Scratch is built for sharing a photo with a person you choose—not for building an advertising profile. This policy explains what the private beta handles and why.
1. Who we are
Scratch is operated by Middleout (“Scratch,” “we,” “us,” or “our”). This policy covers the Scratch iOS app, the website at scratch.middleout.dev, and related beta services.
Scratch is currently a private beta. Features and data practices may evolve before a broad public release. We will update this page and its effective date when they do.
2. Information we collect
Account and profile information
When account features are enabled, we may receive an identifier from Sign in with Apple, along with a name or relay email if you choose to share it. We also store the display name, handle, and profile settings you create in Scratch.
Photos and message information
We process the photo you choose, an optional caption, sender and recipient identifiers, delivery state, creation and expiration times, and whether and when the recipient completed the reveal. We do not send incremental scratch coordinates or progress to the server.
Connections and safety information
We store connection requests and statuses, blocks, and reports you submit. A report may include a reason, optional details, and a reference to a related message.
Device and operational information
We may process app version, build number, device installation identifier, notification preference, push notification token, integrity signals from Apple App Attest or DeviceCheck, service events, errors, and security or rate-limit records.
Website and support information
Our hosting providers may process basic request information such as IP address, browser type, requested page, and timestamp to deliver and secure this website. If you contact us, we receive the information in your message.
3. How we use information
- Provide accounts, connections, photo delivery, scratch reveals, and receipts.
- Authenticate requests and protect the service from spam, fraud, and abuse.
- Deliver generic push notifications you authorize.
- Investigate reports, enforce our Terms, and keep people safe.
- Maintain, debug, measure, and improve reliability and performance.
- Comply with law and protect our rights and the rights of others.
We do not sell personal information, run third-party advertising in Scratch, or use your photos for advertising.
4. How photos are handled
Scratch requests access through Apple’s photo picker and receives only the item you select. Before upload, the app corrects orientation, resizes the image, re-encodes it, and removes common source metadata such as EXIF and GPS fields. We store the prepared copy, not the untouched photo-library original.
Beta photos are stored in authenticated cloud storage without public download links. They are encrypted in transit and at rest by our providers. Scratch is not currently end-to-end encrypted, which means authorized service administrators may technically access stored content when necessary to operate, secure, or moderate the service.
5. When information is shared
- With the person you choose. Recipients can access photos sent to them, and senders can see the completed reveal receipt.
- With service providers. We use Apple services and Google Firebase products for authentication, databases, cloud storage, server functions, app integrity, and push delivery. Firebase services currently operate in the United States. Firebase Hosting delivers this website.
- For safety and legal reasons. We may disclose information when reasonably necessary to respond to legal process, protect people, investigate abuse, or defend rights.
- In a business transition. Information may be transferred as part of a merger, financing, acquisition, or sale, subject to appropriate safeguards.
6. Retention and deletion
The beta is designed around short-lived media. Failed or unfinished uploads are generally removed after 24 hours. Sealed messages generally expire after 90 days, and revealed messages generally expire 30 days after reveal. Cleanup timing may vary slightly while scheduled deletion jobs run.
Deleting a message removes it from your view. The underlying message and media are removed when both participants delete it or its retention period expires. Safety reports may be retained longer when needed to investigate abuse, enforce our Terms, or satisfy legal obligations.
When you delete your account, access is disabled and deletion of account data, relationships, devices, messages, and stored media is queued. Limited records may remain where required for security, legal compliance, dispute resolution, or backup integrity.
7. Your choices
You can decline photo access, disable notifications in iOS, block another user, delete messages, and request account deletion in the app when those controls are available. You may also contact us to request access, correction, or deletion of your information. We may need to verify your identity before fulfilling a request.
8. Children
Scratch is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided information, contact us so we can investigate and remove it.
9. Security
We use access controls, authenticated storage, app-integrity checks, transport encryption, provider-managed encryption at rest, rate limits, and data minimization. No system is perfectly secure, and the beta should not be used for content whose disclosure could cause serious harm.
10. Changes to this policy
We may update this policy as Scratch changes. We will post the revised policy here and update the effective date. If a change is material, we will provide additional notice when reasonably possible.
11. Contact
Questions or privacy requests can be sent to jackson.tomlinson@gmail.com.