tember · document 01 · privacy noticelast updated 14 aug 2026
privacy, structurally

Privacy
Notice

last updated 14 aug 2026tember for iosversion 1.0

The developer of Tember ("Tember", "we", "us") makes a film-photography app for iPhone and iPad. This Privacy Notice applies to the app, our website at tember.app, and any other offering that links to it (together, the "Services").

The short version: the app has no account, no cloud, no analytics and makes no network calls. Your photographs are processed entirely on your device and are never transmitted to us or anyone else. The sections below describe that in the detail the law expects, including supplemental notices for the EU/UK GDPR and United States state privacy laws.

01

Updates to this Privacy Notice

We may update this notice from time to time. If we do, we will post the updated notice here and change the "last updated" date above. If a future version of the app ever introduces an optional feature that requires the network, we will describe it here before that version ships, and the app will ask you first.

02

Personal information we collect

Information you provide to us directly

  • Support correspondence. If you email us, we receive your email address, your message, and anything you choose to attach — for example a screenshot or a description of your device.

Information collected automatically by the app

None. The app contains no analytics, no crash-reporting service, no advertising identifiers, and no third-party SDKs that transmit information. It does not read your IP address, set cookies, or build a device profile.

Information collected automatically on our website

Our website is a small set of static pages. It sets no advertising or tracking cookies, and its own assets — fonts and photographs included — are served from tember.app. One exception, stated plainly: the "inspiration" strip on the landing page loads photographs from Unsplash's servers, so your browser contacts Unsplash when that strip is shown; that request is governed by Unsplash's privacy policy, and we receive nothing from it. Our hosting provider, Cloudflare, may keep short-lived server logs (IP address, user agent, page requested) for security and abuse prevention, as is standard for any web host; those logs are governed by Cloudflare's own privacy policy.

Information from third parties

Apple provides us with aggregated, non-identifying App Store statistics — download counts, territory, subscription totals. These reports do not identify individual users, and we cannot use them to contact you.

03

What we never collect

Stated plainly, because it is the point of the app:

  • Your photographs, negatives, develops, and exports — these stay in the app's own storage on your device and in your photo library.
  • Location data. The app reads a photograph's existing location metadata only to write it back out when you ask, and never transmits it.
  • Contacts, calendars, microphone input, health data, or your other apps' data.
  • Names, accounts, passwords, or payment details — there is nothing to sign in to.
  • Advertising identifiers, cross-app tracking, or any information used for profiling.

We do not sell personal information, share it for cross-context behavioural advertising, or use it to train models.

04

How we use personal information

  • To answer you. We use support correspondence to reply, reproduce a bug, and keep a record of the exchange.
  • To keep the Services secure and working. Server logs, where our host keeps them, are used for security, abuse prevention and diagnosing outages.
  • To comply with law. Where we are legally required to retain or disclose information.

EU/UK GDPR lawful bases: our lawful bases for the above are legitimate interests (answering support, securing the Services) and compliance with legal obligations.

05

How we share personal information

  • Service providers. Our website and email routing are provided by Cloudflare; support email is delivered to a mailbox operated by Google. Both process the limited information described above on our instructions.
  • Apple. Purchases and subscriptions are processed by Apple under Apple's own privacy policy. We receive only whether an entitlement is active.
  • Legal requests. We may disclose information where we believe in good faith that we are required to by law, or to protect the rights, property or safety of you, us or others. There is no photograph library for anyone to request.
  • Business transfer. If we are involved in a merger, acquisition, financing or sale of assets, the limited information we hold may transfer as part of that transaction, subject to this notice.

We do not share personal information with advertising partners or data brokers.

06

Device permissions

  • Camera. Required to take a photograph. Frames are processed on device.
  • Photo library. Requested when you import an existing photograph or save an export. Access is used for that action only.

Every permission can be withdrawn at any time in iOS Settings; the app will keep working with reduced functionality.

07

Purchases and subscriptions

All purchases are handled by Apple through the App Store. Tember can see whether a purchase is currently active on your Apple Account — never your name, email address, or payment details. Apple's handling of that transaction is governed by Apple's privacy policy.

08

Your privacy choices and rights

Depending on where you live, you may have the right to request access to, portability of, correction of, or deletion of your personal information; to object to or restrict our processing; to opt out of "sales", "sharing" or targeted advertising; and to withdraw consent. Because the app collects nothing, these rights will in practice concern only your support correspondence.

  • Deletion in the app. Deleting the app removes every negative and develop it holds. We cannot recover them.
  • Exercising a right. Write to privacy@tember.app. We will verify your identity by replying to the address we hold, and respond within the period the applicable law allows.
  • Appeals and complaints. If we decline a request, you may ask us to reconsider, and you may lodge a complaint with your local data protection authority.

We do not respond to "Do Not Track" browser signals; there is no tracking to disable.

09

International transfers

We operate from the United States. The limited information described in section 02 may be processed in the United States and in any country where Cloudflare or Google operates, which may have data protection laws different from those where you live. Where required, we rely on appropriate safeguards such as the European Commission's standard contractual clauses. Your photographs are never transferred anywhere, because they never leave your device.

10

Retention

Support correspondence is kept for as long as needed to resolve the matter and for a reasonable period afterwards for our records. Server logs, where kept, are short-lived. Negatives and develops are kept on your device for as long as you keep them.

11

Supplemental notice for the EU / UK GDPR

Where the EU or UK GDPR applies, the individual developer of Tember is the controller of the personal information described in this notice. Our lawful bases are set out in section 04. We do not process special categories of personal data, and we do not carry out automated decision-making or profiling that produces legal or similarly significant effects.

You have the rights described in section 08 and the right to lodge a complaint with your supervisory authority.

12

Supplemental notice for United States state privacy laws

Several US states — including California, Colorado, Connecticut, Texas, Utah and Virginia — give their residents privacy rights. Where one of those laws applies to you, this section is our notice under it, stated once and plainly rather than repeated per state:

  • What we collect and why: only what section 02 describes — an email identifier if you write to us, and our host's short-lived security logs. No commercial information, no geolocation, no biometric or sensitive data, no photographs, no profiles or inferences.
  • We do not sell personal information and do not share it for targeted or cross-context behavioural advertising, as those terms are defined in these laws, and we have not done so in the preceding twelve months. There is accordingly nothing to opt out of.
  • Your rights: to know, access, correct, delete, and receive a portable copy of your personal information, and not to be discriminated against for exercising any of these rights.
  • How to exercise them: write to privacy@tember.app, directly or through an authorised agent with your written permission. We verify requests by replying to the address we hold, respond within the period the applicable law sets, and offer an appeal if we decline.
13

Children's personal information

The Services are suitable for all ages and are not directed to children under 16 in particular. We do not knowingly collect personal information from anyone, of any age. If you are a parent or guardian and believe a child has sent us personal information — for example by emailing support — contact us and we will delete it.

the short version Your photographs never leave your phone.

Not encrypted-in-transit. Not stored-then-deleted. There is nowhere for them to go.

14

Contact us

The individual developer of Tember, operating from Texas, United States, is the controller of the personal information processed under this notice; the developer's identity is available on the App Store listing and on request. Privacy questions: privacy@tember.app. Everything else: support@tember.app. See also the Terms of Service.

a note on this notice

This notice is drafted in Tember's voice for an app that collects nothing, and it is not legal advice. It has not yet been reviewed by counsel; a review in your jurisdiction before relying on it is the standing recommendation — including whether applicable law requires naming the controller here rather than by reference.