Developer: CROCODATA Sp. z o.o. · KRS 0001241145 · NIP 7582407044 · Poland
Contact: contact@crocodata.net
You can request deletion of your FotoPost account and the personal data we store for you. This page works even if you have already uninstalled the app. Below we explain how to request deletion, what is removed, what may be kept, and for how long.
Option 1 — Delete in the app (recommended)
- Open the FotoPost app on your device.
- Go to Settings.
- Tap Delete my data.
- Confirm when prompted.
Deletion starts immediately. You will be signed out. Your Firebase authentication account and associated profile data are removed from our systems as described below.
Option 2 — Email request (if you uninstalled the app)
Email contact@crocodata.net with the subject line FotoPost data deletion request. Include:
- The email address linked to your FotoPost account (if you signed in with email), or
- Enough detail for us to identify your account (for example approximate sign-up date and any order reference you may have).
We will verify ownership and complete deletion within 30 days.
What we delete
When you delete your data (in-app or by email), we remove from our systems (Google Firebase):
- Your account and profile — including your Firebase authentication account, optional email address, and account-linked identifiers
- Uploaded photos in Firebase Storage — photos you selected for printing that we stored for order fulfilment
- Push notification tokens (FCM), if any were stored for your account
- Other account-linked data in our database that directly identifies you
Photos uploaded for a print order are also automatically deleted from Firebase Storage within 30 days of order placement, even if you do not delete your account.
Photos you never selected for printing are never uploaded — they remain only on your device and are not affected by account deletion on our servers.
What we keep (and why)
| Data | What happens | Retention |
|---|---|---|
| Order and invoice records | When you delete your account, we anonymise order records (for example print_orders) rather than fully erase them. Personal identifiers such as your account ID and delivery address are removed or replaced so the record can no longer be linked back to you. |
Kept in anonymised form for accounting and tax compliance |
| Invoices and tax records | We must retain invoices and related bookkeeping records under Polish tax law, even after anonymisation of live account data. | Typically 5 years from the end of the tax year in which the invoice was issued (as required by Polish law) |
| Payment records | Stripe may retain payment and transaction records under Stripe’s privacy policy. We do not store card details. | Per Stripe’s policy |
| Print partner (Familink) | Orders already sent to Familink for printing may be retained by Familink for fulfilment and support under their policy. | Per Familink’s policy for completed orders |
| Encrypted backups | Residual copies in encrypted infrastructure backups may persist briefly before automatic purge. | Up to 90 days, as allowed by law and our provider |
More information
See our Privacy Policy for full details on what data we collect and your rights under GDPR. For general questions or to exercise other rights (access, correction), contact contact@crocodata.net.