Rejog stash
Legal

Privacy Policy

What the Stash app collects, why, where it is stored, and how you can delete it. It covers both roles: the owner who catalogs and lends, and the borrower who requests an item from a web link.

Last updated: July 10, 2026

The short version

We collect only what the app needs to work - nothing for tracking or advertising.

No tracking. No advertising identifier (IDFA). No App Tracking Transparency prompt, because there is nothing to track. No third-party analytics or advertising SDKs. We do not sell your data, and we do not share it with third parties for their own purposes.


What we collect and why

Everything below is collected only to provide app functionality. Each item is linked to your use of the app, and none of it is used to track you across other apps or websites.

Data
Why we collect it
Photos and videos
Item photos you take or choose, so you and the people you lend to can see what an item is. Used only inside the app to show your catalog.
Precise location
Read only at the moment you capture a photo, to stamp where an item was last seen so you can find it later. Never read in the background, never used to follow your movements.
Email / contact info
A borrower's name and email or phone number, given when they request an item from a web borrow link. Stored so the owner can arrange the loan - and shared with that owner only.
User content
Item names, notes, and similar text you enter to describe and organize your things.

That is the complete list. It matches the iOS app's PrivacyInfo.xcprivacy declaration and the App Store's App Privacy labels: all four categories are collected for App Functionality, all are linked to you, and none are used for tracking. The Android app will declare the same categories in its Play Store data-safety form when it ships.


No tracking, no ads, no analytics

What we do not do

Stash does not track you. There is no advertising identifier (IDFA), no App Tracking Transparency prompt, no third-party analytics or advertising SDKs, and no cross-app or cross-site profiling. We do not build advertising profiles and we do not sell data.


About location

Location is used for one thing: when you take a photo of an item, the app can stamp the item with where it was last seen, so it is easier to find later.

  • It is read only in the foreground, at the moment of capture - never in the background.
  • It is attached to that item for your own reference.
  • It is never used to track your movements or shared for advertising.

Where your data is stored

Stash uses two systems, each for a specific job:

  • Your owner catalog - the items, photos, notes, and location stamps you create. On iOS it lives in your own private iCloud (CloudKit) database, hosted by Apple, tied to your Apple account, and not a shared, public database. On Android (when it ships), the catalog lives in a private database on the device itself.
  • The share and borrow flow - a public catalog link, a borrow request, and the borrower's contact and loan status - is served by the Rejog backend (a Cloudflare Worker with a Cloudflare D1 database and photo storage). This is what lets a borrower use a link in any browser without an account, on every platform.

Apple and Cloudflare act as infrastructure providers that process this data on our behalf so the app can function. We do not sell your data, and we do not share it with any third party for their own purposes.


Borrower contact is private until a loan is real

When someone borrows through a web link, their contact information is handled carefully:

The rule

A borrower's name and contact are given to the owner only once a loan is confirmed and active - not on a pending request, and never to any other borrower. For approval-mode items the owner sees the request without the contact details until they approve. A request the owner declines never reveals the borrower's contact.

The borrower's own device may keep a local list of their borrows in the browser (the holding list). That list lives in the browser only and is never sent to any server; clearing browser data clears it.


How long we keep data, and deleting it

Owners: on iOS, your catalog lives in your private CloudKit database - you can erase all of your data from within the app, on-device, and because the catalog is in your own iCloud database it is under your Apple account's control. Deleting the app removes the local copy of your data from that device. (The Android app, when it ships, keeps its catalog on-device, so deleting the app deletes the data.)

Borrowers: a borrow record is keyed to the share it came from and is kept only as long as it is needed to track that loan; it expires and is pruned when the share ends or the record ages out. A waitlist ("notify when free") entry stores only your email and the item reference, and is cleared once the notification is sent.

Launch list: if you leave your email on the marketing pages to hear when the apps ship, we store only that address and the page you signed up from. It is used for a single launch announcement and the list is deleted after it goes out.

If you want data associated with a borrow, waitlist, or launch-list signup removed, contact us using the address below.


Children

Stash is a general-audience app for lending and borrowing personal belongings. It is not directed to children, and we do not knowingly collect personal information from children under 13.


Changes to this policy

If this policy changes, we will update this page and revise the "Last updated" date above.


Contact us

Privacy questions

Email help@rejog.net with any privacy question or a request to delete your data.