GradeLens AI
PRIVACY · SERVICE DATA

Your scans are not a blank check.

GradeLens uses the minimum account and card evidence needed to provide grading, protect the private Vault, secure the service, and respond when you ask for support. Research and grading-system improvement are a separate, optional choice.

PRIVATE ALPHA NOTICEEffective August 16, 2026 · Version service-alpha-2026-08-16

Who this notice covers

This notice covers the GradeLens AI private alpha iPhone app, Cloud Vault, companion site, and related support tools. The service is currently operated as the GradeLens AI private-alpha project. The final legal entity name, public privacy email, mailing contact, and governing-region disclosures must be inserted and reviewed before any external paid beta or App Store release.

Alpha limitation: This implementation-backed notice is intentionally candid, but it is not a substitute for final legal review or the missing public operator contact.

Data required to provide GradeLens

  • Account information: Apple account subject, internal account ID, and the name or relay/regular email Apple provides.
  • Card evidence: source photos, capture slots, card identity, condition findings, confidence information, reports, and scan state.
  • Private workspace information: notes, collection status, acquisition price/date, and saved research queries when you use those features.
  • Security and operations: session records, device label, timestamps, provider-attempt status, usage limits, consent history, deletion receipts, and non-secret scan confirmation references.

GradeLens processes this information to perform the scan you request, store and synchronize your private Vault, prevent abuse, diagnose failures, enforce cost and security limits, provide exports and deletion, and answer a support request you initiate.

Service providers

Card photos and scan instructions are transmitted over encrypted connections to GradeLens infrastructure on Cloudflare and to the visual-analysis routing/model providers configured to produce the report. Sign in with Apple supplies account authentication. GradeLens does not intentionally authorize customer scans for unrelated advertising or cross-service tracking.

Before a public paid beta, GradeLens must confirm the exact provider list, retention settings, data-processing terms, subprocessors, and any available no-training controls, then name or link them here as legally required. Optional GradeLens research permission does not itself grant a third-party provider broader rights.

If a provider or processing purpose materially changes, GradeLens must update this notice and request a new choice where required before using the data for that new purpose.

Optional research and grading-system development

Off by default. Accepting the Service Data Notice does not permit research, dataset inclusion, model improvement, or grading-system development.

If you separately enable Help improve GradeLens, eligible server-issued scans, reports, and related feedback already in your private Vault or created later may be reviewed for error analysis, calibration, evaluation datasets, defect-detection testing, and grading/model development until you revoke the choice. The choice does not change your grade, scan allowance, account features, or support.

Turning the choice off stops new identifiable research access. GradeLens must remove identifiable working copies selected under that permission when reasonably possible, while retaining only results that have already been irreversibly de-identified or aggregated when lawfully permitted. Granting permission does not automatically place every scan into a dataset.

Support confirmations and access

Each new server-backed scan receives a random confirmation such as GL-7K2M-9QPA-H6RX-4WCD. It helps GradeLens locate the scan job, build/version, status, and provider-pass health. It is not a password and does not grant access to a report or photo.

You may inspect your own confirmation while signed into the owning account. Cross-account staff lookup requires a separately provisioned support role and a case reference, and the lookup is audited. Support use is part of providing the service when you ask for help; it does not require optional research permission.

Retention and deletion

  • Cloud Vault reports and source photos remain until you delete the scan or account.
  • Completed staging uploads are normally removed after the report is secured; interrupted evidence becomes eligible for cleanup after seven days.
  • Successful confirmation records remain while their report exists. Failed or orphaned confirmation records become eligible for deletion after 180 days.
  • Support lookup audits are retained for up to 365 days. Sessions expire after 30 days; revoked/long-expired session audit rows have a further bounded cleanup period.
  • Consent history is retained with the account so GradeLens can honor and prove the choices made, and is deleted with the account subject to required cleanup receipts.

The app lets you delete individual scans, remove local data from an iPhone, export account data, revoke optional research permission, and request account deletion. Operational backups or deletion jobs may persist briefly until safe cleanup finishes.

Your choices

You can decline optional research and still use grading, Vault, security, and support. You can revoke it later in Account → Data & Privacy. If you do not accept the current service-processing notice, saved local reports remain readable but new cloud analysis stays paused.

GradeLens does not sell card photos or account data, does not use them for cross-app tracking, and currently includes no advertising or third-party analytics SDK.