Privacy

Privacy Policy

Effective date: 8 September 2026

This Privacy Policy explains how the WhereIsIt mobile application accesses, uses, stores and shares information, including information related to an optional Google Drive connection.

1. Local-first data

WhereIsIt is designed as a local-first application. Your inventory data is primarily stored on your device. Depending on how you use the app, this may include item names, notes, quantities, tags, item photos, storage locations, location hierarchy, location history and backup metadata.

2. Google Drive is optional

You can use WhereIsIt without connecting a Google account. Google Drive access is used only when you explicitly connect Google Drive and choose to create, view, restore or manage app backup files.

3. Google user data we access

WhereIsIt requests the Google OAuth scope https://www.googleapis.com/auth/drive.file. This allows access to Google Drive files created by or opened with the app rather than broad access to your entire Drive.

4. How Google user data is used

Google user data is used only to provide the user-requested Google Drive backup functionality: creating and locating the backup folder, uploading backups, listing them, downloading a selected backup, verifying it before restore, and trashing an app backup when requested or when cleaning up a failed upload created by that operation.

5. Authentication tokens

Google OAuth access tokens authorize Drive API requests. WhereIsIt does not include Google access tokens in its backup archives and does not intentionally persist them as part of backup data.

6. Storage and sharing

WhereIsIt does not operate a separate cloud backend for your inventory or Google Drive backups. Backup files are stored in the Google Drive account you authorize. The app does not sell Google user data and does not share Google user data with advertisers.

7. Backup contents

A WhereIsIt backup may contain your app database, logical export data and media such as item photos. If you upload a backup to Google Drive, those contents are stored in your Google Drive account as part of the backup file.

8. Retention and deletion

Google Drive backup files remain in your Google Drive until you delete or trash them. Disconnecting Google Drive from WhereIsIt does not automatically delete backup files already stored in Drive.

9. Security

WhereIsIt uses Google OAuth authorization and HTTPS for Drive API communication. The app validates its portable backup format and checks backup integrity before restore.

10. Google API Limited Use

Information received from Google APIs is used only to provide the user-facing Google Drive backup and restore functionality described here. Google user data is not used for advertising or sold to third parties.

11. Changes

This policy may be updated when the app's functionality or data practices change. The effective date will be updated when material changes are published.

12. Contact

Questions can be sent to the support contact published for WhereIsIt in the Google OAuth consent screen and application distribution materials.