Peachshot
Privacy policy
Updated 3 October 2026
This policy explains how Beundra AB, operating as Blue Rose Apps (“we”), handles information in Peachshot on iOS and Android and on these Peachshot website pages. Beundra AB is the data controller. Email support@blueroseapps.com with privacy questions or requests.
On-device information
Photobooth strips and grids are created on your device. Local photo choices, exported images and preferences remain on the device unless you choose to upload or share them. Peachshot does not upload your entire camera roll. Your device permissions control camera and photo access.
Account and sign-in
AI editing, purchases and the private cloud gallery use a Peachshot account. Apple or Google verifies sign-in. We store sign-in provider identifiers, your account identifier, display name, sessions and account status. Providers process additional information under their own policies. We do not receive your sign-in password. For Apple sign-in, an encrypted authorization token can be retained to revoke the grant when you delete the account.
Selected photos and AI
When you request an AI edit, the selected image and effect instructions are sent to our service and through OpenRouter to Google's Gemini image-model service. We store the original upload, generated image, chosen effect, processing status and job information to deliver the edit, manage credits and maintain your private gallery. These records are linked to your account.
AI providers receive the selected image and instructions, not your entire library or payment card. Photos can contain information about other people. Submit only images you have permission to process and avoid sensitive documents or images you do not want an external provider to receive.
Peachshot does not train its own model on your photos. Provider processing, safety review and retention are separate from our storage; we do not promise zero retention across all providers. Google documents Gemini API retention of prompts, contextual information and outputs for 55 days for abuse monitoring. The applicable Google endpoint and terms may differ. Deleting a Peachshot photo does not necessarily erase independent provider records.
Purchases and credits
Apple or Google processes payments. RevenueCat helps verify, restore and manage purchases and subscriptions. It processes the Peachshot user identifier, transaction/receipt or purchase-token information, products and entitlements, and technical app/device information needed for its service. We retain verified purchase, membership, daily-credit and credit-ledger records. We do not receive payment-card details.
Technical information and support
Infrastructure and service providers process network addresses, request times, authentication events, errors, app/device details and service usage to operate and protect the service. Effect and credit records are functional account records. Peachshot has no advertising integration or public photo feed.
If you email us, we receive your address and what you send. Include only what is needed. These website pages use Vercel hosting and Vercel Web Analytics for aggregate visits and browser/device information. Website analytics are separate from the app.
Purposes and legal bases
We process accounts, images, jobs and purchases to provide requested features and perform our contract with you. We rely on consent where required for selected-photo sharing or permissions; legitimate interests to protect the service, prevent fraud, resolve billing errors and answer support; and legal obligations for required records. You may decline AI processing and use the local photobooth. Withdrawing consent stops future consent-based processing without undoing earlier lawful processing.
Providers and international processing
Cloudflare provides the API, database, private photo storage and image processing. OpenRouter routes AI requests to Google. RevenueCat and Apple or Google support purchases; Apple or Google supports sign-in. Vercel hosts these website pages. Information can be processed outside Sweden and the European Economic Area, including the United States, under provider arrangements and applicable transfer safeguards. We do not sell personal information. Disclosure can also occur when required by law or necessary to protect rights and investigate abuse.
Provider policies: OpenRouter, OpenRouter provider logging, Gemini abuse monitoring, Google, Cloudflare, RevenueCat, Apple and Vercel.
Retention and deletion
Original uploads expire after 24 hours and are removed by the service's cleanup process. Active processing and technical cleanup can delay physical removal. Generated master and adjusted images remain in your private gallery until edit or account deletion. Private access links expire after approximately 15 minutes; link expiry does not delete the image.
Deleting an edit removes generated and adjusted images from active storage. Its original upload follows the original-upload expiry. Account deletion removes sign-in identities and sessions, replaces the stored display name and deletes account photo objects from active storage. Residual account, transaction, credit and job metadata can remain for purchase integrity, fraud prevention, disputes or legal requirements. They are retained for those purposes and as long as necessary, considering accounting requirements, dispute periods and security needs. Provider logs and backups follow their own retention and can remain after active-service deletion.
Support correspondence remains as needed to resolve the request and related disputes. Contact us to request deletion or review of retained information; we will explain records we cannot erase and why. Exported, shared or device-backed-up copies are outside cloud deletion. Deleting the app/account does not cancel a subscription.
Security
Application requests use encrypted transport. Cloud photos are private and use time-limited signed links. Authentication and purchase verification protect account features. No system guarantees absolute security.
Your choices and rights
Delete cloud edits in Your photos and your account in Settings, or request deletion using our account-deletion page. Manage permissions on your device and subscriptions through the store. Depending on where you live, you may request access, correction, erasure, restriction, objection or portability, or withdraw consent. We may verify ownership and will respond within the time required by applicable law. You may complain to Sweden's Authority for Privacy Protection (IMY) or your local supervisory authority.
Age and updates
The AI service is intended for adults aged 18 or older and is not directed to children. Contact us if a child has provided information so we can investigate and remove it where appropriate. Policy updates appear here with their date. We will notify users or request new consent where required.