intentionally send it to us through a support, contact, or similar channel.

Depending on how you use PlanKept, the following categories may be processed locally by the app, processed by Apple or another provider you choose, or received by us only when you intentionally contact us:

PlanKept does not currently ask for contact-list permission or precise GPS location permission. If you choose to attach a photo, screenshot, file, or other image, information embedded in that attachment, such as visible text, faces, document details, timestamps, or location metadata, may be part of the content you choose to process.

PlanKept does not currently ask you to create an app account or provide a password. PlanKept also does not receive or store full payment-card numbers for App Store in-app purchases. Apple or the relevant platform payment provider processes payment-card details, refunds, taxes, family sharing, purchase restoration, and related payment records under its own terms and policies. PlanKept may receive purchase, entitlement, transaction, or restore status needed to unlock access and provide support.

We aim to collect only the information reasonably needed to operate the relevant feature, comply with law, protect the service, or respond to you.

2. How We Use Information

We may use information to:

3. When Information May Leave Your Device

PlanKept is intended to be local-first, but some information may leave your device when you choose to use a feature that depends on a third party or platform provider.

Examples can include:

Those providers operate under their own terms, notices, and privacy policies. Because available providers and routes may change, this policy describes the categories of outside processing rather than attempting to maintain an exhaustive provider inventory here.

If you attach a photo or screenshot to an AI conversation or proof flow, treat that image as part of the content you are asking PlanKept to process. Local or on-device model routes are intended to keep the image on your device; in that case, image handling itself is not an example of information leaving your device. External or user-configured AI/model routes may require sending the image, an encoded copy of the image, image-derived observations, or related metadata to that provider. Avoid attaching images that contain information you do not want processed, such as faces, documents, addresses, health details, messages, location metadata, or other sensitive content.

Where applicable, we rely on one or more of these grounds:

5. Advertising, Tracking, Cookies, And Campaign Measurement

This section is about advertising PlanKept outside the PlanKept app. PlanKept is not an ad-supported app, and we do not show third-party ads inside PlanKept.

PlanKept may be promoted through current or future paid or organic campaigns on third-party platforms such as Meta, Instagram, TikTok, Apple Search Ads, Google, or similar services. If you see, click, save, share, comment on, or otherwise interact with a PlanKept ad on one of those platforms, the platform may process information about that interaction under its own terms and privacy policy.

Today, the PlanKept app and website do not include Meta Pixel, TikTok Pixel, third-party ad SDKs, or similar ad-tracking code. The current app also does not request Apple App Tracking Transparency permission and does not access the advertising identifier.

We may buy ads and use the ad platform’s own dashboard, campaign names, non-sensitive campaign links or parameters, such as UTM parameters, referral source, and aggregated platform reports, to understand whether a campaign is working. Website hosting, browser, and security systems may also receive ordinary request metadata such as IP address, user agent, request time, and the page requested.

If we later add a website pixel, app event SDK, server-side conversion API, custom audience upload, or similar advertising measurement tool, we will treat that as a material advertising-data practice. Before or with that change, we will update this policy and the App Store privacy disclosures, use legally required cookie or tracking consent controls, and comply with Apple App Tracking Transparency where the iOS app tracks users across other companies’ apps or websites.

We will not intentionally send plan text, proof statements, proof attachments, AI conversation content, Health data, Screen Time data, selected blocked-app lists, support-message text, children’s data, or other sensitive app content to Meta, TikTok, Google, Apple Search Ads, or similar ad platforms for targeting or campaign measurement. We also will not upload support lists or wish-list email addresses for custom-audience advertising unless we have a lawful basis, required notice, and any required consent.

In practical terms, we may advertise PlanKept, review whether ads seem to be working, and change ad creative, audiences, budgets, or landing-page links based on that campaign-level information. That is different from adding tracking code to the app or website, uploading contact lists, or sending PlanKept app content to an ad platform.

The current PlanKept website is a static website and does not intentionally set our own non-essential analytics cookies, advertising cookies, browser local storage, or session storage on PlanKept product or legal pages. Hosting, browser, security, operating-system, App Store, ad-platform, support, wish-list, or other third-party destinations may use their own cookies, local storage, sessions, pixels, or similar technologies under their own policies when you use those services. You can usually block or delete cookies and similar browser storage through your browser settings, but doing so may affect third-party forms, links, or platform-managed features.

6. Sharing

We do not sell personal data, and we do not currently use PlanKept for cross-context behavioral advertising. Because PlanKept does not operate a custom app backend, most app content stays on your device unless you choose a feature or channel that involves Apple, a model host, support email, a form provider, or another third party. We may disclose or make information available to third parties only when reasonably necessary to operate the service, comply with law, or provide a feature you choose to use.

Examples can include:

If PlanKept, its assets, or the developer’s related business are involved in a merger, acquisition, financing, sale, reorganization, bankruptcy, or similar transaction, information may be disclosed or transferred as part of evaluating or completing that transaction, subject to appropriate limits and this policy where applicable.

7. Retention

We keep personal information only for as long as reasonably necessary for the purposes described in this policy, including support, legal compliance, fraud prevention, legitimate operations, and providing the features you request.

Locally stored app records may remain on your device until you edit, delete, or remove them, or until the app clears temporary or replaceable local files in the ordinary course of operation.

Depending on your device settings, Apple platform behavior, and how iOS handles app containers, local PlanKept records may be included in Apple-managed device backups, device transfers, restores, or similar operating-system storage features unless the app or operating system excludes a particular file. Those Apple-managed backup, restore, and device-migration features are controlled by Apple and your device settings.

When we no longer need information we control outside your device, we aim to delete, anonymize, or aggregate it where reasonably possible. Some copies may persist for a limited time in backups, logs, archives, fraud-prevention records, legal records, or systems controlled by third-party providers. It may not be technically possible to remove every residual copy immediately.

Campaign links, referral information, and aggregated ad reports may be kept for as long as reasonably needed to understand campaign performance, manage advertising accounts, prevent misuse, keep business records, or comply with legal obligations.

8. Data Security

We use reasonable measures intended to protect information, but no method of storage, transmission, or processing is perfectly secure. We cannot guarantee that information will never be accessed, disclosed, altered, or destroyed because of a bug, outage, user action, device issue, provider issue, security incident, or other failure. You should protect access to your device and avoid adding sensitive information to plans, proof, support messages, or AI inputs unless you are comfortable processing it through the selected feature or provider.

9. International Transfers

If website, email, platform, or feature providers process information in other countries, your information may be transferred internationally and handled under those providers’ legal and contractual safeguards where applicable.

10. Children’s Privacy

PlanKept is intended for people who are at least 13 years old. We do not knowingly seek to collect personal information from children under 13.

If you are 13 or older but under the age of majority where you live, you may use PlanKept only if your parent or guardian permits it and any applicable legal requirements have been satisfied.

Parents or guardians should not permit children under 13 to use PlanKept. If you believe a child under 13 has provided personal information to us, contact us so we can take appropriate steps.

11. Your Rights

Depending on where you live and subject to applicable law, you may have rights such as the right to know, access, correct, delete, restrict, object, or request portability of certain personal information, the right to withdraw consent where processing is based on consent, the right to object to certain processing, and the right not to be discriminated against for exercising applicable privacy rights.

You may also have the right to lodge a complaint with a data protection authority. For users in Poland, the relevant authority is the President of the Personal Data Protection Office (UODO).

If applicable U.S. state law gives you the right to opt out of sale, sharing, or certain targeted advertising uses, note that PlanKept does not currently describe its own app or website practices as selling personal data or using personal data for cross-context behavioral advertising. If we add a practice that qualifies as sale, sharing, targeted advertising, or cross-context behavioral advertising under an applicable law, we will provide the legally required notice and opt-out or consent mechanism.

Many PlanKept records are intended to remain local to your device, which means you can often manage them directly in the app or by deleting local app data.

We may need to verify your request before acting on it, and privacy rights are not absolute. For example, we may keep limited information where required or permitted for legal compliance, security, fraud prevention, dispute handling, support records, or to complete a transaction you requested.

To exercise applicable rights for data we control outside your device, contact us at plankeptapp@gmail.com, call +48 73 2099027, or use the support page.

PlanKept may link to or rely on third-party websites and services. Those services are governed by their own policies and terms. We are not responsible for the content, accuracy, security, availability, or privacy practices of third-party services that we do not control.

We use safeguards intended to reduce explicit, unsafe, or age-inappropriate AI responses, but no automated system is perfect.

13. Changes To This Policy

We may update this policy from time to time. When we do, we will update the effective date and version above.

14. Contact

For privacy questions, contact: