Privacy Policy for Blurora
Effective date: August 17, 2026
Blurora ("the App," "we," "us") is developed by an independent developer ("Developer"). This Privacy Policy explains what data the App processes, how, and why, when you use Blurora on Android or iOS.
Contact for any privacy question or request: blurora@atomicmail.io
1. Summary
Blurora is a photo-editing app built to redact and blur sensitive content in your photos (faces, text, backgrounds). Its core design principle is on-device processing: your photos are analyzed and edited locally, on your phone, using on-device machine learning. We do not run our own servers that receive, store, or view your photos.
Purchase and subscription data leaves your device through Apple, Google, and our subscription-management service provider. Limited product-usage events are also sent to Amplitude's US service while you use the App.
2. Data We Process
2.1 Your Photos and Edits
Photos you choose to edit are read from your device's photo library using the system photo picker.
Detection (faces, text, background/subject separation) runs entirely on-device via on-device machine learning. The photo itself is never uploaded to us for this processing.
Edited photos are written back to your device's photo library. On iOS, the App only requests permission to add photos to your library (it does not request full read access to your library).
Project/edit state (e.g. undo history while you're working on a photo) is stored locally on your device only, in a local database. We do not have access to it, and it is not synced to any server we control.
2.2 Purchase and Subscription Data
Blurora offers optional paid subscriptions/upgrades ("Pro"), processed through:
Google Play (Android) or the Apple App Store (iOS) — the platform you purchase through is the merchant of record and processes your payment details directly. Blurora uses Adapty's Kotlin Multiplatform subscription SDK in Full Mode to connect the app to those stores. We never see your card/payment details.
A third-party subscription-management service provider we use to validate purchases, manage entitlements (e.g. whether you have Pro), and get subscription analytics (e.g. renewal/conversion rates). This provider receives: a device/installation identifier, your purchase/transaction receipts, subscription status and history, and basic device/app metadata required by its SDK.
This provider acts as our data processor for this purpose. On Android or iOS, Blurora may send the anonymous Amplitude device identifier to this provider as an integration identifier so subscription events can be attributed to the same anonymous installation. Adapty is configured without a customer user ID, IDFA/ATT collection, or Android Advertising ID collection. A link to the provider's published privacy policy is available on request.
2.3 Anonymous Product Analytics
Blurora sends a limited catalog of product events to Amplitude's US service so we can understand onboarding, editor usage, export completion, and Pro paywall conversion. Events may include:
screen and navigation names, stable feature names, success/cancel/error outcomes, duration buckets, and subscription-plan metadata;
a randomly generated anonymous installation/device identifier; and
whether the installation currently has Pro access.
We do not send photos, image pixels, face/text detections, project titles, file names, URLs, names, email addresses, account IDs, or payment details. We do not set a user ID. We do not use IDFA/ATT or Android Advertising ID for this analytics integration. Data delivered to Amplitude or the subscription-management provider follows the processors' retention and deletion procedures. Contact us at blurora@atomicmail.iofor a deletion request or privacy question.
2.4 Data We Do Not Collect
We do not have our own backend or account system. We do not collect your name, email, contacts, photos, precise location, or browsing history. We do not show ads, and we do not sell or share personal data with third parties for advertising or marketing purposes.
2.5 Permissions and Network Access
Photos, add/save (iOS and Android) — save your edited photo back to your library. On iOS this is the only photo permission the App requests.
Photos, system picker (iOS and Android) — let you choose a photo to edit. The picker hands over only the photo you select and does not grant access to the rest of your library.
Internet and network state (iOS and Android) — communicate with Apple App Store / Google Play billing through our subscription-management provider, and download on-device ML models on first use.
Billing, com.android.vending.BILLING (Android only) — process in-app purchases through Google Play. On iOS, purchases go through Apple StoreKit, which requires no separate permission.
Product analytics (Android and iOS) — no ATT prompt or advertising-ID permission is requested. Limited product events described in Section 2.3 are sent to Amplitude's US service.
3. How Long We Keep Data
Photos and edit history: kept locally on your device until you delete them or uninstall the App. We never receive a copy.
Purchase/subscription records held by our subscription-management provider and the app stores are retained per their own retention policies, generally for as long as needed to manage your subscription and for legal/accounting requirements.
Amplitude product analytics is retained according to Amplitude's policies and the configuration of our Amplitude US project. Already delivered records follow the processor's retention and deletion procedures; contact us to make a deletion request.
4. Your Rights
Depending on where you live (e.g. under GDPR in the EU/UK, or CCPA/CPRA in California), you may have the right to request access to, correction of, or deletion of personal data we or our processors hold about you, and to object to or restrict certain processing.
Because Blurora does not maintain user accounts or its own database of personal data, most requests will concern the purchase/subscription data held by our subscription-management provider and the app stores. To exercise any of these rights, or ask a question, contact us at blurora@atomicmail.io and we will route the request as needed.
5. Children's Privacy
Blurora is not directed at children under 13, and we do not knowingly collect personal data from children under 13. If you believe a child has provided personal data through the App, contact us at blurora@atomicmail.io and we will take appropriate action.
6. International Data Transfers
Because our subscription-management provider, Amplitude, and the app stores operate internationally, data described in Sections 2.2 and 2.3 may be processed in countries other than your own, including the United States. These providers maintain their own safeguards for cross-border transfers (e.g. Standard Contractual Clauses).
7. Security
We rely on the security of your device's operating system and the security practices of Apple, Google, and our subscription-management provider for any data described above. No method of processing is 100% secure, but photo processing never leaving your device significantly limits our exposure to a data breach affecting your photos.
8. Changes to This Policy
We may update this Privacy Policy as the App evolves (for example, if we add new features that change what data is processed). We will update the "Effective date" above when we do. Material changes will be reflected on this page before or when they take effect.
9. Contact Us
Questions, requests, or complaints about this Privacy Policy or your data: blurora@atomicmail.io