Unmarked / privacy policy
Share the copy you mean.
Unmarked prepares a clean copy of photos and videos on your iPhone or iPad before sharing. This page explains what happens to selected media, metadata, purchases, support messages, and the Goodplain website.
Unmarked receives only the media you choose through Photos, Files, Camera, or the share sheet. It prepares a new copy locally; the original stays unchanged and selected media is not uploaded to an Unmarked server.
Preparation
On deviceSelected photos and videos stay in the local workflow until you choose a destination.
Original
Left unchangedUnmarked creates a prepared copy rather than silently replacing your source.
Website
Aggregate onlyGoodplain landing pages use privacy-preserving aggregate web measurement; policy pages do not load the beacon.
Unmarked processes your media on your device
Unmarked is designed to inspect and prepare photos, Live Photos, and supported videos on your iPhone or iPad. Your selected media, filenames, exact metadata values, and prepared copies are not uploaded to Unmarked servers. Unmarked has no advertising, behavioral analytics, or third-party crash-reporting service inside the app.
Photos, camera, files, and the system share sheet
Unmarked accesses recent photos and videos only after you allow Photos access, so you can choose what to share. Camera access is requested only when you choose Camera. Photo-library add access is used only when you choose Save to Photos. Files access is used only for the file you pick. The Unmarked share extension receives only the items you share into it from another app.
Media leaves Unmarked only when you explicitly share or save a prepared copy to a destination you choose, including Messages, Mail, Photos, Files, or another app.
Information stored on your device
Unmarked does not keep a durable activity history. Exact metadata values stay in memory while you inspect them and are not written to history, analytics, diagnostics, or receipts. Interrupted work and share-extension recovery copies may remain in Unmarked’s private container or App Group for no more than 24 hours, then they are purged. You can discard in-progress work in the app; uninstalling Unmarked removes its local app container.
Subscriptions and purchase verification
Subscriptions are processed by Apple. Unmarked uses RevenueCat to verify purchase status and restore access. For that purpose, Apple and RevenueCat may process purchase history, Apple receipt information, an anonymous RevenueCat app-user identifier, device type, operating system, app version, and last-seen time. Unmarked does not send your photos, videos, filenames, or metadata values to RevenueCat.
See Apple’s Privacy Policy and RevenueCat’s Privacy Policy for their handling of information.
Support and diagnostic exports
If you contact us from Unmarked Settings or at supportunmarkedgoodplain.app, we receive the information you choose to include in that message. Diagnostic exports created inside Unmarked are value-free by default, but you should review an export before attaching it. Please do not send original photos or other sensitive files unless they are necessary for your request.
Website measurement and hosting
Goodplain product landing pages use Cloudflare Web Analytics for aggregate page-view and performance measurements. The website does not create a Goodplain account, person profile, session replay, or identity bridge to the app from this measurement. The privacy and support pages do not embed the analytics beacon. Cloudflare and the hosting provider may process ordinary request, security, and performance data needed to deliver and protect the site.
Download links may include App Store campaign parameters so Goodplain can understand aggregate acquisition results in App Store Connect. Apple handles that attribution under its own policies. Unmarked does not use your app activity for cross-app or cross-site behavioral tracking.
Your choices and policy changes
You control which media is selected, which protection is applied, and where a prepared copy is delivered. Purchase records are managed under Apple’s and RevenueCat’s respective policies. For privacy questions or requests, contact [email protected].
If this policy changes materially, the effective date above will be updated before the changed build is released.