PDF Wizard
Privacy Policy
Last updated: 10 August 2026
PDF Wizard is designed to be private by default. This policy describes what the app stores on your device and what it does not collect.
Summary
- Local processing only. Image handling, layout, rendering, and PDF generation happen on your iPhone. Nothing is sent to our servers.
- No account, no backend. The app requires no sign-in and contacts no Melvinoz backend.
- No tracking, ads, or analytics. There are no third-party SDKs, no telemetry, and no advertising identifiers.
- No photo library upload. Photos are selected through the system Photos picker; the app does not enumerate your whole library.
Data stored on your device
| Data | Location | Purpose | Removed when |
|---|---|---|---|
| Project documents (JSON) | App Support / Projects | Persist layouts | Project deleted |
| Imported images + thumbnails | App Support / Assets | Editing & export | Project deleted |
| Preferences | UserDefaults | App defaults | Reset all local data |
| Temporary export PDFs | temporaryDirectory | Export handoff | After export / launch cleanup |
Metadata stripping
EXIF/GPS metadata is removed when images are imported and is never written into exported secure PDFs.
Export
A PDF is only created when you tap Create PDF, and only leaves the app when you explicitly share or save it. Once shared to another app, that PDF is governed by the other app; iOS cannot prevent screenshots or copying there.
Secrets
User PDF passwords are not persisted. Any persisted secret uses the Keychain, never UserDefaults. UserDefaults stores only non-sensitive preferences (default format, DPI, appearance, lock toggle).
Permissions
- Photos — to import selected photos.
- Face ID — only if you enable the app lock.
Data reset
Settings → “Reset all local data” clears preferences. Deleting a project removes its JSON and all its asset files. Uninstalling the app removes the app container.
Contact
Questions about this policy: info@melvinoz.com.