Privacy Policy

How Timestamped GPS handles field records, verification data, purchases, advertising, and your choices.

Effective 2026-07-30

Timestamped GPS is a field camera and reporting tool. This policy explains what the app handles, what stays on your device, and what may be sent to service providers.

Information Timestamped GPS handles

Local storage and sharing

Photos, videos, Gallery records, project links, stamp profiles, inspection templates, reports, and timesheets are stored on your device unless you choose to save, share, or export them. A recipient or storage provider handles anything you share according to its own terms and privacy practices.

Optional public verification records

Public registry publishing is off by default. If you enable it, Timestamped GPS sends the verification code, original-file fingerprint, device-reported capture time, time-source label, and limited lifecycle information to the verification service. The service adds its own server registration time. The photo itself is not uploaded to the registry.

Precise coordinates and street address have separate controls and remain off unless you independently enable each one. A verification result confirms that a record and fingerprint were registered; it does not independently prove what the camera saw or authenticate a physical location.

Weather is published on a proof record only when Premium Weather Context is present and exact-location publishing was also enabled. Weather values are provider-reported near capture time and are not independently verified by Timestamped GPS.

Advertising, purchases, and measurement

Advertising

Timestamped GPS may use Google Mobile Ads on approved low-pressure screens. The initial design requests non-personalized ads and does not ask for access to Apple’s advertising identifier. Consent choices are available in the app where required.

Timestamped GPS Pro

When purchases are enabled, Apple processes payment and RevenueCat processes an anonymous app user identifier plus product, transaction, subscription, and entitlement information needed to purchase, restore, and manage Pro. Timestamped GPS does not collect your payment-card number.

Privacy-minimized measurement

When remotely enabled, the app may send a random install identifier and a small allow-listed set of Gallery, ad, capture-detail, and Pro-preview events. The service replaces the install identifier with a salted one-way pseudonymous value. This event contract rejects media, verification codes, file fingerprints, coordinates, addresses, and timesheet content.

Service-provider protection

Service providers that receive information from Timestamped GPS are required to use it only to provide their contracted services and to protect it to the same or an equivalent standard described in this policy and required by applicable law.

Retention and deletion

Local records remain until you delete them or remove the app. New public verification records normally expire after 365 days. The device stores a separate deletion credential for new public records; deleting the local capture queues deletion of its public record and retries after an offline deletion. Older records without a device-held deletion credential require support.

Privacy-minimized product and advertising events are retained for no more than 90 days when that service is enabled.

Your choices

You can control camera, microphone, location, and Photos permissions in system Settings. About & Privacy contains separate controls for public verification publishing, exact-location publishing, address publishing, and advertising privacy choices. You may request privacy assistance or legacy-record deletion using the contact below.

Children

Timestamped GPS is a work-documentation tool and is not directed to children under 13.

Policy changes

Material changes will be reflected by updating the effective date on this page. The policy in effect when you use the service applies to that use.

Contact

Email privacy@timestampedgps.com.