1. Who we are
This policy applies to the Sheaf (Chinese name: 拾卷) app for iPhone and iPad.
2. How Sheaf handles files and text
Sheaf helps you scan, import, organize, search, and share personal documents. The current version has no account system, cloud sync, cloud AI, advertising, or behavioral tracking.
Camera scans, photo imports, PDF, Word, and Excel processing, page enhancement, OCR, OCR text, search indexes, automatic naming, categories, tags, notes, reminders, and the private space are processed on your device. Sheaf does not upload scan images, imported files, OCR text, file names, categories, tags, notes, reminders, or local indexes to a Sheaf server or a third-party recognition server.
OCR models and recognition resources are bundled with the app. OCR does not upload or download your images, text, or models to a remote service. The app may communicate with Apple App Store services to load product information, make a purchase, or restore a purchase. Apple handles those transactions under Apple’s terms and privacy policy; Sheaf does not receive your card number, payment credentials, Apple ID password, or billing details.
3. System permissions
- Camera: Used only when you explicitly choose camera scanning to photograph paper documents and create scans.
- Photos: Used only when you explicitly select photos for import or save scan images to your Photos library. You may deny access; features that do not require Photos remain available.
- Files: Uses the system document picker for files you explicitly select, such as PDF, Word, or Excel documents, and for a folder you choose for saving. The app does not scan other locations.
- Face ID / device authentication: Used only to open protected categories, hidden files, or the private space. iOS returns only a success or failure result; Sheaf does not read or store fingerprints, face data, Face ID templates, or passcodes.
- Notifications: Used only for local reminders that you set and authorize. Reminders do not rely on a remote push server.
You can change permissions at any time in iOS Settings. Turning off a permission may disable the related feature but does not delete files already stored on your device.
4. Sharing and saving to other locations
Sheaf sends a file to another app, Photos, or a Files location only when you explicitly choose to share, open, or save it. The receiving app’s handling is governed by that app’s own privacy policy. Sheaf does not share or upload files in the background.
5. Local storage, backup, and deletion
Files and related indexes are stored in the app’s private storage. Deleted files remain in the recycle bin for 7 days by default. You can restore or permanently delete them, or empty the recycle bin. Permanently deleted files cannot be recovered by Sheaf.
Sheaf does not provide its own cloud sync or cloud-backup service. Depending on your device and Apple account settings, iOS may include app data in a system backup managed by Apple; this system process does not send files to a Sheaf server. The app can also create an AES-256 encrypted local backup when you explicitly request it; you choose where to save and manage that backup. Uninstalling the app, clearing app data, device damage, or device loss may make local files unrecoverable.
To remember a folder you explicitly choose for saving to Files, the iOS native channel stores a security-scoped bookmark in local UserDefaults. The bookmark is not uploaded. If access is revoked or the bookmark becomes invalid, the app removes it and asks you to choose a folder again.
6. Apple StoreKit and Sheaf Pro
Sheaf Pro is a one-time, non-consumable purchase on the current platform. Apple StoreKit / App Store handles payment, transactions, receipts, and the relationship with your store account. Sheaf reads only product information and verified Pro entitlement returned by StoreKit to unlock features on the device; it does not collect or store card numbers, payment credentials, or Apple ID passwords.
Android and iOS purchases are managed separately and are not promised to restore across platforms. You can use “Restore Purchases” with the same Apple account to restore iOS Pro entitlement.
7. Third-party components
Sheaf uses Flutter, camera, image_picker, path_provider, share_plus, sqflite, webview_flutter, archive, image, pdf, xml, OpenCV, PaddleOCR, and ONNX Runtime for the interface, camera and photo selection, file processing, sharing, local storage, local Office preview, and on-device OCR. The current version does not integrate advertising SDKs, behavioral analytics SDKs, cross-app tracking SDKs, or cloud document-recognition services.
Third-party licenses and names are available in the in-app “Open Source Licenses” page. Vendor privacy manifests remain in the final app bundle; this policy does not turn third-party components into a Sheaf server.
8. Children’s privacy
Sheaf is not designed specifically for children and does not actively collect users’ ages. If a release region imposes additional requirements for children or minors, we will add applicable information before release.
9. Updates and contact
If our data-processing practices materially change, we will update this policy before the change takes effect and provide notice in the app or store materials.
For questions about this policy or document handling, contact us at eko_sheaf_support@163.com.