Catcharium

Your information

Privacy Policy

Effective October 11, 2026

How Catcharium handles your photos, catch journal, locations, and purchase information.

1. Who we are

Fria LLC ("we", "us", or "our") provides Catcharium: Fish ID & Log and this website. We are responsible for the personal information we process to provide these services. This policy explains what information is handled, why, who receives it, and the choices available to you.

Contact: support@fria.ai.

2. Information we handle

Cloud-account and backup details below apply when cloud backup is available in your version and connects to the service. A pending or failed backup is not a completed backup. Earlier versions keep the catch journal locally and send photos for recognition without creating a private photo archive on our backend; AI-provider processing and retention still apply.

  • Anonymous account and device information. In versions with cloud backup, Firebase Authentication automatically creates or restores an anonymous account. Its user ID links your private records. We store your profile handle, first-use and activity times, app preferences, a random installation ID, system region, locale, preferred languages, time zone, device model, operating-system version, and app version/build. System region describes your settings, not your physical location.
  • Profile photo and username. You can choose a profile photo for private account backup. The app crops and re-encodes it to remove embedded camera metadata before upload. Profile photos are not submitted for fish recognition. Custom usernames are checked for uniqueness without revealing another account's identity; the default name catcher is shared.
  • Catch journal and cloud backup. Saved catch photos, fish cutouts, species and identification results, capture dates, optional catch names and fishing locations, length measurements or corrections, badges, and preferences are stored locally and, where cloud backup is available, uploaded to your anonymous account. The operating system may also include local app data in device backups according to your device and backup-account settings.
  • Submitted scans. A resized photo and its capture or import time are sent for identification. In versions with cloud backup, all submitted scan attempts are also archived privately with their result or failure status, including scans you dismiss or do not save as catches. Interrupted submissions can be archived when connectivity returns without automatically running recognition again. Anything visible in the image is included. Images are re-encoded before upload to remove embedded camera metadata.
  • Purchase and app identifiers. RevenueCat creates a separate anonymous app user ID and processes purchase records, product identifiers, entitlement status, and technical information. In versions with cloud backup, we associate that ID with your account for purchase support. On iOS, a Pro scan sends that ID and an Apple-signed transaction to our backend to verify paid access. On Android, our backend verifies the Google Play product ID and purchase token with Google. Private support access codes, when available, are checked by our backend and can be revoked. Codes and purchase proofs are not sent to AI providers. These identifiers are pseudonymous, not a guarantee that information can never be associated with a person.
  • Service and security data. Our infrastructure processes IP addresses, request times and identifiers, response/error status, model choice, latency, and aggregate call/token counts to operate the service and diagnose failures.
  • Recognition feedback. If you submit an identification report or species request, we store your optional description and suggested name, the associated private photo and identification, your app version and locale, and submission times under your anonymous account. Reports may wait on your device until connectivity returns. We use them to review identification issues and species requests. Suggested names do not automatically change your catch identification. Reports follow the retention and deletion of their linked scan or saved catch.
  • Support messages. If you email us, we receive your email address, message, and attachments. The app prepares an editable support email with app/device versions and available account identifiers; you decide whether to send it and may remove those details.

Catcharium does not require a named account or email sign-in. We do not receive your full payment card details from Apple or Google Play.

3. Camera, photos, and location

Camera access is used to capture the photo you choose to identify. The system photo picker lets you select particular images without giving Catcharium unrestricted access to your library. Subject cutouts and supported depth-based length measurements are processed on the device.

Fishing locations are optional. If you turn on Save catch locations and grant location permission, Catcharium requests your current location for successful catches, including imported photos. It saves coordinates, accuracy, capture time, and an available place name with the catch, locally and in your private cloud account where backup is available. Location may be precise or approximate depending on your device settings. Apple’s location and address services on iOS, or Android location and address services, may process location to provide a place name. Android uses Google Maps to display saved locations. Its SDK processes device metadata, crash information, IP addresses, a pseudonymous identifier, and map interactions for operation and improvement of Google services. The app does not track your location in the background. Location permission and Save catch locations enable the recording feature; they do not by themselves authorize public disclosure of your fishing spots or participation in a separate fishing-insights program. If a submitted scan includes location, our backend may include those coordinates in the AI recognition request to help interpret the catch. Locations obtained only after identification are saved with the catch. Turning this feature off stops new location requests; saved locations remain until you remove them or delete the catch or account. A catch card you choose to share can include its place name. Network providers may infer a general area from your IP address, and a photo can itself reveal a place. You can change camera and location permission in your device settings and stop submitting images at any time.

4. Why we process information

We use information to identify fish, return results, provide and restore Pro access, prevent fraud and excessive requests, maintain reliability, understand subscription performance using RevenueCat purchase reports, respond to support and privacy requests, and meet legal obligations. Local journal data supports your collection and preferences. Where cloud backup is available, backed-up data also supports recovery to the same anonymous account.

Service diagnostics and identification feedback help us evaluate accuracy, investigate errors, improve the species guide and user experience, and plan features. Access to private content for these purposes is limited to what is needed for the requested service, troubleshooting, or feedback you submit. Broader analysis of private catch records, cross-user fishing insights, and possible future model development are subject to the additional conditions below.

Where applicable data protection law requires a legal basis, we rely on performing our contract with you for requested features, our legitimate interests in a secure and reliable service, proportionate service improvement and customer support, compliance with legal obligations, and consent where required. Consent, when required, is obtained before processing and may be withdrawn without affecting earlier lawful processing. We do not treat acceptance of our Terms of Use as a substitute for required privacy consent.

We do not sell personal information, share it for cross-context behavioral advertising, or use an advertising identifier for tracking in Catcharium. Commercial use of genuinely anonymous, aggregated information is described separately below.

5. Fishing insights and anonymous information

Planned uses and participation. We may develop species-distribution summaries, seasonal and regional fishing trends, recommendations, research, and related products using catch metadata such as species, dates, measurements, and locations. This cross-user fishing-insights program is not currently active. Before using private catch records for this program, we will provide a separate in-app explanation and obtain your opt-in, with a way to withdraw. The explanation will identify the records involved, whether historical records are included, the purposes, and any external recipients or recipient categories. Declining will not prevent fish identification or private journal use. Existing location permission, private backup, or continued app use alone is not participation.

Creating anonymous information. Source records remain protected personal information while they can reasonably be linked to a person, household, or device. An anonymous account ID, removal of names, or aggregation alone does not make records anonymous. Before treating fishing insights as anonymous, we will remove identifiers, generalize locations and times, combine enough independent contributions, suppress sparse or distinctive results, and assess whether the output can reasonably identify someone or reveal an individual private catch location when combined with other available information. Outputs that do not pass that assessment remain subject to the protections and deletion rules for personal information. We will not use restricted platform data for a purpose prohibited by the applicable platform rules, even if consent is given.

Commercial use. Subject to lawful source processing, participation choices, and applicable law and platform rules, we may retain, combine, analyze, develop, publish, and license genuinely anonymous, aggregated information for product improvement, statistical research, conservation insights, business planning, paid app features, and data products or reports for research and commercial partners. We may charge for these products and licenses. This permission does not cover selling personal information, licensing identifiable photos or journals, or disclosing individual precise fishing coordinates. We commit to maintaining information released as anonymous in that form, not attempting re-identification, and contractually requiring recipients of licensed datasets to do the same and not attempt to reconstruct individual private catch records.

Withdrawal and retention. Withdrawing participation stops new use of your personal records for the program. You may also request deletion as described below. Previously and lawfully created anonymous aggregates that cannot reasonably be linked back to you may remain in use, including in paid products and licensed reports, without a fixed retention period. We do not keep an identification key to reverse anonymity, and this exception does not authorize keeping identifiable source records after their applicable deletion period.

6. Cloud processing and service providers

We disclose only the information needed for the relevant service to providers acting under applicable service and data protection terms:

  • Google Cloud / Firebase: hosts the recognition backend, operational logs, and aggregate service counters. Versions with cloud backup also use Firebase for anonymous authentication and private user/scan/catch records and images. Our primary recognition service and the resources configured for private records and images are in Northern Virginia, United States. An older regional endpoint redirects recognition requests to the US service. See Firebase privacy and security.
  • Anthropic (Claude): processes photos, capture/import times, and any location included with the submitted scan for free and verified Pro recognition. Purchase proofs and RevenueCat IDs are used by our backend for authorization and are not included in the image prompt sent to the AI provider. See Anthropic commercial data information.
  • OpenAI: processed photos, capture/import times, and any location included with submitted scans for verified Pro recognition until October 11, 2026. New scans are no longer sent to OpenAI; its retention terms continue to apply to earlier requests. See OpenAI API data controls.
  • Apple, Google Play, and RevenueCat: process purchases, renewals, refunds, restoration, access verification, and subscription analytics. The store may send purchase-status notifications to RevenueCat. Android purchase verification sends the product ID and purchase token to Google Play. See Apple's privacy policy, Google’s privacy policy, and RevenueCat's privacy policy.
  • Google Maps and ML Kit on Android: Google Maps displays saved catch locations and collects the technical and map-interaction data described above. ML Kit processes supported image cutouts on the device and may process SDK/device diagnostics and usage metrics to operate and improve its services. See Maps SDK data disclosures and ML Kit terms and data information.
  • Vercel: hosts these public web pages and processes connection and security logs, such as IP address and browser/request information. See Vercel's privacy notice.

We do not currently use submitted photos to train our own AI models. If we introduce training using private photos or catch records, we will first explain the data, model purpose, recipients, retention, and withdrawal limits and obtain a separate opt-in. Such training is not authorized by enabling location recording, private backup, or accepting these terms alone. Our AI providers' published API policies describe how they handle training and retention; these are cloud services, so processing is not confined to your device. We require service providers processing information on our behalf to protect it consistently with this policy and applicable law.

We may also disclose information when reasonably necessary to comply with law, protect people and the service, or in connection with a merger, financing, acquisition, reorganization, or sale of all or part of our business or assets. Access in those transactions is limited to what is necessary and subject to confidentiality, security, and applicable legal requirements. A successor must honor the privacy commitments applicable to the information unless a lawful change is made with any required notice and consent. We do not publish your catch journal or photos as a public feed. If you choose to share or copy a catch card, its image, species, date, and length are included; the recipient or app you choose then handles that content under its own practices.

7. Storage and retention

Profile photos: your current profile photo is retained privately until replaced or your account is deleted. Replaced or interrupted avatar uploads become eligible for cleanup after 24 hours; service interruptions or in-progress operations can delay removal. Account deletion also removes profile photos and releases the custom username.

Saved catches: local copies support offline use. Where cloud backup is available, we retain saved catches, their photos and cutouts, and their linked scans until you delete them or your account. Deleting a catch removes it locally and queues the corresponding cloud deletion. After the service accepts the request, its catch record is removed and cleanup removes its related scan and stored app photos. Cleanup can take additional time while in-progress requests finish or failed operations are retried. Earned badges and minimal deletion markers may remain so deleted content does not reappear. Original images in your device photo library, shared copies, and your device backups are managed separately.

Other scans in versions with cloud backup: scans not saved as catches, including failed or dismissed recognition attempts, become eligible for cleanup 90 days after creation of their server record. The scheduled cleanup removes their records and images; service interruptions or pending operations can delay completion. This retention rule applies to our private scan archive, not to earlier versions that do not create one or to AI providers' own records. Local pending uploads are removed after successful archival. Our backend does not intentionally log image bodies or purchase proofs.

Account deletion: in versions with cloud backup, an accepted deletion request blocks further account writes and queues deletion of private user records, images, and the Firebase anonymous account. The app then clears its local journal and signs out. Cloud cleanup continues after acceptance, waits for requests already in progress, and retries interruptions. Minimal deletion-job records can remain while cleanup and status checks complete. An offline request is saved locally and submitted when the app can reconnect; keep the app installed until the request is accepted. A minimal deletion-request status is retained for up to 24 hours after completion to handle retries, then removed. Removing the app alone does not request cloud deletion.

Providers and other records: AI providers handle submitted content under their linked policies; our retention periods do not override theirs. Firebase Authentication has separate security-log and backup retention after an account-deletion request, as explained in Firebase's privacy information. Operational logs follow hosting retention settings. Aggregate service counters may remain for usage and cost monitoring. Purchase records and support correspondence are retained as needed for their purposes and applicable legal obligations. In-app account deletion does not automatically erase Apple’s, Google Play’s, or RevenueCat’s purchase records; contact us for related privacy requests.

Anonymous information: the separate retention rule in Fishing insights and anonymous information applies only to lawfully created information that cannot reasonably be linked back to you. Raw coordinates, photos, account-linked catch records, and reversible or pseudonymous datasets are not covered by that exception.

8. Your choices and privacy requests

You can delete individual catches from their detail screen and manage permissions in your device settings. Versions with cloud backup also offer account and data deletion in Settings. Cloud recovery requires valid credentials for the same anonymous account; switching devices, clearing credentials, or reinstalling may make the old account inaccessible. Account linking is not currently offered. Backups and original photos are managed separately through your device or backup provider. Removing the app does not cancel a subscription or automatically erase purchase records.

For access, correction, deletion, a copy of information, an objection to processing, withdrawal of any optional data-use consent, or other applicable privacy rights, email support@fria.ai with the subject "Catcharium privacy request". The in-app Support link can include your Firebase and RevenueCat user IDs to help us locate account and subscription records. Do not send your Apple or Google password or full payment card information. We may need proportionate verification before fulfilling a request.

Depending on where you live, you may have rights to portability, restriction, objection to processing, withdrawal of consent, an appeal of a privacy decision, and a complaint to your local data protection authority. We will respond within applicable legal deadlines and will not discriminate against you for exercising your rights. Some records may need to be retained for legal, security, or transaction reasons; we will explain applicable limitations.

9. Security and international processing

We use HTTPS for requests, authenticated access to private records and photos, and administrative access controls for backend systems. No storage or transmission method can be guaranteed completely secure.

Fria LLC is based in the United States. Our providers may process information in the United States and other countries where they operate. The US configuration of our Google services does not establish a US-only residency guarantee for every provider. Where required, international transfers are subject to legally recognized safeguards, such as contractual protections.

10. Children and this website

Catcharium is not directed to children under 13, or a higher minimum age where required by local law. We do not knowingly collect personal information from children below that age. A parent or guardian who believes a child has submitted personal information can contact us to request its removal.

This policy website does not include advertising pixels, analytics scripts, or nonessential cookies. Hosting providers may process ordinary security and connection data as described above. External links lead to services with their own privacy policies.

11. Changes and contact

We may update this policy as our services or legal requirements change. The effective date at the top identifies the current version. For material changes to purposes or disclosures, we will provide a prominent notice before the new processing begins and obtain additional consent where required. Posting a revised policy or your continued use alone does not authorize a materially different use of previously collected personal information. Earlier privacy commitments continue to apply to that information unless the change is lawfully made, including obtaining fresh consent when required.

Questions about Catcharium privacy: support@fria.ai. You can also visit our support page.