Privacy policy
PuzzleWall
1. Overview
PuzzleWall is an iPhone and iPad game that turns a user’s own photos into Tile Swap, Sliding, and Jigsaw puzzles. It includes an optional Messages extension for creating, sending, and playing photo puzzles inside Apple Messages.
This policy applies specifically to the containing PuzzleWall app and its PuzzleWall Messages extension. It does not govern other iPocket apps. Website measurements generated when you visit ipocket.xyz are handled separately as described in Section 7 and are not combined with puzzle photos, Messages content, or gameplay records.
The core game does not require an account. The photos you select, puzzle progress, and completion records are stored on the current device by default. iPocket does not upload this content to its own servers merely because you create, play, or score a puzzle.
The current version uses RevenueCat for purchase infrastructure and purchase analytics. It does not include general-purpose third-party behavioral analytics, advertising, crash-reporting, or cross-app tracking SDKs. We do not sell personal information or use puzzle data for targeted advertising.
2. Data processed locally
Depending on the features you use, PuzzleWall processes the following on your device:
- Images you explicitly select through Apple’s system photo picker
- A reduced-size copy used for gameplay
- Puzzle mode, rows and columns, initial state, current state, and advanced guidance options
- Elapsed time, move count, best time, average time, and per-puzzle completion history
- The entitlement state needed to determine whether PuzzleWall Pro is unlocked
- The latest prepared Messages puzzle, local play progress, content waiting to be imported by the containing app, and temporary result images
Photo copies, puzzle state, and completion records are stored in app-specific storage on the device. The containing app and Messages extension use shared on-device storage to hand off necessary content. Deleting a puzzle in the containing app removes its photo, progress, and completion history from the containing app, but an already prepared Messages copy or message-play progress may remain until replaced, cleaned by the app, or local app data is removed. Removing the app normally clears local app data from the current device.
3. Photo access and saving
PuzzleWall and its Messages extension use Apple’s system photo picker. They receive only the image you explicitly select; opening the picker does not cause PuzzleWall to scan or upload your full photo library.
When you choose to save a result image to Photos, PuzzleWall requests add-only photo-library access. Declining this permission does not affect core gameplay, and you can still use another system sharing option.
4. Sharing
Sharing is always initiated by you. Each sharing option handles data differently.
Native puzzles in Messages
The PuzzleWall Messages extension lets you choose a photo, configure a puzzle, and insert it into the current Apple Messages conversation. The message contains a reduced-size copy of the selected photo and the information needed to present and continue the puzzle.
Creating a puzzle first inserts it into the Messages input field; it is not sent until you tap Send. After finishing a puzzle, you may also choose to send a result image generated on the device. Native Messages puzzles do not create a browser link or send the puzzle through PuzzleWall Relay, Vercel, or Cloudflare.
Apple Messages/iMessage transfers and may synchronize the message, photo, puzzle state, and result image according to your Apple account, device, iCloud, and backup settings. Recipients can retain, copy, forward, or delete their own copies.
The extension stores the latest prepared puzzle and local play progress in shared storage on the device. When you choose Save to PuzzleWall, the photo, puzzle settings, current state, and optional result are handed to the containing app on the device. Temporary content waiting for import is deleted after a successful import. If the import does not finish, it may remain on the device for a later retry until the import succeeds or local app data is removed. This save process stays on the device and does not upload the content to iPocket, Vercel, or Cloudflare.
Face-to-face sharing
When you choose face-to-face sharing, the sender displays a QR code used to establish a temporary connection. After the recipient scans it and grants camera and local-network access, the two PuzzleWall devices discover each other nearby and transfer the complete photo and puzzle state through an encrypted local-network connection. The content does not pass through iPocket, Vercel, Cloudflare, or another internet server. Camera frames are used only to recognize the QR code and are not saved or uploaded by PuzzleWall. The recipient’s temporary file is removed after validation or cancellation; an imported local puzzle remains until the recipient deletes it or removes the app.
Result images
PuzzleWall can render a result image on the device. It leaves the app only when you save it to Photos or send it through the system share sheet. The destination app, cloud drive, social service, or recipient then handles its copy under its own terms.
PuzzleWall puzzle files
A .puzzlewall file contains the full image, puzzle mode, grid, current state, elapsed time, move count, and selected gameplay settings. The file is created in a temporary device directory and cleaned after the share flow or later by the operating system. The recipient or storage provider you select may retain its own copy.
iCloud sharing
When you create an iCloud share, PuzzleWall stores the full image and puzzle state in Apple iCloud/CloudKit and shares it read-only with the participants you choose. After accepting the invitation, a recipient retrieves the puzzle through Apple’s service.
iPocket does not operate a separate PuzzleWall account or synchronization server for this feature. Storage region, security, retention, and participant access are governed by Apple, your Apple account, and the share configuration. Removing PuzzleWall from a device may not automatically delete share records that remain in iCloud.
One-hour browser links
When you expressly accept Cloudflare’s terms and actively create a browser challenge, PuzzleWall first encrypts the photo and puzzle content on your device. The Vercel-hosted PuzzleWall Relay then validates the request and coordinates creation of a temporary page. Encrypted content is uploaded from the device to Cloudflare. The Relay does not receive the photo, puzzle content, or decryption key, and Cloudflare does not receive the decryption key. The information needed to view the puzzle is included in the complete link you share. When a recipient opens that complete link, the photo and puzzle content are decrypted only in the recipient’s browser; the decrypted content is not sent back to PuzzleWall Relay, Vercel, Cloudflare, or iPocket.
The temporary link expires after about one hour. Anyone who obtains the complete link can view the photo and puzzle content while it remains valid, so share it only with people you trust and do not publicly post links containing sensitive photos.
To limit service availability, the Vercel Relay does not create a temporary browser link when the request’s network egress IP is identified as being in Mainland China. This is IP-based geolocation rather than an absolute determination of residence; VPNs, proxies, or carrier routing may affect the result.
Vercel and Cloudflare may still process IP addresses, request times, network diagnostics, and security logs necessary to provide their services under their respective policies. PuzzleWall does not fully control retention of their underlying logs or backups.
5. PuzzleWall Pro purchases and subscriptions
PuzzleWall Pro offers auto-renewable subscriptions and a lifetime purchase. Apple handles payment, renewals, refunds, transaction records, and Apple account verification through the App Store and StoreKit. Available options, prices, and subscription terms are shown in the app and the App Store.
PuzzleWall uses RevenueCat to load the product, validate and restore transactions, maintain the Pro entitlement, prevent purchase fraud, provide purchase support, and measure purchase performance. Because PuzzleWall has no account system, RevenueCat uses an anonymous App User ID that iPocket does not connect to your name, email address, or Apple account identity. RevenueCat processes the product and transaction information, purchase history, entitlement status, and limited app or device technical information needed to provide this service.
iPocket and RevenueCat do not receive your payment-card details or complete Apple account credentials. Photos, puzzle content, and gameplay history are not sent to RevenueCat.
6. Support email
When you choose Contact Support in Settings, PuzzleWall prepares an email for you to review and confirm. The default diagnostics may include the app name and version, iOS version, and device model identifier. You can edit or remove this information before sending.
After you send the message, your text and attachments are handled by your email provider and the iPocket support mailbox. We use them only to answer the request, troubleshoot the issue, and prevent abuse.
7. Analytics, advertising, and tracking
The current version:
- Does not use general-purpose third-party behavioral analytics or crash-reporting SDKs
- Uses RevenueCat only for purchase and entitlement functionality, fraud prevention, purchase support, and purchase-performance analytics
- Does not display third-party advertising
- Does not use an advertising identifier
- Does not track users across apps or websites
- Does not sell photos or gameplay records
Apple, RevenueCat, Vercel, Cloudflare, an email provider, a nearby recipient, or another sharing destination you choose may process the content or technical data necessary to provide its service under its own policies. RevenueCat does not inherently use PuzzleWall purchase history to track users across other companies’ apps or websites for advertising.
These analytics statements apply to the PuzzleWall app and Messages extension. Separately, when you visit this policy on ipocket.xyz, the website uses the first-party stat.ipocket.xyz traffic service together with Vercel Web Analytics and Vercel Speed Insights. These website services may process page URL, referrer, browser, device, language, screen, approximate-region, network-request, and web-performance data to operate, secure, and improve the website. Website measurements are separate from and are not combined with PuzzleWall photos, Messages content, or gameplay records.
8. Security and limitations
Local data relies on iOS app isolation, device storage protection, and your device security settings. Native Messages and iCloud sharing rely on Apple’s account and cloud security; face-to-face sharing uses an encrypted local-network connection; temporary browser sharing encrypts content on the device, but the complete link itself is the access credential.
No network transfer, cloud service, or sharing method can be guaranteed absolutely secure. After you send a file or link, recipients may save, copy, or forward the content, and PuzzleWall cannot control those copies.
9. Your choices and deletion
You can:
- Play locally without creating an account
- Select only photos you are willing to use as puzzles
- Decline or revoke Add to Photos access
- Decline or revoke Camera and Local Network access and avoid QR-code or face-to-face sharing
- Delete a puzzle in the app to remove its local image, progress, and history
- Avoid the Messages extension and do not insert or send a PuzzleWall message
- Do not choose Save to PuzzleWall in the Messages extension; a puzzle successfully saved to the containing app can be deleted there like any other local puzzle
- Avoid face-to-face, puzzle-file, iCloud, and browser-link sharing
- Manage relevant cloud data and sharing through your Apple account and iCloud settings
- Manage or delete sent PuzzleWall messages through Apple Messages; recipient copies remain under each recipient’s control
- Choose not to purchase or subscribe to PuzzleWall Pro, manage purchases and subscriptions through Apple, or contact iPocket regarding a request about RevenueCat end-user records; Apple transaction records and records required by law may remain
- Avoid sending support email, or contact us to request deletion of support correspondence we received, subject to required legal retention
- Remove the app to clear local app data from the current device
10. Children’s privacy
PuzzleWall can be enjoyed by families, but the current version is not specifically directed to children under 13 and is not listed in the App Store Kids category. We do not knowingly collect children’s information through accounts, advertising, or analytics tools.
Photos may contain images of children or other people. Make sure you have the right to use and share those photos. A parent or guardian should supervise a child’s use of sharing features.
11. Policy updates
If PuzzleWall’s data practices or service providers change materially, we will update this policy and may provide notice through the website, release notes, or another appropriate method. The revised policy applies from the effective date shown on this page.
12. Contact
If you have questions about PuzzleWall privacy or data deletion, contact:
- Email: contact@ipocket.xyz