Privacy Policy
1. Overview & Purpose
This Privacy Policy describes how PicStow ("we", "our", or "the app"), developed by Priyanshu Maurya (identifier: com.priyanshumaurya.picstow), handles information when you use our iOS or Android app and website (https://picstow.app).
PicStow is a multi-account photo and video management application that connects directly to your personal Google Drive accounts. The core purpose of the app is to allow you to aggregate free cloud storage across up to 8 Google accounts (such as 15 GB free per account for up to 120 GB total), view a unified local and cloud photo timeline, and automatically back up your device camera media.
2. Google User Data & API Scopes
PicStow integrates with Google OAuth 2.0 and Google Drive APIs to provide cloud storage capabilities. We request the following specific scopes:
- Google Sign-In (
openid,profile,email): Used strictly to authenticate your Google identity, display your account email and profile avatar within the app's account switcher, and secure session management. We never see or store your Google account password. - Google Drive API (
https://www.googleapis.com/auth/drive.file/drive.appdata): Used strictly to upload, retrieve, organize, and manage photos, videos, and collection metadata that you explicitly select for backup within your dedicated PicStow folder on Google Drive.
PicStow does not read, access, or modify any unrelated files or folders in your Google Drive outside the photos and folders created or managed by the app.
3. Device Media Permissions
To display, import, save, and back up media, PicStow may request the following platform permissions only when the related feature needs them:
- Photo library access: Used to show the photos and videos you select, build your local timeline, back up selected media directly to Google Drive, and save media you download or edit. Limited-library access is supported on iOS.
- Network access: Used to communicate with Google services and to send the limited analytics and diagnostics described below over HTTPS.
PicStow does not request precise or approximate location permission, does not use the Android Advertising ID or Apple advertising identifier, and does not use your data to track you across apps or websites owned by other companies.
4. Direct Storage & No Third-Party Sharing
We do not sell, rent, trade, or monetize your personal data or photos.
PicStow operates on a Direct Device-to-Cloud architecture:
- Photo and video uploads and downloads happen directly between your device or browser and Google's official API servers.
- No PicStow analytics service receives or stores your photos, videos, Google OAuth tokens, filenames, album names, or location coordinates.
- We do not share your Google user data with any third-party AI models, advertisers, or data brokers.
5. Analytics & Diagnostics
PicStow uses Mixpanel as a service provider to understand feature usage and app reliability. Mixpanel receives a random, app- or browser-generated identifier; interaction events such as opening a screen, starting an upload, or changing a backup setting; general app and platform information; and minimal diagnostics such as an error category and the PicStow component where it occurred.
PicStow does not identify Mixpanel analytics with your Google account ID, email address, name, Google credentials, or media. Analytics is not used for advertising or cross-company tracking. Choosing Delete Account resets the local anonymous analytics identifier and requests deletion of any legacy Mixpanel profile created by an earlier PicStow version. You may also contact us to request deletion of information associated with a legacy profile.
6. Google API Limited Use Disclosure
PicStow's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
7. Data Retention & User Control
You maintain total ownership and custody over your photos and Google accounts:
- Google Drive Storage: All backed-up files reside inside your own personal Google Drive. You can view, download, or delete these files at any time via the PicStow app or directly on Google Drive.
- Disconnecting Accounts: You can disconnect any linked Google account anytime from the app's account settings, which immediately deletes local authentication tokens stored on your device.
- Revoking App Access: You can revoke PicStow's access to your Google account at any time through your Google Account Security Settings.
- Deleting your PicStow account: The Delete Account action in Settings revokes the Google credentials available to PicStow, clears local credentials, preferences, and cached media, resets the anonymous analytics identifier, and signs you out. It does not delete media or PicStow folders stored in your Google Drive; you retain control of those files and may delete them in PicStow or Google Drive.
8. Data Security
Network communication uses HTTPS. On mobile, reusable Google credentials are stored using platform-protected storage, including the iOS Keychain. Web credentials are kept in the protected PicStow browser session. No system can guarantee absolute security; keep your device, browser, and Google account protected.
9. Developer Contact & Inquiries
If you have questions, feedback, or data privacy inquiries regarding PicStow, please reach out directly:
👨💻 Developer: Priyanshu Maurya
📩 Contact Email: pm020202pm@gmail.com
🌐 Official Website: https://picstow.app
📦 App Identifier: com.priyanshumaurya.picstow