Prizmaly · Legal
Clean Plus Privacy Notice
Effective and last updated:
On this page
Clean Plus analyzes your personal library on your device. Photos, videos, contacts and calendars are not uploaded to Prizmaly for cleanup analysis. Purchase and entitlement services do process limited customer, transaction and technical information, so “local analysis” does not mean “no personal information is processed.”
This app-specific notice supplements the Prizmaly Privacy Policy. Clean Plus was previously named Cleaned; this existing URL is retained for compatibility. The shared policy provides controller details, legal grounds, international-processing information and privacy rights.
1. Photos, videos and cleanup analysis
With your permission, Clean Plus accesses the photo-library items made available by iOS, including limited-library access. It analyzes duplicates, visual similarity and relevant item characteristics locally. Clean Plus does not send your raw photos, videos, thumbnails, filenames, hashes, EXIF, location metadata or photo-derived labels to Prizmaly, RevenueCat or an analytics server.
Scan results are kept in working memory rather than persisted as a media-analysis cache. The app may need to scan again after its process ends. Cloud-only items may be unavailable without a separately requested download; the app does not silently download your entire iCloud library. Estimates can be incomplete and similarity results require your review.
Removal requires your in-app review and Apple’s system confirmation. Changes may synchronize through iCloud Photos and other devices. Apple controls Recently Deleted and ultimate removal. Compression can create a temporary output and a new Photos copy; the original remains unless you separately delete it. Temporary outputs use operating-system file protection rather than the vault’s separate encryption, and saving a copy alone does not reclaim the original’s storage.
2. Contacts, calendars and exports
Contact and calendar tools use the permission and accounts you authorize. Duplicate or incomplete-contact analysis is performed on the device. Clean Plus does not upload your address book or calendar to Prizmaly for that analysis. Contact cleanup and email cleanup are separate functions.
Edits, newly imported contact cards and confirmed removals may synchronize through the contact/calendar accounts configured on your device. A contact that appears incomplete may still contain important information. Where the app cannot safely inspect protected fields such as contact notes, removal can be limited to review-only. This limitation does not grant the app extra access.
Backups or exports leave the app only when you choose a sharing destination. The resulting file may be readable by the recipient or destination app and is no longer protected solely by Clean Plus’s controls. Imported backups can create new cards rather than silently replacing existing records. Keep appropriate independent copies before making important changes.
3. Private vault and device-bound storage
Vault content is encrypted on the device, with key material protected using the device’s Keychain. Vault files and the relevant device-bound key are not offered as a Prizmaly cloud-backup or remote-recovery service. Access may use the operating system’s biometric or passcode authentication; Clean Plus does not receive a Face ID image or Touch ID fingerprint.
Losing the device, deleting the app or losing the required key can make vault content unrecoverable. We cannot reset the encryption or restore files we do not hold. The current vault does not offer an export function. Do not interpret the vault as a guarantee against all device compromise or unauthorized physical access.
4. Optional Gmail cleanup
Availability: the Mail tab may be visible even when Gmail connection is unavailable. In the current app configuration, the production Google OAuth connection is not enabled. No Gmail account is connected merely by opening Mail. The following describes the optional workflow when it is made available and you authorize it; required Google configuration and any applicable review must be completed before use.
The workflow uses Google’s own OAuth sign-in and the gmail.modify permission so the app can identify selected messages and move them to Trash. This scope is broader than the app’s actual metadata-only analysis. Clean Plus requests message headers and metadata such as sender, subject, date, labels, size and unsubscribe information; it does not request message bodies for the cleanup scan.
Google API requests are made directly from the device to Google. Result lists remain in working memory. An OAuth refresh token is stored in device-only Keychain storage for the connection; Clean Plus does not receive your Google password or send the token to RevenueCat. The app does not upload your mailbox, message headers or derived cleanup groups to a Prizmaly server, an advertising service or a general-purpose AI provider.
No messages start selected for deletion. You choose and review messages before the app asks Google to move them to Trash. This is not immediate permanent deletion, but Google may later purge Trash under its rules. Trash changes affect your actual Gmail account and can appear in other clients. Although the Google permission technically allows additional operations, including sending mail, Clean Plus does not use send or compose endpoints and does not perform unrelated account changes.
Use the app’s disconnect/sign-out control when available to clear local connection information and request token revocation. You can also remove access in Google Account connections. If revocation cannot complete because the network or provider is unavailable, revoke through Google directly. Revocation does not undo prior Trash actions or erase independent records held by Google.
Use and transfer of Google-derived information adheres to the Google API Services User Data Policy, including Limited Use. Google data is not sold, used for advertising or generalized AI training. No general clause in the shared policy or Terms expands these restrictions.
5. Purchases and RevenueCat
Apple processes payment. RevenueCat verifies purchases and subscription entitlements, supports restoration and helps administer access, support, subscription performance and fraud prevention. RevenueCat is initialized when the app starts, not only after you buy. It can assign an anonymous customer identifier and process purchase history, product/transaction references and entitlement state.
The purchase service also processes device/app/store/network context such as the app and operating-system version, device type, locale, identifier for vendor (IDFV), current App Tracking Transparency status metadata, first-seen and last-open information, and request IP address or IP-derived country context. These records are not necessarily anonymous under privacy law. We do not assert a single retention period for all RevenueCat or Apple records; their purpose and legal obligations determine the applicable period.
Clean Plus does not configure an App Tracking Transparency prompt, IDFA collection or custom name, email and marketing attributes for RevenueCat. The presence of ATT-status metadata does not mean Clean Plus asks for cross-app tracking permission. Your photos, contacts, calendar entries, vault content and Gmail metadata are not sent as purchase analytics.
See RevenueCat’s Privacy Policy and Apple’s Privacy Policy. Deleting local data does not erase store transactions or cancel renewal. Manage subscriptions separately through your Apple Account.
6. Diagnostics, widgets and Safari tools
The app’s product-event logging service writes limited events to local Apple system logs; it is not an upload service for your personal library. Device and operating-system diagnostics may also be handled by Apple under your Apple diagnostics settings. Clean Plus does not embed Hamen’s Meta or Mixpanel configuration merely because both apps are published by Prizmaly.
Widgets and device tools can display permitted storage, battery and device-status values. Charging-related automation uses the available operating-system features and your configuration. The Safari content blocker uses static local blocking rules; it does not send your visited URLs or browsing history to Clean Plus. These tools do not grant general access to private data from unrelated apps.
7. Support, access and deletion
When you choose to contact us, we receive the message and contact information you send. The app’s privacy-support request can explicitly include a purchase-support identifier to help locate a RevenueCat record. It does not silently attach your library, contact database, vault files or Gmail results. Review the email before sending it and avoid unnecessary sensitive information.
For a server-side access or deletion request, email info@prizmaly.com with “Clean Plus”, your platform and the available support identifier. We may need limited transaction context to verify the request. Device-only content is managed through the app or device because we cannot remotely access it. Purchase, security or legally required records may remain where justified, and Apple controls its independent records.
Revoke device permissions in Settings to stop further access. Scan results end with their in-memory session; exports, Photos copies, synchronized changes, Keychain credentials and vault data have the distinct lifecycles described above. Uninstalling is not a universal remote-deletion mechanism. Your applicable rights and complaint routes are described in the shared Privacy Policy.
8. Changes to this notice
If Clean Plus adds a new connection, remote analysis, provider or data use, this notice and any relevant in-app explanation must be updated before that processing starts. Any necessary permission or consent must also be obtained. The framework for future Prizmaly apps does not automatically expand Clean Plus’s device-only content handling.