Last updated: August 26, 2026
Privacy Policy
Floor Plan Studio is designed to keep spatial project content on the iPhone. This policy explains the limited circumstances in which technical or support information may leave the device.
Controller and contact
The data controller is Denis Berton, an independent developer based in Italy (Sviluppatore indipendente con sede in Italia).
Email: infolemieapp@gmail.com. Use this address to exercise privacy rights, object to processing, withdraw consent where consent is the legal basis, or request information about accessible records.
Room scans and project content
Room, camera, LiDAR, photograph, plan, model, measurement, note and optional project-location content is processed and stored locally on the iPhone. Floor Plan Studio does not require an account and does not operate a service that uploads or remotely processes this project content.
Project content leaves the app only when the user explicitly exports, shares or stores a file through iOS, a file provider, device backup or another chosen destination. Those copies are governed by the selected destination and remain the user's responsibility.
Optional privacy choices in the app
Firebase Analytics and Firebase Crashlytics are disabled by default. A build that offers these services must present two separate, optional controls in the app's privacy settings: one consent for Analytics and one consent for Crashlytics. Neither service is enabled merely because the app is installed or opened.
Refusing either or both choices does not block scanning, viewing, editing, import, export or any other app feature. Each choice is recorded only in the app's local preferences so it can be applied on later launches; the choice itself is not sent as an analytics event. If the installed version does not show these privacy controls, Firebase collection is unavailable and remains disabled.
Either consent can be changed or withdrawn at any time in Settings → Privacy & Diagnostics. Withdrawal applies to future collection and does not make earlier lawful processing unlawful.
Firebase Analytics
Only after the user gives the separate Analytics consent, an app release configured with Firebase may use Google Analytics for Firebase to understand feature use and improve the product. Analytics can process a pseudonymous app-instance identifier, session and app-lifecycle information, app version, operating system and device information, language, time zone and approximate geography derived from a masked IP address. It can also process automatically collected events such as first launch, app open, app update, session start and user engagement.
Floor Plan Studio additionally sends a restricted set of events for navigation destinations, named controls, capture and processing categories, coarse library-count ranges, import/export outcomes and presentation of battery or thermal advisories.
Automatic screen reporting and IDFV collection are disabled. The app uses the Firebase Analytics Core package without advertising-identifier capability and does not configure IDFA, Google Ads, Google Signals, user IDs, advertising personalization or cross-app tracking.
App-defined analytics events do not include scans, photographs, plans, measurements, names, notes, addresses, precise location, exact library counts, exported files, raw errors or proprietary processing details.
Firebase Crashlytics
Only after the user gives the separate Crashlytics consent, an app release configured with Firebase may use Firebase Crashlytics to improve reliability. Crashlytics can process a Crashlytics installation UUID, Firebase installation ID, session ID, crash timestamp, stack traces, exception or signal information, relevant application state, loaded binary information, app bundle ID and version, device model, CPU architecture, memory and disk information, operating-system information, jailbreak status and sanitized nonfatal diagnostic codes. Analytics breadcrumbs are attached only when both consents are active.
Floor Plan Studio does not deliberately attach project content, raw user files, free-form notes, addresses, precise location or measurements to crash reports.
Firebase provider, purposes and safeguards
The relevant provider for users in the European Economic Area is Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland. Google generally acts as a processor for Firebase customer data; Google Analytics is a separate Google service governed by its own terms. The controller uses these services only for product analytics, reliability, website delivery, security and abuse prevention.
Firebase services operate on global infrastructure, so data may be processed outside Italy or the European Economic Area. Google describes applicable safeguards, including contractual data-processing terms, Standard Contractual Clauses where required and its Data Privacy Framework participation. See Privacy and Security in Firebase, the Firebase Data Processing and Security Terms and the Google Privacy Policy.
Before enabling Analytics or Crashlytics in a production release, the controller's release procedure requires verification and documentation of the applicable Google contract or data-processing terms, roles, current transfer mechanism and safeguards. If that review is incomplete, both collections remain disabled.
Firebase retention
Google Analytics user-level and event-level retention is governed by the Analytics property setting, which Google currently permits to be set to 2 or 14 months for a standard property. This setting does not control the lifetime of standard aggregated reports. See Google Analytics data retention.
Google states that Crashlytics keeps crash traces and associated installation identifiers for 90 days before beginning removal from live and backup systems. Firebase Hosting retains incoming-request IP addresses for a few months. These periods are described in Firebase data-processing information.
Firebase services not used
Floor Plan Studio does not use Firebase Authentication, Firestore, Realtime Database, Cloud Storage, Cloud Messaging, Performance Monitoring, Remote Config, App Check, In-App Messaging or Firebase advertising products. Firebase does not receive room scans or project files through any of those services.
Purposes and legal bases
- Local project content: provide the app features requested by the user; the content remains under the user's control on the device and is not received by the controller.
- Firebase Analytics: product-use analysis and feature improvement, based on the user's specific consent under Article 6(1)(a) GDPR.
- Firebase Crashlytics: crash diagnosis and reliability improvement, based on a separate specific consent under Article 6(1)(a) GDPR.
- Website technical logs: deliver and secure the site, prevent abuse and diagnose availability problems, based on the controller's legitimate interests under Article 6(1)(f) GDPR.
- Support and privacy email: answer the user's request and keep the correspondence needed to handle it, based on steps requested by the user, performance of a contract where applicable, and the controller's legitimate interest in providing support.
- Legal records: comply with applicable obligations and establish, exercise or defend legal claims where necessary.
Website and support email
This static website does not use advertising trackers, analytics scripts, user accounts or contact forms. Firebase Hosting and network providers may process technical connection information, such as IP address, request time, requested resource and browser information, to deliver and secure the site.
The app's Send feedback action opens the user's mail app; it does not silently transmit a message. If a user sends that email, the email address and anything included in the message are received and processed to answer the request. Users must not include scans, plans, photographs, addresses, precise locations, access codes or other sensitive information.
Other recipients
Apple and user-selected file providers may process information when the user uses their platform, backup, export or sharing services. Email and network providers process communications and connection data as necessary to deliver those services. Each provider applies its own terms and security measures.
Retention and deletion
Local project content remains on the device until the user deletes it, removes the app or the device removes data according to iOS behavior. Separately exported or backed-up copies must be deleted at their destination.
The production Analytics property must use the shortest available standard user-level and event-level retention period, currently 2 months; standard aggregated reports may be retained longer by Google. Google states that Crashlytics keeps crash traces and associated installation identifiers for 90 days before beginning removal from live and backup systems. Firebase Hosting retains incoming-request IP addresses for a few months.
Support correspondence is normally deleted within 24 months after the final substantive reply, unless a shorter period is requested and feasible or longer retention is required by law or needed for a dispute. Requests relating to accessible support, analytics or diagnostic records can be sent to the contact address above. Because the app has no account and Firebase records are pseudonymous, some records may not be reasonably attributable to the requester; aggregated records may not be separable.
Choices, objection and withdrawal
Camera and optional location permissions can be withdrawn at any time in iOS Settings. Exported files can be deleted at their selected destinations. Analytics and Crashlytics consent can be withdrawn independently in Settings → Privacy & Diagnostics; privacy requests can also be sent to infolemieapp@gmail.com.
On Analytics withdrawal, the app first disables Analytics collection and resets locally held Analytics data and its app-instance identifier. On Crashlytics withdrawal, it disables automatic crash collection, deletes any unsent reports held by the SDK and requests deletion of the local Firebase installation identifier. New collection remains off unless the user later opts in again. Reports already transmitted follow the retention and deletion limits described above; the app cannot recall a report already received by Google.
Floor Plan Studio does not use data for third-party advertising and does not sell personal information.
Release and accountability controls
Before distributing any build that can enable Analytics or Crashlytics, the controller must verify the two default-off consent controls and withdrawal procedure, review the Google data-processing contract and international-transfer safeguards, and update the App Privacy answers in App Store Connect to match the exact released binary. A release cannot treat Analytics or Crashlytics as active while any of these checks is incomplete.
This opt-in approach follows the precautionary standard in the Italian Garante's guidance on cookies and other tracking tools. The website itself uses no optional analytics or tracking script.
User rights
Subject to the conditions and limits of applicable law, users may request access to personal data, rectification, erasure, restriction of processing and data portability; object to processing based on legitimate interests; withdraw consent at any time; and obtain information about recipients and international transfers.
Requests can be sent to infolemieapp@gmail.com. The controller may request information reasonably necessary to verify identity and locate the relevant record. Users also have the right to lodge a complaint with the Garante per la protezione dei dati personali or another competent supervisory authority.
Children and sensitive spaces
Floor Plan Studio is not directed specifically to children. A person capturing a space is responsible for having authority to do so, obtaining any required consent and avoiding people, documents, screens or other sensitive material.
Changes
This policy may be updated when app features, service providers or legal requirements change. The current version and update date will remain available at this URL.