Status and scope
This is a draft privacy notice based on the proposed local-first release. It is not yet effective. The exact signed archive, runtime network traffic, active bench dataset, MapKit behaviour, photo-picker scope, backup behaviour, dependencies and Release build flags must be audited before publication.
Pew is an exploration journal. It is not a healthcare service and this notice does not describe health-data processing.
Data accessed
Depending on the features the user chooses, Pew may access:
- approximate or precise location while the app is in use;
- a photo the user chooses through the system photo picker;
- optional journal text or observations;
- saved places, visits, routes and local Atlas progress; and
- device/app details a user chooses to include in a support email.
Location can be used to show nearby places and validate a visit. The final release must document the actual accuracy, distance and freshness rules.
Data kept on the device
The proposed release keeps profile preferences, saved places, visits, notes, selected photos and Atlas progress on the device. No Netro Labs account, cloud sync or public sharing network is currently claimed.
The final audit must determine whether these records are included in operating-system backups and whether photos are copied into the app’s container.
Data transmitted from the device
Netro Labs does not currently propose a developer-operated backend, analytics provider, advertising provider or crash-reporting provider for the first release.
Location or route requests may still be processed by Apple services such as MapKit. Source data may include third-party map or open-data providers. Those data flows, terms and attributions must be reconciled against the signed release.
This draft must not be copied into an App Store “data not collected” answer until runtime traffic and integrated SDKs have been verified.
Permissions
Location
Location is intended to be requested while using the app. Browsing should remain possible when it is denied, while physical visit validation may be unavailable. The final support copy will document the precise denied, restricted and approximate-location states.
Photos
Adding a photo is optional. The proposed implementation uses a system picker so the user selects a specific item rather than granting broad library access. The final archive and purpose-string requirements must be checked.
Camera and other permissions
Direct camera capture, contacts, calendar, microphone, notifications and local-network access are not currently claimed for the proposed release. Any later feature that needs one requires a new audit and notice update.
Maps, geocoding and place data
Pew may use Apple mapping services and approved open map/place data. A map request can disclose technical network information and the area being requested to the service provider.
The final notice will name the data sources and processors, link applicable policies, state attributions and explain whether any search or route information is retained by Netro Labs.
Retention and deletion
Local information is expected to remain until the user deletes an item, uses a reset control or removes the app, subject to operating-system backups.
The inspected app includes controls intended to delete photos, visit history or all local data. Every path, backup effect and residual cache must be tested on the final release.
No account-deletion page is provided because no Netro Labs account is claimed. If account creation or cloud sync is introduced, account deletion and remote retention will be documented before release.
Your rights and contact
For device-only information, the primary controls are the in-app delete/reset tools, system permission settings and uninstalling the app.
The final notice will identify the controller, public address, privacy email, lawful bases, retention criteria, user-rights route, recipients, transfer safeguards and regulator information. Those facts remain deliberately unresolved here.
Revisions
This permanent URL will be reviewed when Pew changes location use, photos, datasets, maps, SDKs, accounts, sync, analytics, ads, purchases or any off-device data flow.