FogFish Privacy Policy

Last updated: September 21, 2026
Effective: September 21, 2026

FogFish is provided by huxinke (“we,” “us,” or “our”). Privacy contact: fogfishnofog@gmail.com.

This policy explains how FogFish handles personal information, what stays on your device, what is sent to third parties, and your choices. It applies to the FogFish app. External maps, AI services, and websites you choose to open also have their own privacy rules.

1. Key information

2. Information we process and why

Fishing records you create

When you create, edit, or import records, FogFish stores the information you provide on your device. This may include spot names and coordinates, regions and water types, groups, notes, visit dates, fish species, lengths and weights, photos, session times, linked records, search areas and map markers, bait, fishing methods, rods, reels, and other equipment details. It is used to display spots, record sessions, review history, and generate local statistics.

Compatible backups may include historical routes or tracks with coordinates, timestamps, accuracy, speed, and bearing. Historical or imported unfinished sessions may continue recording locations while the app is in use. The current version does not provide continuous background location tracking.

Photos, notes, and coordinates may contain information about you or others. Avoid recording other people’s faces, contact details, or private locations unnecessarily.

Location and maps

With location permission, FogFish uses the location and accuracy information supplied by your device to show your position, record spots, and calculate distances. You may disable precise location, deny access, or revoke permission later. Location-dependent features will be affected, but existing records remain available.

Viewing a map sends requests that identify the displayed area and zoom level. Place search, nearby-place queries, and suggested spot names may send search text, spot or nearby coordinates, language settings, and request identifiers to the relevant provider. A map area can reveal a location of interest even without GPS access.

Photos and historical videos

The app saves local photo copies or thumbnails when you take or select photos for a record. Selecting photos through the system picker does not give FogFish access to your entire photo library.

The current version does not record audio or video, request microphone access, or write new photos or videos to the system photo library. Camera access is used only to take photos.

For compatibility with historical records and imported backups, FogFish retains existing video references, associated record information, and thumbnails. Historical videos may contain sound recorded at the time; the original videos remain in the system photo library. Photo-library read access is used to find these linked videos, display their status, and play them. A video may not play if the original is unavailable or the necessary read access has not been granted. Retaining these historical references does not create or record new videos.

Taking, selecting, or locally saving a photo does not by itself send it to AI. Section 3 explains identification requests.

Service credentials and preferences

If you enter API keys, access tokens, or other credentials for optional services, FogFish stores them in the device’s system Keychain and uses them to authenticate requests to the corresponding provider. We do not operate a backend that receives these credentials.

Map styles, display preferences, selected providers and models, and region-name caches are stored locally. Region caches may contain coordinates associated with spots.

Network and diagnostic information

When a third-party service receives a request, it receives the IP address, request time, and authentication information. Depending on the service, it may also process app and SDK versions, device or operating-system information, service-generated identifiers, interactions, performance data, and errors to operate and bill for the service, protect security, troubleshoot, and improve services. Mapbox is described in Section 4.

If you choose to share analytics or crash information through Apple’s system settings, Apple may provide developers with reports and statistics under its privacy rules. We use reports we receive to diagnose issues and improve stability.

Information you send us

If you contact us by email, we receive your email address, message, and any screenshots, logs, or other materials you choose to attach. We use them to handle your inquiry, privacy request, and necessary follow-up. Please do not send API keys or unrelated sensitive information.

3. Optional AI fish identification

AI identification requires configuration and use of the relevant service. FogFish does not initiate an identification request if the selected service’s required credentials are absent.

When you request identification or re-identification, the app compresses the photos included in that request into JPEGs and sends them with fish-identification instructions, model information, and necessary authentication information to the selected provider. The current identification request does not separately attach spot coordinates, your notes, catch weight, or your complete fishing history. However, a photo itself may show people, landmarks, or other personal information. Image compression is not anonymization.

The available providers are Doubao through Volcano Engine Ark, Qwen through Alibaba Cloud Model Studio, and Google Gemini. If Fishial assistance is enabled and configured, the first identification photo is sent to Fishial. Its candidate results are then used as supporting input alongside the identification photos sent to the selected AI provider. Candidate responses and identification records you accept may be stored on your device.

Only submit photos you are entitled to process and that are appropriate to send to the selected service. Providers may retain requests, conduct safety review, or use content to improve services under their applicable API terms, account type, billing status, and settings. FogFish cannot promise zero retention or no training across all providers. Gemini’s unpaid and paid API data terms differ; review the official links below before use.

You can stop using identification, clear the corresponding credentials in settings, and disable Fishial assistance to stop subsequent requests. This does not retract information already sent. You may contact a provider through its privacy channels about retained information, or contact us for assistance.

4. Third-party services and recipients

This list describes services integrated into the current app. It does not mean all services are active at once. Other than the default map, optional imagery, place enhancements, and AI depend on your selections and configuration.

Mapbox: default maps and optional place services

Mapbox receives map requests, IP addresses, service and session identifiers, app/device/SDK information, usage, and diagnostics. With device location permission, its SDK may also process precise or approximate location. Configured search features additionally send query text and query locations.

The Mapbox SDK enables location and usage telemetry by default to improve mapping products. You can opt out through the Mapbox information/attribution menu on the map. Opting out does not stop network requests needed for maps and queries you initiate. You can also revoke FogFish’s location permission in system settings.

Mapbox privacy and product privacy policies · Mapbox telemetry

Apple: system services, external maps, and device backups

FogFish uses Apple services for device location, place-name lookup, and media access. Place-name lookup may send coordinates to Apple. Choosing Apple Maps navigation passes the destination name and coordinates to Apple Maps. iCloud or computer device backups, iCloud Photos, and system analytics operate according to your Apple settings.

Apple Privacy Policy

LocationIQ: optional place and nearby-place queries

When configured and used, LocationIQ receives query coordinates, query parameters, an API key, and network information to return place names or nearby places.

LocationIQ Privacy Policy

Google Maps Platform: optional satellite imagery

Enabling Google satellite imagery sends the map area or tile location, zoom, language/region, map-session identifier, API key, and network information to Google to obtain imagery and attribution. This is separate from Gemini identification; enabling imagery does not upload your catch photos.

Google Privacy Policy

Esri / ArcGIS: optional satellite imagery

Enabling Esri imagery sends the map area or tile location, zoom, access token, and network information to Esri to obtain imagery.

Esri privacy information

Optional identification providers

These providers receive the photos, request content, and credentials described in Section 3. Configuring one provider does not send photos to every provider. Fishial’s additional-recipient workflow is explained separately above.

External navigation apps

When you choose navigation, FogFish passes the destination name and coordinates to Apple Maps, AMap, or Baidu Maps, as selected by you. That app then handles navigation and location under its own permissions and policy. FogFish checks whether supported navigation apps can be opened; it does not collect your full installed-app list for advertising or profiling.

AMap privacy policy · Baidu Maps privacy policy

These links help you understand provider practices and do not remove our responsibility for our own processing. We require appropriate protection where providers process information on our behalf as required by law. Independent providers also process information under their own policies.

Beyond the features and sharing choices described here, we disclose information we actually hold only where necessary under applicable law, valid legal process, or to protect lawful rights, and only to the extent relevant to that purpose.

5. Backups, exports, and sharing you initiate

You can export records, photo copies, and some settings with the app’s backup feature. Backups may contain precise spot coordinates, notes, historical tracks, photos, and video thumbnails/references. They do not contain API credentials or the original videos stored in the system photo library.

FogFish does not add encryption to exported backup files. Choose storage locations and recipients carefully. If you save or send a backup through iCloud Drive, another storage provider, email, or a messaging app, that service handles the information under its own rules. We do not automatically receive your exports.

FogFish has no developer-operated record synchronization. However, iOS device backups and iCloud Photos may contain copies according to your system settings. Manage those copies through Apple or the relevant provider.

6. Retention and deletion

We cannot restore data from our servers when that data existed only on your device and you have no backup.

7. Your choices and rights

You can view, edit, delete, and export records on your device. Manage location, precise location, camera, and Photos permissions in iOS settings. Manage optional credentials and Fishial assistance in FogFish settings, and opt out of Mapbox telemetry in the map’s information menu. The current version does not record audio or video, request microphone access, or write media to the system photo library.

Revoking permission, clearing credentials, or stopping an optional feature affects future processing that depends on that permission or service. It does not automatically undo prior lawful processing or erase provider-held information or your exported copies.

Depending on applicable law, you may request information about processing, access, correction, deletion, a copy of your information, restriction or objection to processing, and withdrawal of consent. You may also complain to the competent regulator. Contact the email in this policy for assistance. We verify requests only as necessary and respond within applicable legal deadlines, without requesting unrelated sensitive information or improperly discriminating against you for exercising your rights.

We generally cannot remotely access, change, or delete device-only information and will explain the steps you can take locally. For provider-held information, we will identify the relevant recipient and request channels and assist where required by law.

8. Security and international processing

FogFish uses the app sandbox for local records, the system Keychain for credentials, and HTTPS for integrated online APIs. These measures reduce unauthorized-access risks but cannot guarantee absolute security. Protect access to your device and share backups carefully.

Online services may process information outside your country. The current Doubao/Ark and Qwen/Model Studio endpoints connect to mainland China services; Mapbox, Google, LocationIQ, Esri, and Fishial may process requests in the United States or elsewhere. Actual processing locations, subprocessors, and safeguards depend on the provider and account terms. An endpoint name alone does not establish every storage location.

We comply with applicable data-protection and international-transfer requirements. Where separate disclosures, consent, or safeguards are legally required, this policy does not replace those requirements.

9. Minors

FogFish is not specifically directed at children. Minors should use it with a parent or guardian’s guidance and comply with local law and provider age requirements. Optional AI services may impose stricter limits; Gemini API, for example, requires users to be at least 18. If you do not meet a provider’s conditions, use manual recording and species selection instead of submitting photos to it.

If you are a parent or guardian and believe we have processed a minor’s information without legally required authorization, contact us below. We will investigate and act as required, including helping contact the relevant provider where needed.

10. Policy updates

We may update this policy when features or processing practices change and will update the dates above. We will communicate significant changes through an in-app notice, release information, or another appropriate channel. We will obtain fresh consent where required; continued app use does not replace legally required explicit consent.

11. Contact us

Operator: huxinke
Privacy contact: fogfishnofog@gmail.com

Please describe your question or requested right, the relevant feature, and the approximate time involved. Unless necessary, do not attach complete backups, precise fishing locations, or API keys.