ClaimProof privacy policy
Effective October 11, 2026
Who we are and what this policy covers
ClaimProof is a home-inventory and claim-documentation app operated by Leech Labs. This policy covers the iOS and Android app, its optional connected account and backup service, optional paired 3D processing, and these support pages. ClaimProof is not an insurer and does not submit or decide insurance claims.
Inventory kept on your device
You can use the inventory without creating an account. Property and room names, item descriptions, prices, purchase details, receipts, documents, photos, service and lending records, and locally created scans are saved on your device. Camera recognition and receipt/serial-number OCR process images on the device. Local object reconstruction and supported ARCore/ARKit room reconstruction do not send your room or object images to Leech Labs for reconstruction. Permissions do not by themselves cause an upload.
Optional account and private cloud backup
When you create or connect an account, the service processes your email address, account name and identifier, authentication information and sessions. Password authentication is handled by Better Auth on our backend; native Sign in with Apple is available where configured. Account verification and password-reset messages use our configured transactional email provider, Resend. Connected backup transmits inventory records and the evidence you choose to attach, including photos and documents, to our backend and private storage. This can include financial or purchase information, addresses or room descriptions you enter, and personal information visible in your evidence. Do not include unnecessary sensitive information.
Photos, location and optional paired 3D processing
Original photos can contain embedded metadata, including capture time, device details or GPS coordinates recorded by the camera that produced them. ClaimProof does not request location access to track your position. Metadata already present in an original can accompany an optional upload or export. The GPU room-scan beta sends the photos you select, their embedded metadata, and the room/job information to the scan server you explicitly pair, after confirmation. That server reconstructs the room and returns a model. It is not an automatic Leech Labs cloud upload. The operator of your chosen server can access its input and output; only pair a server you trust. Local room models and capture sets are separate from inventory cloud backup.
Technical information and embedded SDKs
ClaimProof has no advertising SDK, advertising tracking, or separately configured app marketing analytics. It includes Google ML Kit for on-device recognition on iOS and Android. Google documents technical telemetry such as app and device information, per-installation identifiers, feature events, errors, configuration and performance measurements for SDK diagnostics and usage analysis. On-device image processing does not mean that this technical telemetry is absent. Android room capture uses Google Play Services for AR (ARCore), which is provided by Google and governed by its privacy policy. We do not enable ARCore Cloud Anchors or the Geospatial API. The backend, storage and website hosts can process network addresses and operational request/security logs while providing these services.
Why information is used and who processes it
Information is used to maintain your inventory, authenticate accounts, provide connected backup and recovery, reconstruct requested scans, produce user-requested exports, respond to support or deletion requests, and operate and protect the service. Our configured infrastructure includes Neon for the backend/database and private object storage accessed through an S3-compatible interface, Resend for transactional account email, Google for the embedded ML Kit/ARCore services, Apple for native Sign in with Apple, and Hostinger for these public pages. A server you pair is an additional recipient for the scan you choose to send. We do not sell your inventory or use your evidence to train a model. We may disclose information where legally required or necessary to protect the service or users. Providers process information under their applicable service terms and policies; their infrastructure may be outside your country.
Sharing and exports you control
Sharing is initiated by you through the device sharing system. Inventory export packages, original attachments and exported 3D files are not password-encrypted by ClaimProof. Copies sent to another app, a recipient or your own backup location leave ClaimProof and remain under that recipient or storage service’s control. Deleting an item or account does not retract an exported copy.
Security and retention
Cloud access is restricted to authenticated account owners, and the backend uses private storage and time-limited download links. Production cloud connections use HTTPS. Session material is stored through the device secure-storage facility. These measures reduce risk but do not guarantee absolute security. Local information remains until you remove it, reset it or remove the app, subject to copies you keep elsewhere. Connected information remains while needed for your account until deleted or otherwise required for service/security or legal obligations. Backups and operational logs may persist after active records are deleted until overwritten under the relevant provider settings; this policy does not promise a fixed backup/log deletion period or immediate erasure of every copy. The paired scan server’s implementation expires temporary job inputs/results after 72 hours, with cleanup while that server is online and at startup. It also attempts earlier removal after verified download or an explicit deletion. An offline paired server cannot be wiped immediately.
Your choices, deletion and access
You may decline camera or photo access and enter inventory information manually, use the app without an account, choose whether to connect backup, and decline paired-server processing. You can remove items and scans, reset local inventory, and export your information. In Profile, a signed-in user can choose “Delete account and synced data”; a recent sign-in is required. This removes the connected account and its active synced records and objects. Account deletion does not retract external exports or necessarily delete separate local scan files or remote copies held by your paired server. Remove those scans separately and contact the paired server operator when necessary. If you cannot sign in, request account/data deletion using the instructions on our account-deletion page. Contact us for access, correction, deletion or privacy questions; applicable rights depend on your location and identity verification may be needed. Never email your password.
Children, changes and contacting us
ClaimProof is a general home-inventory tool, not a service directed to children. If you believe a child has supplied personal information to our connected service, contact us so we can investigate and address it. This release does not add advertising, paid downloads, subscriptions or in-app purchases. Changes to actual data handling will be reflected in an updated policy and applicable store disclosures. Email Leech Labs at support@leechlabs.io for privacy and support requests. If you email us, we receive the contact details and information you include and use them to respond and manage the request. These pages do not include advertising, visitor-editing features or app analytics scripts; hosting can produce ordinary access/security logs.