The Perfect Gift
Privacy Policy
Last updated: September 29, 2026
Other languages: Italiano · Deutsch · Français · Español
The Perfect Gift is built local-first: the people, dates and ideas you save stay on your device. A copy goes to the cloud only if you create an account, for backup; when you ask the AI for ideas, we send the details of that search to generate them. We don’t sell personal data and there are no ads in the app. Below you’ll find what data we process, why, with whom, and what your rights are.
Who is responsible for your data
The controller of your personal data is the developer of The Perfect Gift, as listed on the app’s page on the App Store and Google Play (“we” or “us” in this policy).
For any privacy question, or to exercise your rights, write to us at [email protected].
Data stored on your device
The people you add (name or nickname, relationship, age, gender if you enter it, birthday, interests, notes and photo), your dates, gift searches and their results, saved ideas, gifts already given, ratings, budget plans and settings are stored in the app’s storage on your device.
Photos you add to profiles stay on your device: they are not uploaded to our servers, not even with the backup.
You can edit or delete this data whenever you want. From the “You” tab you can delete all local data (your cloud backup, if you have one, stays until you delete your account); uninstalling the app removes it from your device.
Information about other people
In the app you enter information about other people, such as family, friends or colleagues. Only enter what you need to choose a gift and what that person would reasonably expect you to use for this purpose.
Don’t enter sensitive information, such as details about health, religion, sexual orientation or political opinions, financial data or identity documents: none of it is needed to find a gift.
Account and sign-in
You don’t need an account to use the app. If you want, you can sign in with your email (we send you a one-time code, no password), with Apple or with Google. Sign-in is handled by our provider Supabase.
If you sign in with Apple or Google, we receive your email address (with Apple, this may be a private “Hide My Email” address) and, depending on the service, some basic profile details, such as your name or Google profile picture. We never receive your password.
To let you try the AI search without signing up, the app can create an anonymous session: a random identifier, with no email or name, used only to count your trial searches (currently 2) and to protect the service from abuse. No backup is made for anonymous sessions.
If you sign out, the data on your device stays where it is.
Cloud backup
If you sign in with an account, the app automatically saves a copy of your data in the cloud, so you get it back if you change or reinstall your device. The copy updates by itself shortly after every change and when the app goes to the background.
The backup contains the data described above (people, dates, searches and results, saved ideas, gifts given, ratings, budget plans, reminder settings and search counters), except photos.
The backup is stored on Supabase servers in the European Union and protected by access rules: each account can only read and change its own data.
When you sign in on a new device, the backup is merged with the data already there; from the “You” tab you can also restore your latest backup.
AI gift search
When you start an AI search, the app sends our server function the language and country of the shops, the occasion, the budget range, the relationship, the age or age range, the person’s name or nickname (if you entered one), their interests, the gift style, things to avoid, your notes and any extra answers. So as not to repeat itself, it also sends the titles of gifts already given to that person, of ideas you saved for them and of ideas already shown. The request includes your account session (anonymous or not), used only to check access and limits.
The function passes the search details, without your account data, to Anthropic, whose Claude model generates the ideas. Birthdays, gender, photos, your email and data about the other people you saved are not sent. Under Anthropic’s commercial API terms, this data is not used to train its models and is kept only for a limited period, for safety and to enforce its usage policies.
To find the product and a shop link, the function searches for the name of the idea (for example “Nirvana Nevermind vinyl”) through Serper, a service that returns Google search results, including Google Shopping; for Italy it may also use Google search. These services only receive the product search and the country and language of the shops, not the person’s data.
We don’t keep the details of your searches on our servers: the results stay on your device and, if you have an account, in your backup. We count successful searches to apply your plan’s limits and, for each search, we record a technical entry without personal data, described below.
Usage statistics and technical data
To understand how the app is used and to fix problems, we record some usage events in our database: for example search started, idea opened or saved, shop link opened, person added, Premium purchase and app errors.
Events may include general details such as the occasion, budget range, type of relationship, gift category, shop name, chosen plan or the technical message of an error, plus the app version and operating system. They are linked to a random identifier created on your device and, if you are signed in (including with an anonymous session), to your account identifier. They don’t contain names, emails, notes or any other text you write.
For each AI search we also record a technical entry that is not linked to your account (language, country, occasion, budget range, outcome, response time, number of ideas and model usage), which we keep for 90 days.
Like any online service, our providers briefly log technical connection data, such as IP addresses, for security and operation.
We don’t use third-party SDKs for analytics or advertising, we don’t track you across other apps or websites, and we don’t sell personal data.
Purchases and subscriptions
The Perfect Gift can be used for free; Premium features are unlocked with a subscription (monthly or yearly) or a one-time purchase. Payment is handled by Apple (App Store) or Google (Google Play): we don’t see or store your card details.
To know whether you have Premium we use RevenueCat, which receives from the app an anonymous identifier generated by RevenueCat, the purchase details provided by the store (product, date, renewal status, country and currency) and technical information about your device. RevenueCat does not receive your name, your email or the data about the people you save.
Affiliate links and external sites
Some Amazon links in the app are affiliate links: if you buy after opening them, we may earn a commission at no extra cost to you. The app shows when a link is an affiliate link. Commissions don’t influence the ideas we suggest: the AI chooses based on the person.
As an Amazon Associate I earn from qualifying purchases.
When you open a link you leave the app: Amazon and other shops may use cookies and similar technologies (including to know that you came from our link) under their own privacy policies. We don’t receive information about your purchases that identifies you.
Product photos are loaded directly from the servers of shops or Google: as with any web content, these servers receive your device’s IP address and technical details of the request.
Notifications
Reminders for birthdays and other dates are local notifications scheduled on your device, only if you allow them. We don’t use push notifications sent from a server and we don’t collect notification tokens.
Service providers and transfers outside the EU
We rely on these providers, which process data on our behalf, only for the purposes described and with protection at least equivalent to that described in this policy: Supabase (database, sign-in and server functions; database data is stored in the EU), Anthropic (generating ideas), Serper and Google (product search) and RevenueCat (purchase status). Apple and Google process sign-in and payment data as independent controllers, under their own privacy policies.
Some providers are based in the United States or process data outside the European Economic Area. In these cases transfers rely on the safeguards provided by the GDPR, such as an adequacy decision of the European Commission (for example the EU-U.S. Data Privacy Framework, for providers that have joined it) or the standard contractual clauses approved by the Commission.
Why we process data (legal bases)
To provide the app and the services you choose to use (account, backup, AI search, reminders and purchases), based on our contract with you (Art. 6(1)(b) GDPR).
For usage statistics, error analysis, security and abuse prevention (such as the limits on searches and anonymous sessions), based on our legitimate interest in improving and protecting the service (Art. 6(1)(f) GDPR). You can object at any time by turning off “Usage statistics” in the “You” tab or by writing to us.
To comply with legal obligations, where applicable (Art. 6(1)(c) GDPR).
Providing data is optional, but without some of it certain features, such as AI search or backup, cannot work.
We don’t use your data for advertising, marketing profiling or automated decisions that have legal or similarly significant effects on you.
How long we keep data
Data on your device: until you delete it or uninstall the app.
Account and cloud data: for as long as you have an account. When you delete it, your account, backup and search counters are erased; any backup copies of the provider’s database are deleted in their normal rotation.
Anonymous sessions: the identifier and the trial search counter, for as long as needed to apply the limit.
Usage statistics: for as long as needed to understand how the app is doing; if you delete your account, they are no longer linked to it. Technical search log: 90 days. Data processed by our providers: for the periods set out in their terms.
Your rights
If the GDPR applies to you (in particular if you live in the European Union or the European Economic Area), you have the right to access your data, correct it, delete it, restrict its processing, receive it in a machine-readable format (portability) and object to processing based on legitimate interest.
You can do many of these things directly in the app: edit or delete the data on your device and, from the “You” tab, delete your account. Deleting your account permanently erases your account, your cloud backup and the data on your device.
For everything else, write to us at [email protected]: we reply within one month. We may ask you to confirm that the account is yours.
You also have the right to lodge a complaint with the data protection authority of the country where you live or work, for example the Data Protection Commission in Ireland or the Garante per la protezione dei dati personali in Italy.
If you live outside the EU
United Kingdom and Switzerland: the UK GDPR and the Swiss Federal Act on Data Protection (FADP) give you rights similar to those described above; you can complain to the Information Commissioner’s Office (ICO, United Kingdom) or the Federal Data Protection and Information Commissioner (FDPIC, Switzerland).
United States: we don’t sell your personal data or share it for targeted advertising. Depending on the state where you live (for example California), you can ask us what data we hold about you and ask us to correct or delete it by writing to us; we won’t discriminate against you for exercising these rights.
Canada and Australia: we handle data in line with the applicable privacy laws (PIPEDA and the Privacy Act 1988). You can ask to access and correct your data and, if you’re not satisfied with our answer, contact the Office of the Privacy Commissioner of Canada or the Office of the Australian Information Commissioner (OAIC).
Mexico: you can exercise your rights of access, rectification, cancellation and objection (ARCO rights) by writing to us.
In any case, your data may be processed in the European Union, the United States and the other countries where our providers operate.
Children
The Perfect Gift is designed for adults and is not directed at children under 16. We don’t knowingly collect personal data from children: if you think a child has given us data, write to us and we will delete it.
You can also create profiles for children you give gifts to: in that case, only enter the information useful for the gift.
Security
Communication between the app and our servers is encrypted (HTTPS), and the keys for external services, such as the AI, stay on the server and are never in the app. No system is 100% secure, but we take reasonable measures to protect your data.
Changes to this policy
We may update this policy when the app changes. The date at the top shows the current version; if the changes are significant, we will let you know appropriately, for example in the app.
Contact
For privacy questions, to access your data or to ask for it to be deleted, write to us at [email protected].