Privacy Policy

Last updated: 1 October 2026

The short version

  • No account. The app never asks for your name or email.
  • Our server knows the app only by a random ID created on your phone.
  • Photos you scan go through our server to our identification provider, Kindwise. Our server doesn’t keep them.
  • Your location is used only if you allow it, rounded to about 10 km, and our server doesn’t keep it.
  • No ads, no tracking, no selling of data, no third-party analytics.
  • Your bug album, streak, XP and lesson progress are stored on your phone.
  • You can delete your data at any time in the app: Me → Delete my data.

1. Who we are

BugWiz is published by Anas Alradhwan, an independent developer based in Kuwait and the seller shown on its App Store page (“we”, “us”). You can reach us with the contact form on our Support page. This policy covers the BugWiz iPhone app, the server it talks to and this website.

2. What we collect and why

An anonymous app ID

When you first open BugWiz, the app creates a random ID on your phone. It isn’t linked to your name, email, phone number or Apple Account. The app sends it with each request so our server can count your identifications, apply your subscription and stop abuse. RevenueCat (see “Purchases”) uses the same ID.

Photos you scan

When you identify a bug, the photos you choose (one to three photos of the same bug for each identification) and the date are sent through our server, which runs on Cloudflare, to Kindwise s.r.o. (Czech Republic), the company behind insect.id. Kindwise identifies the bug. The app saves a fresh copy of each photo before sending it, so the location and other details stored inside the original photo file aren’t sent. Our server passes the photos on and doesn’t keep them. Kindwise receives them from our server, not from your phone, so it doesn’t see your IP address, and our server doesn’t send it your app ID.

Kindwise’s licence to your photos. Under Kindwise’s terms, Kindwise receives a non-exclusive, irrevocable licence to use the photos it is sent, for example to improve its models and to show them to other users as similar images. Kindwise keeps identifications for up to 6 months. Please don’t photograph people, documents or anything private.

Your permission first. Before your first identification, the app shows who receives your photos (Kindwise) and asks for your permission. If you decline, no photo is sent.

Location (optional)

BugWiz uses your location only if you turn on “Use my rough location” (on the photo consent screen or in Me) and allow it. Knowing roughly where a bug was found helps identify it, so the app rounds your location on your iPhone to about 10 km (one decimal place of latitude and longitude) and sends it with the photos, through our server, to Kindwise. Our server passes it on and doesn’t keep it. Your location is never sent to RevenueCat. If you don’t allow location, identification still works. Switch it on or off at any time with “Use my rough location” in Me, or in your iPhone’s Settings.

“Not quite? Pick the right match”

If you tap “Not quite? Pick the right match” on a result and choose a different bug, the app sends the scan’s reference and the name of the bug you picked through our server to Kindwise, marking the first answer as wrong, so identifications can improve. Kindwise may keep this feedback under its terms. Our server passes it on and doesn’t keep it.

Photos shown on a result

Reference photos on a result are loaded through our server, so your phone never contacts Kindwise or the sites that host those photos, and nothing about you is sent to them. Each photo is credited in the app with its Creative Commons licence.

Support messages

If you write to us with the contact form on our Support page, we keep your email address, your message and anything else you add (such as your name or app version) so we can answer you. We keep a support message for 12 months, and we delete it sooner if you ask. Cloudflare adds the country your message came from. To limit spam, a scrambled (hashed) form of your network address is kept for one hour.

Purchases

Subscriptions are sold and billed by Apple. We never see your payment details. RevenueCat, Inc. (USA) receives your purchase history from Apple and your anonymous app ID, so it can manage your subscription and tell our server whether you have BugWiz Pro.

App integrity

BugWiz uses Apple’s App Attest to check that requests come from the genuine app, which helps prevent fraud. This uses a security key created on your device and contains no personal information.

Statistics from Apple

If you have chosen to share analytics with app developers in your iPhone’s settings, Apple may give us anonymous, combined statistics about app usage and crashes.

3. What stays on your phone

Your bug album, streak, XP and lesson progress are stored on your phone. We don’t receive them.

4. What our server keeps, and for how long

Our server never stores your photos or your location, and its logs don’t record IP addresses or the contents of the app’s requests. Cloudflare processes IP addresses briefly to protect the service and to apply rate limits.

DataWhyHow long
Anonymous app IDConnects the records belowAs long as those records exist
Identification countsThe free identification and the fair-use limitsHourly and daily counts: about 2 days. Total count: until you delete your data
Scan reference (Kindwise’s ID for an identification)Send “Not quite? Pick the right match” feedback, and ask Kindwise to delete your identifications when you delete your data180 days
Subscription status (Pro or not, plan, trial, expiry date)Unlock BugWiz ProWhile relevant, and up to 180 days after it ends
App Attest key and counterCheck that requests come from the genuine app and prevent fraudUntil unused for 180 days
One-time security codesSet up App Attest5 minutes
IDs of processed subscription updates from RevenueCatApply each update only once60 days
Image-signing key (not linked to anyone)Make sure our server only loads the result photos it choseWhile the service runs
Support messages (email address, message, what you add, country)Answer you12 months, or sooner if you ask
Hashed network addressLimit contact-form spam1 hour

5. What we don’t do

6. Legal bases

Where laws such as the EU or UK GDPR apply, we process data to provide the service you ask for (identifications and your subscription), on your consent for sending photos to Kindwise and for location, for our legitimate interests in keeping the service secure and free of abuse and in improving identifications through your feedback, and to meet legal obligations.

7. Where data is processed

Our service providers process data in the United States (Cloudflare, RevenueCat) and the European Union (Kindwise), and Cloudflare’s network operates worldwide. Where required, these transfers are covered by appropriate safeguards, such as the European Commission’s Standard Contractual Clauses.

8. Your choices and rights

9. Children

BugWiz is for people 18 and over only (it’s rated 18+ on the App Store). It isn’t directed to children, and we don’t knowingly collect personal information from anyone under 18. If you believe someone under 18 has sent us personal information, contact us and we will delete it.

10. Security

All connections are encrypted (HTTPS). Secret keys for our providers stay on our server and are never in the app, and App Attest lets our server check that requests come from the genuine app.

11. Changes

If this policy changes, we will post the new version here with a new date.

12. Contact

Write to us with the contact form on our Support page. We reply by email.