Privacy policy
The short version
PointMate has no accounts and collects no personal profile. We keep no session data: your camera, microphone, chat messages and annotations go directly to the other participant and are never recorded or stored by us. The only thing our servers remember between sessions is the minimum needed to ring you when a saved contact calls, and to honour passes and redeem codes. Nothing about you is sold to anyone.
What the app stores on your device
A random device identifier (so subscriptions and passes can be recognised without an account), your optional display name, your settings, whether you have completed onboarding and accepted these terms, your saved contacts (see below), any active pass expiry, and a local diagnostics log (see below). This data stays on your device; uninstalling the app deletes it.
What happens during a session
Live camera video, microphone audio, chat messages and annotation data travel between the participants over an encrypted connection (WebRTC over TLS). Our relay server (hosted in Australia at turn.smartvibes.com.au) brokers the connection and may relay the encrypted stream when a direct connection is not possible. The same applies when a helper joins from a web browser: the helper page is served by our relay and speaks the same encrypted protocol, with no cookies, tracking, or analytics. We do not record, store, or analyse anything in a session — not audio, video, chat, or annotations. Chat messages exist only on the participants’ devices while the session is open. Session metadata (a short-lived session code, connection timing) is held only for as long as the session is running and is discarded when it ends. Our server keeps aggregate operational counters only (for example, how many sessions ran today) with nothing that identifies a person or device.
Saved contacts & direct calls
When you save a mate after a session, their display name (or your alias for them), their random device identifier, their device platform and a push-notification token are stored on YOUR device only — we keep no contact list, and no address-book access is ever requested. So that a saved contact can ring you like a phone call, your device registers its own random identifier and push token with our relay; that mapping is used solely to deliver call and join notifications. After you uninstall the app the token stops working and the registration is purged once the push service reports it dead; you can also ask us to remove it immediately. Call notifications are delivered through the standard Apple and Google push services (and Expo’s push service), which handle the message in transit; a notification carries only the caller’s name, the session code, and call handling data — never any session content.
Passes & redeem codes
If you redeem a promotional or purchased pass code, our server records the code, when it was redeemed, and the random device identifier that redeemed it — this is what makes codes single-use. The resulting pass lives on your device. We store nothing else about you with it.
Diagnostics (App logs)
The app keeps a short technical log on your device (connection events, AR tracking states — never video, audio, or chat content) to help diagnose problems. It stays on your device and is only ever shared if you explicitly export it from Settings and send it to someone.
Camera & microphone permissions
Requested the first time you start or join a session, used only while a session is active, and never in the background. The other participant can see your camera only after you accept their join request (or they accept yours).
Subscriptions & purchases
If you subscribe to PointMate Unlimited or buy a pass, the purchase is processed by Google Play or the Apple App Store and our subscription provider (RevenueCat) using your device identifier — we never see your payment details.
Analytics & tracking
PointMate currently contains no third-party analytics or advertising SDKs. If this changes, this policy and the store data-safety listings will be updated first.
Your rights & contact
Australian Privacy Principles apply. The only records our servers keep between sessions are the push-token registration and the code-redemption entries described above — both keyed to a random device identifier, not to you. For questions or deletion requests, contact [email protected].