Privacy Policy

Updated September 5, 2026

Scope and contact

This notice covers the IconBundlr website and the IconBundler iOS app. The developer is identified on our App Store listing. Contact support@iconbundlr.com for privacy, access, correction, or deletion requests. Please do not send passwords, payment-card details, or sensitive information in icon descriptions.

The controls available depend on the version you use. App version 2.30.1 introduces a fresh optional analytics choice and disables session replay. Earlier installed versions may have different defaults and previously collected data; changing a setting does not recall data already received by a provider.

Data needed to provide the service

Optional analytics and diagnostics

Website: PostHog interaction analytics stays off until you choose “Allow analytics.” If allowed, the website sends a browser identifier, limited interaction events, coarse page type, language, and selected design options. It does not send your icon descriptions, images, email, full page URL, or URL query parameters through this analytics code. We disable profile processing and location enrichment in these events. PostHog still receives the network request; this is identified analytics, not anonymous data.

Use the Privacy settings control in the footer to reject or withdraw website analytics. Rejecting does not prevent ordinary site use or generation. Withdrawal stops future optional events from this page and retires its analytics identifier. It cannot recall requests already received. This website does not load Google Analytics, Vercel Insights, or session replay.

App version 2.30.1: Analytics is optional and requires a fresh choice. When enabled, PostHog receives usage events associated with an app identifier, while Sentry receives crash and error diagnostics. App version, operating environment, language, purchase/access status, and relevant interaction details can be included. Session replay remains off. Use the app’s Settings → Analytics control to withdraw. Core generation, purchases, and your library do not require optional analytics.

App feature configuration can be fetched separately from optional event collection so privacy choices do not change purchase availability or safety controls. A request to the configuration service still requires network communication.

Apple advertising attribution: With app analytics enabled, the app can request an Apple AdServices attribution token and send it to Apple to learn whether an installation followed an Apple advertising campaign. The returned attribution status and available campaign, ad-group, keyword, country or region, and conversion details can be shared with PostHog and RevenueCat to measure acquisition. This is separate from your icon description and is not enabled by purchasing export access. Withdrawing analytics consent stops future optional attribution collection.

Browser storage and retention

Clearing browser storage removes your local consent and recovery information; it does not itself delete server records or cancel an Apple subscription. Generated previews are not automatically saved to your device. Keep any image you need independently of the recovery receipt, using your browser’s image-save controls where available.

Service providers

We use these providers for the functions described above, rather than promising that data never leaves your device:

Providers may process information outside your country. Their notices describe their processing and safeguards; contacting a provider does not replace contacting us about data we control. We do not sell your personal information or use it for cross-company targeted advertising.

Deletion and your choices

Use the app’s account-deletion control or our deletion instructions. Account deletion requests cover associated service data and that account’s local app icons. Other accounts’ icons are kept. Some provider-side work may remain pending after authentication is deleted; the app reports this separately rather than claiming instant deletion everywhere. Purchase and minimal verification records may need separate retention.

To protect a deleted account, app analytics or diagnostic queues that cannot safely be separated by account may be discarded, including some diagnostics from another account on the device. This does not delete another account’s icons or purchases.

Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your information, restrict or object to processing, withdraw consent, or raise a concern with your privacy regulator. Contact us to exercise them. We may need proportionate verification to avoid giving your information to someone else. Withdrawing consent does not undo processing already performed.

Deleting the app or your account does not automatically cancel an Apple subscription. Manage subscriptions through your Apple account.

Children and changes to this notice

IconBundlr is not intended for children under 13, and we do not knowingly collect their personal information. Contact us if you believe a child has provided it. We update this notice when our practices change and show the revision date above.