Effective date: July 30, 2026 · Last updated: July 30, 2026
Short version: Cardhaven has no accounts and no servers. Your cards, tickets, photos and barcodes stay on your device and in your own private iCloud account. We never see them, and nothing is sold or shared with third parties.
1. Who We Are
Cardhaven is developed and maintained by the Cardhaven team ("we", "us", or "our"). If you have any questions about this policy, please contact us at support.actitrack@gmail.com.
2. What Data We Collect and Why
Cardhaven requests access to a few device capabilities to provide its features. Here is exactly what is accessed and why:
2.1 Your Cards & Passes On device
What: Card names, barcodes, membership numbers, balances, notes, expiry dates, tickets, and any photos or files you attach.
Why: This is the content of your wallet — it is what the app exists to show you.
Where it goes: The app's private storage on your device, plus your own private iCloud container if iCloud is enabled. Never our servers.
2.2 Camera Camera
What: The live camera view while you scan a card or ticket.
Why: To read a barcode or the printed details off a card so you don't have to type them.
Where it goes: Scanning and text recognition run entirely on-device using Apple's Vision framework. Frames are never uploaded.
2.3 Photo Library Photos
What: Only the individual photos or screenshots you pick.
Why: To import a card image, a ticket, or a photo of the front or back of a card.
Where it goes: Copied into the app on your device. We never read your library as a whole and never upload it.
2.4 Location Optional
What: Your approximate location, and the location of a store you choose to link to a card.
Why: To remind you about a card when you are near the store it belongs to.
Background location: Used only to trigger those store reminders. Entirely optional — the app works fully without it.
Where it goes: Stays on your device. Geofence monitoring is handled by iOS itself; no location is ever transmitted to us.
2.5 Notifications Optional
What: Reminders for expiring cards, upcoming tickets, and nearby stores.
Why: So a pass doesn't quietly expire or get missed.
Where it goes: Scheduled locally on your device. There is no push server and we send you nothing.
2.6 iCloud / CloudKit Sync iCloud
What: Your cards, attachments, and app preferences.
Why: To keep your wallet in sync across your own Apple devices and to survive a reinstall.
Where it goes: Your private iCloud container. Only you can access it through your Apple ID; we have no access. Turn it off in iOS Settings → [Your Name] → iCloud → Apps Using iCloud.
2.7 Shared Collections Optional
What: A collection of cards you explicitly choose to share.
Why: So family or household members can use the same cards.
Where it goes: Shared directly with the people you pick through Apple's iCloud sharing. You can stop sharing at any time from the app, and we never see the contents.
2.8 Purchases App Store
What: Whether you have an active Pro purchase or have left a tip.
Why: To unlock Pro features on your devices.
Where it goes: Handled entirely by Apple's App Store. We never receive your name, card details, or billing address.
3. Data We Do NOT Collect
We do not run any servers — the app makes no network calls of its own.
We do not use advertising identifiers (IDFA) or any ad tracking.
We do not use third-party analytics SDKs (no Firebase, Amplitude, Mixpanel, etc.).
We do not sell, rent, or trade your data to any third party.
We do not have access to your iCloud data.
We do not ask you to create an account, and we do not collect your email address.
4. Diagnostics & Crash Logs
Cardhaven keeps a small diagnostic log on your device to help troubleshoot problems. It never leaves your device unless you attach it yourself when sending feedback by email. The app also uses Apple's native MetricKit framework, which delivers anonymized crash and performance reports through the App Store; that data contains no personally identifiable information, and you can opt out in iOS Settings → Privacy & Security → Analytics & Improvements.
5. Children's Privacy
Cardhaven is not directed at children under 13. We do not knowingly collect any personal information from children.
6. Your Rights
Because all your data is stored on your own device and in your own iCloud account, you are in full control:
No account to delete: The app has no sign-up and no user account, so we hold nothing of yours to delete.
Delete your data: Delete a card to remove it from the app and from your iCloud sync, or delete the app to remove all local data at once.
Revoke permissions: Go to iOS Settings → Cardhaven to revoke Camera, Photos, Location, or Notification access at any time.
iCloud data: Manage or delete the synced copy through iOS Settings → [Your Name] → iCloud → Manage Account Storage.
Export: You can export your cards to a CSV file at any time from Settings.
7. Changes to This Policy
If we make material changes to this privacy policy, we will update the "Last updated" date at the top of this page. Continued use of the app after changes constitutes your acceptance of the revised policy.
8. Contact
If you have questions or concerns about this policy, please contact us at: