Last updated: 23 July 2026
This policy explains what personal information DeckVault (“we”, “us”) collects when you use the DeckVault mobile app and backend service, why we collect it, who we share it with, and the choices you have. We’ve written it in plain language. If anything is unclear, contact us at support@deckvault.cc.
When you create an account and use the app, we collect and store:
To operate the service securely we process limited technical data, including your device’s IP address (used to apply rate limits and prevent abuse) and basic request logs. We use authentication tokens stored on your device to keep you signed in.
Card price figures shown in the app are estimates for informational purposes only and are not financial advice.
We keep third-party data sharing to a minimum. The processors below are engaged only when the operator of this instance has enabled the corresponding feature; when a feature is turned off, no data is sent to that processor.
| Processor | Purpose | Engaged when |
|---|---|---|
| Google AdMob | Serves banner and interstitial ads to free users; processes advertising identifiers, IP address, and ad-interaction data (see “Advertising and personalised ads” below). | Ads are enabled and you are not a subscriber. |
| RevenueCat | Manages DeckVault Pro subscriptions and purchase receipts. | Subscriptions are configured and you start or restore a purchase. |
| Stripe | Processes marketplace payments and seller payouts (buyer/seller and transaction data). | The marketplace is enabled with real payments and you buy, sell, or onboard as a seller. |
| Ximilar | Receives a card photo to identify candidate trading cards. | Recognition uploads and the Ximilar matcher are both enabled and you submit a scan. |
| Sentry | Receives error and diagnostic reports so we can fix crashes. | Error monitoring is configured for this instance. |
Each of these providers processes data under its own privacy policy. We also rely on card-data providers (such as Scryfall and pokemontcg.io) for the public card catalog; those requests do not include your personal information.
Free accounts see ads served by Google AdMob. Depending on your region and your choices, those ads are personalised or non-personalised:
For more on Google’s processing, see how Google uses information from apps that use its services and Google’s privacy policy.
We keep your account information and content for as long as your account exists. Uploaded scan images are retained so you can review your scan history. Avatar and scan images are removed when you delete your account; if object storage is unavailable, deletion reports an error so you can retry rather than claiming the files were removed. Security and request logs are kept for a limited period for abuse prevention and then discarded.
You can delete your account at any time from within the app (Settings → Delete account). Deletion is permanent: it removes your account and the content you own — collection items, decks, showcases, listings, orders, ratings, trades, price alerts, notifications, scan images, activity, and follow relationships, together with uploaded avatar and scan images. External payment providers may retain transaction or payout records under their own legal obligations.
DeckVault is not directed to children under the age required by your local law to consent to data processing, and we do not knowingly collect their personal information.
We may update this policy as the service evolves. When we make material changes we will update the “last updated” date above and, where appropriate, notify you in the app.
Questions about privacy? Email support@deckvault.cc.
DeckVault is an independent application and is not affiliated with, endorsed, sponsored, or approved by Wizards of the Coast LLC or by The Pokémon Company, Nintendo, Creatures Inc., or GAME FREAK inc. Magic: The Gathering and Pokémon, and their respective logos, card names, and imagery, are trademarks of their respective owners. Card data and imagery are provided by community-maintained databases (Scryfall for Magic: The Gathering; the Pokémon TCG API for Pokémon) and are used under those providers’ usage guidelines.