Rarium — Privacy Policy
Rarium ("the app", "we") is a collectibles cataloging application. This policy explains what data we collect, why, and what your choices are. It applies to the Android app and the web app at the same address.
Data we collect
- Account data — when you sign in with Google we receive your name, email address and profile picture. We use them to create and identify your account. We never see your Google password.
- Your catalog — the collections, items and photos you add. Photos are stored so the app can show them back to you; they are private to your account unless you explicitly make a collection public. Public collections show item photos, names and basic details on a shareable web page, attributed to your Google account name and profile picture — estimated values, your notes and your email are never shown, and you can make a collection private again at any time.
- Usage records — a log of AI actions you run (photo scans, shelf scans, market valuations) with timestamps, used for fair-use limits, plan quotas and support.
Anonymized analytics
To improve identification accuracy, valuation coverage and the app itself, we look at aggregate, anonymized statistics across all cataloged items — for example, how often the AI reports high vs. low confidence, which item lines are most common, and how often a valuation finds usable price data. These aggregates contain no personal information: they are not tied to your name, email or account, and they never include your photos. We use them only to tune the AI and prioritize development.
How AI features work
- Photos you submit for identification are sent to Anthropic (Claude API) to recognize the item. Anthropic's API does not use this data to train models.
- When you identify a figure as loose (out of its packaging), that first photo is also sent to Hugging Face, which turns it into a numerical fingerprint so we can compare it against our own reference database of known figures and offer Claude a shortlist of likely matches. It runs on a dedicated endpoint reserved for us and is encrypted in transit. Hugging Face does not store the content of the request or the response — only system logs, which it keeps for 30 days — and is SOC 2 Type 2 certified. This happens only for that one action: valuations, batch scans and manually entered items never send a photo there.
- Market valuations research current public asking prices and, where available, recent sold prices. To do this, the item's name, line, variant and condition (never your identity or photos) are sent to Anthropic, which performs a web search on our behalf and returns price information with its sources.
- To research prices we also query third-party marketplace and price-guide services — eBay, PriceCharting and SerpAPI. They receive only the item’s descriptive text: its name, line, variant, condition and, where present, its barcode number. They never receive your photos, your identity, your notes or your estimated values.
What we do NOT do
- We do not sell your data or share it with advertisers.
- We do not use your photos or catalog to train AI models.
- We do not collect your precise location, contacts, or anything outside the app.
Storage & security
Data is stored on Cloudflare's infrastructure (D1 database and R2 object storage). Transport is encrypted (HTTPS). Sessions are limited-lifetime tokens.
Data retention & deletion
Your data is kept while your account exists. You can delete your account at any time in the app (Profile → Delete account) or via this page. Deletion is immediate and permanent: your account, collections, items, photos, usage history and sessions are all removed and cannot be recovered.
Two things are deliberately kept.
First, to stop the one-time free allowance being reset by deleting and recreating an account, we store a one-way cryptographic hash of your Google account identifier. It cannot be reversed to identify you, is never linked to your name, email or catalog, and is used for nothing except recognising that this identity has already used its free allowance. We keep it for as long as the free tier exists, on the legal basis of our legitimate interest in preventing abuse. This single technical hash cannot be removed on request, as that would defeat its only purpose.
Second, when you have bought credits we keep the purchase token Google Play issued for that transaction. Without it the same purchase could be redeemed again by a new account, so it is what stops a single payment being claimed repeatedly. The token is an opaque string issued by Google; when you delete your account we remove the order number and the link to you, and keep nothing but the token itself. It is never used to identify you and, like the hash above, it cannot be removed on request without defeating its purpose.
Payments
Paid plans on Android are processed by Google Play Billing. We never receive your card details; we only receive purchase confirmations needed to activate your plan.
Children
The app is not directed at children under 13 and we do not knowingly collect their data.
Contact
Questions or requests: [email protected]