Enchora

Lorcana Scanner - Enchora

Privacy Policy

Last updated: July 29, 2026

1. Overview

This Privacy Policy explains how Lorcana Scanner - Enchora ("Enchora," "we," "us") handles information when you use our iOS app and these legal pages. Enchora is an unofficial companion for Disney Lorcana collectors and is not affiliated with, endorsed by, or sponsored by Disney or Ravensburger.

2. Camera and on-device processing

Enchora uses the device camera (with your permission) to scan card images for optical character recognition (OCR) so we can suggest a catalog match. Camera frames used for scanning are processed on your device for matching; we do not operate a remote photo gallery or upload your camera roll to Firebase Storage. You choose whether to grant camera access; denying it limits the Scan feature.

3. Account data

To run the app we may process:

  • Authentication identifiers from Firebase Authentication, including anonymous sign-in in the current version.
  • Collection and preference data in Firestore under users/{uid} (for example owned cards and quantities, onboarding completion, and related account metadata).

4. Catalog and pricing data

Card catalog metadata and market price information are retrieved from third-party catalog APIs (currently Lorcast). Requests may include card identifiers needed to look up a set and collector number. Those services process queries under their own terms.

5. Purchases and subscriptions

Paid features are sold through the Apple App Store. We use RevenueCat to manage entitlements and restore eligibility. We do not receive or store your full payment card numbers. Apple processes payment.

6. Analytics and diagnostics

We use PostHog for product analytics, error reporting, and session replay to understand reliability and improve the product. This may include device and usage signals (for example app events, crash or exception data, and limited session context). You can also control related OS privacy settings on your device where available.

7. Service providers

Depending on how you use Enchora, information may be processed by:

  • Apple (App Store, device OS services)
  • Google Firebase (Authentication, Firestore)
  • RevenueCat (subscription entitlement state)
  • PostHog (analytics, session replay, error reporting)
  • Lorcast (card catalog and market price lookups)
  • Vercel (hosting these legal/support pages)

8. Retention and deletion

You can delete your account from in-app Settings. Account deletion removes associated Firebase Auth and Firestore user records we control for the app. Apple and RevenueCat may retain purchase records as required for billing, fraud prevention, and legal compliance.

9. Your rights

Depending on your region, you may have rights to access, correct, export, or delete personal data we hold. Contact us at mmdincer@outlook.com with a clear request and enough detail to locate your account.

10. Children

Enchora is not directed to children under 13. If you believe a child provided personal data, contact us and we will take appropriate steps.

11. Changes

We may update this Privacy Policy. The "Last updated" date at the top will change when we do. Continued use of the app after an update means you acknowledge the revised policy.

12. Contact

Privacy questions: mmdincer@outlook.com.