Privacy Policy

Resource Batch Planner

Effective date: 2026-09-29

This policy explains how this application handles information and how to contact us about privacy.

Information we process

Resource Batch Planner stores materials, their names, categories, quantities, units and optional photos; project names, types, recipes, batch sizes and reservations; stock and transfer history; language and default-unit preferences; and an installation identifier when secure storage is available. The working snapshot and preferences are stored on the iPhone. A random installation secret is held in the device Keychain when it can be saved there. When online and secure storage is available, the app sends the snapshot and installation identifier to its Railway-hosted service, which stores the snapshot in PostgreSQL and a hash of the secret. The service and its hosting infrastructure also receive technical request information such as IP address and request metadata when the app contacts the API or anyone visits this website.

How we use information

The app uses local records to calculate free stock, reservations, shortages, shopping needs, project readiness and consumption history while offline. It sends the snapshot to the service to synchronize and restore the working data for the same installation, validate that reserves do not exceed stock, detect revision conflicts and process deletion requests. Technical request information is used to operate, secure and diagnose the service.

Service providers and sharing

The application service and database run on Railway, which processes hosted data and may process request and infrastructure logs as a hosting provider. Apple processes device camera, photo-library and local-notification functions under the operating system when you choose to use them. The app has no analytics, advertising SDK, account provider, email delivery service or data sale. We do not send your records to another recipient for marketing.

Data retention

The local snapshot stays on the device until you remove it in the app or remove the app, subject to iOS storage behavior. The active server snapshot remains until the installation's Delete all data action succeeds. That action deletes its active database row; Railway-managed backups and infrastructure logs may persist according to Railway's own retention controls, which the app cannot immediately erase or specify. We do not claim a fixed period for those copies or logs. A lost installation secret cannot be used to recover the server copy through the app.

Deleting your information

In Settings, Delete all data asks for confirmation and sends an authorized deletion request for this installation. Local records are cleared only after the service confirms deletion, so an offline or failed request does not falsely claim complete deletion. If secure storage is unavailable, the app cannot authorize server deletion and does not claim that full deletion succeeded. Removing the app deletes its local files according to iOS behavior but does not itself send a server deletion request. For a privacy request about data that cannot be reached from the installation, contact Melisande1997@icloud.com and include enough non-secret context to explain the request; never send the installation secret by email. Provider backups and logs remain subject to Railway controls.

Permissions and your choices

The camera is requested only when you choose to photograph a material. Photo-library access is used only when you choose an existing image for a material. A selected image is compressed into the local record and included in its synchronized snapshot. You can deny or withdraw these permissions in iOS Settings and continue using manual material records. If local deficit notifications are enabled, iOS may request notification permission; you can withdraw it in iOS Settings. The app does not request location or map access.

Your privacy rights

You can inspect, edit, export a JSON copy of, or delete your records in the app. You can stop future syncing by keeping the device offline, although existing server data remains until an authorized deletion succeeds. For questions or requests about this policy, contact Melisande1997@icloud.com. There is no account or email support form in the app.

Security

Private API routes require a random secret generated for each installation and stored in the iOS Keychain. If Keychain storage fails, the app keeps records local and disables syncing rather than using an unprotected or temporary secret. The server stores a hash rather than the plaintext secret and checks it before returning or changing private data. HTTPS protects network transport, while Railway hosts the service and PostgreSQL database. No security measure eliminates all risk; keep your device secure and do not share the installation secret.

Children’s privacy

Resource Batch Planner is a general craft-planning tool and is not directed specifically to children. It does not contain social features, targeted advertising or child profiles. If you believe a child's information was entered into the app and need help with it, use the in-app deletion control or contact Melisande1997@icloud.com.

Changes to this policy

We may update this policy when the app, service or processing practices change. The current policy and its effective date will be posted at this page. Material changes will be reflected here before the updated practices are described as current.