Privacy Policy
FOVI is a camera app for iPhone. FOVI Cine controls Sony cameras from your iPhone. Both include Assist, which recommends camera settings for a shot. This policy explains exactly what leaves your device, when, why, and who receives it.
The short version: there is no sign-in, no ads, no tracking, and no sale of data. Your scene and your shot description are sent only when you use Assist, only after you have allowed it, and they go to OpenAI to generate the recommendation. To run the free allowance and purchases, our server keeps an anonymous customer ID, your App Store purchase records, and a monthly count of Assist uses — none of it tied to your name, email, or Apple Account.
What stays on your device
- Photos and videos you capture are saved to your own Photos library and are never uploaded by us.
- Camera, microphone, and Photos access is used only to show the live preview, record, and save your captures.
- FOVI Cine's connection to your camera (settings, live view) runs over your local network between your iPhone and the camera. Live-view frames stay on your phone unless you use Assist.
- Shot Cards, saved setups ("Looks"), and rig setups are created and stored on your device. When both apps are installed, a saved rig setup is shared between them through Apple's App Group container on your device only.
- On-device coaching (shooting suggestions in FOVI) is computed entirely on your phone.
Assist: what is sent to OpenAI, and when
The first time you use Assist, the app asks for your permission before anything is sent. If you don't allow it, Assist sends nothing and the camera keeps working. You can withdraw permission at any time: in FOVI under Settings → Privacy, and in FOVI Cine under Camera → Settings → Privacy. The app will ask again before Assist is next used.
Each time you use Assist after allowing it, the app sends this to FOVIEngine, our recommendation server:
- A snapshot of the scene — a single reduced-resolution image of what your camera sees at that moment (in FOVI Cine, when live view is running). It can include anything in frame, including people.
- Your shot description — what you typed, or the suggestion you tapped. One-tap Assist sends no description.
- Your camera's current settings and the options it supports (for example ISO, shutter, and frame-rate choices), its make and model, and simple exposure measurements of the scene.
- Random request and camera-session identifiers used to match the answer to the request.
FOVIEngine forwards the snapshot, the description, and the camera settings to OpenAI, which generates the recommendation. We do not send OpenAI your customer ID, installation identifier, or IP address. We ask OpenAI not to store the request (the API's store: false setting). Under OpenAI's API data policy, API data is not used to train OpenAI's models, and OpenAI may keep abuse-monitoring logs for up to 30 days unless the law requires longer. OpenAI's privacy policy describes its handling.
FOVIEngine does not store your snapshots or descriptions. They are held in memory only while the recommendation is being generated, and they are never written to our logs or database.
What our server keeps
Installation identifier
To stop abuse of Assist, each app uses Apple's App Attest to prove requests come from a genuine copy of FOVI or FOVI Cine. Our server keeps a one-way hash of the installation's App Attest key, the key's public part, which app it is, and when it was verified. We use it for rate limiting, the free Assist allowance, and security.
Anonymous customer ID
The app creates a random ID and keeps it in your iCloud Keychain, shared between FOVI and FOVI Cine. It lets purchases and your monthly Assist allowance follow you across your devices and both apps. Our server stores the ID, which app first used it, and which installations it is linked to. It is not your Apple Account and contains nothing about you.
Purchases
Payments are handled entirely by Apple; we never see your payment details, name, or email. When you buy or restore, the app sends Apple's signed transaction records to our server, and Apple also notifies our server of renewals, refunds, and cancellations. We store the product, purchase and expiry dates, transaction identifiers, the App Store environment, and whether a purchase was refunded or revoked, linked to your customer ID, so we can unlock what you paid for in both apps.
Assist usage
We count how many Assist requests each customer ID (or installation, before one is linked) makes each month, to apply the free allowance and plan limits.
Server logs
Our server writes technical logs to keep the service reliable and secure. They include request identifiers, the installation identifier, which app sent the request, the camera make and model, how many settings changes were recommended, Assist's general category for the shot (for example, a moving person or a still product), timings, AI token counts, error details, the address requested, and your IP address. IP addresses are also stored briefly to rate-limit verification and identity requests, then deleted. Logs never contain snapshots or shot descriptions.
Who receives data
- OpenAI — generates Assist recommendations from the snapshot, description, and camera settings described above.
- Railway — hosts FOVIEngine, its database, and its logs.
- Apple — App Attest verification, App Store purchases, and iCloud Keychain.
We do not sell or share personal data for advertising or marketing, and we do not use analytics, crash-reporting, or advertising SDKs.
What we do not collect
We do not collect your name, email, phone number, contacts, location, advertising identifier, or browsing activity, and we do not track you across other companies' apps or websites.
Data retention
- Snapshots and shot descriptions: not stored by us; OpenAI's retention is described above.
- Customer ID, installation records, purchase records, and Assist usage counts: kept while they are needed to provide Assist and honor your purchases.
- Server logs: kept for a limited period by our hosting provider, then deleted.
- Everything on your device is removed when you delete the app, except the customer ID in iCloud Keychain, which you can remove in the Passwords app or your device's Keychain settings.
Children
The apps are not directed at children under 13, and we do not knowingly collect personal information from them.
Your rights
You can ask us for a copy of, or deletion of, the records described above. Because they are not tied to your name or email, we may need details from you, such as a purchase date and product, to find them. Deleting purchase records may stop purchases from unlocking until you restore them. Depending on where you live (for example under GDPR or CCPA), you may have additional rights, which we will honor. Contact us using the address below.
Changes
If this policy changes materially, we will update this page and the effective date above.
Contact
Curtis Wiseman · curtiswisemangordan@gmail.com