Effective August 31, 2026

Privacy Policy

Timestamp Camera is designed to work without an account, advertising, analytics, tracking, or a developer-operated media server.

Information the app uses

When you grant permission, the app uses the camera and microphone to create photos and videos, location services to add coordinates, accuracy, altitude, address, and map information, and add-only Photos access to save your finished captures. You decide which fields appear in a stamp.

How processing works

Photo and video compositing, QR generation, hashing, signing, and verification happen on your device. The app stores preferences locally. A signing key is kept in the device Keychain and, where available, protected by the Secure Enclave.

The visible stamp, QR code, and exported media can contain the time, location, address, device model, and public signing key you chose to include. Anyone you share that media with may be able to read those details.

The website verifier processes selected files, proof codes, and—only when you choose the camera scanner—live camera frames locally in your browser. It does not upload them to the developer or store their contents. Opening an optional external map link sends the displayed coordinates to the map provider you choose to visit.

Network services

Data collection and sharing

The developer does not collect your photos, videos, precise location, contact information, identifiers, usage history, or diagnostics through the app. There are no developer-operated accounts, advertising SDKs, analytics SDKs, or cross-app tracking. The app does not sell personal information.

Storage, retention, and deletion

Finished media remains in your photo library until you delete it. App preferences and the signing key remain on your device until the app or its data is removed, subject to iOS backup and Keychain behavior. You can revoke permissions at any time in iOS Settings and delete exported media in Photos.

Self-signed integrity limitation

The integrity feature can report mismatches in self-signed fields or intact media data. Because the public key travels with the record, it does not independently certify identity, authorship, or the truth of the recorded scene, time, or location.

Children

The app is not directed to children and the developer does not knowingly collect personal information from children through the app.

Changes

Material changes will be posted on this page with a revised effective date.

Contact

Questions about this policy can be sent to pixelateddev@gmail.com.