Privacy Policy
Bovira Visual Workshop
This policy explains how this application handles information and how to contact us about privacy.
Information we process
Bovira Visual Workshop stores the item names, categories, initial-condition notes, damage descriptions and positions, restoration steps, dates, reminders, event history, preferences, and photographs you add on your iPhone. The app creates a random installation secret in the iPhone Keychain. When the backup service is reachable, it receives an encrypted copy of your project records, your uploaded photographs, a one-way identifier derived from the installation secret, and ordinary network request information such as IP address and request timing handled by Railway infrastructure. We do not require an account, email address, or sign-in.
How we use information
The local records power your workshop, progress, timeline, journal, and photo comparison. Local notifications remind you of work at times you choose. The service stores a private backup and photographs for this installation so the app can restore them while the same installation secret remains available. Health requests check service availability. We do not use the data for advertising or analytics.
Service providers and sharing
Project data and photographs are sent to our backend only for backup and retrieval. Railway hosts that backend and its persistent storage and processes network traffic and infrastructure logs as the hosting provider. No advertising, analytics, email-delivery, or social-login SDK is included. We do not sell your data. We cannot state Railway's infrastructure-log retention period on its behalf.
Data retention
Local project records and photographs remain until you delete an item, delete all app data, or remove the app and its local data. An encrypted project backup remains on the service until it is replaced by a later sync or this installation requests deletion. Uploaded photographs for deleted or replaced items are removed after the next successful sync; they can remain on the server while the app is offline. No automatic expiry is implemented. The service uses a Railway persistent volume. We have not configured a separate application backup of that volume, and cannot promise recovery after volume loss. Infrastructure logs may be retained under Railway’s own practices, which this app does not control.
Deleting your information
Deleting an item removes its local project records and photographs and removes it from the next encrypted backup. Its uploaded photographs are deleted at the next successful sync, so they may remain remotely while offline. Delete all data removes local records and photographs, cancels pending reminders, and requests deletion of this installation’s complete server backup and photographs; on success the installation secret is removed from Keychain. If the server is unavailable, the app reports that online deletion failed and retains the secret so you can reconnect and retry before removing the app. Without that secret, we cannot identify an anonymous installation for a remote deletion request.
Permissions and your choices
You may choose existing photographs using the system photo picker without granting broad photo-library access. Camera access is requested only when you choose to take a photograph. Notification permission is requested when you schedule a reminder. You can withdraw camera or notification access in iOS Settings, and you can remove reminders by deleting the related step or all data. The app does not request location or map access.
Your privacy rights
You can view, edit, and delete your project information in the app. For privacy questions or a request about data you can identify, contact sitak.viki.team08@gmail.com. The app has no account or email submission feature. Because the server identifies an installation only through its secret, keep the installation available when requesting help with its data. Legal rights may vary by location.
Security
The app stores the random installation secret in Keychain and uses it to authorize private server requests over HTTPS. It encrypts project backup records on the iPhone with AES-GCM before upload. The backend compares the installation identifier derived from the secret and restricts backup and photo routes to that installation. Uploaded photographs are stored on the Railway volume as image bytes rather than end-to-end encrypted files. No internet service can guarantee absolute security.
Children’s privacy
Bovira Visual Workshop is designed for adults restoring household items. It is not directed to children and does not provide child accounts or social features. If you believe a child has provided data through an installation, contact us at sitak.viki.team08@gmail.com.
Changes to this policy
We may update this policy when the app, backend, or hosting practices change. The current version and effective date will appear on this page. Material changes will be reflected in an updated policy published at this address before or alongside the related app change.