Introduction
This Privacy Policy explains how BITFORGE PTE. LTD. ("ScanLens," "we," "our," or "us") handles information in connection with the ScanLens iPhone app and the scanlens.io website.
The most important distinction is simple: the marketing website and the iPhone app are not the same thing. The website uses analytics to understand site traffic. The core app is built around on-device document processing and does not require a ScanLens account.
Scope
This policy applies to:
- The ScanLens iPhone app
- The marketing website at
scanlens.io - Support and contact requests sent to us directly or through our contact form
This policy does not replace the privacy policies of third-party services you choose to use with ScanLens, such as Apple, Google Drive, Dropbox, OneDrive, or App Store billing.
Information We Collect
Information You Provide Directly
- Support and contact information: If you contact us by email or through our contact form, we receive the information you submit, such as your name, email address, and message contents.
- Business correspondence: If you contact us about partnerships, press, or legal matters, we receive the information included in that communication.
App Store and Purchase Information
- Apple handles payments: Subscription and purchase payments are processed by Apple through the App Store, not by us directly.
- Subscription status: We may receive limited information needed to validate purchases and manage entitlement status through Apple's systems.
App Analytics, Diagnostics, and Functionality Data
Our current App Store privacy label states that the app may handle the following data linked to you for analytics, product personalization, or app functionality, depending on the features you use:
- Purchases: Purchase history used to validate access and understand subscription performance.
- Identifiers: User ID and device ID used for app functionality, analytics, or product personalization.
- Usage data: Product interaction and advertising data used for analytics or product personalization.
- Diagnostics: Crash, performance, and other diagnostic data used to identify and fix reliability problems.
- Contact information: Name or email address when required for app functionality or when you provide it directly.
- User content: Photos, videos, or other content you select when using app functionality.
The App Store categories describe data the app may handle; they do not mean that ScanLens uploads every scanned document for OCR. Core scanning and OCR are designed to run on-device. Feature use, purchase validation, support, backup, sharing, and cloud integrations can involve additional systems as described in this policy and in the relevant provider's terms.
Website Analytics
The scanlens.io marketing site uses Google Analytics 4 ("GA4"). GA4 may collect information such as:
- Pages viewed
- Approximate location derived from IP address
- Browser, device, and operating system information
- Referring pages or sites
- Basic interaction events such as page views, scrolls, and outbound clicks
We use this information to understand how the website is used, which pages are useful, and how to improve site performance and content. We do not use the website for cross-context behavioral advertising.
Device Permissions and Local App Data
- Camera, Photos, and Files: The app requests access only when you open a scanner, import content, or save an export.
- Contacts and Calendar: Access is requested only when you choose to check or save a scanned contact, or add an event recognized from a QR code.
- Documents and signatures: Scanning, OCR, editing, and signature extraction run on the device. Document files are uploaded only when you enable backup or choose a cloud destination.
Accounts and Backend Services
ScanLens can create an anonymous Supabase identity so the app can provide service functionality without asking you for credentials. You may optionally link that identity to Sign in with Apple, Google, or email. Supabase can process the account identifier, profile information you provide, app settings, document metadata used for sync and restore, and Apple Search Ads attribution. RevenueCat processes purchase and entitlement information. Sentry processes crash and performance diagnostics. These services do not receive the live camera feed for on-device scanning or OCR.
What We Do Not Collect by Default
- No credentials required for core scanning: You can scan and edit in Guest Mode without linking a personal account, although an anonymous backend identity may be created.
- No advertising IDs for ad targeting: We do not use IDFA for cross-app advertising.
- No document upload to our servers for scanning or OCR: Core document processing is designed to run on-device.
How We Use Information
We use the limited information we receive to:
- Operate, maintain, and improve the website
- Understand website traffic and content performance
- Understand app feature usage and improve product experience
- Diagnose crashes, performance issues, and reliability problems
- Respond to support, privacy, partnership, and legal requests
- Validate purchases and manage paid feature access
- Comply with legal obligations and protect the service from abuse
Advertising and Tracking
We do not sell personal information and we do not run cross-app behavioral advertising for the ScanLens app.
- No ad networks in the app: We do not use advertising SDKs to monetize document scanning activity.
- Website and app measurement: The marketing site uses GA4, and the app may process the analytics, identifiers, usage, purchase, and diagnostic categories disclosed in its App Store privacy label.
- No promise of zero website analytics: If you use
scanlens.io, website analytics may run unless blocked by your browser or extensions.
When Information Is Shared
We do not sell personal information. We may share limited information in the following situations:
- Apple: For App Store billing, subscriptions, and purchase validation.
- Supabase: For anonymous or linked account operation, settings and document-metadata sync, recovery, and Apple Search Ads attribution.
- RevenueCat: For purchase validation, entitlement management, and subscription analytics.
- Sentry: For crash, performance, and reliability diagnostics.
- Google Analytics: For website analytics on
scanlens.io. - Contact form providers: If you use our hosted contact form, your submission is processed by the provider that powers that form.
- Cloud services you choose: If you export or sync scans to iCloud Drive, Google Drive, Dropbox, OneDrive, or other third-party services, those services handle the transfer and storage under their own terms and privacy policies.
- Legal requirements: If disclosure is required by law, court order, or similar legal process.
- Business transfers: If BITFORGE PTE. LTD. is involved in a merger, acquisition, or asset sale.
Documents, OCR, and Signatures
The core ScanLens workflow is designed so that scanning, OCR, and document editing happen on your device. We do not operate a general-purpose ScanLens cloud where your scans are uploaded to us for OCR processing.
If you choose to export, share, or sync documents to third-party destinations, the transfer and storage of those files is governed by the provider you chose and by the way you share them.
Data Retention
- Support requests: We keep support and contact communications for as long as reasonably needed to respond, follow up, and maintain business records.
- Website analytics: Website analytics data is retained according to our GA4 settings unless deleted earlier.
- Account data: Anonymous or linked account data is retained until the account is deleted.
- App analytics and diagnostics: We retain app analytics and diagnostic records only as long as reasonably needed for the purposes described above; processors may retain operational records according to their configured settings and legal obligations.
- Local app content: Documents and signatures stored on your device remain there until you delete them or remove the app.
- Third-party storage: Files you send to iCloud, Google Drive, Dropbox, OneDrive, or similar services are retained according to those providers' policies and your own account settings.
Your Rights and Choices
Depending on where you live, you may have rights to access, correct, delete, or object to the processing of personal information we hold about you.
- Website analytics controls: You can limit analytics by using browser privacy controls, content blockers, or cookie controls where available.
- App permissions: You can revoke camera, photos, or files access in iOS settings.
- Cloud integrations: You can disconnect third-party cloud services through the relevant provider or app settings when available.
- Account deletion: Delete a linked account in Settings > Account > Delete Account, or remove an anonymous identity with Settings > Account > Reset Guest Account.
- Subscriptions: Deleting a ScanLens account does not cancel App Store billing. You can manage or cancel a subscription through Apple before or after deleting the account.
- Privacy requests: You can contact us to request access to or deletion of personal information we actually hold, such as support correspondence.
To make a privacy request, email [email protected] or [email protected]. We may need the account or installation information you provide to locate app-specific records.
Legal Bases for Processing
Where applicable, we process information on one or more of the following bases:
- Performance of a contract: To provide the app, website, and related support.
- Legitimate interests: To operate, secure, and improve the website and service, including website analytics and abuse prevention.
- Consent: Where consent is required by applicable law.
- Legal obligation: To comply with applicable law and valid legal requests.
International Transfers
We are based in Singapore and may work with service providers in other countries. If information is transferred internationally, we rely on appropriate safeguards where required by law.
Children's Privacy
ScanLens is not directed to children under 13, and we do not knowingly collect personal information from children through the app or website. If you believe a child has provided personal information to us, contact [email protected] so we can review and take appropriate action.
Security
We take reasonable steps to protect the information we hold. No method of transmission or storage is perfectly secure, but we work to limit the information we collect and to reduce unnecessary data exposure.
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last Updated" date on this page. If a change is material, we may also provide additional notice through the website or app where appropriate.
Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
BITFORGE PTE. LTD.
10 ANSON ROAD, #20-05
INTERNATIONAL PLAZA
SINGAPORE 079903
Privacy: [email protected]
Support: [email protected]
DUNS: 659154053