Effective Date: August 15, 2026
| Data Type | Purpose | Storage Location |
|---|---|---|
| Plant Photos | Plant identification, journal display, collection history, and cloud sync | Uploaded to our backend server and stored on Qiniu Cloud as compressed images; during identification, images are forwarded to Pl@ntNet for plant identification according to Pl@ntNet's privacy policy |
| Location Data | 1. Record photo location for map display 2. Use current location to recenter the Trail map |
Photo location: Associated with identification records when available Current location for map recentering: Used only on-device in real time and not stored as a trail path |
| User Identifier | Supabase-generated UUID for data association | Supabase authentication system and application databases |
| Email Address | Identity verification and account recovery for email login | Supabase authentication system (if registered via email) |
| Service | Location |
|---|---|
| Application Server | Google Cloud Platform — asia-east2 region (Hong Kong SAR, China) |
| Authentication & Database | Supabase-operated infrastructure, which may process data in regions where Supabase operates |
| Plant Identification Database | NeonDB-operated infrastructure, which may process data in regions where NeonDB operates |
| Image Storage | Qiniu Cloud-operated infrastructure |
| Plant Identification Processing | Pl@ntNet servers |
Your personal information may be stored or processed outside mainland China, including:
We have implemented security measures compliant with applicable data protection laws, including encrypted transmission and storage. Before using features that involve cross-border data transfer (such as plant identification), we will request your explicit authorization through an in-app dialog. If you do not agree to cross-border transfers, you may choose not to use such features.
| Data Type | Retention Policy |
|---|---|
| Plant Photos | Retained after identification for displaying user history, journals, collection, and cloud sync |
| Identification Results | Retained and associated with photos and plant journal records |
| Location Data | Photo location: Retained and associated with identification records when available Current location for map recentering: Used only on-device in real time and not stored as a trail path |
| Account Information | Retained while account is active |
| Operations Logs | Retained only as long as needed for stability monitoring, troubleshooting, security, and operational maintenance |
Initiate deletion from the [Account Management] page:
Note: After deletion, your identification records will be disassociated from your identity or removed according to the deletion process. Local data is also cleaned to ensure consistent deletion across cloud and local storage.
We use the following third-party services:
| Service | Purpose | Privacy Policy |
|---|---|---|
| Pl@ntNet | Plant identification and reference images | https://plantnet.org/en/privacy/ |
| Wikipedia | Plant knowledge information (names, descriptions, etc.) | https://foundation.wikimedia.org/wiki/Policy:Privacy_policy |
| Mapbox Maps | Map display and location marking | https://www.mapbox.com/legal/privacy |
| BigDataCloud | Fallback reverse geocoding for location display | https://www.bigdatacloud.com/privacy |
| Supabase | User authentication and account management | https://supabase.com/privacy |
| Qiniu Cloud | Image storage for plant records | https://www.qiniu.com/privacy |
| Sign in with Apple | User login authentication | https://www.apple.com/legal/privacy/ |
| Apple App Store | In-app purchase (subscription) processing | https://www.apple.com/legal/privacy/ |
Third-Party Identification Service: During plant identification, your selected image may be sent to Pl@ntNet for processing. Pl@ntNet processes such data according to its own privacy policy.
Third-Party Service Usage Principles: We do not use any third-party services for user tracking, advertising targeting, or user profiling. All third-party services are used solely to implement the core functionality of the app.
All system permissions are optional. You can choose to allow or deny at first use, and can change them anytime in iOS Settings:
| Permission | If Denied | Alternative |
|---|---|---|
| Camera | Cannot take photos for identification | Select existing photos from library |
| Photo Library | Cannot select existing photos | Use camera to take photos |
| Location (Photos) | Photos may not include location information | Normal identification, no map marker for photos without location |
| Location (Trail) | Cannot recenter the map to your current location | Trail map and existing plant markers remain available |
Settings Path: iOS Settings → MyPlantBook → Permissions
You can enable or disable any permission at any time without affecting saved data. Some features also require an active network connection to upload photos, identify plants, sync cloud data, or load maps.
This app offers in-app subscription services, processed by Apple App Store. We do not directly collect, store, or process your payment information (such as credit card numbers or billing addresses). All subscription management, payment processing, and refund matters are handled by Apple.
You can view, modify, or cancel your subscriptions at: iOS Settings → Apple ID → Subscriptions.
This app is not intended for children under 13. We do not knowingly collect personal information from children.
We may update this Privacy Policy. Significant changes will be notified through in-app notifications, email, or an updated policy page.
If you have any questions about this Privacy Policy, or wish to exercise your data rights, please contact us:
The app may request the following system permissions: