Privacy Policy
Button Visual Assistant
This policy explains how this application handles information and how to contact us about privacy.
Information we process
Button Visual Assistant lets you photograph or select an appliance control panel. When you request recognition, the app sends the panel image, the name and category you entered, your selected language, and a randomly generated installation secret to our service. The service stores a hash of that secret, the photo, recognized controls and tasks, and creation and update times. The app also keeps the photo and results in a local Core Data cache and keeps the secret in iOS Keychain. Camera guidance analyzes frames on your device; those live frames are not uploaded unless you choose to recognize a captured photo. The service receives ordinary network request information, and its operational logs record a request ID, route, status, and error code. We do not require an account or collect a sign-in email address.
How we use information
We process a submitted panel image to identify visible controls, explain them in Polish and English, suggest tasks linked to those controls, and let you reopen saved devices offline. The installation secret is used to authorize access to your own server records. Local camera analysis gives framing and lighting guidance. Operational request data is used to run and troubleshoot the service.
Service providers and sharing
The backend runs on Railway. It uses PostgreSQL for device metadata and recognition results and private S3-compatible object storage for submitted photos. A submitted image and recognition instructions are sent to OpenRouter, which routes the request to a downstream provider serving the configured GPT-4o model; the provider can vary and may include OpenAI or Azure. The application sends store:false in the provider request and validates the returned result; this request option does not establish the providers' independent retention practices. Railway, the database and object-storage infrastructure, OpenRouter, the routed model provider, and network providers may process information needed to deliver those services, including infrastructure logs under their own practices. We do not add advertising, analytics, email delivery, or public sharing features.
Data retention
Saved device metadata, recognition results, and photos remain on the server until you delete the device. Local copies remain until you delete the device, clear the local cache, or remove the app, subject to device operating-system behavior. The application does not set a fixed deletion schedule for provider logs or control infrastructure backups. We cannot promise a particular backup or provider-log retention period; copies held by infrastructure providers may persist under their policies after an active record is deleted.
Deleting your information
Use Edit Device and Delete Device to remove a saved device from the app's local cache and request deletion of its server database record and private photo object. The server requires the installation secret before accepting that request. Clear Local Cache removes local copies only; server records may download again. If you lose or reset the installation secret, the app cannot authenticate to recover or delete that installation's server records. For a privacy request about that situation, contact YwainPenhaligon90@icloud.com and provide enough non-secret detail to explain the request; identity and ownership may be impossible to verify without the secret. Active-record deletion does not directly erase provider backups or logs.
Permissions and your choices
Camera permission is used only to preview and capture appliance panels. You can deny or withdraw it in iOS Settings and instead choose an existing image with the system photo picker. The app does not need location, contacts, microphone, or notification permission. Withdrawing camera permission stops new camera capture; it does not delete previously saved scans.
Your privacy rights
You can view, rename, change the category of, and delete devices within the app. For access, correction, deletion, or other privacy questions, write to YwainPenhaligon90@icloud.com. The contact address is for privacy requests only and is not an account or an in-app messaging service. Applicable rights depend on your location; we will assess requests under applicable law and the information we can verify.
Security
Private API requests use HTTPS and an automatically generated 32-byte installation secret stored in iOS Keychain. The server stores only a SHA-256 hash of that secret and checks it for every private device operation. Photos are stored in private object storage, and device data is filtered by installation ownership. No account password or shared client credential is used. Loss of the installation secret means server data cannot be recovered through a sign-in process. No system can guarantee absolute security.
Children’s privacy
The app is intended for people using household appliances, including adults and families, and is not directed to children. We do not knowingly design it to collect children's personal information. If you believe a child submitted personal information in a panel photo, contact YwainPenhaligon90@icloud.com so we can assess a deletion request.
Changes to this policy
We may update this policy when the app, service providers, or data practices change. The current version and effective date will appear on this public page. Material changes will be reflected here and, when appropriate, in the app. You can contact YwainPenhaligon90@icloud.com with questions about a change.