Legal
Privacy Policy
Last updated 25 August 2026Version 1.0
CleanStatus works without an account, and most of what it does never leaves your phone. This policy is specific about the one part that does — the optional HD delivery route — because that is the part worth understanding.
The short version
- No account. No sign-up, no email, no password.
- Conditioning runs on your phone. Your camera roll is not uploaded to use the app.
- If you turn on HD delivery, that clip is uploaded so it can be encoded properly, delivered to your own WhatsApp chat, and then deleted from our storage.
- We never see your card details, your WhatsApp messages, your contacts, or who views your status.
- We do not sell personal data, and we do not use your media to train anything.
The controller for the data described here is [legal entity name], [registered address], Nigeria.
What stays on your phone
These are stored locally, in the app's own storage, and we cannot read them:
- the photos and videos you pick, and the conditioned files the app produces;
- your queue of prepared posts and any reminders you set;
- your settings, including the encode targets and whether HD delivery is on;
- statuses you save to your gallery with the status saver.
Deleting the app removes all of it. There is no cloud copy to clean up, because there was never a cloud copy.
What we receive for HD delivery
This applies only if you pair a number and use the HD delivery route. If you never turn it on, this whole section is moot.
| What | Why | Kept for |
|---|---|---|
| The media file | So it can be encoded with filters phone hardware does not expose, then delivered to your chat. | Deleted as soon as delivery finishes. A sweep also removes anything left behind by a failed or abandoned job. |
| Your WhatsApp ID | It is the address the finished clip is delivered to, and the key your daily limit is counted against. | While your number stays paired. |
| Job details | File size, duration, encode settings, progress and any error — this is what makes a stuck job recoverable and a failure diagnosable. | 30 days, then deleted. |
We do not open, watch, index or analyse the media you send through. It is input to an encoder and then it is gone.
Pairing your number
Pairing links the app on your phone to the WhatsApp number that will receive deliveries. We store a randomly generated pairing token, your WhatsApp ID, and the time you paired. We also record that your number has messaged our delivery number — that is what allows us to reply to you, and it is the reason we never message anyone first.
Disconnect at any time in Settings → Manage connection → Disconnect. The app forgets the token and stops delivering; the matching record on our side is deleted when you ask us to, and the whole process is set out on Delete your data.
Usage and limits
Daily limits have to be counted somewhere. For each upload attempt we record your WhatsApp ID, the size of the file, whether it was accepted or turned away, the reason if it was turned away, and the time. That is the entire record, and it is also what the app shows you when it tells you how much of today's allowance is left.
Subscriptions
Purchases happen inside the App Store or Google Play. We never receive your card number, billing address or store password.
Subscription state reaches us through RevenueCat, which relays the store's receipt. What we store is a random identifier we mint for you, the tier you are on, the product you bought, which store it came from, its status and expiry date. If you have paired a number, that identifier is linked to your WhatsApp ID so your Pro limits apply to your deliveries.
Ads on the free plan
The free plan carries ads from Google AdMob — a banner, an occasional full-screen ad, and a rewarded ad you can choose to watch. Google may use your device's advertising identifier and coarse device and app information to select and measure them. Google's own handling is described in its partner sites policy.
Where consent is legally required, the app shows Google's consent form on first launch and passes your answer to the ad SDK. If that form cannot load, ads fall back to non-personalised — the safer of the two outcomes, not the profitable one. You can reset or limit the advertising identifier at any time in your device settings.
Subscribing to Pro stops ads loading at all. We can also switch any ad format off from the server, which is what happens if a format turns out to be intrusive or broken.
Permissions the app asks for
| Photos and video | To let you pick the media you want to post. The app reads only what you select. |
| Save to gallery | To write the conditioned file, or a saved status, back to your camera roll. |
| Notifications | To tell you a job finished and to fire the reminders you set. Decline it and everything else still works. |
| Microphone / audio | Requested by the media libraries the app uses so that a video's own audio track can be handled. CleanStatus does not record you. |
How long we keep things
- Media: until delivery finishes, then deleted. Orphans are swept automatically.
- Pairing: until you ask us to delete it, or until the delivery number it was issued against is retired.
- Usage records: 90 days — long enough to enforce a daily limit and see whether the limits are set sensibly.
- Subscription records: for the life of the subscription, plus the period we are required to keep transaction records for tax purposes.
Who else is involved
We do not sell personal data and we do not share it for advertising. These providers process data on our behalf so the service can run:
| Supabase | Database holding pairings, job records, usage and subscription state. |
| Cloudflare R2 | Temporary storage for media being encoded and delivered. |
| RevenueCat | Relays store receipts so we know whether a subscription is active. |
| Apple, Google | App distribution and all payment processing. |
| Google AdMob | Advertising on the free plan, and the consent form shown before it. |
We may also disclose data where the law requires it, or to protect the service against abuse.
Why we are allowed to
We are a Nigerian company, so the Nigeria Data Protection Act 2023 is the law we answer to first. Under section 25 of that Act, we rely on:
- Performance of a contract — pairing, delivery and job records exist because you asked us to deliver a clip to your chat.
- Legitimate interest — usage records, to enforce a daily limit fairly and keep the service standing up.
- Legal obligation — subscription and transaction records we are required to keep.
- Consent — personalised advertising, which you give or refuse in the consent form and can change in your device settings.
If you are in the UK or the EU, the UK or EU GDPR applies to you as well, and the bases above map to Articles 6(1)(b), 6(1)(f), 6(1)(c) and 6(1)(a) respectively.
Your rights
Depending on where you live, you may have the right to see the data we hold about you, to correct it, to have it deleted, to restrict or object to processing, and to receive it in a portable form. To exercise any of them, email us from a mailbox you control and tell us the WhatsApp number you paired — that is the only identifier we can match you by, because there is no account. The step-by-step is on Delete your data.
You can also complain to the Nigeria Data Protection Commission at ndpc.gov.ng, or to your own supervisory authority if you are outside Nigeria. We would rather you told us first, so we can fix it.
Deleting your data
You can delete everything CleanStatus holds, and you do not need our help for most of it. Deleting the app removes all local data. Disconnecting in Settings → Manage connection → Disconnect removes the pairing from your device immediately. Server-side records are deleted on request, by email, matched against the WhatsApp number you paired.
Delete your data sets out each route, what goes, how long it takes, and the one record we are required to keep — the proof of a store transaction.
Children
CleanStatus is not intended for children. The Nigeria Data Protection Act treats anyone under 18 as a child, and we do not knowingly collect data from one — we ask for no age, no name and no account, and the HD delivery route requires a WhatsApp number, which WhatsApp itself does not issue to under-13s.
If you are a parent or guardian and believe a child has used the delivery route, email us with the number and we will delete the records without asking anything further.
Where data is processed
We are based in Nigeria, but our providers are not: the database runs on Supabase, temporary media storage on Cloudflare R2, and subscription receipts pass through RevenueCat. All three process data outside Nigeria.
Sections 41 to 43 of the Nigeria Data Protection Act allow that transfer where the recipient is bound by adequate safeguards. Each of these providers offers standard contractual clauses and a data processing agreement, and that is the basis we rely on. The same clauses cover users in the UK and the EU.
Changes to this policy
If we change it, the date at the top changes with it. Material changes are announced in the app before they take effect, not slipped in quietly.
Contact
Email privacy@cleanstatus.app, or write to [registered address], Nigeria.