Privacy policy
Last updated 24 Sep 2026 · Version 1.0 (draft)VeraLens is built to know as little about you as possible. This policy explains what the VeraLens app for iPhone and Apple Watch, our server at api.veralens.app and this website keep, why, and for how long.
1. Who we are
VeraLens Ltd. ("we") makes VeraLens and is the controller of the data described here. Registered office: to be completed during legal review. You can reach us at support@veralens.app.
2. The short version
- No ads, no tracking, no analytics or advertising tools, and no data brokers. The app doesn't ask to track you because it doesn't.
- Your scan history, preferences and allergens stay on your devices.
- Our server keeps an account identifier with its sign-in times, the reports and photos you choose to send, and usage counts for limits. Nothing else about you.
- We don't sell or share personal information.
3. What we keep, why and for how long
You can use VeraLens without an account. An account (Sign in with Apple) is needed to read ingredient labels, to buy VeraLens Pro and to follow your reports.
- Account identifier
- A random identifier created when you first sign in with Apple.
- Why: It is the only identifier our server uses for your sessions, reports, photos and limits.
- How long: Until you delete your account.
- Sign in with Apple identifier
- The user identifier Apple gives us for VeraLens.
- Why: To find the same account the next time you sign in.
- How long: Until you delete your account.
- Account creation and last sign-in times
- Two dates and times.
- Why: Support and abuse checks.
- How long: Until you delete your account.
- Reports you send
- The barcode, the problem you chose, your note, the photos you attached and the review status.
- Why: To review and correct product data.
- How long: Until you delete your account. A report sent without an account is not linked to anyone and is kept until it has been reviewed; the review period will be set before launch.
- Photos you attach to a report
- The photo, with its type, size and upload time.
- Why: To review the product the report is about.
- How long: Until you delete your account.
- Usage counts
- How many products were looked up this month under the random install identifier the app sends (never which products), how many labels your account read each day, and daily totals for our running costs. If the app sends no install identifier, a keyed hash of your network address is used instead of the address.
- Why: Free limits, fair use, and keeping running costs under control.
- How long: The current and the previous calendar month; older counts are deleted every day. Your account's counts are also deleted with your account.
4. What we don't keep
- Email address and name
- Sign in with Apple may share them. We check the sign-in and keep only the identifier above; the email address and name are discarded.
- Preferences and allergens
- They are sent with a request only to work out your result, and never stored or logged. Halal, kosher, pregnancy and allergy choices therefore never reach our database.
- What you look up
- Barcodes you scan, searches, alternatives and recall checks are answered and not recorded.
- Ingredient text from a label photo
- The photo is read on your iPhone and only the text is sent. It is scored for that answer and not kept.
- Network (IP) address
- Not stored.
- Session tokens
- Signed and checked on each request, not stored.
- Install identifier with a report
- Not stored with your report.
- Subscription details
- The signed App Store transaction is checked on each request and not stored. Apple handles payment; we never see card details.
5. On your devices
Your scan history, preferences and allergens are stored on your iPhone, and your last result is shown on Apple Watch and in widgets from a copy on your devices. Scanning a barcode and reading a label happen on your iPhone; camera images don't leave it unless you attach a photo to a report. Deleting the app removes this data.
6. Caches and logs
To keep costs down, product and search results are cached by barcode or search words for up to 24 hours. The cache isn't linked to a device or an account.
Our server's logs contain only counts and error messages: never a web address you requested, a barcode, a preference, a search, an email or a network address. We have switched off Cloudflare's Workers logs for our server. Cloudflare keeps its own network and security logs under its own policies.
This website sets no cookies and runs no scripts.
7. Who else is involved
- Apple provides Sign in with Apple and sells VeraLens Pro through the App Store. Apple's privacy policy applies to your Apple Account and payments.
- Cloudflare, Inc. hosts our server, database, photos and this website on our behalf (Workers, D1 and R2). Data may be processed on Cloudflare's network outside your country; transfers rely on Cloudflare's data processing terms, including the EU standard contractual clauses (to be confirmed during legal review).
- Open Food Facts and Open Beauty Facts publish the product data we use. The app never contacts them: product images come through our server. When a correction you sent is accepted, the change is published under the Open Database Licence without your name.
There are no advertisers, analytics providers or data brokers.
8. Legal bases (EU and UK)
- Contract: your account, sign-in, subscription and free limits.
- Legitimate interests: reviewing reports and photos to correct product data, preventing abuse and keeping running costs under control.
We keep no health, religious or other special-category data about you: those preferences are never stored.
9. Your rights
EU and UK (GDPR). You can ask for access to your data, correction, deletion, restriction, a copy in a portable format, and you can object to processing based on legitimate interests. You can complain to your data protection authority, for example the ICO in the UK or the CNIL in France. We reply within one month. California (CCPA as amended by the CPRA). You can ask to know, delete and correct the personal information we hold. We don't sell or share personal information and don't use sensitive personal information. Using these rights never changes the service you get. We reply within 45 days. How. In VeraLens, open Settings and choose Delete account: your account, its link to Apple, your reports, your photos and your usage counts are deleted from our server. For any other request, write to support@veralens.app. Because we don't keep your email address, we may ask you to confirm the request from the app.10. Children
VeraLens is for a general audience and is not directed at children under 13. We don't knowingly keep data about children. If you think a child has sent us a report or a photo, write to support@veralens.app and we will delete it.
11. Security
All connections use HTTPS. Sessions are signed, photos are stored privately, and only the people who run VeraLens can reach the database.
12. Changes to this policy
We will publish any change here with a new date. If a change affects what we keep, we will also tell you in the app before it applies.
13. Contact
Write to support@veralens.app. A person reads every message.