Privacy Policy
Mintboxd is an iPhone app for recording the physical media you own:
vinyl, CDs, cassettes, Blu-rays, VHS, game cartridges, books and
figures. This page sets out what data is processed when you use it.
The informational website itself (mintboxd.com) runs no
cookies, no analytics and no tracking scripts, and its web fonts are
served from our own server rather than a third party.
1. Who is responsible
Mintboxd is the controller of your data. Contact details are under Contact at the end of this page.
2. Data we process
The list below was compiled from the fields that actually exist in the app's database. It contains no “we may collect” boilerplate.
| Type | What is stored | Why |
|---|---|---|
| Account | Email address, username, display name, date of birth and an age-verification record. Your password is never stored in plain text, only as an argon2id hash. | Creating your account and signing you in. |
| Profile | Bio, location, website, pronoun, avatar and banner images, theme and language preferences, whether your profile is private. | Building your profile and applying your preferences. |
| Sign in with Apple / Google | The user identifier the provider issues for you. If you use Sign in with Apple we also store an Apple refresh token, used solely to revoke the Apple link when you delete your account. | Passwordless sign-in, and clean revocation on deletion. |
| Sessions | A hash of the refresh token, the client identifier (user-agent), the IP address, and the times the session was created, expires or was revoked. | Keeping you signed in, listing your active sessions, and spotting suspicious sign-ins. |
| Collection and content | Your collection entries (item, pressing, condition, quantity, how you acquired it, price notes, your own notes), diary entries, ratings, reviews, tags, shelves, favourites, wishlist, comments, likes, follow and block relationships, and any reports you file. | The core function of the app. |
| Messages | The text of your direct messages with other users, and any attachments. | The messaging feature. |
| Images |
Avatars, banners and item photos you upload are stored on
Cloudflare R2 and served from cdn.mintboxd.com.
Those URLs are hard to guess but public:
anyone who has the URL can open the image without signing in.
|
Displaying your images in the app. |
| Notifications | If you allow notifications, your device's Apple push token and its platform. Your notification preferences (follows, social, messages) are stored separately. | Sending push notifications. |
| Usage | Which item pages you open, and the search queries you type in the app together with the number of results. | Improving search and recommendations, and producing popular and trending lists. |
| Error reports | When a server-side error occurs, the error type and the request path and method are sent to Sentry. Query strings, cookies and authorization headers are stripped before the report leaves our server. | Finding and fixing bugs. |
| Audit | Moderation actions are recorded with the actor, the target and the before and after state. | Making abuse handling accountable. |
3. What we do not collect
As of the date of this text, the app does not ask for or store:
- payment or card details (there is no selling or payment in the app);
- shipping or home addresses;
- location data. The camera is used only for barcode scanning and case measurement, and those frames never leave your device;
- your contacts, calendar, or your whole photo library (only the image you pick is uploaded);
- advertising identifiers. There is no advertising and no ad tracking;
- third-party analytics or tracking such as Google Analytics or the Meta pixel.
4. Who we share it with
Other users
Mintboxd is a social app. Unless you make your profile private, your profile, collection entries, reviews, shelves and activity are visible to other users. Your messages are visible only to the person you are writing to.
Service providers
- Railway
- Application server and database hosting.
- Cloudflare (R2 + CDN)
- Image storage and delivery.
- Apple (APNs)
- Delivering push notifications.
- Apple / Google
- Authentication if you use Sign in with Apple or Google.
- Sentry
- Server error reporting.
These providers may host data outside your country, so using them necessarily involves an international transfer. We do not sell or rent your data for advertising.
We may also have to disclose data where a law or a valid request from a competent authority requires it.
5. How long we keep it
- Account and content data is kept for as long as your account exists.
- Sessions are invalidated when they expire or when you sign out.
- When you delete your account, the process described under Your rights applies.
6. Your rights and deleting your account
You have the right to access, correct and delete your personal data and to object to its processing. Most of your profile data you can edit directly in the app.
Deleting your account in the app
You can delete your account from Settings → Account → Delete account. Deletion asks you to re-authenticate with your password or your Apple/Google sign-in. Once you confirm, in order:
- If you used Sign in with Apple, the Apple grant is revoked.
- All of your sessions are revoked.
- Your device's push tokens are deleted and notifications stop.
- Your user record is deleted from the database. Email, username, display name, bio, avatar, banner, location, website, pronoun, date of birth, password hash and Apple/Google links are gone.
- The content you created is deleted: collection entries and their history, reviews, comments, lists, shelves, 3D scans, likes, follows, notifications, search and view history, payment method, shipping address and the messages you sent.
- Images you uploaded are removed from our content network as well: avatar, banner, photos you sent in chat, and 3D box faces.
- Your session records and push tokens are deleted.
Two things are not deleted, both deliberately. First, other people's data: the messages they sent you and the conversation itself remain, because they belong to that person. Second, records that stay with the link to you severed: catalogue contributions (tags, buy links), moderation decisions and report records. These can no longer be associated with you.
Deletion is immediate and permanent. There is no waiting period and it cannot be undone.
7. Security
Passwords are stored as argon2id hashes. All traffic between the app and the server runs over HTTPS. No system is perfectly secure; if you find a vulnerability, please let us know.
8. Children
Mintboxd is not directed at children under 13 and we do not knowingly collect data from them. If you believe a child has given us data, contact us and we will remove it.
9. Catalogue data and third-party sources
Release metadata and cover art in the app are compiled from open data sources: TMDB, Discogs, MusicBrainz / Cover Art Archive, Open Library, MobyGames / IGDB. That data is not your personal data; the catalogue is shared by everyone.
This product uses the TMDB API but is not endorsed or certified by TMDB.
10. Changes to this policy
If we update this policy we will change the “last updated” date above, and we will notify you in the app for any significant change.
11. Contact
For questions and data requests: support@mintboxd.com
Contact address not decided yet — a real email address will be published here before the app ships.