1. Information handled by the App
OurPost may handle the following information when you use the relevant features:
- Document photos, imported images, PDF pages, titles, lists, tags, OCR text, page order, trash status, and private group information.
- Name, email address, and account identifier received through Sign in with Apple or Google Sign-In.
- Device identifiers and push tokens used for synchronization and notifications.
- Subscription product, purchase, and entitlement information supplied by Apple App Store or Google Play.
- App and notification settings, and diagnostic information needed to keep the service reliable.
An account is not required for core local document management. Unless you enable account-based cloud or family features, document data is primarily kept on your device.
2. Purposes
- Capture, import, organize, view, edit, recognize, and delete documents.
- Authenticate accounts and synchronize data with authorized devices and private family groups.
- Deliver notifications you enable and provide customer support.
- Verify purchases, restore subscriptions, and provide paid features.
- Measure fixed, non-content events such as app launches, completed core actions, paywall views, and purchases to maintain and improve the service. These events use an app-specific identifier and never include document text, images, titles, tags, group IDs, or invite codes.
- Maintain security and reliability.
We do not sell personal information or use OurPost content for third-party advertising, profiling, or cross-app tracking.
3. Local storage, cloud sync, and sharing
OurPost is local-first. Features that require our services—such as account sign-in, synchronization, private family sharing, file transfer, notifications, and purchase verification—send the necessary information over encrypted HTTPS connections. Shared documents are available only to members of the private group you select.
4. OCR and service providers
Text recognition is performed on the device. Recognized text may be stored with the document and synchronized when cloud features are enabled. We use Apple and Google for authentication and billing, Firebase for push notifications and diagnostics, and hosting and storage providers for account, synchronization, and attachment services. These providers process information under their own terms and policies.
5. Permissions
- Camera access is requested only when you photograph a document.
- Photo library access is requested only when you import document images.
- Notification permission is requested when you enable shared-document notifications.
- OurPost does not require precise location, contacts, or microphone access.
6. Retention and deletion
You control your documents. Items in Trash are not automatically deleted after 30 days; you may restore them or permanently delete them when you decide they are no longer needed. You can delete your account and associated server-side account data from Settings > BitFlap account > Delete account. Uninstalling the App removes locally stored App data from that device.
If you cannot access the App, email support@bitflap.app from your registered address with “OurPost data deletion” in the subject. We may verify account ownership before deletion.
7. Children, security, and changes
OurPost is intended for adults managing household documents and is not directed to children under 13. We use encrypted transport, access controls, authentication tokens, and time-limited signed URLs for file transfer. We may update this policy as the App or legal requirements change.
8. Contact
- Email: support@bitflap.app
- Web: https://bitflap.app/contact/
BitFlap