flor.cam
FeaturesPricingBuy once
← back to flor.cam

Privacy Policy

Last updated: July 10, 2026
πŸ“„ A plain-language template, not legal advice β€” have counsel review it and replace every [BRACKETED] value. The good news: because flor.cam is local-first, most of this policy is short and honest by design.

This Privacy Policy explains how flor.rgb LLC ("we," "us") handles information in connection with the flor.cam application (the "App") and the flor.cam website (the "Site").

The short version

flor.cam is local-first. Your structured business records and credentials are stored only on your own device, in an encrypted vault. Indexed media stays where you put it; optional snapped receipt/card photos are local companion files beside the vault and are not encrypted by the vault. Nothing is sent to us. We run no servers that receive your App data, and the App contains no telemetry or analytics. Optional integrations contact only the provider you choose, as described below.

1. Data stored by the App (on your device only)

The App stores your structured records and credentials locally in an encrypted vault, protected with AES-256-GCM and a passphrase that only you hold. This includes clients, prospects, projects, calendar entries, invoices, expenses, media file metadata, drafts, and settings. The media itself remains in your own folders. If you use Snap, the photo is stored as a separate owner-only local file so it can stay out of the vault; that photo is not vault-encrypted. Encrypted rotating vault backups, local device identity, optional OS-protected β€œremember me” material, and downloaded on-device model files also live in the App's local data folder. We have no access to any of these files and cannot recover your vault or passphrase if you lose both your passphrase and recovery code.

2. AI processing

By default, the App's AI assistant runs a local model entirely on your device; your prompts and data are processed on your machine and are not transmitted to us or anyone else. If you optionally sign in with your ChatGPT plan or add a third-party AI provider key (for example OpenAI or Anthropic), then β€” only when you use that brain β€” the App sends the prompt and the context needed to answer it to that provider on your behalf, subject to that provider's privacy policy. This is your choice and is off by default.

3. Optional connections

If you connect a work inbox, the App reads messages directly from your mail provider to your device, read-only, using credentials you store in your local encrypted vault. If you separately configure outgoing SMTP and press Send on a draft, that message is sent directly through the mail provider you configured. A connected Stripe account is queried only with a restricted read-only key and only to check payment status. Those credentials and the resulting content are not sent to us; each provider processes the request you ask the App to make.

4. Update check

Once a day when you open it (and whenever you press "check for updates"), the App makes a single request to flor.cam to read the newest version number. The request carries no data about you or your vault β€” it is the same as visiting a tiny public web page β€” and you can switch the daily check off in Settings. Standard hosting logs (see below) are the only trace it leaves.

5. Information handled when you buy or download

Buying a license and downloading the App do involve limited information, handled by our providers rather than by the App:

  • Purchases are processed by our payment provider, Gumroad. When you buy, Gumroad collects and processes your payment and contact details (such as your email and billing information) to complete the sale and email you a license key. Their handling of that information is governed by Gumroad's Privacy Policy. We receive order information (such as your email and purchase record) so we can deliver your key and provide support.
  • The Site may keep minimal hosting logs (such as your browser's IP address and request data) for security and to keep the Site running. The Site sets no tracking cookies and uses no third-party advertising or analytics. If we ever add privacy-respecting analytics, we'll update this policy first.
  • Support: if you email us, we receive the information you choose to send.

6. How we use the limited information we receive

We use order and support information only to deliver your license key, provide support, prevent abuse, and meet legal and accounting obligations. We do not sell your personal information, and we do not use your data for advertising.

7. Sharing

We share information only with service providers that make the sale possible (such as Gumroad and our email/host providers), and where required by law. We never share your on-device App data, because we never have it.

8. Retention

We keep order records for as long as needed for support, warranty, tax, and legal purposes. Your App data is retained by you, on your device, for as long as you keep it.

9. Your rights

Depending on where you live (for example under the GDPR or CCPA), you may have rights to access, correct, delete, or port the personal information we hold about you, and to object to certain processing. Because your App data lives only on your device, you already control it directly and can export or delete it at any time. To exercise rights over order/support information, contact us at flor.support@proton.me.

10. Children

The App and Site are not directed to children under 13, and we do not knowingly collect their personal information.

11. Changes

We may update this policy; we'll change the "last updated" date and, for material changes, provide reasonable notice.

12. Contact

flor.rgb LLC β€” flor.support@proton.me.

flor.cam
Your machine, your data.

Legal

License (EULA)Privacy PolicyTerms of ServiceRefund Policy

Contact

flor.support@proton.me
Β© 2026 flor.rgb LLC. All rights reserved.