Privacy Policy
Privacy Policy
This Privacy Policy describes how Pocket handles information when you use our digital-drive service. We aim to be straightforward about what we collect and why.
Effective September 30, 2026
A. Who operates Pocket
Pocket (“we”, “our”, “us”) provides a digital-drive service for storing, sharing, connecting, and transferring files across your devices. If you have privacy questions, please visit our Support page.
B. Information you provide
When you use Pocket, we may process information you provide, including:
- Account and profile information, such as your name and email address, provided through our platform authentication provider.
- Files and folders you upload, including file names, sizes, types, and related metadata.
- Share and Connected Pocket information, such as link identifiers and access settings you choose.
- Feed posts and any public post links you publish, with the counters that show how often they were viewed or saved.
- Demo Drop configuration and the submissions you receive through an intake, including a submitter's name and email where a Drop asks for them.
- Vault items, and the devices you approve for Vault access.
- Support communications you send to us.
- Subscription and billing account references used to manage your plan.
Pocket does not directly store your full payment-card number. Payment information is handled by Stripe, our payment processor, or by Apple where a purchase is made through the App Store.
C. Automatic and technical information
We may process technical and usage information that is reasonably necessary to operate Pocket, such as:
- Authentication and session information.
- Device, browser, and request information where available.
- Feature and activity metrics (for example, scan, share, download, and view counts).
- Storage usage calculations, including how much of your capacity is in use.
- Transfer, connection, intake, and Vault access events.
- Security and abuse-prevention records, such as rate-limiting counters for access codes.
Activity metrics are used for analytics and abuse prevention. They do not determine your permanent storage entitlement.
D. How information is used
We use information to:
- Provide, maintain, and improve Pocket.
- Authenticate users and manage sessions.
- Store and deliver your files and folders.
- Enable sharing, the Feed and its public post links, Demo Drops, connecting, and Quick Transfer.
- Operate the Vault and device approvals, and the extra capacity funded by the Pocket Business add-on.
- Calculate storage usage and enforce plan limits.
- Process subscriptions and billing account references.
- Prevent abuse and respond to security incidents.
- Troubleshoot and provide support.
E. File content
You retain responsibility for the files you upload. Pocket processes and stores file content only as necessary to provide the service you request — for example, storing, transmitting, and displaying files so you and those you authorize can access them. We do not claim ownership of your files.
F. Sharing, Connected Pockets, and public links
You control when you generate Share or Receive links. Anyone who accesses a valid public share may view or interact with the scoped content while that Share remains active and has not expired.
A Connected Pocket is a live reference to another user's Pocket. It does not create a permanent copy on your account and consumes no recipient permanent storage. The source owner may revoke the underlying Share at any time, which stops future connected access.
When another user explicitly saves content to their own Pocket using “Save to My Pocket”, that creates an independent recipient-owned copy. The source owner cannot revoke a copy that has already been completed. The same applies when a reader pockets a post through a public post link.
A public post link opens one of your own Feed posts; it is readable by anyone holding the link until you turn it off. A Demo Drop link opens a public intake page, where the people you invite can submit content to your Pocket; a Drop can ask for a submitter's name and email so you know who sent what.
G. Vault
The Vault is a section of your Pocket that requires an explicit unlock — your Pocket password, or biometrics on a device you have approved. Biometric checks happen on your own device; Pocket stores only the approval record for that device, never a biometric sample. You can revoke an approved device at any time, and every request to reach your Vault is shown to you for your decision. Vault items count toward your storage like any other content in your Pocket.
H. Quick Transfer
Quick Transfer uses temporary transfer-session storage to move files between your devices. Temporary transfer objects are intended to expire and be cleaned up. Saving an item into your Pocket is what creates permanent owned storage — temporary transfer alone does not.
I. Pocket Business add-on
The Pocket Business add-on adds capacity to the paying account's own Pocket, so it needs no information about anyone else. We process the add-on's billing state and the storage usage of that Pocket, so the account can see how much of its capacity is in use.
J. Third-party service providers
Pocket relies on the following providers to help operate the service:
- Base44 — authentication, database, and backend/platform infrastructure.
- Cloudflare R2 — file and object storage.
- Stripe — subscription and payment processing.
- Apple — in-app purchase processing where Pocket is bought through the App Store on an Apple device.
These providers process information as necessary to deliver their respective services. We do not make specific geographic hosting claims unless confirmed by our current infrastructure.
K. Payments
Stripe processes payments and subscriptions on our behalf. Pocket may receive payment and subscription identifiers, status, plan, billing interval, and related transaction state. Where a purchase is made through the App Store, Apple processes it and Pocket receives the subscription status needed to open the entitlement. Pocket does not need and does not store your full card number.
L. Retention
We retain account and file data while your account and the service require it. Temporary transfer data has a shorter retention period and is intended to expire. Intake submissions are retained as part of your Pocket until you remove them. Security, operational, and audit records may be retained where reasonably necessary for abuse prevention and service integrity. Some billing records may remain with Stripe or Apple for financial or legal purposes. Account deletion removes your Pocket-owned data, subject to legitimate technical and legal retention requirements. We do not promise immediate erasure from all backups unless our architecture guarantees it.
M. Account deletion
If you delete your Pocket account:
- Your owned files and Pocket account data are removed, including Vault items.
- Your live share links and published post links stop working.
- Your Demo Drop links stop accepting submissions; submissions already delivered into your Pocket are removed with it.
- Connected Pocket references stop resolving.
- An active Pocket subscription is cancelled as part of deletion, and so is any Pocket Business add-on on the account.
- Independent copies that other users previously saved to their own Pocket remain theirs.
- Some payment or financial records may remain with Stripe or Apple.
N. Security
We use administrative, technical, and organizational safeguards designed to protect information. No system can be guaranteed to be perfectly secure, and we do not make absolute security claims. If you believe there is a security issue, please contact us through the Support page.
O. Your choices and access
You can:
- Access and manage your files and folders.
- Delete files you no longer need.
- Revoke shares you have created, and turn off published post links.
- Close a Demo Drop so it stops accepting submissions.
- Remove Connected Pocket shortcuts from your account.
- Approve or revoke devices that may open your Vault.
- Delete your Pocket account.
- Contact us regarding privacy questions.
P. Children and age eligibility
Pocket is not specifically directed to children. Users must be capable of agreeing to these Terms and providing valid consent for the collection and use of their information under applicable law. Where parental or guardian consent is required by applicable law, that consent must be obtained.
Q. Policy updates and contact
This Privacy Policy may change over time. Material updates will be communicated appropriately. The effective date above reflects the most recent version. Privacy contact information will be made available through Pocket's Support page.
