Privacy Policy
This policy applies to BiDecks and the services operated for it by Team5. BiDecks is designed as a local-first personal library. This policy explains what stays on your device, the limited information used for online features, and the choices you control.
Your Vault stays on your device
BiDecks stores your library in the app's local storage. We do not operate user accounts or a cloud service that receives a copy of your complete Vault.
- Decks, source links and metadata, notes, takeaways, checklists, moments, Topics, Try Lists, attachments, related links, search history, and source-opening history are stored locally.
- App preferences and access status, such as theme, onboarding completion, and trial dates, are also stored locally.
- You do not need to create an account or provide a name, email address, contacts list, or location to use the app.
- Depending on your device and operating-system settings, local app data may be included in an Apple or Google device backup. Those backups are controlled by the platform and your device account.
Source metadata and network requests
When you save or refresh a source, BiDecks may request public information such as its title, creator, description, thumbnail, duration, or publication date. The source URL, requested metadata fields, and sometimes your device locale may be sent either to the source directly or to the BiDecks metadata server, which requests the information from the relevant provider.
BiDecks does not send your notes, attachments, Topics, Try Lists, search history, or complete library to the metadata server.
- The BiDecks server primarily processes source URLs long enough to fetch and return public metadata. It has no application database containing user libraries.
- For ordinary websites and some services, your device may contact the source website or its image host directly. Those services receive normal network information such as IP address and user agent.
- Metadata may be requested from source websites and services including YouTube/Google, SoundCloud, DEV, CodePen, TikTok, Facebook, Instagram, Reddit, X, Threads, Spotify, and Apple Podcasts, depending on the link you save.
- Our server and hosting provider may process standard request information, including IP address, request identifier, endpoint, status, and timing, for security, rate limiting, reliability, and troubleshooting. Request bodies are not intentionally written to an application database.
Third parties
Service providers that process information on our behalf, such as infrastructure providers, are used only to operate the functions described in this policy and are expected to protect information consistently with applicable agreements and law.
Apple and the source websites or platforms you choose to save are independent services. Their processing of requests, purchases, content, and network information is governed by their own privacy policies and terms.
Trial eligibility and Apple DeviceCheck
On supported Apple devices, BiDecks uses Apple DeviceCheck to determine whether the device has already received a free trial. The app sends an opaque DeviceCheck token through the BiDecks server to Apple. Apple stores a small device-bound trial flag; the BiDecks server acts as a stateless relay and does not intentionally store the token in an application database.
The token is used only for trial eligibility and abuse prevention. It does not give us access to your Apple ID, advertising identifier, contacts, location, files, or BiDecks Vault, and it is not used for advertising or tracking across apps or websites.
Purchases
Apple processes the free trial transaction, Full Access purchase, and purchase restoration through StoreKit. BiDecks reads verified entitlement status to enable features but does not receive your payment-card details. Apple's handling of purchase information is governed by Apple's privacy policy.
Information you choose to provide
- The share extension receives only the text, link, or supported item you choose to share with BiDecks. Temporary shared payloads are cleared after saving or discarding.
- Photo access is used when you choose an image to attach or ask BiDecks to save an attached image to Photos.
- File access uses system pickers when you choose an attachment, Deck archive, or Vault backup.
- The clipboard is read only after you press Paste while adding a copied link.
Backups, exports, and sharing
Vault backups and Deck exports are created locally and passed to the destination you choose through the system share sheet. They are not uploaded to the BiDecks metadata server.
Export files are not encrypted and may contain your library, notes, history, metadata, thumbnails, and attachments. Anyone with access to an export may be able to read it. You are responsible for choosing a secure destination and deleting copies you no longer need.
Messages to us
If you email product or technical support, we receive the email address, message, attachments, and other information you choose to send. We use it to respond, troubleshoot, prevent abuse, and improve BiDecks. Your email provider also processes the message under its own privacy terms.
What we do not do
- BiDecks does not contain third-party advertising or use advertising identifiers.
- BiDecks does not include third-party analytics or crash-reporting SDKs.
- We do not sell or rent personal information or library content.
- We do not use your Vault, metadata requests, or DeviceCheck token to build marketing profiles or track you across other companies' apps or websites.
Retention, deletion, and your choices
You control local content. Delete individual items in BiDecks or remove the app to delete its local app container, subject to copies in device backups and files you exported separately.
Metadata requests and DeviceCheck tokens are not intentionally stored in a BiDecks application database. Standard operational logs may be retained under our hosting provider's log-rotation practices only as reasonably necessary for security, reliability, and troubleshooting, then deleted or overwritten.
Support correspondence is retained while needed to address the request, maintain support records, meet legal obligations, or prevent abuse. You may contact us to request deletion of personal information we control; some records may be retained where legally required or necessary to protect the service.
You can withdraw optional Photos permission in your device settings and can choose not to send support email or create exports. Removing permission does not delete files you previously exported or saved to Photos.
Security
We use reasonable technical and organizational measures to limit and protect the information processed by BiDecks. No storage or transmission method is completely secure. Protect your device, exported files, and chosen backup destinations with appropriate access controls.
Children
BiDecks is not directed to children under 13, and we do not knowingly collect personal information from children. If you believe a child has sent us personal information, contact us so we can review and delete it where appropriate.
Changes to this policy
We may update this policy when BiDecks or its data practices change. We will update the effective date and make the current policy available in the app and at the public privacy-policy URL listed on the App Store.
Privacy questions and requests
For questions, access or deletion requests, or concerns about this policy, contact BiDecks Support at support@bidecks.com.