CartCapybara

Privacy Policy

Last updated: [Add the effective date of this policy]

Note: Highlighted fields like this one are placeholders. Replace every highlighted field with your own information before publishing this page, then remove this note.

Who We Are

Cart Capybara is provided by [Add the controller's full legal name], trading as [Add your trading name, if different] ("Cart Capybara," "we," "us," or "our").

Controller contact details

[Add the controller's full legal name]

[Add the controller's complete postal address]

[Add the controller's country of establishment]

Privacy contact: [Add your privacy contact email address]

Support: [Add your support URL or support email address]

EEA Representative

[Add the EU representative's name and contact details]

UK Representative

[Add the UK representative's name and contact details]

This Privacy Policy explains how Cart Capybara processes information through the Cart Capybara iOS app, the Cart Capybara Share Extension, the Shopping Pause components, and communications you choose to send to us for support or privacy requests.

It does not cover the processing carried out by Apple, or by websites you choose to share or open. Those are described under "Share Extension, Product-Page Requests, and Links," "Purchases and Apple Services," "Device and iCloud Backups," and "Recipients" below.

How Cart Capybara Handles Your Information

Cart Capybara is designed to keep its core app data on your device.

There is no Cart Capybara account, sign-up, or login.

The current version of Cart Capybara does not use:

Core information such as your Cart Choices, decisions, pond state, preferences, and Shopping Pause configuration is processed locally on your device or within the Apple App Group storage shared between Cart Capybara and its own extensions.

We do not receive, view, retrieve, or maintain a server-side copy of that core app data. We therefore cannot produce, correct, restore, or remotely delete it for you.

Information Processed Locally

3.1 Cart Choices

When you create or import a Cart Choice, Cart Capybara may process and store locally information such as:

This information is used only to provide the Cart Choice and cooling-off functionality.

An active Cart Choice remains locally stored until you make a decision about it or remove it.

You can remove an unresolved Cart Choice using the app's Remove Cart Choice control. Removing it in this way deletes it from the active Cart Choices and does not add it to your Treasury history.

Because you choose what to enter, a Cart Choice title may reveal something personal about you. Cart Capybara never inspects, categorizes, or transmits the content of your titles.

3.2 Decision History and Treasury

If you resolve a Cart Choice as Bought or Floated Away, Cart Capybara stores a local decision record that may include:

Decision records form your local Ledger history.

Treasury figures are calculated from that Ledger history when the Treasury is displayed. Cart Capybara does not maintain a separate developer-side or server-side Treasury database.

Completed Ledger decisions are currently retained as history and cannot be individually deleted through the production app.

3.3 Pond, Decorations, Themes, and Preferences

Cart Capybara locally stores information needed to preserve your pond and app preferences, including:

Putting a decoration away removes it from its current placement but does not remove your ownership of the decoration.

The production app does not currently provide a factory-reset or delete-all-data function.

3.4 Shopping Pause and Screen Time

Shopping Pause uses Apple's Family Controls, Managed Settings, and Device Activity technologies.

Depending on the features you use, Cart Capybara may process locally:

These records are stored locally or in the App Group container so that the main Cart Capybara app and its Screen Time extensions can coordinate.

We do not receive your Screen Time selections or tokens on a developer-operated server. The app cannot convert Apple's opaque Screen Time tokens into a developer-readable list of the apps you selected.

When an active Shopping Pause session ends, its active session record is removed. Relevant weekly summary information may remain locally.

Turning a schedule off does not delete the saved schedule. You may clear your saved app/category selection when no pause is active.

Share Extension, Product-Page Requests, and Links

If you choose to share a product page with Cart Capybara, the Share Extension receives the information you intentionally share and may attempt to suggest a product title, price, and currency.

To do this, Cart Capybara may make a limited network request directly from your device to the web page you chose to share. That request does not pass through a Cart Capybara server.

As with an ordinary request to a website, the website operator may receive normal network information associated with the request, such as:

The website operator handles this information under its own privacy practices. We do not control the website's retention or use of information it receives.

Cart Capybara's metadata request is deliberately limited and uses an ephemeral network session. The current implementation imposes short time and response-size limits and does not use your stored website login session for the request.

Opening a saved link. If you later tap a product link saved with a Cart Choice, it opens in your device's default browser. From that point, the browser and the destination website handle the visit under their own terms and privacy practices.

Pending imports. A shared item that has not yet been added to your pond may be held temporarily in local App Group storage. Pending imports can be manually discarded. Pending imports that remain unresolved are eligible for removal after approximately seven days through Cart Capybara's normal reconciliation process.

Duplicate-prevention identifiers. After a Share Extension import is consumed, Cart Capybara keeps the import's random identifier locally to prevent that same import from creating a duplicate Cart Choice. These records consist of import identifiers and do not contain the product title, price, product-page content, or source URL. They are currently retained locally without a fixed automatic expiration period.

Notifications

If you enable notifications, Cart Capybara schedules notifications locally using Apple's notification system. Cart Capybara does not operate a remote notification server for these reminders.

A ready-to-review notification may contain the title of the relevant Cart Choice so that you can recognize it. It does not include the Cart Choice price or source URL.

Because iOS may display notification content on the Lock Screen depending on your device settings, people with physical access to your screen may be able to see a Cart Choice title. You can change this in iOS Settings.

You can manage Cart Capybara's notification preferences in the app and manage system-level notification permissions in iOS Settings.

Purchases and Apple Services

Cart Capybara offers one-time in-app purchases through Apple's StoreKit system. There is no subscription.

Apple processes payment and transaction information through the App Store. Cart Capybara does not receive your payment card number, bank-account details, or Apple Account password.

The app uses StoreKit information on your device to determine which Cart Capybara purchases you own and may maintain a local entitlement cache for app functionality.

Apple may provide us with aggregated sales, download, and financial reporting through its developer services.

Apple's processing in connection with the App Store, payments, Apple services, and device backups is governed by Apple's own terms and privacy practices.

Support and Privacy Communications

If you contact us by email or another support channel, we receive the information you choose to send us. This may include:

We use this information to respond to your request, provide support, handle privacy requests, protect our legal interests, and maintain the security and reliability of Cart Capybara.

Retention: [Add the applicable retention period for support correspondence, or the objective criteria used to determine it]

Support correspondence may be processed by our email or support service provider: [Add the relevant processor or service provider].

[Add the applicable international-transfer disclosure and safeguard, if support correspondence is transferred outside the EEA or the UK]

Advertising, Analytics, Tracking, and Sale of Data

The current version of Cart Capybara does not include advertising SDKs, third-party analytics SDKs, behavioral tracking SDKs, or third-party crash-reporting SDKs.

We do not use Cart Capybara data for targeted advertising.

We do not sell personal data.

We do not share personal data with advertisers or data brokers for cross-context behavioral advertising or similar tracking purposes.

Recipients

For core Cart Capybara data stored locally on your device, there is ordinarily no developer-controlled server recipient.

Depending on the feature you choose to use, the following parties may nevertheless process information independently or as service providers:

We do not provide Cart Capybara data to advertisers or data brokers.

International Transfers

Core Cart Capybara data is not uploaded to a developer-operated Cart Capybara backend.

Apple, and the operators of websites you choose to visit or share, may process information internationally under their own legal arrangements.

If information that we actually receive — such as support correspondence — is transferred from the EEA or the UK to a country that does not benefit from an applicable adequacy decision, we will use an applicable lawful transfer mechanism where required.

Support and hosting transfer details: [Add the applicable international-transfer safeguard once the support email and website-hosting providers are selected]

Data Retention and Deletion

Cart Capybara uses different retention periods because different local records serve different functions.

Active Cart Choices. Retained until you resolve or remove them.

Completed decision history. Retained locally as part of your Ledger history. Individual completed decisions cannot currently be deleted through the production app.

Treasury. Treasury totals are derived from Ledger history and are not separately persisted.

Pond and decoration data. Retained locally so that the app can preserve your pond, decoration ownership, and placement between launches.

Preferences and one-time state flags. Retained until changed, no longer needed, or the app's local data is removed.

Pending Share Extension imports. May be discarded manually and are eligible for automatic removal after approximately seven days through normal app reconciliation.

Consumed import identifiers. Random deduplication identifiers are currently kept locally without a fixed expiry so that the same Share Extension import is not processed twice.

Shopping Pause. An active session record is removed when the session ends. Saved schedules, app/category selections, and applicable weekly history may remain until changed or cleared through the controls available in the app.

Support correspondence. [Add the applicable retention period for support correspondence, or the objective criteria used to determine it]

Deleting all local app data. The production app does not currently contain a factory-reset control. Deleting Cart Capybara from the device removes its application data from that device in accordance with normal iOS behavior. Copies may remain in device or iCloud backups controlled by Apple until those backups are deleted, replaced, or expire under Apple's rules.

Because we do not maintain a Cart Capybara account or server-side copy of your pond, Cart Choices, Ledger, or Shopping Pause state, we cannot remotely retrieve, restore, or erase that local content for you.

Device and iCloud Backups

Cart Capybara does not currently use CloudKit or iCloud to synchronize your Cart Capybara data between devices.

However, local Cart Capybara app data may be included in your normal iOS device backup, including an iCloud Backup, depending on your device and Apple backup settings.

We do not receive or control those backup copies. Apple's handling and retention of iCloud or device backups is governed by Apple's own services and settings, and you can manage backup behavior in your device's settings.

Security

Cart Capybara minimizes exposure by keeping core app information inside the iOS app sandbox and the private App Group container used by Cart Capybara and its extensions, rather than sending it to a Cart Capybara backend.

We rely on the security protections provided by iOS and Apple's platform security, including device encryption. Keeping your device protected with a passcode and, where available, Face ID or Touch ID helps protect information stored on the device.

Network requests made by the Share Extension use the platform's normal secure transport protections where supported and required by iOS.

We do not add our own encryption layer on top of the protections provided by iOS, and we do not claim that any storage or transmission method can provide absolute security.

Your Data Protection Rights

If the GDPR, UK GDPR, or another applicable data-protection law applies to you, you may have rights including, depending on the circumstances:

Information that stays on your device. We have no remote access to this information, so we cannot retrieve, export, or modify it on your behalf. In practice you exercise these rights directly: you can view this information in the app, change it, and use the deletion controls described under "Information Processed Locally," "Share Extension, Product-Page Requests, and Links," and "Data Retention and Deletion." To remove all Cart Capybara application data from a device, you may delete the app, subject to the considerations described under "Device and iCloud Backups."

Information we actually hold — for example, support correspondence — is subject to these rights in the ordinary way. To exercise them, contact:

[Add your privacy contact email address]

We will respond to your request within one month of receipt. That period may be extended by up to two further months where necessary, taking into account the complexity and number of requests; if that happens we will tell you within one month and explain why.

We may need to verify your identity before acting on a request, and will ask only for information that is proportionate for that purpose.

Complaints. For EEA users, you have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work, or the place of the alleged infringement. For UK users, you may lodge a complaint with the UK Information Commissioner's Office. This is without prejudice to any other administrative or judicial remedy available to you.

No Automated Decision-Making or Profiling

Cart Capybara does not use your Cart Choices or Shopping Pause activity to profile you, and does not carry out automated decision-making producing legal or similarly significant effects concerning you.

Cooling periods and Shopping Pause rules operate according to choices and settings you make yourself, and are not used to infer a commercial behavioral profile about you.

Children

Cart Capybara is intended for users aged [Add the minimum user age, consistent with the final App Store age rating] and older.

Cart Capybara does not ask users to create an account or provide a date of birth, and because we receive no information from the app, we cannot determine a user's age.

If you believe a child has provided personal data to us through a support or privacy communication, contact us at [Add your privacy contact email address] so that we can review and, where appropriate, delete it.

Changes to This Privacy Policy

We may update this Privacy Policy if Cart Capybara's functionality, legal obligations, or data practices change.

The Last updated date above identifies the current version.

If we introduce a material change — for example, cloud synchronization, a Cart Capybara backend, analytics, advertising, or materially different off-device processing — we will update this Policy before or when that processing begins, and provide additional notice where required.

Contact

For privacy questions or requests:

[Add the controller's full legal name]

[Add your trading name, if different]

[Add the controller's complete postal address]

[Add the controller's country of establishment]

Email: [Add your privacy contact email address]

Support: [Add your support URL or support email address]

EEA Representative: [Add the EU representative's name and contact details]

UK Representative: [Add the UK representative's name and contact details]