DropCard Legal

Last updated: September 25, 2025

Operated by: Pentridge Media LLC (Pennsylvania, United States)

Contact: team@dropcard.app

Privacy Policy

1. Scope

This Policy explains what we collect, how we use it, and your choices when you use DropCard, our website, and related services.

2. What We Collect

Account Data:

Email address (required for signup).

Usage Data:

Counts of scans/selfies, general interaction events, subscription status, device/app version, and basic diagnostics.

Content You Add:

Photos/selfies and other info you upload or attach to contacts.

Payments:

  • Apple IAP: Apple processes your payment; we receive subscription status, not full payment details.
  • Superwall: Handles paywall and subscription management through Apple IAP.

We do not sell your personal information.

3. Why We Use Your Data

  • Provide, operate, and improve the App.
  • Enforce plan limits (e.g., scan thresholds) and manage subscriptions.
  • Secure the service, prevent abuse, and troubleshoot.
  • Communicate with you about updates, billing, and support.

4. Legal Bases (EEA/UK only)

Where applicable, our legal bases include contract (to provide the App), legitimate interests (improve and secure the App), and consent (where required by law).

5. Sharing & Disclosure

We share data only with service providers that help us run DropCard:

  • Superwall (paywall & entitlements)
  • Apple (IAP billing & subscription status)
  • Supabase (database & secure storage)
  • Vercel (hosting for web profiles/pages)

We don't rent or sell your personal data. We may disclose if required by law or to protect rights, safety, and security.

6. Data Retention

We retain data for as long as needed to provide the service and for legitimate business needs (e.g., security, accounting). If you delete your account, we'll delete or anonymize personal data within a reasonable period (typically 30 days), subject to legal/backup constraints (backups may persist up to 90 days).

7. Security

We use administrative, technical, and organizational measures to protect your data, including encrypted transport and storage (via Supabase and other trusted providers). No system is 100% secure.

8. International Transfers

We may process and store information in the United States and other countries. Where required, we use appropriate safeguards for cross-border transfers.

9. Your Rights & Choices

  • Access / Update / Delete: Email team@dropcard.app to access, correct, export, or delete your data.
  • EEA/UK: You may have rights to object/restrict processing and to lodge a complaint with your local authority.
  • California (CCPA/CPRA): You have rights to know, delete, and correct personal information. We do not "sell" personal information as defined by CCPA.

10. Children's Privacy

The App is not intended for children under 13. If we learn we collected data from a child without proper consent, we will delete it.

11. App Permissions (iOS examples)

  • Camera: To take selfies and scan business cards.
  • Photos: To save or attach images to contacts.
  • NFC (where supported): To enable tap/scan experiences.
  • Notifications (optional): For account, billing, or feature updates.

Permission prompts explain the purpose; you can disable permissions in device settings (some features may not work without them).

12. Changes to this Policy

We may update this Policy. Material changes will be posted in-app or on our website with an updated "Last updated" date.

13. Contact

Privacy questions or requests:

team@dropcard.app

Last updated: August 29, 2025