Pookie

Privacy Policy

Last updated September 14, 2026

Pookie is an instant camera app that turns your photos into Apple Wallet passes. This policy explains what Pookie (“we”) collects when you use the Pookie app and pookie.pics, why, who else sees it, and how to delete it.

The short version: photos are processed on your phone. We only receive a photo when you choose to add it to Wallet or give it away. We never sell data, run ads, or use third-party analytics or tracking SDKs.

1. What we collect and why

DataHow we get itWhat it's used for
Apple account identifierSign in with Apple gives us a random, app-specific user ID. We do not request your name or email address.Creating your account, your referral code, and your film balance. It never leaves our server and is not linked to your identity elsewhere.
Photos you add to Wallet or give awaySent from the app only when you tap Wallet or Give away. The camera preview and shots you don't keep never leave your phone.Building the signed Wallet pass and refreshing it later (for example, marking it as given away). Stored so Wallet can re-download the pass.
Precise location of a photo (optional)Only if you turn on the Location option before shooting. Read from your phone's location service at capture time.Written into that pass so Wallet can surface it when you're near where it was taken. Not used for anything else.
Date a photo was takenFrom the capture time (or a photo's embedded metadata).Written into the pass so Wallet can surface it on the anniversary, if you enabled the Date option.
Wallet device registrationWhen you add a pass, Apple Wallet registers with our pass web service: an anonymous device library identifier and a push token.Telling Wallet to refresh a pass when it changes. Removed when the pass is removed from Wallet.
Referral activityOpening an invite link and taking your first developed photo.Counting invites toward the inviter's free film. Inviters see a count, never who you are.
PurchasesHandled entirely by Apple through the App Store. We receive a transaction record on your device; we never see payment details.Unlocking film you bought and restoring purchases.
Server logsStandard request logs (IP address, timestamp, endpoint) generated by our hosting provider, plus error reports Apple Wallet sends our pass web service.Keeping the service running and secure. Retained briefly and not combined with your account.

We do not collect contacts, your photo library, your name or email, advertising identifiers, or usage analytics. The app’s camera and location permissions are used only for the purposes above; you can revoke either at any time in iOS Settings.

2. Who else sees your data

We use no analytics, advertising or tracking partners. The only third parties are service providers that process data on our behalf and are bound to protect it at least as well as this policy requires:

  • Apple — Sign in with Apple, App Store purchases, and the Apple Wallet and Push Notification services that deliver and refresh your passes. Apple’s handling is governed by Apple’s privacy policy.
  • Vercel — hosts pookie.pics and our API and stores account records and pass photos in encrypted storage.

We do not sell or rent personal data, and we only disclose it beyond these providers if the law requires it.

3. Sharing passes with other people

When you give a photo away, we void your copy and mint a new pass for the recipient. The recipient gets the photo, its caption, and any location and date you enabled for that pass — so don’t enable Location on a photo you’d rather not place on a map for someone else.

4. How long we keep it

  • Account records are kept until you delete your account.
  • Pass photos and their location/date are kept while the pass is in use so Wallet can re-download it. Removing a pass from Wallet unregisters your device; the stored copy is deleted on request (see below).
  • Wallet registrations are removed as soon as Wallet tells us the pass was deleted.
  • Server logs are retained by our hosting provider for a short, rolling period.

5. Deleting your data and withdrawing consent

  • Delete your account in the app: open Invite friends and choose Delete account. This erases your account, referral code, referral links and film balance immediately. Film you bought through the App Store stays tied to your Apple ID and can be restored if you sign in again.
  • Delete a photo: remove the pass from Apple Wallet, then email us the pass serial (shown on the back of the pass) or simply ask us to delete every photo connected to you, and we’ll erase our copy.
  • Stop sharing location or dates: leave the Location and Date options off for future photos, or revoke the Location permission in iOS Settings.
  • Sign in with Apple: you can stop using your Apple ID with Pookie at any time from Settings › Apple Account › Sign in with Apple.

You can also email hello@pookie.pics to access, correct, export or delete your data. We respond within 30 days. If you live in the EU/EEA, UK, California or another region with data protection rights, these are the mechanisms for exercising them, and you may also complain to your local supervisory authority.

6. Security

All traffic uses HTTPS. Account sessions use signed tokens that expire automatically. Pass photos and account records are stored in private, encrypted storage that only our server can read. Passes are cryptographically signed so they cannot be altered after they leave our server.

7. Children

Pookie is not directed to children under 13 (or the minimum age for an Apple ID in your country) and we do not knowingly collect their data. If you believe a child has created an account, email hello@pookie.pics and we will delete it.

8. Changes

If we change how we handle data we’ll update this page and the date above, and for material changes we’ll tell you in the app before they take effect.

9. Contact

Pookie · hello@pookie.pics

See also our Terms of Use.