brainreaction logo

brainreaction

Smart, simple apps

Privacy Policy — FotoFrame

Effective date: 2026-04-02

This privacy policy applies to the FotoFrame app (the "Application") for mobile devices, created by Brain Reaction, based in Belgium (the "Service Provider"). This service is provided "AS IS".


Information Collection and Use

FotoFrame turns your Android device into a digital photo frame by displaying photo(s) you select from your Google Photos library. To do this, the Application uses the Google Photos Picker API with the photospicker.mediaitems.readonly OAuth scope. Selection happens through Google's own picker interface — FotoFrame never has standing access to your full Photos library, only to the item(s) you explicitly choose.

Security procedures are in place to protect the confidentiality of your data. All communication between the Application and Google's servers uses HTTPS/TLS encryption in transit. The Application stores locally on your device, encrypted at rest using Android's secure storage APIs: an OAuth access token and its expiry (silently refreshed via Google's Sign-In SDK, which separately manages a refresh token through Android's system-protected Account Manager), and a reference to your picker selection, so you are not asked to re-select on every launch. Selected photos are fetched directly from Google's servers using short-lived URLs and held only in a temporary, OS-managed cache for smooth slideshow playback; this cache is automatically cleared and refreshed roughly every 50 minutes, in step with the expiry of Google's photo URLs, and is not a permanent copy. The Application does not upload, copy, or permanently store your photos on any server operated by the Service Provider. The Application does not use advertising networks, does not use analytics services, and does not use Artificial Intelligence (AI) technologies.


Google User Data

FotoFrame's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Photo data accessed through the Google Photos Picker API is used only to display the photo(s) you chose within the app and is not used for any other purpose, not shared with third parties, and not used for advertising.


Third Party Access

The Service Provider does not sell, trade, or otherwise share user data with any other third parties.


Your Rights (GDPR — EU/EEA users)

Because the Service Provider is based in Belgium, EU/EEA users have rights under the GDPR, including the right to access, correct, or request deletion of personal data, and the right to lodge a complaint with the Belgian Data Protection Authority (www.gegevensbeschermingsautoriteit.be). To exercise any of these rights, contact us at keersmaekersjan@gmail.com.


Opt-Out Rights and Data Retention

You can revoke FotoFrame's access to your Google Photos at any time via your Google Account permissions page, or by signing out within the app; either action invalidates the stored access and refresh tokens. Uninstalling the Application removes all locally stored tokens, your picker selection reference, slideshow settings, and any temporary photo cache. The Service Provider does not retain any user data on external servers.


Children

FotoFrame is a general-purpose utility and is not directed at children under 13.


Changes

This Privacy Policy may be updated from time to time. Changes will be posted on this page with an updated effective date.


Contact

Brain Reaction
Email: keersmaekersjan@gmail.com

Note: the exact wording required by Google's API Services User Data Policy / "Limited Use" disclosure should be double-checked against the current Google requirements for your specific OAuth verification submission — this is a close paraphrase, not a copy-paste from Google's site.