Downsize — Privacy Policy
Effective date: September 4, 2026
Last updated: September 4, 2026
The short version
Downsize reduces the size of your photos and videos entirely on your device. Your photos and videos are never uploaded, never sent to us, and never leave your iPhone — we cannot see them. We use Firebase Analytics and Crashlytics to collect anonymous usage statistics and crash reports (no photo content, ever). Free users see ads served by Google AdMob, which works with a set of third-party ad technology partners; with your permission (App Tracking Transparency), those ads may be personalized. The free tier also includes a daily conversion limit; Downsize Pro removes both the limit and the ads with a one-time purchase.
Data Controller
Downsize is developed and maintained by Gilmar Quinelato, an independent developer based in the United Kingdom. For any privacy-related inquiries, contact: gilmarsquinelato@gmail.com
Data We Do NOT Collect
Downsize does not collect, upload, transmit, or store on any server:
- Your photos or videos, or any content, thumbnails, or previews of them
- Personal information (name, email address, phone number)
- Precise location
- User accounts, passwords, or login credentials
- Contacts, health, financial, or messaging data
On-Device Processing
All media processing — scanning your library, measuring sizes, compressing, resizing, converting formats, and generating before/after comparisons — runs entirely on your device using Apple's frameworks (PhotoKit, Image I/O, AVFoundation). No photo or video data is ever sent to a third-party server or API. Your originals are never modified; Downsize saves a separate optimized copy, and deleting anything is always a separate, explicit action you confirm through the system.
Photos Library Access
Downsize requests access to your photo library for two purposes:
- Read access — to scan your library on-device and find the photos and videos that take up the most space. Reading never downloads iCloud originals just to display them, and content is never uploaded.
- Add access — to save the optimized copies you create back to your library.
You can grant full or limited access, or revoke access at any time in Settings › Privacy & Security › Photos. If you choose the "metadata" options in a recipe, Downsize can also strip location or other optional metadata from the optimized copy for extra privacy.
Data We DO Collect (Anonymous Analytics)
Downsize uses Google Firebase Analytics and Firebase Crashlytics to collect limited, anonymous data that helps us improve the app:
- Usage events: which screens you visit and which features you use (e.g. "a video was optimized", "the comparison was opened"), plus non-identifying parameters such as media type and bytes saved — never the content of your photos or videos.
- Crash reports: stack traces, device model, OS version, and app state at the time of a crash.
- Standard metadata: app version, session duration, approximate (city-level) location derived from IP address, and device type.
- Entitlement tier: whether you are a Free or Pro user, recorded as a non-identifying segment. No user account or user identifier is assigned, and analytics data is not linked to your real identity.
In the EEA, the UK and Switzerland, analytics collection also follows your choice in the ads consent form: Downsize enables Google Consent Mode for analytics, so if you do not consent, Firebase Analytics falls back to aggregate, non-identifying measurement. Analytics data is not shared with the ad technology partners described below.
Advertising (Google AdMob)
Downsize is free to use with a daily processing allowance. Free users are shown a full-screen ad before processing, served by Google AdMob. To provide ads, the Google Mobile Ads SDK may collect:
- Device identifiers, including the Identifier for Advertisers (IDFA) when you permit tracking (see below)
- Approximate (coarse) location and device/network information
- Ad interaction data (impressions, clicks)
If you allow tracking, ads may be personalized and this data may be shared with Google and its ad technology partners for cross-context behavioral advertising. If you decline, AdMob serves non-personalized ads only. Google's use of this data is governed by Google's Privacy Policy and How Google uses information from sites or apps that use its services.
Ad technology partners
AdMob does not serve every ad itself. To fill ad requests, Google works with third-party ad technology partners — advertising networks, exchanges and measurement providers — which may receive the data listed above and process it under their own privacy policies, as independent controllers.
For Downsize, this set is configured as Google's commonly used ad partners, plus a selection of additional providers certified under the GDPR. Google may also add ad sources to this set automatically as they begin serving ads in the app, so the set changes over time and no fixed list is reproduced here.
The current, authoritative list — every partner's name and a link to its privacy policy — is shown in the consent form itself, under "Manage options". Where the consent form applies to you, you can reopen it at any time from Settings › Ad Privacy & Partners inside the app. See also Google's Manage your ad technology partners.
Downsize Pro removes ads entirely. Pro users are not shown ads and the advertising SDK does not request ads for them.
App Tracking Transparency & Consent
- App Tracking Transparency (ATT): Before any tracking that uses the IDFA, Downsize presents Apple's system permission prompt. If you decline, no IDFA is used and ads are non-personalized. You can change this any time in Settings › Privacy & Security › Tracking.
- Consent (EEA/UK): For users in the European Economic Area, the United Kingdom, Switzerland, and other applicable regions, Downsize uses Google's User Messaging Platform (UMP) to gather GDPR consent for ads before requesting them.
- Legitimate interest: Some ad technology partners rely on legitimate interest rather than consent for certain purposes, and in this app those are enabled by default. The consent form lists which partners do this and for which purposes, and lets you object to each one. Objecting takes effect for future ad requests.
- Changing your mind: Wherever consent was gathered, a Settings › Ad Privacy & Partners entry appears in the app. Use it at any time to withdraw consent, object to legitimate interest, or review the partner list. Withdrawing consent is as easy as giving it, and does not affect processing that already took place.
- Consent Mode: Downsize enables Google Consent Mode for both advertising and analytics. Where consent is required and you have not given it, Google's SDKs adjust their behaviour accordingly — identifiers are not used, and measurement falls back to aggregate, non-identifying signals.
Legal Basis for Processing (UK/EU GDPR)
- App functionality (on-device processing): necessary to perform the service you chose to use — Article 6(1)(b).
- Anonymous analytics and crash reporting: legitimate interest in understanding stability and feature usage to improve the app — Article 6(1)(f). No personal identifiers are collected. In the EEA, UK and Switzerland, analytics collection additionally follows your choice in the consent form (Consent Mode).
- Personalized advertising: your consent — Article 6(1)(a) — gathered via the ATT prompt and the UMP consent form.
- Ad technology partners' own processing: depending on the partner and purpose, either your consent — Article 6(1)(a) — or the partner's legitimate interest — Article 6(1)(f), which is enabled by default and which you can object to per partner in the consent form. Each partner sets its own basis; the consent form states which applies.
- Non-personalized ads: legitimate interest in funding a free tier — Article 6(1)(f).
Data Storage
App data is stored locally on your device using Apple's SwiftData framework — this includes your app settings, processing history for the current session, and cached scan results. Downsize does not use iCloud sync and operates no servers of its own. Your daily free-usage allowance is stored securely in the device Keychain (a count and date only — no personal data) so the limit is consistent across reinstalls.
Data Retention & Deletion
App data lives on your device for as long as the app is installed. To delete all local Downsize data, delete the app from your device. Anonymous analytics/crash data held by Google is retained according to Google's retention policies; because it contains no personal identifiers tied to you, it cannot be selectively linked to or deleted for an individual. Advertising data received by third-party ad technology partners is retained under each partner's own retention policy — see the privacy policy links in the consent form. You can stop personalized-ad data collection at any time by declining tracking (ATT), withdrawing consent, or objecting to legitimate interest from Settings › Ad Privacy & Partners.
International Data Transfers
Anonymous analytics, crash data, and advertising data processed by Google (Firebase and AdMob) may be processed on servers in the United States and other countries. Google operates under Standard Contractual Clauses (SCCs) and the EU–US Data Privacy Framework for international transfers. See Google's Privacy Policy.
Third-party ad technology partners are independent controllers and rely on their own transfer safeguards, which are described in their respective privacy policies — linked from the consent form. Downsize does not transfer data to them directly; it is Google that passes it on when filling an ad request.
Third-Party Services
Downsize integrates the following third-party services:
- Google Firebase Analytics — anonymous usage events. Google Privacy Policy
- Google Firebase Crashlytics — crash reports with device information. Firebase Data Processing Terms
- Google AdMob (Google Mobile Ads SDK) — advertising for free users. Google Privacy Policy
- Google User Messaging Platform (UMP) — consent management for ads.
- Third-party ad technology partners — advertising networks, exchanges and measurement providers that Google works with to fill ad requests, each acting as an independent controller under its own privacy policy. This set changes over time; the current list, with a privacy policy link for each partner, is shown in the consent form (Settings › Ad Privacy & Partners).
- Apple StoreKit — manages the in-app purchase. Transactions are processed entirely by Apple; Downsize receives only entitlement status — never payment details or Apple ID information.
In-App Purchases
Downsize offers Downsize Pro, a one-time (non-consumable) purchase that unlocks unlimited processing and removes ads. Purchases are handled entirely through Apple's App Store and StoreKit. Downsize does not process, collect, or store any payment information — it receives only whether you own the purchase.
Your Rights
- Access & Portability: your media stays in your own photo library; app data is visible within the app.
- Rectification: you control your library and settings directly.
- Erasure: delete the app to remove all local data; decline tracking to stop personalized-ad data collection.
- Objection & Restriction: you may object to analytics (legitimate interest) by disabling tracking at the OS level or contacting us. You may withdraw ad consent, or object to any ad technology partner's legitimate interest, at any time from Settings › Ad Privacy & Partners.
- Complaint: under UK GDPR you may complain to the Information Commissioner's Office (ICO); under EU GDPR, to your local supervisory authority.
For California residents (CCPA/CPRA): Downsize does not "sell" personal information for money. When you permit tracking, advertising identifiers may be "shared" for cross-context behavioral advertising as defined by the CCPA. The categories of recipients are Google and the third-party ad technology partners described in the Advertising section — advertising networks, exchanges and measurement providers. You can opt out at any time by declining App Tracking Transparency, which limits ads to non-personalized. Downsize does not knowingly collect sensitive personal information.
Data Breach Notification
Downsize stores no personal data on its own servers (it has none). Advertising and analytics data are handled by Google under its own security and breach-notification obligations. If a vulnerability in the app that could affect user data is discovered, we will promptly address it through an app update and, where required by law (UK GDPR Art. 33–34), notify the ICO.
Children's Privacy
Downsize is a general-audience utility and is not directed to children under 13. It does not knowingly collect personal information from children. Because ads are served, the app is not intended for a child audience; if you believe a child has used the app and you have concerns, contact us and we will assist. This applies under COPPA (United States) and UK/EU GDPR.
Governing Law
This policy is governed by the laws of England and Wales, without regard to conflict-of-law principles. For users in the European Economic Area, nothing here affects your mandatory rights under EU GDPR. For users in California, nothing here affects your rights under CCPA/CPRA.
Changes to This Policy
If this policy is updated, the new version will be published here with revised effective and update dates. Material changes affecting advertising or data collection will be reflected before they take effect.
Contact
Questions about this policy? Reach us at gilmarsquinelato@gmail.com