Privacy Policy

Last Updated: January 1, 2026

1. Overview

GazeVault ("we", "our", or "us") is designed with a privacy-first approach. We believe your photos and biometric data belong solely to you.

2. TrueDepth API & Face Data Collection

2.1 What Information We Collect

GazeVault uses Apple's TrueDepth API (ARKit) to collect the following information in real-time:

  • Head position and orientation: 3D coordinates and rotation data to determine your head's spatial position relative to the device
  • Eye gaze direction: The direction your eyes are looking to determine screen focus
  • Face presence detection: Whether a face is detected in the camera's field of view
  • Face mesh data: Facial geometry data provided by ARKit for tracking facial features

Note: We do not collect, store, or process facial images, photos, or videos. Only mathematical representations of facial geometry provided by ARKit are processed.

2.2 Purpose of Data Collection

The TrueDepth data is collected exclusively for the following purposes:

  • Privacy Protection: To detect when you are actively looking at the screen and hide sensitive photos when you look away
  • Intruder Detection: To detect when an unauthorized person attempts to view your photos by identifying when a different face appears in the camera's view
  • Session Management: To maintain an active viewing session while you are engaged with the app and automatically lock when you disengage

This data is used only for these privacy-enhancing features and for no other purpose.

2.3 Data Storage and Retention

  • Storage Location: All TrueDepth data is processed exclusively in your device's volatile memory (RAM). No face data is written to disk, persistent storage, or any database.
  • Retention Period: Face data exists only during active processing (milliseconds) and is immediately discarded after each frame is analyzed. Data is retained for zero seconds after processing.
  • No Cloud Storage: Face data is never transmitted to any server, cloud service, or external storage.

2.4 Third-Party Sharing

We do not share, sell, transmit, or disclose TrueDepth data to any third parties, including:

  • Analytics services
  • Advertising networks
  • Data brokers
  • Cloud service providers
  • Any other external entities

All TrueDepth processing occurs entirely on your device with no external communication whatsoever.

3. Photo Storage

Photos imported into GazeVault are stored in your device's secure application sandbox. They are encrypted by the iOS file system. We do not have access to your photos, and they are not uploaded to any server.

4. Analytics

We do not collect personal usage data. We may collect anonymous, aggregate crash reports provided by Apple to improve app stability.

5. Contact Us

If you have questions regarding this privacy policy, please contact us at support@gazevault.com.