Last updated: 28 August 2026 · Operator: Schill Labs (Mike Schillereff)
This policy describes how BloomDoc (“the app”) handles information when you identify plants, save a collection, subscribe, or contact us. We do not sell your personal information and we do not use it for cross-app advertising or tracking.
Who we are
BloomDoc is operated by Schill Labs (Mike Schillereff). Contact: mikeschillereff@hotmail.com. We process data in the United States.
Information we collect
- Plant photos you choose to scan or save. A photo is sent to our backend so we can identify species, estimate health, and (if you save the plant) keep a record in My Plants.
- Account data. The app creates an anonymous account on first launch so scans can be stored. If you add an email and password, or use Sign in with Apple, we store that login so you can sign in on another device. Apple may provide a Hide My Email relay address instead of your real inbox.
- Name. Sign in with Apple may send your name the first time you authorize the app. We store it as a display name if you provide it.
- Scan results, care plans, plant names, and chat with Leafy. Stored with your account so you can reopen them.
- Subscription status (purchase history). Apple, Google, and RevenueCat process the payment. We receive whether Premium is active, the product identifier, and the period end — not your card number.
- Usage counts. Daily and monthly free-tier scan and chat counts are stored so limits can be enforced.
- Product interaction events. Named events such as scan started, plant saved, paywall shown, and subscribe. No advertising identifier. Not sold. Used to operate and improve the app.
- Scan guesses and optional corrections. We store the model’s species guess (and, if you tap Yes / Not this, your correction plus that photo) so we can measure accuracy and improve identification. This is not used for ads.
How we use plant photos and AI
When you scan, the photo is uploaded to our Supabase backend. A server-side function (ai-proxy) sends the image and a prompt to OpenAI’s API so we can return a species guess, health notes, a care plan, or a Leafy reply. We use the photo only to provide that feature.
OpenAI processes the request under its API terms. We do not use your plant photos to train a public advertising profile. We do not use the consumer ChatGPT product to run BloomDoc.
Saved plant photos are stored in a Supabase Storage bucket. The bucket is technically public, but files sit under a hard-to-guess URL that includes your account id and a random filename. Anyone who obtains that exact URL can open the image. Do not upload photos you are not comfortable storing that way. Scanning without tapping “Add to My Plants” does not keep the photo in Storage.
Processors
- Supabase (United States) — authentication, database, file storage, and the edge function that calls the AI provider.
- OpenAI (United States) — vision and text analysis requested by our edge function. The API key stays on the server.
- RevenueCat — subscription status and restore-purchases for App Store / Google Play products.
- Apple — App Store billing and, if you use Sign in with Apple, identity (and optionally a private relay email).
- Google Play — billing if you subscribe on Android.
Anonymous accounts
If you skip email, BloomDoc still creates an anonymous account tied to that install. Adding an email or Sign in with Apple converts the same account so plants stay with you. Signing in to a different existing account does not merge guest plants — the app warns you first.
Notifications
Care reminders are local notifications on your device. We do not send server push or marketing notifications. You can disable reminders in Profile or in system settings.
Location
BloomDoc does not request or read your location.
Legal bases (EEA / UK)
If you use the app from the EEA or UK, we process data as needed to provide the service you request (contract) and to keep the service secure and rate-limited (legitimate interests). You may request access, correction, deletion, or a copy of the data we hold, or object to processing that is not required to run the app, by emailing us. We do not currently appoint an EU Article 27 representative. Contact the email above.
Your choices
- Access / correction / export: email mikeschillereff@hotmail.com from the address on the account (or describe the install) and we will help.
- Deletion: Profile → Delete account, or email us. We delete plants, scans, care schedules, chat, photos we store, usage and analytics events we control, and the account. Store billing records may be kept by Apple, Google, or RevenueCat as required for tax and fraud prevention. Backups may persist for a short period before they rotate.
- Tracking / ads: we do not track you across other companies’ apps or sell your data. There is no “Do Not Sell” opt-out because we do not sell personal information.
Children
BloomDoc is a general-audience plant-care app. It is not directed at children under 13 and is not in Apple’s Kids category. Do not create an account for a child under 13. We do not knowingly collect personal information from children under 13. If you believe we have, email us and we will delete it.
Retention
Account data, saved photos, scans, care schedules, chat, usage counts, and product events are kept while the account exists so the app can show your collection and enforce free-tier limits. After you delete the account we remove the records we control as described above.
Changes
We may update this policy. The date at the top will change. Material changes will be reflected here before they apply to new data we collect.
Contact
mikeschillereff@hotmail.com · Schill Labs.