CardLocked ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
1. Information We Collect
1.1 Information You Provide
- Account Information: Username, email address, and password (stored securely with encryption)
- Profile Information: Optional display name and avatar
- Lock Data: Lock configurations, card selections, and timing preferences
- Communication Data: Support tickets and feedback you submit
1.2 Information Collected Automatically
- Device Information: Device model, operating system version, and unique device identifiers
- Usage Data: App features used, interaction patterns, and performance metrics
- Crash Reports: Technical information about app crashes to improve stability
1.3 Information We Don't Collect
- Location data
- Contact lists
- Camera or photo library access (except for QR code scanning)
- Microphone or audio recordings
2. How We Use Your Information
We use the information we collect to:
- Provide and maintain the CardLocked service
- Process your lock configurations and card picks
- Send push notifications about your locks (if enabled)
- Respond to support requests and feedback
- Improve app performance and fix bugs
- Ensure security and prevent fraud
3. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties.
We may share information only in these circumstances:
- With Keyholders: If you designate a keyholder, they can see limited lock information
- Service Providers: With trusted third parties who assist in operating our service (under strict confidentiality agreements)
- Legal Requirements: If required by law or to protect rights and safety
- Business Transfers: In connection with a merger or acquisition (with continued privacy protection)
4. Data Security
We implement industry-standard security measures including:
- End-to-end encryption for sensitive data
- Secure password hashing using Argon2
- HTTPS/TLS for all data transmission
- Regular security audits and updates
- Limited access to personal data on a need-to-know basis
5. Data Retention
We retain your information only as long as necessary to provide our services:
- Active Accounts: Data retained while account is active
- Deleted Accounts: Personal data deleted within 30 days of account deletion
- Abandoned Locks: Archived after 90 days of inactivity
- Legal Obligations: Some data may be retained longer if required by law
6. Your Rights and Choices
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct your information
- Deletion: Request deletion of your account and data
- Portability: Export your data in a machine-readable format
- Opt-out: Disable push notifications or marketing communications
7. Children's Privacy
CardLocked is not intended for users under 18 years of age. We do not knowingly collect personal information from children under 18. If we discover that a child under 18 has provided us with personal information, we will delete such information from our systems.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.
9. Third-Party Services
9.1 QIUI Device Integration
If you connect QIUI devices, communication occurs directly via Bluetooth. We do not store QIUI device passwords or control codes on our servers.
9.2 Payment Processing
In-app purchases are processed through Apple's App Store or Google Play. We do not store payment card information.
10. California Privacy Rights
California residents have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected, used, shared, or sold.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by updating the "Last Updated" date and, for significant changes, providing prominent notice in the app.
12. Contact Us
If you have questions about this Privacy Policy, please contact us:
- Email: privacy@cardlocked.app
- Support: support@cardlocked.app
- Website: https://cardlocked.app