Skip to content
Legal

Privacy Policy

How EchoFrame collects, uses and protects your information across the mobile app and this website. Written in plain language, because a privacy policy you can't read protects no one.

Effective
30 June 2026
Operator
Gioel Antoni (Italy)
Applies to
EchoFrame app & website
On this page

This Privacy Policy explains how EchoFrame ("we", "us", "our") handles personal data when you use the EchoFrame mobile application (the "App") and the website at echoframe.help (the "Website", together the "Service").

EchoFrame is a location-based photo app: you capture a photo with the in-app camera, it is anchored to the exact spot where you took it, and other people can discover it only by physically going there. Location is therefore central to how the Service works — so we treat it with particular care, and this policy describes exactly how it is used.

The short version

We collect the minimum needed to run EchoFrame: your account details, the echoes you create (photo + the location you anchored it to), and the social activity you choose to have. We do not sell your data, we do not show ads, we do not use AI to profile you, and we never sell or share your location with advertisers. You can delete your account and all its data at any time from inside the App.

1. Who we are (Data Controller)

The data controller responsible for your personal data is Gioel Antoni, an individual sole proprietor established in Italy.

  • Operator: Gioel Antoni
  • Based in: Capalbio (GR), Italy — the full postal address is available to data subjects and authorities on request
  • Email (privacy & support): support@echoframe.help

Because we are established in Italy, your data is protected under the EU General Data Protection Regulation (GDPR) and Italian data protection law. You can read more about how we meet these obligations in our Data & Compliance document.

2. Scope of this policy

This policy applies to both surfaces of the Service:

  • The App — the EchoFrame mobile application for iOS and Android, where you create an account, capture and discover echoes, and interact with other people.
  • The Website — our marketing and early-access site, where you can join the waitlist and read these documents.

Where a practice applies to only one surface, we say so. Your use of the Service is also governed by our Terms of Use.

3. Information we collect

Grouped by where it comes from and why it exists.

a) Account information (App)

  • Email address — to create and secure your account, sign you in, and send essential account emails (verification, password reset).
  • Password — stored only as a salted one-way hash by our authentication provider; we never see or store it in plain text.
  • Username — your public display name on echoes, comments and messages.
  • Profile photo (avatar) — optional; only if you choose to set one.
  • Account metadata — a unique account identifier and your sign-up date.

b) Content you create (App)

  • Echoes — photos you capture with the in-app camera, each stored together with the precise GPS coordinates of where you took it, the time of capture, and the visibility you chose (public or private circle).
  • Comments and ratings — the comment text and the up/down ratings you leave on echoes.
  • Direct messages — the content of messages you send to and receive from other users.
  • Social graph — friend (circle) requests you send or accept, and users you block.

Echoes can only be taken with the in-app camera — there are no gallery uploads. The camera does not embed GPS/EXIF location tags in the photo; the location stored with an echo is the live GPS reading at the moment of capture, anchored deliberately, not silently lifted from a photo's metadata.

c) Location data (App)

Location is described in detail in Section 4. In short, we use your device location to anchor the echoes you create and to discover echoes near you.

d) Device & technical data (App)

  • On-device settings & preferences — your default visibility, your map and capture preferences, and the list of echoes you've already discovered. These are stored locally on your device (not on our servers) so the App works the way you set it.
  • Notification preferences — your master notification switch, your quiet-hours window, the per-type toggles (comments, ratings, friends' echoes) and your device's UTC offset are stored on our servers, with that device's push token. They have to be. A notification that arrives while the App is closed is drawn by the operating system, so your phone never gets the chance to consult its own settings, and the offset is what makes "quiet until 07:00" mean 07:00 where you actually are. Changing a toggle in the App updates the copy we hold.
  • Session tokens — kept in your device's secure storage to keep you signed in.
  • We do not collect advertising identifiers, your contacts, your microphone, your browsing history, or a background log of your movements.

e) Website & waitlist data

  • Email address (required) — to add you to the early-access waitlist and send you a confirmation and launch updates.
  • City and country (optional) — if you provide them, to help us prioritise launch in areas with the most interest.
  • Aggregate, privacy-friendly usage analytics — see Section 10.

4. How we use location data

The most sensitive data we handle — so here is exactly what happens.

EchoFrame requests location access only after you grant the relevant permission on your device. We use it for three purposes, and nothing else:

  1. Anchoring echoes you create. When you capture an echo, your precise GPS coordinates at that moment are stored with the photo so the echo can live at that exact spot. This location is intrinsic to the content you chose to publish.
  2. Discovering echoes near you. While you use the map, your current coordinates are sent to our backend to look up echoes within range. We use these coordinates to answer the query — we do not keep a running history of where you have been.
  3. Proximity alerts (only if you enable them). If you turn on background alerts, the App asks your device's operating system to watch a small set of geofences around nearby echoes, so it can notify you when you physically approach one. The proximity matching is performed by your device; we are not continuously tracking you in the background.
  4. Echoes you unlock. When you walk to an echo and reveal it, we record that you revealed it and when. This is what keeps a memory you earned available to you afterwards, and it lets us tell whether a reported photo has actually been seen by many people or only a few. It is visible only to you, and it is deleted with your account.

Location is never sold or shared for advertising

We do not sell, rent or share your location data with advertisers, data brokers or any third party for marketing. The only parties that ever receive location-derived data are the infrastructure providers needed to draw the map, deliver a proximity notification and run the Service, described in Section 7.

The visibility you set on each echo controls who can discover it: public echoes can be found by anyone who comes within range; private circle echoes are limited within the App to the circle you choose. You can change an echo's fate by deleting it at any time.

5. How and why we use your data (legal bases)

Under the GDPR we must have a lawful basis for each use. Here they are.

PurposeData usedLegal basis (GDPR Art. 6)
Create and operate your account; sign you inEmail, password hash, usernameContract — to provide the Service you requested
Store and display the echoes, comments, ratings and messages you createContent, location of echoes, account IDContract
Anchor echoes and find echoes near youPrecise locationConsent (device location permission)
Send proximity ('echo nearby') notificationsBackground location, notification permissionConsent (you enable background alerts)
Send essential account emails (verification, password reset)EmailContract
Keep the Service secure and prevent abuse, spam and harmful contentAccount ID, content, blocks/reportsLegitimate interests — protecting users and the Service
Add you to the waitlist and send early-access updates (Website)Email, optional city/countryConsent — you submit the form; withdraw any time via unsubscribe
Understand aggregate Website traffic to improve itCookieless, aggregated analyticsLegitimate interests — running a usable website

6. Device permissions (App)

Every permission, what it's for, and how to turn it off.

PermissionWhy we askRequired?
CameraTo capture echoes and an optional profile photo. Echoes can only be created in-app.Needed to create echoes
Location — while using the appTo anchor echoes and discover echoes near you on the map.Needed for core features
Location — background / 'always'Only if you enable proximity alerts, so the App can notify you near an echo.Optional
NotificationsTo send 'echo nearby', message, comment and friend-request alerts.Optional
Photo libraryOnly used if you pick an existing image as your profile avatar.Optional

You can grant or revoke any of these at any time in your device's system settings. Revoking a permission disables the related feature but does not delete data you already created.

7. How we share your data

We do not sell data. We use a small set of trusted processors to run the Service.

We share personal data only with the service providers ('processors') that make EchoFrame work, and only as far as needed. Each is bound by a data-processing agreement. A full processor register, including the data they handle and their GDPR role, is in our Data & Compliance document.

ProviderWhat it does for usData it processes
SupabaseOur core backend: account authentication, database, photo storage and account emails.Account details, echoes & photos, location, social content, messages
ExpoBuilds the App and delivers its push notifications.Your device's push token; and, inside a proximity notification, the sender's username and the echo's coordinates
Google (Firebase Cloud Messaging) and Apple (APNs)Carry a push notification the final step to your phone, on Expo's behalf.Your device's push token; and, inside a proximity notification, the sender's username and the echo's coordinates
MapTilerServes the map tiles the App draws.IP address and the map area you are viewing
OpenStreetMap (Overpass)Looks up the type of place near a location to label it.Coordinates of the area being labelled
VercelHosts the Website and the waitlist function, and provides privacy-friendly analytics.Waitlist submissions; aggregate Website traffic
ResendSends the Website's waitlist confirmation email, and delivers a moderation alert to our support address whenever something is reported in the App.Email address (Website waitlist). In a report alert: the reporting and reported usernames, the reason chosen, and the free-text description the reporter wrote
Apple & GoogleDistribute the App and deliver operating-system services.App download & device-level data governed by their own policies

We may also disclose data if required by law (for example, a valid order from a competent authority), or to protect the rights, safety and security of our users and the Service. If the Service is ever involved in a merger or acquisition, we will notify you before your data becomes subject to a different privacy policy.

8. Artificial intelligence & automated decisions

No AI processing of your content

EchoFrame does not send your photos, messages, location or any other personal data to artificial-intelligence providers. We do not use your data to train AI models, and we do not carry out automated decision-making or profiling that produces legal or similarly significant effects about you within the meaning of GDPR Article 22.

9. Cookies & analytics

Website

  • We use Vercel Web Analytics, which is cookieless and measures aggregate traffic (such as page views and country) without tracking you across sites or building a profile of you. It does not use advertising cookies.
  • We do not use any third-party advertising or social-media tracking cookies.
  • Because our analytics are cookieless and do not identify you, no cookie banner is required; you can additionally enable 'Do Not Track' or a content blocker to opt out.

App

The App does not use cookies or third-party analytics SDKs. It stores your session token and most of your preferences locally on your device (in secure storage and local app storage) purely to keep you signed in and remember your settings. Your notification preferences are the exception, and are held on our servers as well. Section 3(d) explains why.

10. Where your data is stored & international transfers

Your core account data, echoes and photos are stored by Supabase in the United Kingdom (London region). As the operator, we are based in Italy (EU).

  • EU → United Kingdom: the UK benefits from a European Commission adequacy decision, so transferring your data to the UK region provides a level of protection essentially equivalent to the EU.
  • Other providers: where a provider processes data outside the EU/EEA or the UK (for example, certain Vercel or Resend infrastructure in the United States), that transfer is covered by appropriate safeguards such as the European Commission's Standard Contractual Clauses and, where applicable, the EU–US Data Privacy Framework.

You can find each provider's role and safeguards in Data & Compliance.

11. How long we keep your data

DataRetention period
Account (email, username, profile)Until you delete your account
Echoes, photos, comments, ratings, messagesUntil you delete them, or until you delete your account
Encrypted backupsPurged on a rolling basis within the backup window (about 7 days) after deletion
On-device settings & discovery historyUntil you clear them or uninstall the App
Push token & notification preferences (per device)Until you sign out on that device, or delete your account
Waitlist email (Website)Until public launch or until you unsubscribe, whichever comes first
Operational logsKept for a short period for security and debugging, then deleted

When you delete your account, your personal data is removed from our live systems promptly and then ages out of encrypted backups within the backup window described above.

12. How we protect your data

  • Encryption in transit — all traffic between the App/Website and our backend is protected with HTTPS/TLS.
  • Encryption at rest — databases and stored files are encrypted at rest by our infrastructure providers.
  • Password security — passwords are stored only as salted one-way hashes (bcrypt) by our authentication provider; we never see them.
  • Access control — database row-level security restricts each user's data to that user and the people they've chosen to share with.
  • Secure session storage — your session token is held in your device's hardware-backed secure storage.

No system can be guaranteed 100% secure, but we work to protect your data and to limit what we collect in the first place. More detail is in Data & Compliance.

13. Your rights

Under the GDPR you have strong, enforceable rights over your data.

  • Access — get a copy of the personal data we hold about you.
  • Rectification — correct inaccurate or incomplete data.
  • Erasure — delete your account and personal data ('right to be forgotten').
  • Restriction — ask us to limit how we process your data.
  • Objection — object to processing based on legitimate interests.
  • Portability — receive your data in a structured, machine-readable format.
  • Withdraw consent — where we rely on consent (e.g. location, notifications, waitlist), withdraw it at any time without affecting prior processing.

To exercise any of these rights, email us at support@echoframe.help. We respond within one month, as required by the GDPR. You also have the right to lodge a complaint with your local supervisory authority — in Italy, the Garante per la protezione dei dati personali.

14. Deleting, exporting & correcting your data

Delete your account

You can delete your account directly in the App: open Settings → Account → Delete account (also available under the Legal section). This permanently removes your account and your echoes, photos, comments, ratings, messages and connections. It cannot be undone.

Export your data

To receive a copy of your personal data, email support@echoframe.help from your account email address and we will provide it in a portable format.

Correct your data

You can edit your username and avatar in the App at any time. For anything you can't change yourself, email support@echoframe.help.

Unsubscribe (Website)

To be removed from the waitlist, use the unsubscribe link in any waitlist email or email support@echoframe.help.

15. Children's privacy

EchoFrame is intended for users aged 16 and over. It is not directed to children under 16, and we do not knowingly collect personal data from them. If you believe a child under 16 has provided us with personal data, please contact support@echoframe.help and we will delete it.

Because EchoFrame is a location-based app where users can discover content left by others and exchange messages, we encourage parents and guardians to be aware of how it works.

16. Changes to this policy

We may update this Privacy Policy as the Service evolves or as the law requires. When we make material changes, we will update the effective date at the top and, where appropriate, notify you in the App, on the Website or by email. Your continued use of the Service after an update means you accept the revised policy.

When we introduce paid features in the future, payments will be processed by Apple and Google (in-app purchases). We will update this policy to describe any new processing before that happens.

17. Contact us

For any privacy question or to exercise your rights, contact the data controller:

Questions about this document or your data? Contact us at support@echoframe.help.