Privacy Policy
Last updated: 2 May 2026
PocketVault is a Pokémon save vault and trading app built by an independent developer. This policy explains what data we collect, why, and how we handle it. Plain English, no dark patterns.
1. What we collect
If you use the app without an account
- Nothing. Your imported saves and vault stay entirely on your local device. No telemetry, no analytics, no phone-home.
If you create an account
- Email address — used for sign-in, password reset, and (rarely) service announcements.
- Username — chosen by you, visible to other PocketVault users so they can send friend requests.
- Vault contents — Plus and Pro subscribers' Pokémon entries are stored on our servers so they sync across devices.
- Friendships and trade history — needed for the trading feature to work.
- Subscription status — Free / Plus / Pro tier, renewal date.
If you subscribe to Plus or Pro
- Stripe handles all billing. We never see or store your full credit card number, CVV, or bank details. We only receive a Stripe customer ID, the plan you're on, and your renewal date.
2. What we don't collect
- Your IP address (beyond what Supabase logs for rate-limiting).
- Browsing history, device fingerprints, or analytics tracking.
- Anything from third-party advertising networks — there are none.
- Save file contents from non-account users — those stay on your device.
3. Where your data lives
- Supabase (Frankfurt or US region, depending on your sign-up location) — hosts your account, vault entries, friend graph, and trade history.
- Stripe — handles subscription billing under their own privacy policy: stripe.com/privacy.
- That's it. No other third parties touch your data.
4. How we use your data
- To let you sign in, sync your vault across devices, and trade with friends.
- To send you transactional emails (sign-up confirmation, password reset, payment receipts).
- We do not sell your data, share it with advertisers, or use it for marketing beyond the service itself.
5. Your rights
You can:
- Export your vault any time via Settings → Export Vault (works on all tiers).
- Delete your account by emailing support@pocket-vault.net. We'll erase your profile, vault, friendships, and trade history within 14 days.
- Cancel your subscription any time from Settings → Account → Manage subscription. You keep Plus features until the end of the billing period.
- Request a copy of your data — same email address.
6. Cookies / local storage
The app uses your browser's local storage to remember:
- Your authentication session (so you don't sign in every time).
- Your local vault contents (when not signed in, or as a working copy).
- UI preferences (theme, settings).
No tracking cookies. No third-party cookies.
7. Children
PocketVault isn't directed at children under 13. If you believe a child has created an account, please contact us and we'll remove it.
8. Changes to this policy
If we materially change how we handle your data, we'll notify users via in-app banner and email at least 30 days before the change takes effect.
9. Contact
Questions, concerns, or data requests: support@pocket-vault.net.