Last updated August 2, 2026
Privacy Policy
Radact is designed to help you redact sensitive information in photos and PDF documents before you save or share them. This policy explains what the app accesses, what stays on your device, and the limited anonymous analytics and diagnostic data processed on our behalf.
Photos, PDFs, and recognized content
Radact processes imported photos and PDF pages on your device for editing, face detection, text recognition, barcode detection, redaction preview, and export. Radact does not upload your photos, PDF contents, recognized text, or detection coordinates to Radact, Firebase, or another cloud service for detection or editing.
Face data
Radact uses Apple's on-device Vision framework to detect face rectangles in photos or files that you choose to import. The app uses this information only to place redaction regions, such as blur, pixelate, or solid color masks, over faces selected by the user.
Radact does not identify people, does not create face templates or faceprints, does not perform face recognition, and does not compare faces across images. Radact does not collect face data on a Radact server and does not use face data for advertising, tracking, analytics, or profiling.
Face detection results are processed on device and are not shared with Radact, third-party AI providers, advertising networks, analytics services, or other third parties. Temporary detection information is kept only as needed during the current editing session and undo flow. When you close the editor or discard the document, that temporary information is deleted. If you choose to save or share an edited result, only the output you approve is sent to the destination you select, such as Photos, Files, or the iOS share sheet.
Permissions
- Photos: Used when you import images from your library or save edited copies back to Photos.
- Camera: Used only when you choose to capture a photo inside the app.
- Files: Used when you choose a photo or PDF from the file picker, or save an exported PDF.
Data stored on your device
Radact stores lightweight preferences on your device, such as onboarding completion, appearance settings, export quality, default redaction style, premium status cache, and free export counters. These values keep the app working consistently and are not sold or used for advertising.
Retention and deletion
Radact does not retain face data or recognized content after the active editing session ends. Photos, PDFs, exported images, and shared files remain only where you choose to store or send them, such as your device, iCloud Photos, Files, or another app selected in the share sheet. You can delete exported content from those destinations at any time.
Purchases
Premium purchases and subscriptions are processed by Apple through StoreKit. Radact receives purchase entitlement status from Apple so the app can unlock premium features. Payment information is handled by Apple, not by Radact.
Anonymous analytics and crash diagnostics
Radact uses Firebase Analytics and Firebase Crashlytics, services provided by Google, to understand feature usage, purchase and export funnels, app stability, crashes, and non-fatal technical failures. The App Store version may collect the following categories:
- Device ID: A Firebase installation identifier used for analytics and app functionality.
- Product interaction: Predefined events such as onboarding progress, import source, detection result ranges, export destination, paywall views, and purchase outcomes.
- Crash data: Crash traces and related technical context used to diagnose failures.
- Other diagnostic data: Sanitized categories for non-fatal import, detection, export, storage, or StoreKit failures.
This data is not linked to your identity and is not used to track you across apps or websites. Radact does not send photos, PDF contents, recognized text, face or barcode locations, file names, file URLs, contact information, or a user account identifier to Firebase. Analytics parameters use predefined categories and count ranges rather than user content. Non-fatal errors are rebuilt with sanitized labels so their original messages are not uploaded.
Analytics and crash collection is disabled by default in development builds and enabled in TestFlight and App Store builds. Firebase processes this data on Radact's behalf under Google's Firebase privacy and security terms. Retention is governed by Firebase settings and Google's applicable terms. Radact uses this information only for analytics, app functionality, security, and reliability.
Third-party tracking and advertising
Radact does not include advertising SDKs, does not access Apple's advertising identifier, does not sell personal information, and does not track you across apps or websites. Firebase data is not used for personalized advertising.
Apple services
When you download Radact, make a purchase, restore a purchase, use iCloud, or share through system features, Apple may process information under Apple's Privacy Policy. Radact receives only the entitlement and transaction status needed to provide purchased features; Radact does not receive your full payment-card details.
International processing
Firebase diagnostic and analytics data may be processed in countries other than your own. Google applies its contractual and security safeguards to this processing. Your photos, PDF contents, and recognized content remain subject to the on-device processing described above.
Support contact
If you contact support, the information you choose to send in your email is used only to respond to your request. Do not send sensitive photos unless they are necessary for support and you are comfortable sharing them by email.
Children's privacy
Radact does not require an account and is not designed to collect personal information from children. If you believe a child has provided personal information through a support request, contact us and we will take appropriate steps to delete it.
Changes
We may update this policy as Radact changes. The updated date at the top of this page shows when the latest version took effect.
Contact
Questions, privacy requests, or concerns can be sent to andychung.cc@gmail.com. Because Radact does not create user accounts and Firebase data is not linked to your identity, we may not be able to identify a specific anonymous analytics record as belonging to you.