Privacy Policy
Last updated: August 2026
FishLens is built to need as little of your data as possible. This policy explains exactly what the app does — and does not do — with your information.
Photos you take
When you identify a fish, the photo you take or pick is used to recognize the species. When online recognition is enabled, that photo is sent securely to our recognition service to identify it. It is not retained after processing, is not shared, and is never used for advertising or tracking.
Account and data storage
Your collection and scan history are primarily stored on your device. If you use optional Sign in with Apple or server-backed family features, we process the anonymous Apple user identifier, membership state, and the minimum service data needed to provide those features.
Analytics and attribution; no advertising tracking
We use PostHog for a limited product funnel and AppsFlyer for install/deep-link attribution. They receive a random app UUID, app/product version, campaign identifiers, and events such as first open, onboarding completion, first scan, paywall view, and purchase status. Photos, recognition results, free-form input, email, name, and payment-card data are not sent for analytics or attribution. IDFA is disabled, we do not show an ATT prompt, we do not sell data, and we do not use this data for third-party advertising or tracking across other companies' apps or websites.
Website analytics choices
On this website, Google Analytics 4 is loaded only after you choose Allow analytics. We use query-free page paths and five fixed events to understand SEO article views, 50% and 90% article reading progress, App Store call-to-action visibility, and App Store clicks. We do not send names, email addresses, phone numbers, form or search text, full query strings, raw referrers, user or session identifiers, advertising identifiers, receipts, or other free-form text.
Google may process network and device information, including IP address and browser user-agent data, when it provides the analytics service. We configure analytics without Google Signals, Google Ads linking, advertising personalization, or advertising consent. We do not use the website analytics data for cross-site advertising.
You can reject analytics before any tag is loaded, or change your choice at any time through Analytics settings in the footer or on this page. Withdrawing consent stops future collection and removes Google Analytics cookies accessible to this site, but it does not automatically delete data that was previously aggregated by the provider. The GA4 retention setting must be approved before analytics is enabled in production.
Purchases and revenue attribution
Apple processes billing. Our server verifies signed StoreKit transaction data to grant access and prevent duplicate revenue records. After verification, limited transaction and campaign identifiers may be sent server-to-server to AppsFlyer for aggregate campaign measurement; the app does not send purchase amounts to AppsFlyer from the device.
Deleting your data
Deleting the app removes local app data. If you signed in, use Settings → Delete Account to request deletion of the account and associated server-side service data. You may also contact Support for privacy requests.
Changes & contact
If this policy changes, we will update it here with a new date. Questions? Email us — see the Support page.