Privacy Policy

Last updated: April 2026

CardZap ("we", "us", "the app") is a trading card scanning and pricing app. We designed CardZap to collect as little personal information as possible. This Privacy Policy explains what data the app uses, how it is used, and the third-party services involved.

No Account, No Tracking

CardZap does not require you to create an account. We do not collect your name, email address, phone number, contacts, or location. We do not use any third-party advertising or analytics SDKs that track you across other apps or websites.

Camera Usage

With your permission, CardZap uses your device's camera so you can scan trading cards. Camera frames are processed on-device for framing and are sent to our image recognition service only when you take a scan. We do not record video, and we do not access the camera in the background.

Photo Library Usage

With your permission, CardZap can import card images from your photo library when you select them. The app only accesses photos you explicitly choose; it does not scan or upload your library.

Card Images and OpenAI

When you scan or import a card, the image is transmitted over a secure connection to OpenAI's API for the sole purpose of identifying the card (player, set, year, number, etc.). OpenAI processes the image to return the identification result. CardZap does not retain the original image on our servers after the recognition response is returned. Please review OpenAI's Privacy Policy for details on how they handle API data.

Card Inventory Data

The cards you save, your collection, notes, and app settings are stored locally on your device. You can delete all local data at any time from the Settings screen inside the app.

Pricing Data (eBay)

CardZap uses the eBay API to fetch public sold-listing data so we can show estimated card values. These are anonymous, read-only requests for public market data and do not involve your eBay account.

Subscriptions (RevenueCat & Apple)

CardZap Pro subscriptions are sold through Apple's In-App Purchase system. We use RevenueCat to manage subscription entitlements (whether your account is Pro or Free) and to validate purchase receipts with Apple. RevenueCat may receive a randomly generated app user ID, your subscription status, and receipt data from Apple. RevenueCat does not receive your name, email, or payment details — those are handled directly by Apple. See RevenueCat's Privacy Policy and Apple's Privacy Policy for more information.

Children's Privacy

CardZap is not directed to children under 13 and does not knowingly collect information from children.

Changes to This Policy

If we make material changes to this policy, we will update the "Last updated" date above and, where appropriate, notify users in the app.

Contact

Questions, concerns, or data deletion requests:
support@cardzap.app