The short version. Plainsign has no account and no server for your documents. Everything you import, fill, sign or save, including your saved signatures and your My info details, stays on your iPhone or iPad. The app contains no analytics, no crash reporting, no ads and no tracking. The only time it goes online on its own is to check your App Store purchases, through a service called RevenueCat, using an anonymous ID. We never see your documents, and we never sell data.
1. Who we are
Plainsign (“eSign: Sign PDF & Documents” on the App Store) is made by Cihat Karaboğa, an independent developer based in Istanbul, Türkiye (“we”, “us”). For the small amount of personal data described in this policy that reaches us or our providers, we are the data controller. You can reach us about anything in this policy at cihattkaraboga@gmail.com.
This policy covers the Plainsign app for iPhone and iPad, its share extension, and this website.
2. What stays on your device
Plainsign does its work on your iPhone or iPad. Opening and rendering PDFs, finding the fields in a document, recognising text on scanned pages, straightening scans, removing the background from a signature photo and creating the signed PDF all happen on the device, using Apple’s frameworks and libraries built into the app. Nothing is sent to us or to any cloud or AI service for this.
The app stores the following only on your device. We can’t see, access or recover any of it:
- Your documents: the files you import, scan or share into Plainsign, your drafts, and the signed copies, together with their names, folders and templates.
- Your signatures and initials, whether drawn, typed or photographed.
- My info: the name, initials, email, phone, company, job title and address you choose to save for autofill. These are stored in the iOS keychain.
- Your settings, such as appearance, language and app lock.
- Your plan status and whether you’ve used your free document, also in the keychain, so the app works offline.
Passwords you type to open a locked PDF are used once to unlock it and are never saved. Plainsign keeps an unlocked copy of that document on your device to work on, so a signed copy you share doesn’t ask for the password.
Backups. Plainsign doesn’t use iCloud Drive or any sync of its own. Like most apps, though, its data is included in your device’s own backup (iCloud Backup or a backup on your computer) if you have backups turned on. Those backups belong to your Apple Account and are covered by Apple’s privacy policy; we have no access to them.
3. What leaves your device
| When | What is sent | To whom, and why |
|---|---|---|
| Checking and restoring purchases | A random, anonymous ID that RevenueCat creates for your installation; which product you bought; when a trial or subscription started, renews or ends; your App Store receipt; and the technical details sent with every request, such as app version, iOS version, device model, language, App Store country and your IP address. No name, email, document or signature is ever included. | RevenueCat and Apple, to verify your purchase, unlock your plan and restore it on your other devices. |
| Paying | Handled entirely by Apple. We never see your card or payment details. | Apple, under its own privacy policy. |
| Documents you share | Only the files you choose to share, print or save, sent to the app, person or printer you pick in the iOS share sheet. | Whoever you choose. Their own privacy practices apply from then on. Nothing passes through us. |
| Links you open | If you open this privacy policy, Apple’s terms or Apple’s subscription page from the app, your device loads that web page like any browser would. | This website (see section 14) or Apple. |
| Emails to us | Your email address and whatever you write, including any attachments you choose to add. When you write from the app, the message also includes your support ID (the anonymous RevenueCat ID above), so we can find your purchase record. You can delete it before sending. | Us, to answer you. Our mailbox is hosted by Google (Gmail). |
We can see these purchase records in RevenueCat’s dashboard, listed by their anonymous ID. We use that access only to answer billing questions, to give complimentary access to Plainsign, and to delete a record when asked.
The trial reminder is a notification scheduled on your device by the app itself. No push server is involved.
4. Permissions the app asks for
Plainsign asks for a permission only when you first use the feature that needs it. You can change any of them later in your device’s Settings → Plainsign.
| Permission | What it’s used for |
|---|---|
| Camera | To scan paper documents and to photograph your signature. Images are processed on the device and stay there. |
| Photos | To pick a photo of a document or of your signature. The app reads only the photos you choose. |
| Face ID or Touch ID | For the optional app lock, and to confirm it’s you after someone signs in person. iOS does the check; Plainsign only learns whether it succeeded and never receives your face or fingerprint data. |
| Notifications | Only to remind you the day before a free trial ends. The reminder switch is on by default when you start a trial; turn it off, or decline notifications, to skip it. |
Plainsign doesn’t access your location, contacts, microphone, calendar or health data, and doesn’t ask for or use your advertising identifier.
5. Other people’s details and the certificate
Documents you sign often contain other people’s details, and with Sign in person someone else can add their name and signature on your device. All of this stays in the document on your device, like everything else, and reaches no one unless you share the document.
Signed PDFs include a signing certificate page, switched on by default on the Review screen. It records the document title, page count and import date; the name and email you saved in My info, if any; the names of anyone who signed in person; when each person signed (local time with its offset, and UTC); your device model, iOS and app versions; a count of what was added; and a SHA-256 fingerprint of the original file. The page becomes part of the PDF, so anyone you share the document with can read it. Switch it off on the Review screen to leave it out.
6. What we never do
- Upload, read or store your documents, signatures or My info.
- Ask you to create an account or log in.
- Include analytics, crash-reporting or advertising SDKs, or show ads.
- Track you across other companies’ apps or websites.
- Sell or rent personal data, or share it with data brokers.
- Use your documents to train AI models, ours or anyone else’s.
7. Who helps us
These providers process data for us, under their own terms and privacy policies, only for the purposes below:
| Provider | What they do | Data involved |
|---|---|---|
| RevenueCat, Inc. (USA) | Verifies and manages App Store purchases and subscriptions. | Anonymous ID, purchase and subscription history, receipt, technical details and IP address (see section 3). |
| Apple | App Store distribution, payments, refunds and subscription management. | As described in Apple’s privacy policy. |
| Google LLC (Gmail) | Hosts our support mailbox. | Emails you send us. |
| Hetzner Online GmbH (Germany) | Hosts this website. | Your IP address, briefly, to deliver the pages (see section 14). |
We may also disclose data if the law requires it, for example in response to a valid court order. Because we don’t hold your documents, there is nothing of that kind for us to disclose.
8. Where data is processed
Your documents never leave your device, so they aren’t transferred anywhere. RevenueCat and Google may process the limited data described above in the United States and other countries. Where that happens, we rely on recognised safeguards such as the European Commission’s Standard Contractual Clauses, the EU–US Data Privacy Framework where the provider is certified, and the transfer mechanisms allowed under Türkiye’s Personal Data Protection Law No. 6698 (KVKK).
9. How long data is kept
- Everything on your device: until you delete it in the app, use Delete all data, or delete the app (see section 11).
- Purchase records: kept by RevenueCat and Apple for as long as needed to provide your purchases and to meet tax and accounting rules.
- Emails to us: kept while we help you and for up to 2 years afterwards, in case you get in touch again, unless you ask us to delete them sooner.
10. Your rights
Depending on where you live (for example under the GDPR, the UK GDPR, KVKK or US state privacy laws), you may have the right to access, correct, delete or receive a copy of your personal data, to object to or restrict how it’s used, and to withdraw consent. Most of your data is on your own device and fully under your control in the app. For anything else, such as purchase records or emails, write to cihattkaraboga@gmail.com and we’ll reply within 30 days. Because purchases are linked only to an anonymous ID, please include your support ID (in Plainsign under Settings → About → Support ID) or the order ID from your Apple receipt, so we can find the right record.
You can also complain to your data protection authority. In Türkiye that is the Personal Data Protection Authority (KVKK).
11. Deleting your data
- In the app: go to Settings → Your data → Delete all data. This permanently deletes every document, template, saved signature and your My info from the device. It can’t be undone. Your plan and purchases aren’t affected.
- Deleting the app removes your documents and settings. iOS can keep keychain items after an app is deleted, so use Delete all data first if you also want My info removed. Your plan status and free-document record are kept in the keychain on purpose, so a reinstall doesn’t lose your plan.
- Purchase records and emails: email cihattkaraboga@gmail.com. Apple keeps its own purchase records under its policies.
Deleting data or the app doesn’t cancel a subscription. Cancel it in your device’s Settings → [your name] → Subscriptions.
12. Security
Plainsign keeps your documents inside its own protected storage on the device, isolated from other apps by iOS. My info and your plan status are kept in the iOS keychain. You can turn on an app lock so Plainsign asks for Face ID, Touch ID or your passcode when you open it and when you return after more than 30 seconds. The purchase checks described above are encrypted in transit (TLS). The best protection for your documents is a device passcode, which also turns on iOS data encryption.
13. Children
Plainsign is a general-audience productivity app and isn’t directed at children under 13 (or the minimum age in your country). It doesn’t knowingly collect personal data from anyone, and the data on a child’s device stays on that device. If you’re a parent or guardian with a question, email us.
14. This website
This website uses no cookies, no analytics and no third-party scripts, and loads its fonts from its own server. Like any website, the server that hosts it processes your IP address to deliver the pages, and may keep it in short-lived technical logs for security and troubleshooting.
15. Changes and contact
If we change how Plainsign handles data, we’ll update this page and the date at the top before the change takes effect. If the app ever starts sending something new off your device, this page will say so first.
Questions or requests: cihattkaraboga@gmail.com · Cihat Karaboğa, Istanbul, Türkiye.