Privacy Policy

Your travel memories belong to you.

Vistory is owned and operated by Nayora Studio LLC, the legal company behind the Nayora Studio brand. Vistory turns your photos into AI-styled postcards. This policy explains what information we collect, why we collect it, who helps us process it, and how you can delete or control it.

Last updated: July 11, 2026

Summary

We collect the information needed to create, save, and manage your postcards. We do not sell your personal information, we do not run third-party ads, and we do not use your data to track you across other companies' apps or websites.

Photos are used for generation

Your selected photo is downscaled and sent to our generation system only when you choose to create a postcard.

Your library is private

Your generated postcards, captions, memories, dates, locations, and trips are stored for your account so you can reopen and share them.

No advertising tracking

We do not use advertising identifiers, data brokers, or cross-app tracking.

You can delete data

You can delete individual postcards in the app, and all users can delete their account from Settings.

Data we collect

Category Examples Purpose
Account identifiers Supabase user ID, anonymous session ID, optional Sign in with Apple account information such as email if Apple provides it. To keep your account, credits, subscription state, library, and settings connected to you.
Photos and generated postcards The photo you choose for generation, the generated postcard image, caption, memory text, postcard date, style, and font choice. To create, store, reopen, edit, save, and share your postcards.
Location information you choose to use GPS metadata already embedded in a selected photo, a city/country suggestion derived from that metadata, manually typed location text, and saved latitude/longitude for the Map view. To help label postcards, organize memories on the map, and suggest trips. Vistory does not continuously track your device location.
Purchase and subscription information Subscription entitlement, product identifier, trial or paid period state, renewal status, and credit grants from RevenueCat and Apple. To unlock paid features, manage the free trial, grant credits, remove watermarks for subscribers, and support restore purchases.
Usage analytics Events such as app open, photo selected, style selected, generation started/succeeded/failed, postcard exported/shared, paywall shown, and subscription started. To understand whether the product works, improve the core flow, and diagnose drop-offs. These events are linked to your Vistory account ID.
Diagnostics Crash reports and handled error reports tagged with your Vistory account ID. We configure crash reporting not to send default personal information. To find and fix crashes and reliability problems.
Support communications Your email address and the contents of messages you send to support. To respond to your request and help resolve issues.

Photo library and camera permissions

When you choose a photo from your library, Apple provides that selected item to Vistory through the system photo picker. Vistory does not browse your full photo library. Camera access is requested only when you choose to take a new photo.

Photo metadata

If the selected photo includes date or GPS metadata, Vistory may use it to prefill the postcard date and location. You can edit or remove the location before saving. Camera photos taken inside Vistory do not receive an automatic location unless you add one.

How we use data

  • To authenticate your session and keep your Vistory identity durable across reinstall or devices when iCloud Keychain is available.
  • To generate AI-styled postcard images from photos you select.
  • To store your postcard library, trips, map pins, captions, memories, dates, and locations.
  • To manage credits, trial limits, subscriptions, watermarks, and restore purchases.
  • To detect abuse, enforce rate limits, protect the service, and prevent repeated misuse of free credits or trials.
  • To measure basic product usage and fix crashes or errors.
  • To respond to support and privacy requests.

Service providers

We share information only with providers that help operate Vistory. They are expected to protect user data and use it only to provide services to us.

Provider What they help with
Supabase Authentication, database, storage, server functions, credit ledger, analytics events, and account deletion.
kie.ai AI image generation from the photo you choose and the selected style prompt.
RevenueCat Subscription status, free trial status, entitlement checks, restore purchases, and purchase webhooks.
Apple App Store subscriptions, Sign in with Apple, StoreKit purchase handling, PhotosPicker, camera permission controls, Keychain/iCloud Keychain, Maps, and geocoding services.
Sentry Crash and error monitoring when configured for the production app.

We do not sell your personal information. We do not share your personal information with advertising networks or data brokers.

Your choices and controls

Editing and deleting postcards

You can edit postcard text fields before export. You can also delete individual saved postcards from your library. Deleting a postcard removes its saved image and database record from Vistory.

Account deletion

You can delete your account in Vistory Settings whether you use Vistory anonymously or have backed up your account with Sign in with Apple. Account deletion removes the account and associated personal data, including saved postcards and trips, and Vistory attempts to revoke the Sign in with Apple token when applicable. If you need help with deletion, contact support@getvistory.app.

Subscriptions

Deleting your Vistory account does not automatically cancel an Apple subscription. You can manage or cancel subscriptions through Apple at apps.apple.com/account/subscriptions.

Permissions

You can change camera access in iOS Settings. You can avoid sharing photo GPS metadata by choosing a photo without GPS metadata, removing location text before saving, or clearing the location field in the editor.

Retention and deletion

  • Input photos uploaded for generation are temporary and are deleted after the generation attempt completes.
  • Generated postcards and postcard details remain in your library until you delete them or delete your account.
  • Analytics events may be kept to understand product usage; when an account is deleted, user identifiers for those events may be removed or anonymized.
  • Purchase, credit, security, rate-limit, and abuse-prevention records may be retained as needed to operate the service, prevent fraud, resolve disputes, or satisfy legal and accounting obligations.
  • Support emails are kept as long as needed to respond and maintain a record of the request.

Security

Vistory uses server-side generation so private API keys are not included in the app. Access to stored postcard data is protected by account-based permissions. We use short-lived signed URLs for stored images and limit server-side generation requests to protect the service. No method of storage or transmission is perfect, but we design Vistory to limit access and keep only what the product needs.

Children

Vistory is not directed to children under 13. If you believe a child provided personal information to Vistory, contact us and we will take appropriate steps to delete it.

International users

Vistory may process and store information in countries other than where you live. By using the app, you understand that your information may be processed by us and our service providers where they operate.

Changes to this policy

We may update this policy as Vistory changes. If we make material changes, we will update the date above and, when appropriate, provide notice in the app or on this website.

Contact

For privacy requests, deletion help, or questions, contact Nayora Studio at support@getvistory.app.