Privacy Policy
How Plok collects, processes, shares, and deletes information—including the temporary copies used to analyze screenshots.
Last updated: August 2, 2026
This Privacy Policy explains how Plok App LLC (“Plok,” “we,” “us,” or “our”) handles information when you use the Plok mobile app, API, and website (together, the “Service”). It also covers support communications related to the Service.
The short version: your screenshots are private. They are never published or shown to other Plok users. Plok processes them automatically to identify and organize the things you save, and Plok staff do not review a screenshot unless you choose to submit it with a support or accuracy report. Plok deletes its temporary encrypted copy after processing.
1. Information we collect
Screenshot and user content
- Screenshots selected by the app or by you for analysis.
- Screenshot metadata, such as a Photo Library asset identifier and capture time.
- Optional text, feedback, issue reports, and screenshot attachments submitted for support.
- Information about the things Plok identifies in screenshots, such as products, books, movies, places, events, and links. Plok is designed to identify the saved item—not people in your messages or other private communications.
Device, app, and account information
- A stable pseudonymous user ID generated by the app. Plok does not currently require a name-and-email login.
- Push notification tokens.
- App version, device type, operating system, and locale.
- Subscription status, entitlements, and purchase-related identifiers supplied by Apple and RevenueCat.
Activity, diagnostics, and website information
- Searches, screen views, feature interactions, catalog views, and analysis request and completion events.
- Crash reports, performance traces, diagnostic context, and support feedback.
- Basic site usage, if website analytics is enabled, including which pages people visit and their browser or device type. The website may use analytics cookies or similar technologies.
PostHog IP geolocation and session replay are disabled in the mobile app. We do not collect precise location, contacts, health data, or payment-card details through the app.
2. How Plok handles screenshots
When you select a screenshot for analysis, Plok uploads it over an encrypted connection and keeps an encrypted temporary copy only while the analysis runs. Plok deletes that copy when processing finishes. A one-day expiration rule removes any copy left behind if cleanup fails.
Plok uses automated analysis and visual-search providers—including OpenAI, Google, and Serper—to identify and verify the item in a screenshot. Other content and enrichment providers receive only search terms, identifiers, or links derived from the screenshot—not the screenshot itself.
Screenshots are never sent to PostHog or shown to other Plok users. Sentry receives a screenshot only when you deliberately submit it with a support or accuracy report. OpenAI response storage is disabled; providers may retain limited security logs under their terms.
3. How we use information
- Analyze screenshots and create, enrich, and organize finds.
- Return results and send optional completion notifications.
- Provide search, collections, recommendations, and subscriptions.
- Understand product usage and improve quality and reliability.
- Diagnose crashes, investigate reports, and provide support.
- Prevent abuse, fraud, and security incidents.
- Comply with law and enforce our Terms of Service.
4. Service providers and subprocessors
We share information only as needed to provide, secure, support, and improve the Service, with the following categories of providers:
- Cloudflare — API hosting, databases, queues, temporary screenshot storage, content delivery, and security.
- OpenAI — screenshot routing, extraction, and verification.
- Google — Gemini visual embeddings and derived lookups through Maps, Places, Books, and Lens.
- Serper, Bright Data, Linkup, and content APIs — search, link retrieval, and enrichment using screenshots only where described above, or otherwise derived queries and identifiers.
- Sentry — crash reporting, performance, diagnostics, and feedback reports.
- PostHog — product and website analytics.
- RevenueCat and Apple — purchases, subscriptions, and entitlements.
- Expo and Apple — app delivery, updates, and push notifications.
- Resend — service and support email.
We may also disclose information when required by law, to protect the Service or people, or as part of a merger, financing, acquisition, or sale of assets. We do not sell personal information, share it for cross-app advertising, or use it to track you across other companies’ apps and websites.
5. Retention and deletion
Raw screenshots
Plok deletes its queued screenshot and metadata objects when analysis succeeds or fails. As a backstop, the production R2 bucket expires remaining queued objects after one day. Cloudflare may complete that lifecycle deletion during the following day. The original image stays in your Photo Library unless you delete it there.
Results and account data
Derived finds, collections, preferences, search and engagement data, and subscription state are generally kept while you use the Service. Analysis job status and metadata may be kept for up to seven days to deliver results and support status checks.
Deletion requests
You can start account deletion in the app. The deletion process removes active Plok records, in-flight screenshot payloads, linked PostHog data, and the linked RevenueCat customer record. A pseudonymous identifier and one-way deletion record may be kept for up to 35 days only to finish and verify provider deletion. Protected backups and provider security or diagnostic logs may remain until their limited retention windows expire.
Generalized catalog information is not connected to your name, email, profile, or screenshot. It may remain only when another user also supports the same catalog item. Deleting a Plok account does not cancel an App Store subscription; subscriptions must be managed with Apple.
6. Your choices
- Revoke or limit Photo Library and notification permission in iOS Settings. This stops new access but does not erase data already processed.
- Delete your Plok data from the app’s account settings.
- Manage or cancel a subscription through your Apple App Store account.
- Limit website cookies in your browser.
- Contact us to request access, correction, or deletion where applicable law provides that right.
7. Security and international processing
We use administrative, technical, and organizational safeguards designed to protect information, including encrypted transport and encrypted screenshot storage.
Plok and its providers may process information in the United States and other countries where they operate. Those countries may have different data-protection laws than your home country.
8. Children’s privacy
The Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided information to us, contact us so we can review and delete it as appropriate.
9. Changes and contact
We may update this policy as the Service changes. We will post the new version here, revise the date above, and provide additional notice when appropriate.
Questions and privacy requests can be sent to support@plok.app.