Your footage is nobody's business.
Last updated: September 15, 2026
OpenPocketCine is an open-source field monitor for DJI Osmo Pocket cameras. The app has no account. Automatic error reports are off by default. OpenCapture is the data controller for the processing described here. Contact support@openpocketcine.app privately about privacy or deletion. This page is the canonical privacy text.
What the app does with data
- Live view and camera status happen entirely over Bluetooth and the camera's own Wi-Fi between your device and your camera. Video frames and raw camera packets stay on that local link.
- Saved camera names and last SSID are stored only in app-local storage on your device. The camera Wi-Fi password is stored in the iOS Keychain on this phone only.
- Operator preferences such as Keep Screen Awake and the last LUT look stay on the device, along with any .cube files you import.
What never leaves the phone
Live HEVC, DUML telemetry, and pairing traffic stay on the local link. We do not operate a footage cloud. We do not sell data or use advertising SDKs. Optional reliability reporting sends technical measurements, never camera footage or raw camera packets.
Third parties
- Apple (or Google). Permission prompts and OS diagnostics are processed under their own policies. If you install a TestFlight or Play beta, Apple or Google may provide crash reports to the developer under their terms.
- Sentry (optional reliability reports). In builds configured for this service, you can enable Automatic error reports in Operator Setup. Reports include app/build and OS versions, hardware class, camera family, ephemeral session identifiers, frame timing, recovery attempts, session duration measurements, and crash or hang diagnostics. They exclude footage, screenshots, raw camera packets, camera Wi-Fi passwords and personal device names. We do not collect GPS location; stored event IP addresses and IP-derived geography are removed. Sentry necessarily receives your IP address while accepting the network connection. Reports wait while a camera session or camera Wi-Fi path is active. Turning the option off stops reporting and clears the pending reporting cache on this phone; it does not retract reports already received by the service. Local diagnostic reports remain available to share or delete. Sentry explains its privacy practices in its privacy policy; submitted reports are handled under the configured project's service agreement. Builds without a configured service cannot enable uploads.
- Frame.io (optional). If this build is configured and you sign in, the app talks directly to Adobe IMS and Frame.io to upload clips you pick. The token stays in the on-device Keychain. Uploads go device → Frame.io, never through us. Adobe's privacy policy applies.
- Photos and system share. Saving a clip or using the share sheet is something you start. Apple or the app you pick then handles that file.
- On-device face boxes. AF-C face boxes are computed on the phone with Apple Vision from the live preview. Face geometry is not uploaded.
- Android location permission. Android may ask for location so the app can join the camera's Wi-Fi / scan BLE. OpenPocketCine does not use that permission for maps, ads, or a location history. Camera Wi-Fi passwords stay in platform-secure storage on that phone.
- GitHub. If you open an issue or discussion, that is public and governed by GitHub's policies. Never post camera Wi-Fi passwords, captures, or private media.
- Tally (former website waitlist). If you previously joined the Android closed-beta waitlist from this website, Tally stored the email and any Osmo or device notes you submitted. Tally's privacy policy applies to that storage. We did not run that form ourselves. This website no longer collects waitlist signups.
What the app does not do
- No automatic reliability uploads without opt-in and a configured reporting service.
- No advertising or tracking across apps or websites.
- No account with us — the app has no sign-up.
- No sale of personal data.
Reporting a problem yourself
Report a problem in System opens a native form. When you tap Send report, your description, any optional reply email, selected images and technical details you choose are sent to OpenCapture through Sentry to help investigate and improve the app. Technical details are off by default and can be reviewed. You may choose up to three photos or screenshots, preview them and remove them before sending. We resize and re-encode selected images without their original filenames or location metadata. The images themselves may contain personal or confidential information: only share images you have permission to send. No images are captured or attached automatically. Please do not include passwords or other sensitive information in your message. This one-off submission does not enable automatic reports. Unsent reports are stored privately on your phone and expire after seven days (removed the next time the app runs). They wait until you leave camera Wi-Fi and can be removed before delivery. Once received, the Sentry retention and deletion arrangements below apply. We use an optional email only to follow up about your report.
Your choice and legal basis
Optional reliability reporting relies on your consent (GDPR Article 6(1)(a)). The first-launch prompt offers Enable automatic reports and Not now. Declining leaves all features and manual reporting available; you can opt in later in System. It helps OpenCapture diagnose crashes, hangs and live-feed interruptions and measure recovery. It is off by default. You can use every camera feature without consenting. Withdraw consent at any time by turning off Automatic error reports in Operator Setup. This stops further reporting and clears pending SDK uploads; withdrawal does not change the lawfulness of processing before withdrawal. Reports already received can be the subject of a deletion request.
Reports use random incident and session identifiers rather than an account or advertising identifier. Technical reports can still be personal data; we do not promise that removing names makes them anonymous. We do not use reports to make automated decisions about you or to profile you for advertising.
Where reports are processed
Sentry (Functional Software, Inc., United States) processes optional reports for OpenCapture. Our Sentry organization uses the Germany region for event storage. Some account, integration and organization metadata may be processed in the United States, and international access or transfers may occur. Sentry describes its available transfer safeguards, including standard contractual clauses, in its Data Processing Addendum, and publishes its subprocessors and EU storage details.
How long data is kept
Sentry event and attachment retention depends on the plan in effect when a report arrives: normally 30 days on Developer or 90 days on Team and Business plans. Issue summaries may remain after individual events expire. Sentry rotates backups separately, within 30 or 90 days depending on data type. See Sentry retention periods. Deletion requests also cover any identifiable copies we have exported for support.
On-device diagnostic storage is bounded and older reports are rotated. You can delete saved reports in Operator Setup. Turning off reporting clears pending SDK uploads; it does not clear separately saved local diagnostics. Preferences remain until you change them or remove the app, subject to platform backup and secure-storage behavior.
Information previously collected through the Android waitlist is kept while needed to administer your beta access, or until you withdraw. Private support correspondence is kept while needed to resolve the request and follow up. We review these records and remove information no longer needed; legal obligations may require specific records to be retained longer.
Your privacy rights
Depending on the circumstances, you may request access, correction, erasure, restriction or portability of your personal data, object to processing based on legitimate interests, and withdraw consent. You may complain to your local data protection authority. Email support@openpocketcine.app privately. We normally respond within one month; if a lawful extension is needed, we explain it.
We do not attach a name or email address to reliability reports. If available, include an incident identifier from a saved report, the approximate time and app build to help locate your data. We may need limited additional information to locate a report or verify a request. Do not post personal details or diagnostic attachments in public GitHub issues or discussions.
Visiting this website
GitHub Pages serves this website and receives technical connection information, including your IP address, to deliver and secure it. Pages that load Google Fonts also make a connection to Google. These providers process connection data under their own policies. We do not use advertising cookies. Optional external services receive data when you use them. Necessary site delivery and handling support requests are based on our legitimate interests in operating and supporting OpenPocketCine; you may object where this basis applies.
Website waitlist
The app still has no account. This website previously had an optional Android closed-beta waitlist; it is no longer offered. If you submitted it, we received your email (the Google account that will install from Play) and any Osmo or phone/tablet notes you included. That data is used only to administer Play tester access. It is not a newsletter, not an app account, and not sold.
Historical waitlist processing relies on your original consent. To withdraw or request deletion, email support@openpocketcine.app from the address you used. Do not publish your email in GitHub Discussions.
Changes and contact
Changes to this policy are published on this page and in the project's public repository. Bugs: GitHub Issues. Privacy and private support: support@openpocketcine.app.