Who We Are
Cart Capybara is provided by [Add the controller's full legal name], trading as [Add your trading name, if different] ("Cart Capybara," "we," "us," or "our").
Controller contact details
[Add the controller's full legal name]
[Add the controller's complete postal address]
[Add the controller's country of establishment]
Privacy contact: [Add your privacy contact email address]
Support: [Add your support URL or support email address]
EEA Representative
[Add the EU representative's name and contact details]
UK Representative
[Add the UK representative's name and contact details]
This Privacy Policy explains how Cart Capybara processes information through the Cart Capybara iOS app, the Cart Capybara Share Extension, the Shopping Pause components, and communications you choose to send to us for support or privacy requests.
It does not cover the processing carried out by Apple, or by websites you choose to share or open. Those are described under "Share Extension, Product-Page Requests, and Links," "Purchases and Apple Services," "Device and iCloud Backups," and "Recipients" below.
How Cart Capybara Handles Your Information
Cart Capybara is designed to keep its core app data on your device.
There is no Cart Capybara account, sign-up, or login.
The current version of Cart Capybara does not use:
- advertising;
- third-party analytics;
- behavioral tracking;
- advertising identifiers;
- third-party crash-reporting SDKs;
- a developer-operated backend for your Cart Capybara data; or
- CloudKit or iCloud synchronization for Cart Capybara data.
Core information such as your Cart Choices, decisions, pond state, preferences, and Shopping Pause configuration is processed locally on your device or within the Apple App Group storage shared between Cart Capybara and its own extensions.
We do not receive, view, retrieve, or maintain a server-side copy of that core app data. We therefore cannot produce, correct, restore, or remotely delete it for you.
Information Processed Locally
3.1 Cart Choices
When you create or import a Cart Choice, Cart Capybara may process and store locally information such as:
- the title;
- price text;
- currency;
- cooling period;
- ready-to-review time;
- pond marker and placement information;
- source URL, where applicable;
- source application information, where available; and
- import timestamps and identifiers.
This information is used only to provide the Cart Choice and cooling-off functionality.
An active Cart Choice remains locally stored until you make a decision about it or remove it.
You can remove an unresolved Cart Choice using the app's Remove Cart Choice control. Removing it in this way deletes it from the active Cart Choices and does not add it to your Treasury history.
Because you choose what to enter, a Cart Choice title may reveal something personal about you. Cart Capybara never inspects, categorizes, or transmits the content of your titles.
3.2 Decision History and Treasury
If you resolve a Cart Choice as Bought or Floated Away, Cart Capybara stores a local decision record that may include:
- the Cart Choice title;
- price and currency;
- outcome;
- decision date;
- source information, where applicable; and
- an internal identifier linking the decision to the original Cart Choice.
Decision records form your local Ledger history.
Treasury figures are calculated from that Ledger history when the Treasury is displayed. Cart Capybara does not maintain a separate developer-side or server-side Treasury database.
Completed Ledger decisions are currently retained as history and cannot be individually deleted through the production app.
3.3 Pond, Decorations, Themes, and Preferences
Cart Capybara locally stores information needed to preserve your pond and app preferences, including:
- decoration ownership;
- decoration placement;
- reward records;
- selected pond theme;
- app currency;
- notification preferences; and
- limited application-state flags such as whether onboarding or a tutorial has been completed.
Putting a decoration away removes it from its current placement but does not remove your ownership of the decoration.
The production app does not currently provide a factory-reset or delete-all-data function.
3.4 Shopping Pause and Screen Time
Shopping Pause uses Apple's Family Controls, Managed Settings, and Device Activity technologies.
Depending on the features you use, Cart Capybara may process locally:
- selected apps or categories;
- opaque Screen Time tokens provided by Apple;
- Shopping Pause schedules;
- active session state;
- schedule runtime state; and
- weekly Shopping Pause history or summary information.
These records are stored locally or in the App Group container so that the main Cart Capybara app and its Screen Time extensions can coordinate.
We do not receive your Screen Time selections or tokens on a developer-operated server. The app cannot convert Apple's opaque Screen Time tokens into a developer-readable list of the apps you selected.
When an active Shopping Pause session ends, its active session record is removed. Relevant weekly summary information may remain locally.
Turning a schedule off does not delete the saved schedule. You may clear your saved app/category selection when no pause is active.
Notifications
If you enable notifications, Cart Capybara schedules notifications locally using Apple's notification system. Cart Capybara does not operate a remote notification server for these reminders.
A ready-to-review notification may contain the title of the relevant Cart Choice so that you can recognize it. It does not include the Cart Choice price or source URL.
Because iOS may display notification content on the Lock Screen depending on your device settings, people with physical access to your screen may be able to see a Cart Choice title. You can change this in iOS Settings.
You can manage Cart Capybara's notification preferences in the app and manage system-level notification permissions in iOS Settings.
Purchases and Apple Services
Cart Capybara offers one-time in-app purchases through Apple's StoreKit system. There is no subscription.
Apple processes payment and transaction information through the App Store. Cart Capybara does not receive your payment card number, bank-account details, or Apple Account password.
The app uses StoreKit information on your device to determine which Cart Capybara purchases you own and may maintain a local entitlement cache for app functionality.
Apple may provide us with aggregated sales, download, and financial reporting through its developer services.
Apple's processing in connection with the App Store, payments, Apple services, and device backups is governed by Apple's own terms and privacy practices.
Support and Privacy Communications
If you contact us by email or another support channel, we receive the information you choose to send us. This may include:
- your email address;
- your name, if you provide it;
- the content of your message;
- screenshots or attachments you choose to send; and
- technical information you voluntarily include.
We use this information to respond to your request, provide support, handle privacy requests, protect our legal interests, and maintain the security and reliability of Cart Capybara.
Retention: [Add the applicable retention period for support correspondence, or the objective criteria used to determine it]
Support correspondence may be processed by our email or support service provider: [Add the relevant processor or service provider].
[Add the applicable international-transfer disclosure and safeguard, if support correspondence is transferred outside the EEA or the UK]
Advertising, Analytics, Tracking, and Sale of Data
The current version of Cart Capybara does not include advertising SDKs, third-party analytics SDKs, behavioral tracking SDKs, or third-party crash-reporting SDKs.
We do not use Cart Capybara data for targeted advertising.
We do not sell personal data.
We do not share personal data with advertisers or data brokers for cross-context behavioral advertising or similar tracking purposes.
Purposes and Legal Bases
Where the GDPR or UK GDPR applies, the position is as follows.
9.1 Information that stays on your device
Your Cart Choices, Ledger history, pond state, preferences, Shopping Pause configuration, and duplicate-prevention identifiers are handled as follows.
Cart Capybara processes this information locally on your device. We do not receive, access, or maintain a server-side copy of it. Where applicable data-protection law treats us as a controller in relation to this local processing, we rely on Article 6(1)(b) GDPR, and the corresponding UK GDPR provision, because the processing is necessary to provide the Cart Capybara functionality you request.
9.2 Support and privacy communications
Where you contact us about the service, processing is necessary to respond to you and to perform our obligations in relation to the service. Where your request is not contractual in nature, we rely on our legitimate interest in responding to users, operating support, and protecting our legal interests.
Legal basis: Article 6(1)(b) and/or Article 6(1)(f) GDPR, depending on the nature of the request.
9.3 Legal obligations and legal claims
Where necessary, we may process limited information to comply with a legal obligation, or to establish, exercise, or defend legal claims.
Legal basis: Article 6(1)(c) and, where applicable, Article 6(1)(f) GDPR.
9.4 Consent
We do not rely on consent as the legal basis for Cart Capybara's functionality, and there is accordingly no consent for you to withdraw.
An iOS permission — such as permission to send notifications, or authorization to use Screen Time functionality — is a platform permission granted to your device. It is not consent to unrelated personal-data processing by us.
9.5 Whether you have to provide information
You are not required by law or by contract to provide us with any personal data. You choose what to enter into the app, what to share into it, and whether to contact us.
Recipients
For core Cart Capybara data stored locally on your device, there is ordinarily no developer-controlled server recipient.
Depending on the feature you choose to use, the following parties may nevertheless process information independently or as service providers:
- Apple, in connection with the App Store, StoreKit, Screen Time frameworks, device services, backups, and other Apple functionality;
- the operator of a website you choose to share or open, when your device requests that page;
- our email or support service provider, if you contact us; and
- professional or legal advisers, but only where reasonably necessary to comply with law or to establish, exercise, or defend legal claims.
We do not provide Cart Capybara data to advertisers or data brokers.
International Transfers
Core Cart Capybara data is not uploaded to a developer-operated Cart Capybara backend.
Apple, and the operators of websites you choose to visit or share, may process information internationally under their own legal arrangements.
If information that we actually receive — such as support correspondence — is transferred from the EEA or the UK to a country that does not benefit from an applicable adequacy decision, we will use an applicable lawful transfer mechanism where required.
Support and hosting transfer details: [Add the applicable international-transfer safeguard once the support email and website-hosting providers are selected]
Data Retention and Deletion
Cart Capybara uses different retention periods because different local records serve different functions.
Active Cart Choices. Retained until you resolve or remove them.
Completed decision history. Retained locally as part of your Ledger history. Individual completed decisions cannot currently be deleted through the production app.
Treasury. Treasury totals are derived from Ledger history and are not separately persisted.
Pond and decoration data. Retained locally so that the app can preserve your pond, decoration ownership, and placement between launches.
Preferences and one-time state flags. Retained until changed, no longer needed, or the app's local data is removed.
Pending Share Extension imports. May be discarded manually and are eligible for automatic removal after approximately seven days through normal app reconciliation.
Consumed import identifiers. Random deduplication identifiers are currently kept locally without a fixed expiry so that the same Share Extension import is not processed twice.
Shopping Pause. An active session record is removed when the session ends. Saved schedules, app/category selections, and applicable weekly history may remain until changed or cleared through the controls available in the app.
Support correspondence. [Add the applicable retention period for support correspondence, or the objective criteria used to determine it]
Deleting all local app data. The production app does not currently contain a factory-reset control. Deleting Cart Capybara from the device removes its application data from that device in accordance with normal iOS behavior. Copies may remain in device or iCloud backups controlled by Apple until those backups are deleted, replaced, or expire under Apple's rules.
Because we do not maintain a Cart Capybara account or server-side copy of your pond, Cart Choices, Ledger, or Shopping Pause state, we cannot remotely retrieve, restore, or erase that local content for you.
Device and iCloud Backups
Cart Capybara does not currently use CloudKit or iCloud to synchronize your Cart Capybara data between devices.
However, local Cart Capybara app data may be included in your normal iOS device backup, including an iCloud Backup, depending on your device and Apple backup settings.
We do not receive or control those backup copies. Apple's handling and retention of iCloud or device backups is governed by Apple's own services and settings, and you can manage backup behavior in your device's settings.
Security
Cart Capybara minimizes exposure by keeping core app information inside the iOS app sandbox and the private App Group container used by Cart Capybara and its extensions, rather than sending it to a Cart Capybara backend.
We rely on the security protections provided by iOS and Apple's platform security, including device encryption. Keeping your device protected with a passcode and, where available, Face ID or Touch ID helps protect information stored on the device.
Network requests made by the Share Extension use the platform's normal secure transport protections where supported and required by iOS.
We do not add our own encryption layer on top of the protections provided by iOS, and we do not claim that any storage or transmission method can provide absolute security.
Your Data Protection Rights
If the GDPR, UK GDPR, or another applicable data-protection law applies to you, you may have rights including, depending on the circumstances:
- access to personal data;
- correction of inaccurate data;
- erasure;
- restriction of processing;
- objection to certain processing;
- data portability, where the legal conditions are met; and
- the right to complain to a competent supervisory authority.
Information that stays on your device. We have no remote access to this information, so we cannot retrieve, export, or modify it on your behalf. In practice you exercise these rights directly: you can view this information in the app, change it, and use the deletion controls described under "Information Processed Locally," "Share Extension, Product-Page Requests, and Links," and "Data Retention and Deletion." To remove all Cart Capybara application data from a device, you may delete the app, subject to the considerations described under "Device and iCloud Backups."
Information we actually hold — for example, support correspondence — is subject to these rights in the ordinary way. To exercise them, contact:
[Add your privacy contact email address]
We will respond to your request within one month of receipt. That period may be extended by up to two further months where necessary, taking into account the complexity and number of requests; if that happens we will tell you within one month and explain why.
We may need to verify your identity before acting on a request, and will ask only for information that is proportionate for that purpose.
Complaints. For EEA users, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work, or the place of the alleged infringement. For UK users, you may lodge a complaint with the UK Information Commissioner's Office. This is without prejudice to any other administrative or judicial remedy available to you.
No Automated Decision-Making or Profiling
Cart Capybara does not use your Cart Choices or Shopping Pause activity to profile you, and does not carry out automated decision-making producing legal or similarly significant effects concerning you.
Cooling periods and Shopping Pause rules operate according to choices and settings you make yourself, and are not used to infer a commercial behavioral profile about you.
Children
Cart Capybara is intended for users aged [Add the minimum user age, consistent with the final App Store age rating] and older.
Cart Capybara does not ask users to create an account or provide a date of birth, and because we receive no information from the app, we cannot determine a user's age.
If you believe a child has provided personal data to us through a support or privacy communication, contact us at [Add your privacy contact email address] so that we can review and, where appropriate, delete it.
Changes to This Privacy Policy
We may update this Privacy Policy if Cart Capybara's functionality, legal obligations, or data practices change.
The Last updated date above identifies the current version.
If we introduce a material change — for example, cloud synchronization, a Cart Capybara backend, analytics, advertising, or materially different off-device processing — we will update this Policy before or when that processing begins, and provide additional notice where required.
Contact
For privacy questions or requests:
[Add the controller's full legal name]
[Add your trading name, if different]
[Add the controller's complete postal address]
[Add the controller's country of establishment]
Email: [Add your privacy contact email address]
Support: [Add your support URL or support email address]
EEA Representative: [Add the EU representative's name and contact details]
UK Representative: [Add the UK representative's name and contact details]