Tinkr AI is operated by Digital Summit LLC ("we", "us"). This policy explains what the Tinkr AI
mobile app collects, why, who it is shared with, and the choices you have. It covers the app
and this website.
The short version. We collect what is needed to diagnose your repair and
nothing else. Your photos, video, audio and repair history are private to your account. We do
not sell your data, we do not use it for advertising, and we do not build advertising profiles.
You can delete everything from inside the app at any time.
Information we collect
Account information. If you create an account, we store the email address
you sign in with, or the identifier Apple or Google returns. If you use Sign in with Apple and
choose Hide My Email, we only ever receive Apple's relay address. You may also use Tinkr
without an account, in which case we hold an anonymous account identifier and no contact
details at all.
What you show Tinkr. Photos, video, audio recordings and written
descriptions of the problem you are fixing, along with anything visible or audible in them.
Repair records. The diagnosis, questions and answers, repair plan, parts
and tools, and the outcome you record for each repair.
Identifiers you supply. Model and serial numbers, and vehicle
identification numbers, when you provide them or they appear in a photo you upload.
Diagnostic logs. Timing, model version and error information for each AI
run, which we use to find faults and improve accuracy.
Tinkr does not collect your contacts, your precise location, your browsing activity, your health data,
or your financial information. The only location Tinkr ever uses is a ZIP code you type into Find my part. The app contains no advertising and no analytics or tracking
SDKs.
How we use it
To identify what you are fixing and produce a diagnosis and repair plan.
To keep your repair history so you can return to a repair in progress.
To operate the service — authentication, storage, abuse prevention and rate limiting.
To find and fix defects in the app and in the quality of its answers.
We do not use your content to train AI models, and neither do our AI providers. Before anything
is sent to them, the app tells you and asks for your permission. Media and text you submit are sent to
OpenAI and to Google (Gemini) solely to produce your answer, under their paid API terms, which prohibit
using it to train or improve their models.
Who we share it with
We share information only with the service providers that make the app work, and only as far
as each needs to do its job:
OpenAI — receives the photos, video, audio and text of your repair in order to
analyse them, and generates the step-by-step repair drawings.
Google (Gemini API) — receives the text of your repair, the machine you
identify and the drawings Tinkr generates, in order to plan the repair steps and check the drawings.
Google Search — Tinkr searches the web for the make and model of your machine, its
published specifications, reference pictures and replacement parts. These searches contain the machine
and part — never your name, email or account.
Parts search — if you use Find my part, the ZIP code you enter is sent with the part
name to find nearby stores and online listings. It is not attached to your account.
Google Firebase — provides authentication, database, file storage and
server functions. Your account, media and repair records are stored there.
RevenueCat — processes in-app purchases and subscriptions on our behalf. It receives
an anonymous account identifier and your purchase history from Apple or Google; it does not receive your
repairs or media.
Apple and Google — take payment for any purchase you make through the App Store or
Google Play. We never see your card details.
NHTSA vPIC — a United States government vehicle database. If you supply a
VIN, that number alone is sent to decode the vehicle. Nothing identifying you is included.
We do not sell personal information, and we do not share it for cross-context behavioural
advertising. We may disclose information if we are legally required to, or where it is necessary
to protect the safety of a person or the integrity of the service.
Where information is stored
Data is stored on Google Cloud infrastructure in the United States. If you use Tinkr from
outside the United States, your information is transferred there and handled under this policy.
How long we keep it
Repair records and the media attached to them are kept for as long as your account exists, so
that your history remains available to you. Diagnostic logs are retained for up to 12 months.
When you delete your account, your media and repair records are deleted immediately and
permanently. We keep one thing: the record of a purchase you made, because it is the financial record behind a charge and may be needed for a refund, a chargeback or tax. It holds the transaction, not your repairs, your media or your name.
Your choices
Delete everything. Profile → Delete account and all data removes your
account, every repair, and all photos, video and audio you uploaded. This cannot be undone.
Use Tinkr without an account. Skip sign-in and no contact details are ever
collected.
Camera, microphone and photo access. Each is requested only when you use
the feature that needs it, and can be withdrawn at any time in iOS or Android settings.
Access or correction. Write to
privacy@digitalsummitlabs.com to request a copy of your data or
to have it corrected. We respond within 30 days.
If you are in California, the EEA or the United Kingdom, you have the rights described above —
access, correction, deletion, and objection to processing — and you may exercise them at the same
address. We will not discriminate against you for exercising them. Our lawful basis for
processing is performance of the contract you enter into by using the app, and our legitimate
interest in keeping it secure and accurate.
Children
Tinkr AI is not directed at children under 13 and we do not knowingly collect information from
them. If you believe a child has provided us information, write to
privacy@digitalsummitlabs.com and we will delete it.
Security
Traffic is encrypted in transit. Your media and repair records are readable only by your own
account: server rules reject any request for another account's data, and every server function
verifies the identity of the caller before it returns anything.
Changes
If this policy changes materially, we will update the effective date above and give notice in
the app before the change takes effect.