PrismaDex – Privacy Policy
Last Updated: 02/22/2026
This Privacy Policy ("Policy") constitutes a legally binding agreement between you ("User") and UVCODEX LLC ("Company," "we," "us," or "our"). This Policy explains how we collect, use, store, and share your information when you access or use the mobile application ("Application"). By downloading, installing, or using the Application, you acknowledge that you have read, understood, and agree to be bound by this Policy.
If you do not agree to this Policy, you must not use the Application.
1. Information We Collect
1.1 Session Information
- Anonymous user identifier (UUID) -- automatically generated when the Application is first launched. No account creation or login is required.
- Session creation date associated with your anonymous session.
1.2 Card and Collection Data
- Card metadata you provide, including manufacturer, card name, set number, and year.
- Card images captured through your device's camera (front and back photos of trading cards).
- AI grading results, including numerical grades, quality factor assessments, grade descriptions, and certificate identifiers.
1.3 Purchase and Subscription Data
- Transaction identifiers, product identifiers, and event types related to your in-app purchases.
- Purchase dates, expiration dates, and cancellation status.
- Usage limits associated with your subscription tier.
1.4 Automatically Collected Information
- Standard device and usage information as provided by the platform (iOS or Android) in connection with app store purchases.
1.5 Information We Do NOT Collect
- We do not collect your name, email address, phone number, physical address, date of birth, contacts, or location data.
- We do not require you to create an account or log in at any point.
- We do not use cookies or web-based tracking technologies within the Application.
2. How We Use Your Information
We use the information we collect to:
- Provide and operate the Application, including managing your anonymous session, storing your card collection, and delivering AI-powered grading results.
- Process subscriptions and purchases, including verifying entitlements and enforcing usage limits.
- Sync your data between your device and our cloud services using your anonymous session.
- Improve the Application by understanding general usage patterns.
3. How Your Data Is Stored
3.1 Local Storage (On-Device)
- Card images and metadata are cached locally on your device using an on-device database.
3.2 Cloud Storage
- Your card data and images are stored securely in our cloud infrastructure powered by Supabase (hosted on AWS), associated with your anonymous session identifier.
- Card images are stored in a secure cloud storage bucket tied to your anonymous user identifier.
3.3 Data Sync
- Your card data is automatically synced between your device and our cloud services using your anonymous session. Local copies may be removed after successful sync.
4. Third-Party Services
We use the following third-party services to operate the Application. Each service receives only the data necessary for its function:
4.1 Supabase
- Purpose: Anonymous session management, database, and file storage.
- Data shared: Anonymous user identifier, card metadata, and card images.
- Privacy policy: https://supabase.com/privacy
4.2 OpenAI
- Purpose: AI-powered card grading analysis.
- Data shared: Card images are transmitted to OpenAI's servers via time-limited secure URLs for analysis. Images are used solely to generate your grading results.
- Privacy policy: https://openai.com/privacy
4.3 RevenueCat
- Purpose: Subscription and in-app purchase management.
- Data shared: Anonymous user identifier for purchase tracking and entitlement verification. No email address is shared.
- Privacy policy: https://www.revenuecat.com/privacy
4.4 Firebase (Google)
- Purpose: Firebase SDK is initialized for core infrastructure support. Analytics and advertising are disabled.
- Data shared: Minimal SDK telemetry as required by the Firebase SDK.
- Privacy policy: https://firebase.google.com/support/privacy
4.5 Apple App Store / Google Play Store
- Purpose: Processing in-app purchases and subscriptions.
- Data shared: Standard transaction data as required by the respective platform.
5. Device Permissions
The Application requests the following device permissions:
- Camera -- Required to capture photos of your trading cards for grading and collection purposes. Camera access is only used when you initiate a card scan.
No other device permissions (location, contacts, microphone, etc.) are required for the Application's core functionality.
6. Data Sharing and Disclosure
We do not sell, rent, or trade your personal information to third parties.
We share data only with the third-party service providers listed in Section 4, solely for the purposes described. We may also disclose your information if required by law, regulation, or legal process.
The Application has no social features. Your card collection and grading data are private and not visible to other users.
7. Data Retention
- Your session data and card collection are retained for as long as your anonymous session is active.
- If you request deletion of your data, we will delete your session data and card collection from our cloud systems within a reasonable timeframe.
- Data stored only on your device is under your control and can be removed by uninstalling the Application or clearing app data.
8. Data Security
We implement industry-standard security measures to protect your data, including:
- Encrypted data transmission (HTTPS/TLS) for all network communication.
- Secure, session-authenticated access to cloud storage and databases.
- Time-limited signed URLs for image access (URLs expire after a short period).
No method of electronic transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
9. Children's Privacy
The Application is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us.
10. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate personal data.
- Delete your personal data and session.
- Export your data in a portable format.
- Withdraw consent for data processing where applicable.
To exercise any of these rights, please contact us at the address below.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date at the top of this document. We encourage you to review this policy periodically. Continued use of the Application after changes constitutes your acceptance of the updated policy.
12. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
UVCODEX LLC Email: uv@uvcodex.com Website: https://www.uvcodex.com