Your saved shelf stays on your iPhone. A selected analysis photo is shared only after you confirm.
Your privacy, at a glance
Uselyt is provided by Nateetorn Chawana, who is responsible for the personal information described in this policy. This policy covers the Uselyt iOS app, its account, subscription and optional photo-analysis services, this website, and support enquiries. Uselyt is a native iPhone app for iOS 17 or later.
Your saved product shelf is held on your iPhone. Creating an account does not upload it. A selected photo leaves the device for analysis only after your explicit confirmation. We do not sell personal information, build advertising profiles from your product history, or use the website for third-party advertising or marketing analytics.
What stays on your iPhone
Product names, brands, categories, sizes, saved photos, purchase and usage dates, optional recorded times, reviewed ingredients and photo observations, personal notes, check-ins, verdicts, favorites, and unfinished capture drafts are stored locally. Your locally chosen profile image, shelf preferences, reminder settings, and reminder scheduling records also stay on that iPhone.
A guest shelf and each signed-in account shelf are separate. Account shelves are isolated by account and service environment. Signing in does not merge or upload products. The explicit guest-import action can copy a real guest shelf into an empty account shelf and retains the guest copy. Signing out returns you to the guest shelf while retaining the account shelf on that device.
Your product shelf does not synchronise to a Uselyt cloud backup or web shelf. Your iPhone’s backup settings are separate and may include local app data. Removing the app, losing the device, or clearing a shelf may remove locally stored memories. We cannot retrieve a shelf that exists only on your device.
Information used for an account
If you choose Sign in with Apple, we process Apple’s account identifier for Uselyt, the name Apple supplies when available or the name you later set, the email Apple shares when available, account creation and update times, and authentication records. An email may be Apple’s private relay address. An account may have no display name until you add one. Uselyt does not receive your Apple Account password.
The app keeps account credentials in the iPhone Keychain. The account service stores hashes of Uselyt session credentials and encrypted Apple authorization credentials needed to validate or revoke the connection. Authentication challenges and session timestamps help prevent replay and unauthorized access. Apple’s own processing is described in its Sign in with Apple information.
Subscriptions and exports
If you sign in and use Uselyt Plus, Apple processes the purchase and payment. RevenueCat validates purchases, provides subscription status and helps us understand subscription activity. We send RevenueCat an opaque identifier derived locally from your Apple sign-in identity and service environment. It is stable for the same Apple sign-in identity, including after recreating a Uselyt account, and can be associated with your account. We do not send RevenueCat your name, email, raw Apple sign-in identifier, product shelf, photos, notes or drafts.
RevenueCat processes purchase and transaction identifiers, product, price and currency, store and subscription dates, renewal, expiry and refund status, and technical metadata used to operate the service. Purchase history and the opaque account identifier are used for app functionality, fraud prevention and subscription analytics. They are not used for cross-app advertising tracking. See RevenueCat’s privacy policy and Apple’s App Store privacy information. Provider transaction and operational records follow provider retention practices and applicable obligations.
Plus history exports are prepared on your iPhone. CSV or JSON includes saved product information, notes, ingredients, observations, verdicts, dates and usage runs, but not photos, capture drafts or account credentials. You choose the destination using the iOS Files picker. Choosing iCloud Drive or another provider shares the exported file with that provider according to your choice; it does not enable Uselyt cloud sync. Copies you export are separate from account or shelf deletion.
Deleting a Uselyt account does not cancel Apple billing or erase Apple’s purchase history. Manage or cancel the subscription in App Store settings. Sign in with the same Apple identity and choose Restore purchases to recover eligible Plus access. Contact support for billing-data or privacy requests.
Optional photo analysis
Analyze photo requires an account and a separate confirmation for the selected image. After confirmation, the app resizes and re-encodes the image as a JPEG without EXIF metadata, then sends it, including any visible text, through Uselyt’s Cloudflare Worker to OpenAI’s GPT-4.1 mini. The request is used to suggest identity, category, size, readable ingredients, and visible photo observations. It does not upload the rest of your shelf.
Suggestions may be incomplete or wrong. You review and edit them; applying a suggestion updates a draft. A separate Save action stores the product locally. Manual capture remains available without analysis. Avoid sending an image containing unrelated personal information, documents, faces, or other information you do not want processed.
Uselyt does not persist the analyzed photo or returned suggestions in its server database or object storage. Its account database retains only the account identifier, UTC day, and attempt count for usage control. The current limit is 20 attempts per account per UTC day. A provider failure can still consume an attempt after a request has been reserved.
The OpenAI request uses store: false to disable Responses application-state storage. OpenAI states that API inputs and outputs are not used to train its models by default. Provider abuse-monitoring content may nevertheless be retained for up to 30 days, or longer for legal obligations or to prevent harm. This is not a zero-retention service. See OpenAI’s API data controls for its current retention details.
Camera, photos, and reminders
Camera access is requested when you choose to take a photo. The system photo picker lets you choose a specific image. You control device permissions in iPhone Settings. Declining camera access does not prevent adding a product manually.
Local reminders are optional, off by default for each shelf, and require iOS notification permission. They are scheduled on your iPhone and work without sending reminder metadata to Uselyt’s server. Reminder scheduling stays on your iPhone; reminder metadata is not sent to a remote notification or transactional email service. Disabling reminders or changing shelves cancels obsolete lifecycle notifications for the inactive shelf.
Website information and preferences
This website does not provide an account login or access to your iPhone shelf. Interactive product demonstrations use illustrative examples. The site does not install advertising pixels, third-party analytics scripts, or marketing cookies. Its images, styles, and scripts are served as website assets.
If you explicitly save a website motion preference, a small browser-storage record remembers that choice, its version, and the time it was saved. It is not linked to an account or sent to our server for tracking. Without a saved choice, animation follows your device’s reduced-motion preference. You can change or clear the saved preference at any time. See our Cookies & website preferences page.
Cloudflare processes network information needed to deliver and protect the website, such as IP addresses, request details, and timing. Its security features may set technical cookies when enabled. These are distinct from the optional motion preference described above.
Support correspondence
If you email support, we receive the email address, message, and attachments you choose to send. We use them to respond, investigate the reported issue, and maintain relevant support or security records. Please redact unrelated personal information from screenshots and never send passwords, sign-in codes, or private credentials.
Support correspondence is retained as reasonably needed to handle the enquiry, related follow-up, security issues, or legal obligations. Email providers may also process messages under their own terms. Contact us if you would like us to review or delete a support conversation.
Why we process information
Account information lets us authenticate requests, create and restore your profile, apply profile-name edits, validate Apple authorization, end sessions, and delete accounts. Analysis counters help enforce the daily limit and control abuse and cost. Technical request information helps operate and protect the services. Support information lets us answer and resolve your enquiry.
Where applicable law requires a lawful basis, we rely on providing the service you request for account and analysis operations, your consent where required for optional sharing or browser preferences, legitimate interests in reasonable service security and support, and compliance with legal obligations. You can decline future image sharing or withdraw a stored website preference without losing manual capture. Withdrawal does not undo processing that has already occurred.
Photo suggestions do not make legal or similarly significant decisions about you. Your verdicts and repurchase choices remain your own.
Providers and disclosures
Apple supplies Sign in with Apple. Cloudflare hosts the website, account and analysis services, and account and usage database. OpenAI processes the image you confirm for analysis. These providers receive information needed for their role and may process technical metadata to operate and secure their services. Their own applicable privacy and retention terms also apply. See Cloudflare’s privacy policy and the Apple and OpenAI information linked above.
We may disclose information when legally required or reasonably necessary to investigate abuse, protect people or the service, or establish or defend legal rights. If ownership of the service changes, relevant account records may be transferred as part of that change, subject to applicable law and notice where required. Your locally stored shelf is not part of a server database transfer.
Processing across borders
Cloudflare, Apple, OpenAI, RevenueCat, and email infrastructure may process information in countries other than the country where you live. The protections available in those countries may differ. The relevant provider terms and processing arrangements apply to the services described here. Contact us for information about the arrangements and any transfer safeguards applicable to your request.
Retention, sign-out, and deletion
We retain an account profile and its Apple connection while the account exists. Uselyt access credentials are short-lived; the refresh session ends no later than 30 days after sign-in. Expired sessions and sign-in challenges are periodically removed. Analysis-usage records are periodically removed after seven days, or with the associated account’s deletion. The optional browser preference lasts until you clear it or your browser removes it.
Signing out ends the local account session and returns to the guest shelf; it retains that account’s local products. Clearing the current shelf removes local memories and does not delete the server account. Delete account in You requests Apple authorization revocation and removes the server profile, its sessions and associated usage records, then removes that account’s shelf, photos, and drafts on the current iPhone.
If server deletion cannot complete, the app retains the account for a retry. If the account is deleted but local file removal fails, a durable cleanup request is retained; open Privacy & data to retry cleanup. Account deletion does not erase a separate guest shelf or copies on other devices. Provider backup or operational records may follow provider retention practices or legal obligations. OpenAI retention for a previously analyzed image is separate from deleting a Uselyt account.
Your choices and privacy rights
You can use a guest shelf, add products manually, decline each photo-analysis confirmation, edit suggestions, change your display name, manage device permissions, disable local reminders, sign out, clear the current shelf, or request account deletion. Apple controls your sign-in email and private-relay choices. Revoking Uselyt access in Apple settings is separate from deleting a Uselyt account.
Depending on the law that applies to you, you may have rights to access, correct, delete, restrict, or object to processing of personal information, obtain a portable copy, withdraw consent, or complain to the appropriate privacy authority. These rights may have lawful limits. The European Commission’s information for individuals explains these rights under EU data-protection law.
Send a request to support@uselyt.app, describing the request and the account concerned. We may ask for proportionate information to verify you. We will respond within the period applicable law requires. We cannot access a shelf stored only on your iPhone, and this website does not provide a product export or recovery service.
Protecting information
The account and analysis services use HTTPS, session ownership checks, hashed Uselyt credentials, and encryption for stored Apple authorization credentials. App account credentials are kept in Keychain. Access to server records is limited to operation, support, security, and the purposes described here. These measures reduce risk; no system can guarantee absolute security.
Protect your iPhone and Apple Account. Contact support@uselyt.app if you suspect an account or security problem. We will handle a confirmed personal-data incident and any required notices in accordance with applicable law.
Children and eligibility
Uselyt is not directed to children under 13. You should not create an account below the minimum age or without the permissions required in your location. If you believe a child has provided account information without the required permission, contact us so we can investigate and take appropriate action.
Changes and contact
We will revise this policy when the service or our practices change and update the effective date. If a material change requires notice or renewed consent, we will provide it as required by applicable law.
The provider and contact for this policy is Nateetorn Chawana. Send privacy questions, requests, or complaints to support@uselyt.app. You can also visit Support for practical account and device guidance.