Privacy Policy
Last updated: March 25, 2026
Setikom SIA("we", "us", or "our") operates the Keylix mobile application and website. This Privacy Policy explains how we collect, use, and protect your personal information.
1. Information We Collect
- Account information: email address, first and last name, and profile photo (when signing in with Google or Apple).
- Loyalty card data: card titles, barcode numbers, barcode images, notes, and categories you assign.
- Device information: device type, operating system version, and app version for crash reporting and analytics.
- Diagnostic data: crash logs, error messages, and performance data are automatically collected when the app encounters errors. This data includes device model, OS version, app version, and error stack traces. Diagnostic data is used solely to identify and fix bugs, and is not used for advertising or tracking purposes.
- Location data: approximate location (only when you grant permission) to suggest nearby loyalty cards. Location data is retained for up to 24 months, after which it is automatically deleted.
- Camera access: only when you choose to scan a barcode or take a photo of your card. Barcode scanning is processed locally on your device. Card photos you choose to save are uploaded and stored securely on our servers.
2. How We Use Your Information
- To provide, maintain, and improve the Keylix service.
- To store and synchronize your loyalty cards across your devices.
- To enable card sharing within groups you create or join.
- To suggest nearby cards based on your location (if permitted).
- To send important service updates (e.g., security notices).
- To recognize loyalty card details from photos using AI-powered image recognition (see Section 4 for details).
3. Data Storage and Security
Your data is stored on secure servers with encryption in transit (TLS). We use industry-standard security measures to protect your personal information. Barcode scanning is processed on your device. Card photos you choose to save are stored securely on our servers.
4. Data Sharing and Third-Party Services
We do not sell, trade, or rent your personal information to third parties. We may share data only in the following cases:
- With your consent: when you share cards within a group, members of that group can see the shared cards.
- AI-powered card recognition: when you use the photo recognition feature, card photos may be processed using AI services provided by Google to identify card details. Photos are sent securely and are not stored by the AI provider.
- Service providers: we use third-party services to operate Keylix. These providers process data on our behalf under strict confidentiality agreements.
- Legal requirements: if required by law or to protect our rights.
Third-party service categories:
- Google — authentication (Sign in with Google) and AI-powered card recognition.
- Apple — authentication (Sign in with Apple).
- Cloud hosting provider — secure file and data storage.
- Error monitoring and logging service — crash reporting and diagnostics.
- Email delivery service — sending verification emails.
5. Data Retention
- Account data: retained until you delete your account.
- Loyalty card data: retained until you delete the card or your account.
- Location data: retained for up to 24 months, then automatically deleted.
- Authentication tokens: access tokens expire after 15 minutes; refresh tokens expire after 7 days.
- Diagnostic data: crash logs and error reports are retained for up to 90 days, then automatically deleted.
When you delete your account, all associated data — including cards, photos, location history, and group memberships — is permanently removed.
6. Your Rights
You have the right to:
- Access your personal data stored in Keylix.
- Request correction of inaccurate information via your profile settings.
- Request deletion of your account and all associated data directly from the app settings.
- Withdraw consent for location or camera access at any time.
7. Children's Privacy
Keylix is not intended for children under 16. We do not knowingly collect personal information from children. If we learn that we have collected data from a child under 16, we will delete it promptly.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes via the app or email. Continued use of Keylix after changes constitutes acceptance of the updated policy.
9. Contact Us
If you have any questions about this Privacy Policy, please contact us at [email protected].
Setikom SIA