Privacy Policy

Last updated: September 4, 2026

⚡ The short version

Your core saved inventory stays on your device.

AssetVault does not synchronize your complete saved vault to an AssetVault cloud account. Optional catalog, AI, photo, pricing, and barcode tools process selected inputs when you use them. Crash diagnostics and purchase verification can contact services automatically. Details matter, so they are set out below.

1. Your core inventory is stored locally

AssetVault stores saved inventory records in a local SQLite database and stores photos and documents in app storage on your device. The SQLite database is not separately encrypted by AssetVault. It relies on your operating system's app sandbox and device-data protections. The optional Encrypted Backup feature protects a backup file you create; it does not encrypt the live database.

AssetVault does not synchronize your complete saved inventory to an AssetVault cloud account. Optional features send selected inputs off-device when needed, and crash reporting and purchase verification can contact services automatically.

No AssetVault account, name, or email address is required to save an inventory.

2. Information we process

Crash and session diagnostics. AssetVault uses a self-hosted Sentry-compatible service. Crash events and session-health diagnostics may be sent automatically and can include app version, device and operating-system details, stack traces, timestamps, and technical metadata. Performance tracing is disabled. The app is configured to remove inventory-related request bodies, breadcrumbs, and extra fields from crash events before transmission, but diagnostic scrubbing should not be treated as an absolute guarantee.

Purchase information. Apple or Google processes purchases. RevenueCat receives a pseudonymous App User ID, store receipts, entitlement status, transaction information, and related technical information so the app can verify Pro and Collector+ access. CRL Digital does not receive your payment-card details.

Support communications. If you email support or share your Support ID, we receive the address, message, attachments, and identifier you choose to provide so we can respond.

3. Optional data processing

Your complete saved vault is not copied to an AssetVault inventory cloud. Optional tools process smaller inputs as follows:

4. Permissions

Camera and photos. To take or select item photos and scan barcodes or text. Saved copies remain in app storage unless you choose an online photo-processing feature or share/export them.

Device authentication. To lock and unlock your vault with authentication configured in your operating system. AssetVault does not receive or store your raw biometric data and does not create a separate app PIN.

File access. To import and create backup, archive, and PDF files. Generated files are handed to the operating-system share sheet; the destination you choose then controls them.

5. Services we use

Most inventory-processing network calls are user-triggered. Crash reporting and purchase verification can contact services automatically. These services do not receive a copy of the complete inventory database.

Catalog data attribution. Public lookup may return reference data from Scryfall bulk data under its API usage policy, Rebrickable, Timepiecepedia metadata under CC0 1.0 Universal without third-party watch images, Wikidata CC0 structured data, and AssetVault-curated references.

AssetVault is unofficial Fan Content permitted under the Fan Content Policy. Not approved/endorsed by Wizards. Portions of the materials used are property of Wizards of the Coast. ©Wizards of the Coast LLC.

A private, disabled copy of Grand Comics Database issue metadata made available under CC BY-SA 4.0 is retained for audit but excluded from public lookup until written guidance and end-to-end record attribution are in place. YGOPRODeck rows are also preserved privately and excluded from public lookup pending written permission; all associated image URLs are disabled.

6. Data security, backups, and exports

On-device storage. Your inventory database, photos, and documents live in the operating system's app data area. Platform sandbox and device protections reduce access by other apps, but the live SQLite database is not separately encrypted by AssetVault.

App lock. AssetVault uses the device authentication configured in your operating system — such as Face ID, fingerprint, iris, or device passcode/PIN — when opening the app after backgrounding.

Encrypted Backup (.avbk). Wraps JSON backup data — including inventory metadata and local file references, but not the referenced photo binaries — in an AES-256-CBC envelope authenticated with HMAC-SHA256 and keyed via PBKDF2-SHA256 with 100,000 iterations. The passphrase is not persisted by AssetVault, and CRL Digital has no master key. A strong, unique passphrase is important.

JSON Backup. An unencrypted metadata backup. Anyone with the file may be able to read its contents.

Full Export ZIP. An unencrypted portability archive containing CSV, JSON, and media files the app can read. AssetVault can inspect and restore the ZIP directly. It shows a summary and requires confirmation before replacing the current vault. Verified archived media is reattached to restored records; unavailable media is reported.

Service-record retention. After the 1.2.2 catalog-side paid-service controls are deployed, hashed RevenueCat webhook-event records and paid-feature usage-meter rows are deleted after 90 days. Fully refreshed inactive entitlement-mirror rows are deleted after 90 days; active or unreconciled rows remain while needed for access verification. Pending catalog candidates remain private until reviewed and are not automatically deleted. Promoted or rejected review metadata is deleted after 90 days, and the submission quota ledger is deleted after 31 days. Catalog database backups rotate after 30 days, so a deleted service record may remain in a disaster-recovery backup until that copy expires.

7. How to delete your data

Inventory data. Delete individual items permanently from Trash, empty Trash, or uninstall the app to remove its local app data. Uninstalling does not delete backups, exports, PDFs, email attachments, cloud-drive copies, or operating-system backups outside the app; delete those separately.

Crash diagnostics. Email support@crldigital.com with the subject "Delete Crash Data" and include device type, OS version, app version, and approximate timestamps. Because identifiers are minimized, we may be unable to associate a particular event conclusively.

RevenueCat and catalog-side billing records. Share the Support ID from Settings and email a deletion request asking us to delete RevenueCat's record and, if a 1.2.2 catalog-side entitlement or metering record exists, that record as well. Apple and Google may retain purchase records under their own policies.

Catalog contribution or correction feedback. Contact support with the exact submitted fields and approximate date. Because these private queue records are not stored against an AssetVault account, identification may require those details.

For a one-page reference, see Delete Your Data.

8. Privacy rights

Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or obtain a portable copy of personal information we process. California residents may also have rights to opt out of sale or sharing. CRL Digital does not sell personal information or use inventory data for targeted advertising.

AssetVault does not maintain an account-linked copy of your complete inventory. To exercise an applicable right, email support@crldigital.com with the subject "GDPR Request" or "CCPA Request" and provide the Support ID or technical details needed to identify the relevant service record. We respond within the period required by applicable law.

9. Children's privacy

AssetVault does not knowingly collect data from children under 13, or the equivalent age under applicable regional law.

10. Cookies and tracking

The AssetVault app does not use advertising SDKs or the IDFA/advertising-ID ecosystem. The marketing website does not intentionally set advertising or analytics cookies. Hosting and network providers may still process standard request data such as IP address, user agent, timestamp, and requested path for delivery, security, and operations.

11. Changes to this policy

If we change this policy, we will update the "Last Updated" date and provide any additional notice required by applicable law or platform policy.

12. Contact us

CRL Digital
Email: support@crldigital.com

For privacy-specific concerns, use subject lines: GDPR Request, CCPA Request, or Delete Crash Data.