Effective 11 September 2026
SwipeSafe, made by CJ Designs, lets an owner hand their phone to someone else — a child, a friend, anyone — to swipe through a specific, pre-chosen set of photos and videos, without seeing anything else on the phone. There is no account, no sign-in, and no server belonging to us that ever receives your media.
The short version: your photos and videos never leave your device.
SwipeSafe has no backend server, no login, and no cloud sync anywhere in its design. The only network traffic the app's own code ever initiates is through RevenueCat, used solely to validate an optional one-time purchase — see "The one third party involved" below.
Nothing you select is ever uploaded, transmitted, or associated with an account, because there is no account to associate it with.
When you choose photos or videos to include in a viewing session, SwipeSafe copies them into a private, sandboxed temporary storage area on your own device — solely so the app can display them during that session. Each copy is renamed to a random, opaque ID; the original filename is never kept.
That temporary copy:
To guarantee that only the owner can end a viewing session, SwipeSafe asks you to set a PIN (with optional biometric unlock — Face ID, Touch ID, or Android's fingerprint/face unlock) during setup. Your PIN is stored using your device's own secure, encrypted storage (Keychain on iOS, Keystore-backed secure storage on Android) — never in plain text, never transmitted, and never seen by us.
SwipeSafe restricts what can be viewed inside the app while a session is active, and hides session content from the app switcher / Recents preview on both platforms. The exact protections differ by platform:
| Android | iPhone / iPad | |
|---|---|---|
| Screenshots | Blocked outright by the OS | Not blocked as an action, but the screen shows blank/black for the duration of the capture, so the resulting screenshot is blank |
| Screen recording | Not formally claimed either way | Blocked the same way as screenshots — the screen blanks automatically for the duration |
| App switcher / Recents preview | Hidden | Blurred to maximum intensity |
This does not restrict what your phone's operating system itself allows — system gestures, OS-level tooling this app has no visibility into, or switching to another app (switching away is always possible; what's protected is only what remains visible while switched away). For stronger device-level restriction, SwipeSafe recommends iOS Guided Access or Android app pinning, and says so directly inside the app's own Help screen.
SwipeSafe offers an optional, one-time, non-consumable "Pro" purchase (a single unlock, not a subscription). To validate that purchase against Apple's or Google's own billing systems, SwipeSafe uses RevenueCat (revenuecat.com), a third-party purchase-validation service. This is the only third-party service SwipeSafe uses, and it is used only to confirm that a purchase you made through the App Store or Play Store is genuine — not for advertising, analytics, or tracking. RevenueCat receives information typical of any in-app-purchase validation flow (e.g. an anonymous purchaser identifier and purchase receipt data via Apple's/Google's own billing APIs) — see RevenueCat's own privacy policy at revenuecat.com/privacy for details of what they process.
If you never make the Pro purchase, RevenueCat is never contacted with any purchase data beyond the initial no-op configuration check.
SwipeSafe asks to use your device's own photo/video picker so you can choose what to include in a session. The exact permission-purpose text shown by the operating system is:
"Choose photos and videos to include in this viewing session."
SwipeSafe never requests broad or full access to your entire photo library — only the operating system's own picker interface ever sees your full library; SwipeSafe's own code only ever receives the specific items you selected.
SwipeSafe has no accounts; there is nothing to delete beyond uninstalling the app. Uninstalling removes any temporary session data and PIN/biometric configuration still stored on your device.
SwipeSafe is designed to be used by an adult owner to safely hand a device to a child or other guest for a controlled viewing session. SwipeSafe does not knowingly collect any personal information from anyone, including children, because it does not collect personal information from anyone at all.
If this policy changes, the updated version will be posted at this address with a new effective date.
CJ Designs — support@cjdesigns.app