Direct product policy. This Privacy Policy applies only to GrowLux (com.ryantinklepaugh.growlux). It directly states the app’s data practices and is not an owner-site redirect or a portfolio-wide substitute.
Scope, controller, and contact
UNCOMMON WEATHER LLC, 1212 N Walker Ave Apt 207, Oklahoma City, OK 73103, United States, is responsible for the information described here. Contact team@uncommonweather.com for privacy questions, rights requests, or support.
Information GrowLux handles
- Transient camera frames and exposure metadata used during a user-directed light reading
- Saved grow-space names, light-source classes, plant associations, photoperiod settings, and notes
- Exposure inputs and derived lux, PPFD, DLI, uncertainty, target, history, and planner values
- Private CloudKit identifiers and synchronization state
- User-requested CSV exports
- Anonymous App Store purchase and RevenueCat offering, transaction, purchase, and entitlement metadata
- Privacy-minimal legal-choice evidence
Product-specific practices
Camera exposure metadata
GrowLux uses the back camera during a reading to obtain aperture, exposure-duration, and ISO metadata. Camera frames are not stored as GrowLux records, analyzed for depicted content, uploaded to Uncommon Weather, RevenueCat, CloudKit, or an artificial-intelligence service, or used for advertising.
The app saves only the selected source and mode, exposure-derived numbers, uncertainty state, time, and associated grow-space information.
Spaces, readings, and private iCloud
Spaces, plant associations, readings, history, and settings remain local and can synchronize through the user's private CloudKit database. Apple processes that content under the user's iCloud account. Uncommon Weather does not receive or restore it.
User-directed exports
GrowLux creates a CSV only after the user requests it. The copy remains with the destination or recipient selected through Apple's share interface.
Purchases and legal choices
Apple processes payments. RevenueCat receives an anonymous app-user identifier and limited app, device, offering, transaction, purchase, and entitlement metadata needed to present products, restore purchases, provide aggregate subscription analytics, and determine Pro access. It does not receive camera frames, exposure metadata, spaces, plants, readings, or planner results.
The separate legal-choice service receives only signed, privacy-minimal evidence of an acceptance, decline, or withdrawal and no GrowLux product content.
Retention and deletion
Records remain locally and in private CloudKit until deleted with available controls, Delete All App Data, app removal, or Apple storage changes. Product deletion does not erase an exported CSV, Apple or RevenueCat purchase records, provider security records, or privacy-minimal legal-choice evidence.
Service providers and disclosures
Apple provides iOS, App Store billing, and the Apple frameworks identified above. RevenueCat provides subscription-entitlement infrastructure. Supabase provides the separate legal-choice service and, where the product-specific sections say so, account, storage, synchronization, or server-function infrastructure. Cloudflare delivers and protects the public website. Other named providers process only the information needed for the selected function.
Ordinary connection metadata, such as IP address, route, response status, and timing, can be processed transiently by network, security, and hosting providers to deliver and protect a request. Information may also be disclosed when required by valid legal process, to protect rights or safety, to investigate abuse or security incidents, or in a business transaction with legally required safeguards.
Uncommon Weather does not sell personal information, share it for cross-context behavioral advertising, serve third-party ads, or track users across unrelated products.
Retention and deletion
Product data follows the product-specific retention and deletion boundaries above. Copies deliberately exported, uploaded, or shared remain wherever the user, recipient, or selected service saved them. Support correspondence is retained while needed to handle the request and for reasonable operational, security, and legal purposes. Apple, RevenueCat, Supabase, OpenAI where applicable, and other independent providers retain records under their own policies and legal duties.
Legal-choice events and acceptance receipts are append-only evidence retained until the verified relationship ends plus seven years. Related challenge, key-registration, request-audit, signing-key incident, receipt-integrity, and retention-purge records follow their security and legal-claims schedules. Immutable legal evidence may be retained where needed to establish, exercise, or defend legal claims.
Security
The legal-choice system uses HTTPS, P-256 signatures, keyed pseudonyms, replay-resistant single-use challenges, strict product allowlists, rate limits, restricted service credentials, append-only evidence, and signed receipts. Apple security frameworks and the product-specific controls above protect other data where stated. No system is perfectly secure.
Choices and privacy rights
Users can decline, later withdraw to limited mode, review the current documents, or affirmatively accept from Legal & Privacy settings. Available product controls can manage permissions, delete or export product data, manage or restore purchases, and delete an account where applicable. Depending on location, rights may include access, correction, deletion, restriction, objection, appeal, withdrawal, or a regulator complaint.
A current affirmative acceptance takes effect after it is durably saved on the device. Main-app access remains available while signed-receipt delivery retries after a non-terminal network, Apple, or service outage. Widgets, Live Activities, and other extension surfaces that require a verifiable cross-process receipt may wait until the server-signed receipt is received and verified. An explicit terminal rejection of the exact saved acceptance causes the client to quarantine that failed record and return to the appropriate decision or limited-state screen.
Children and eligibility
GrowLux is intended only for adults age 18 or older. The legal flow records only a broad adult age band and acceptor role, not a birth date.
Changes and related documents
Material changes receive a new immutable document version. Previously accepted users are asked to make one new choice for a materially changed family; continued use alone does not silently create acceptance. A stored decline or withdrawal remains limited without a recurring prompt. Read the GrowLux Terms of Service and GrowLux Product Schedule.
UNCOMMON WEATHER LLC
1212 N Walker Ave Apt 207
Oklahoma City, OK 73103
United States
team@uncommonweather.com