Privacy Policy
Kartella
Last updated: 9 August 2026
In short
Kartella collects nothing and sends nothing. There is no account to create and the app contains no code that talks to a server. The client details, visit records and photos you enter are kept on your device.
1. Information we collect
The app sends no information at all to the developer or to any third party. There is no usage analytics, no advertising identifier and no crash reporting. No analytics or advertising SDK is included.
The App Privacy declaration on the App Store is "Data Not Collected".
2. Information kept on your device
What you enter and photograph is stored in the app's area on your device:
- Client details (name, reading, phone number, notes, tags, the minor flag and the note field about guardian consent)
- Visit records (date, service, time taken, price note) and formulas (product, grams, developer percentage, processing time)
- Before and after photos, and anything you write on them by hand
- Patch test records (date, brand, product, result, expiry) and any signature you take
- Publication agreement records (scope, date granted, date withdrawn, notes)
- Your lists of services, products and brands, and the app's settings
The developer cannot see any of this.
3. Device backups
If you have an iOS device backup switched on (iCloud Backup or a backup to a computer), this app's data is included in that backup. That is how iOS works; the app is not sending it.
If you would rather it were not included, switch on "Exclude from device backup" in the app's settings. Note that once excluded, a lost or replaced device cannot be restored — in that case please use the app's own backup feature (an encrypted file you export).
4. Files you export
For disclosure PDFs and backup files, you choose where each one is saved (Files, iCloud Drive, sharing to another app and so on). Once exported, the file is outside this app, and the terms and privacy policy of wherever you saved it apply. Backup files are encrypted with a password you set. That password is not stored in the app, so if you forget it the file cannot be restored.
5. Device features the app uses
| Feature | Used for | Sent anywhere? |
|---|---|---|
| Camera | Taking before and after photos | No |
| Photo library | Choosing a photo. The app uses the system picker, so it never asks for access to your whole library | No |
| Face ID / Touch ID | Unlocking the app and leaving client viewing mode | No — the check happens on the device |
| Notifications | Patch test expiry and retention reminders | No — they are composed on the device |
The app works without granting any of these. Without notifications you still see expiry as a badge in the list.
6. About your clients' information
Most of what is recorded in this app is information about your clients. You, as the person using the app, are the one collecting and holding it. The developer has no access to it.
For when a client asks to see or delete their records, the app can export one client's records as a PDF and offers two kinds of deletion: identifying details only, or everything. The app does not judge which response is appropriate.
7. How long records are kept
You decide. When the period you set has passed since the last visit, the app reminds you to review the record, but it never deletes anything by itself. Deleting the app removes its data from the device (anything already in a device backup follows that backup's own rules).
8. Children's privacy
This app is a tool for professionals and is not directed at children under 13. It provides a minor flag and a note field about guardian consent for clients under the age of majority, but it makes no age-related legal judgement.
9. Changes to this policy
If this policy changes, this page will be updated and the date above revised.
10. Contact
Questions about this policy can be sent to the address on the support page.
Controller, contact and your rights
This app is provided by freetokyo, an independent developer, who acts as the data controller. For any question about this policy or about personal data, contact freetokyo2020@yahoo.co.jp. We normally reply within five business days.
If you are in the EU, the EEA or the UK, the GDPR gives you the right to access, rectify, erase, restrict and port your personal data, to withdraw consent and to object to processing. You may also lodge a complaint with your national supervisory authority.
If you are a California resident, the CCPA/CPRA gives you the right to know, delete and correct the personal information collected about you, and to opt out of its sale or sharing. We do not sell or share personal information.
Where this app stores data only on your device, we have no access to it, so most of these rights are exercised directly on the device: delete or export inside the app, or delete the app. We will still answer any request you send us.
Retention: on-device data is kept until you delete it or remove the app. Support emails are deleted 24 months after the request is closed.