Last updated: Aug 29, 2026
SlabVault (“we,” “our,” or “the App”) provides tools for scanning graded and raw trading cards, researching card and market information, organizing collections and binders, sharing view-only card snapshots, tracking vendor activity, finding card shows, and using the SlabVault Shop and card-drop experiences.
This Privacy Policy explains the information SlabVault collects, how it is used and shared, and the choices available to you.
When you create or use a SlabVault account, we may collect:
This information is linked to your SlabVault account and stored using Firebase Authentication and Firebase Firestore.
When you scan, search, save, value, organize, or share cards, we may process and store:
Camera and imported photos are processed on the device for OCR and visual matching. SlabVault does not upload the full original scan image solely to identify a card. A compressed thumbnail may be stored locally and synced with your account so the saved record can appear on another device.
Vendor Mode may store deal type, dates, counterparties, show names, user-entered locations, notes, payment methods, references, due dates, card details, cost basis, prices, fees, shipping, taxes, expenses, amounts paid, and calculated profit or loss. This data is stored locally and may be synced to your account when you use Vendor Mode sync.
The SlabVault Shop may store your Key balance, pack selections, opening sessions, pull details, simulated market values, return status, and Key credits. For an Apple subscription, SlabVault receives the product identifier and entitlement status needed to unlock membership features and restore purchases. Apple processes payment details; SlabVault does not receive your full Apple ID, payment card number, or billing credentials.
SlabVault records first-party product analytics to operate and improve the App. These records may be linked to your Firebase user ID and email address and can include event name, feature interactions, onboarding responses, scan and Shop activity, sync activity, app version, build number, platform, error details, and the domain opened through SlabVault’s in-app browser. SlabVault does not use Firebase Analytics, advertising SDKs, or cross-app advertising identifiers.
If you use the in-app feedback form, the information you enter is submitted through Google Forms. Google may process information about that visit under its own privacy terms. Do not include sensitive information that is not needed to answer your question.
SlabVault may request:
SlabVault does not request access to your contacts or device location. A location typed into Vendor Mode is treated as user-provided text, not device location data. You can change system permissions in iOS Settings.
We use information to:
OCR and raw-card visual matching are performed on your device using installed card catalogs, images, and vector data. Graded-card lookups send the detected or entered certification number and related request information to the applicable grading or market source. Those providers ordinarily receive network information such as IP address, user agent, and cookies when their pages or services are requested.
Account sync stores supported account, collection, scan, binder, thumbnail, Vendor Mode, onboarding, membership, Shop, and analytics records in Firebase. Offline records can remain only on your device until a sync occurs.
When you create a public share, anyone with the link can view the selected snapshot until it expires or you revoke it. Do not include information you do not want available to link recipients.
SlabVault may use or display content from:
Third-party pages and services operate under their own privacy practices. Opening a third-party page can provide that operator with ordinary browser and network information. SlabVault does not provide your Firebase user ID or account email to an external page unless you choose to enter that information there.
SlabVault does not sell or rent personal information, use data brokers, show behaviorally targeted advertising, or track you across apps and websites owned by other companies for advertising purposes.
Cloud account and user-linked records are generally retained while your account exists. Local scans, thumbnails, catalogs, vectors, cached images, collections, and settings remain on the device until you remove them or uninstall the App.
You can permanently delete your account from Settings > Account > Delete Account. After password confirmation, SlabVault deletes your Firebase account and associated cloud collection records, scans, binders, Vendor Mode records, public shares, Shop records, Key grants, and first-party analytics events. Deleting a SlabVault account does not cancel an Apple subscription; subscriptions must be managed through your Apple ID settings.
We may retain limited information when reasonably necessary to comply with law, resolve disputes, prevent fraud or abuse, or enforce agreements. Backup copies may persist temporarily until they are overwritten through normal backup rotation.
We use reasonable administrative, technical, and organizational safeguards, including authenticated Firebase access rules and encrypted network connections. No storage or transmission method is completely secure, and SlabVault cannot guarantee absolute security.
SlabVault is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If we learn that such information was collected, we will take reasonable steps to delete it.
Depending on your location, you may have rights to access, correct, export, or delete personal information. Within SlabVault you can edit collection information, revoke public shares, export supported collection data, change optional permissions, sign out, and delete your account. For another privacy request, use Settings > Send Feedback and identify the request clearly.
We may update this Privacy Policy as SlabVault changes. The updated date at the top of this document will identify the current version. Material changes may also be communicated in the App or through another appropriate notice.
For privacy questions or requests, open SlabVault and use Settings > Send Feedback.