1. Introduction
This Privacy Policy explains how we collect, use, store, share, protect, and delete information related to your use of InstruKit.
This Policy is drafted in accordance with:
- Laws and regulations of mainland China: the Personal Information Protection Law of the People's Republic of China, the Cybersecurity Law of the People's Republic of China, the Data Security Law of the People's Republic of China, the Interim Provisions on the Pre-installation and Distribution of Mobile Smart Terminal Application Software, the Methods for Identifying Illegal Collection and Use of Personal Information by Apps, the Provisions on the Scope of Necessary Personal Information for Common Types of Mobile Internet Applications, and related national standards on personal information security (such as GB/T 35273);
- Apple App Store requirements: a reachable Privacy Policy URL, a functional privacy policy link on the subscription page (App Review 3.1.2 / 5.1.1), truthful App Privacy (“nutrition label”) disclosure, the PrivacyInfo.xcprivacy privacy manifest (no tracking, no collected data), and Required Reason API declarations.
If this Policy conflicts with laws and regulations, App Store policies, or mandatory local laws, the mandatory provisions prevail.
2. Operator Information
The following information should remain consistent with the App Store, the website footer, and customer support channels:
- Operator Name: InstruKit Team
- Contact Email: support@cuebuddy.cn
If the operator, contact person, or external service name changes, this document, the website pages, and the in-app entries should be updated accordingly.
3. Core Privacy Commitments
The App is built on the following principles:
- Local-first: your measurement records, capture artifacts, and settings are saved locally on your device only by default;
- No personal information collected: we do not collect, upload, or sell any of your personal information or measurement data;
- No account: the Service does not require account registration, so there is no account deletion issue;
- No ads, no tracking: the App contains no advertising SDK, performs no cross-app tracking, and does not participate in user profiling or personalized advertising;
- No third-party data SDKs: the App contains no third-party SDKs for analytics, crash reporting, push notifications, or behavioral analysis, and does not transmit your measurement content to any third-party server.
4. What Information We Process
We adhere to the principle of “process as little as possible, process locally by default, and process only to deliver the feature”.
4.1 Data Processing Inventory
| Data Category | Source | Purpose | Storage | Sharing |
|---|---|---|---|---|
| Measurement records (readings, units, confidence, notes, tags, project attribution) | In-app real-time measurement | Save, view, compare, export | Local device only (local SwiftData store) | Not shared, not uploaded |
| Time-series data (sound/vibration recording sequences, etc.) | Recording sessions you initiate | Recording summaries and detail review | Local device only (compressed storage) | Not shared |
| Capture artifacts (magnifier photos, recognized text, code payloads) | Camera/recognition results you actively save | Records and review | Local device only (app sandbox file directory) | Not shared |
| Settings and preferences (unit system, display precision, favorites, haptics, etc.) | Configured by you in the App | Feature persistence | Local device only (UserDefaults) | Not shared |
| Purchase status, transaction receipts, subscription entitlement flags | Apple App Store / StoreKit | Restoring purchases, entitlement validation | Minimal necessary information stored locally | Handled by the Apple system |
| System permission authorization status | Returned by iOS | Feature gating and recovery guidance | Used at runtime only, not persisted | Not shared |
4.2 Categories That Do Not Exist
The App does not collect or process the following categories of information:
- Identity information such as name, phone number, email address, or ID documents;
- Precise location history, contacts, photo library, SMS, or call logs;
- Advertising identifiers (IDFA) or other device tracking identifiers;
- Usage statistics or crash log reporting (the App has no analytics/crash reporting capability);
- Any upload of user data to third-party servers.
4.3 Capture and Recognition Content
Recognition in “Magnifier / Text Recognition / Code Scanning” is performed entirely on device:
- The camera feed is used only for live viewfinding and recognition; it is not continuously cached and never written to the network;
- Recognized text and code payloads are written to local device storage only after you actively tap Save;
- We have no access to this content; it never appears in any logs or on any server.
4.4 Payment and Subscription Information
If you purchase “InstruKit Pro”, the payment process is handled entirely by Apple. We never touch your bank card number, full billing details, or payment password; we only receive result information related to entitlement validation (such as whether a subscription is valid and the current plan type).
4.5 iCloud Sync (Coming Soon)
Cloud sync is not yet available. Once launched, only if you actively enable it will your measurement data be synced and backed up through your own Apple iCloud account, with data processing subject to Apple's terms of service and privacy policy; beyond that, we will not obtain or store your cloud data in any other way.
5. Permissions
The App only requests the following system permissions when you use the corresponding features. Denying a permission only makes the corresponding feature unavailable and does not affect other features:
| Permission | Purpose | Features |
|---|---|---|
| Camera | Live viewfinding, magnifier, text recognition, code scanning, light estimation, optical RPM observation | Magnifier / Scan / Light / RPM |
| Microphone | Capturing ambient sound for sound level measurement and recording | Sound Level |
| Location (while using the app) | Single-point acquisition of coordinates, altitude, and heading | Location & Heading |
| Bluetooth | Scanning nearby Bluetooth device advertisements (listing only, never connecting) | Bluetooth Nearby |
| Local Network | Discovering services advertised by devices on the local network (mDNS/Bonjour, listing only, never connecting) | Network Status |
Motion and acceleration sensors (used by Level, Vibration, and Magnetic detection) are provided through iOS device motion capabilities and do not trigger a separate permission dialog. You can review or revoke any of the above permissions at any time in iOS “Settings → Privacy & Security”; after revocation, the corresponding feature will clearly state so rather than presenting fabricated readings.
6. Network Behavior
- The App's measurement features are offline: except as described below, the App does not transmit your measurement data to any server;
- “Bluetooth Nearby” and “Network Status” only perform local-network advertisement listening and service discovery; they never connect to or probe target devices;
- When a scanned code contains a URL, it is handed to Safari only after you actively tap it; that navigation is handled under browser rules;
- When you visit the website instrukit.app, the web server may record basic access logs (IP, visit time, pages visited); these logs do not contain your measurements, recognition results, or media content;
- If iCloud sync launches in the future, data transmission will be encrypted through the Apple iCloud channel.
7. Sharing, Entrusted Processing, and Third Parties
We do not sell your personal information. The App does not share or entrust the processing of your personal information to any third party, with the sole exceptions of:
- Apple: app distribution, purchases/subscriptions/refunds, and system capability invocation, handled under Apple's rules;
- Legal requirements: provision to government departments or judicial authorities per statutory procedures (given our local-first architecture, we do not actually hold your measurement content and are objectively unable to provide such data).
If a third-party SDK or service needs to be introduced in the future, we will update this Policy and clearly announce its name, purpose, and data scope within the App.
8. Data Storage and Retention
- Local data: measurement records, capture artifacts, and settings remain on your device until you delete them, uninstall the App, or actively clear them. Uninstalling the App deletes all local data;
- How to delete: you can delete individual records / capture artifacts / projects in the App (deleting a capture artifact also deletes its file), or use the data management entry in Settings;
- Retention period: apart from the local data above, we do not keep any copy of information related to you.
9. Your Rights
Under applicable law, you have the following rights. Because the Service has no account system, all of these rights can be exercised directly on your device:
- Access and correction: view and edit your measurement records and notes at any time in the App;
- Deletion: delete any record in the App, or uninstall the App to delete all local data;
- Withdrawal of consent: revoke permission grants in iOS Settings, or uninstall the App;
- Export: export your records as CSV / PDF via the Export Center for your own retention;
- Understanding the rules: obtain explanations through this Policy and the contact email.
If your request cannot be completed through the self-service methods above, contact us via Section 15, and we will respond within 15 business days.
10. Protection of Minors
The Service is designed for general consumers and prosumers and does not market to or collect information from children. The App contains no social features, tipping/paid-gifting, or addictive inducements.
If you believe a child has provided personal information without guardian consent (in this app's architecture, that means local data on the child's device), please contact us and we will assist in accordance with applicable law; you may also simply uninstall the App to delete all data.
11. Cross-Border Transfer
The App does not transmit your personal information to any server (domestic or overseas). There is no cross-border data transfer implemented by us.
If you enable iCloud sync in the future, data storage location and cross-border processing are subject to Apple iCloud's regional policies and legal framework.
12. Data Security
Reasonable technical and organizational measures we take include:
- Local data exists only inside the iOS app sandbox, protected by system-level isolation;
- The App contains no network upload channel, eliminating transmission leakage risk architecturally;
- No third-party SDKs are introduced, reducing supply-chain risk;
- Least-privilege principle: only permissions necessary for features are requested, and permission prompts are deferred until you actually use the corresponding feature.
Please note: your device's physical security (passcode, system updates) is under your control; we cannot substitute for your own device protection measures.
13. Personalized Recommendations and Algorithms
The App contains no personalized advertising, algorithmic recommendations, user profiling, or automated decision-making. All content display and feature gating are based only on your on-device settings and purchase status.
14. Policy Updates
When we update this Policy, we will publish it on the website or in the App and update the document version and effective date. If an update materially affects your rights and obligations, we will try to give advance notice and re-obtain your consent where applicable. Major historical updates (such as new permissions or new data categories) will be listed in the release notes.
15. Contact Us
If you have questions, complaints, or suggestions about this Policy, data processing, or the exercise of your rights, please contact:
- Email: support@cuebuddy.cn
We commit to responding to your requests within 15 business days. If you are unsatisfied with our handling, you may file a complaint or report with the cyberspace administration or other competent authorities in accordance with applicable law.