Last updated: 27 July 2026
This policy explains how the Plumula app (the “App”), published by Vambran Studio (“we”, “us”), handles information. Plumula diagnoses houseplants: you photograph a plant, the App reads the photo with an AI model, and it returns a diagnosis, a care plan and a follow-up chat. By using the App you agree to this policy.
Except for reported content (see “When you report an AI response” below), all of this is stored locally on your device, in the App's own database and private file storage. Unless you turn on Cloud Backup (see below), we keep no copy of your plant library on our servers and have no way to browse it. It is removed when you delete the plant in the App, or when you uninstall the App.
To diagnose a plant, the App sends the photo plus the measured facts around it (a light reading, and optionally coarse local weather — see below) to our proxy server, which runs on Cloudflare Workers. Our server forwards the request to an AI provider to produce the result. The providers we use are:
Your photos are sent only to Google or Mistral AI — Groq's models are text-only, so a photo is never sent to Groq. The follow-up chat, the “how's it going?” progress updates, and translating a saved diagnosis into another language use the same path — there the text of your message (and, for a follow-up, the plant's latest photo, which again goes only to Google or Mistral) is what gets sent.
Outside of Cloud Backup, we do not store your photos or messages on our server. When you ask for a diagnosis or reply, they are relayed to the AI provider to produce your result and are not written to any database of ours; only if you turn on Cloud Backup (described next) is a copy kept on our server, and only of what you back up. Each provider then handles the request under its own policy, linked above. Two things to know here: Plumula currently uses Google's Gemini API and Mistral AI on their free tiers, and under those providers' terms, content sent on a free tier may be used to improve their services (Google's may additionally be reviewed by human reviewers); Groq uses a request only to generate the reply. Because of this, only scan and send what you're comfortable sharing — see the note at the top of this page.
Everything the App tells you about a plant — the identification, the diagnosis, the care plan, the chat replies — is generated by AI and can be wrong, including the species. It is a helpful second opinion, not professional horticultural, veterinary, or medical advice, and Plumula is not a substitute for a qualified horticulturist, an agricultural extension service, or a vet or doctor.
Please don't act on a result you aren't confident in — particularly for anything you cannot undo, such as pruning, repotting, or applying a fertiliser, pesticide, or other treatment. Never eat, brew, or medicinally use a plant, and never judge whether a plant is safe for a child or a pet, on the basis of this App. Plant identification from a single photo is genuinely unreliable, and some plants are toxic or have dangerous lookalikes. If it matters, confirm with a local nursery, an extension service, or a qualified professional first.
You use the App's suggestions at your own risk, and we are not liable for any loss or damage to plants, people, or animals resulting from acting on them. If the App produces content that is offensive or unsafe, please report it with the flag button on the response, or email us.
The App can back up your plants to the cloud so you can restore them on a new device, recover after a reinstall, or keep several devices in sync. This is off unless you turn it on — either in Settings → Sync & Backup, or from a one-time prompt the App may show after you've saved your first plant or chat, offering to turn it on. There is still no account or login: when you enable it, the App creates a random, anonymous backup ID (a long code, also shown to you as a “recovery code”), and everything you back up is stored under that ID.
When Cloud Backup is on, we store on our own Cloudflare servers:
This is kept solely to provide backup, restore and sync, tied to your anonymous backup ID — not to your name, email, or the AI providers above, and never used for ads or profiling. Anyone who has your recovery code can restore that data, so keep it private. Cloudflare stores it on our behalf (Cloudflare privacy policy). You can turn Cloud Backup off at any time, and Settings → Delete my data erases the cloud copy too — every backed-up record and photo (see “Data retention and deletion”).
identifierForVendor). Our server stores
only that identifier, a period (e.g. the month), and a count of
scans. It is not linked to your name, email or device contacts, it carries none of
your plant data, and it is not used for advertising or tracking across apps.
The App contains no advertising SDK and shows no ads. We do not use your data for advertising, ad personalization, or to track you across other apps or services.
Generative-AI results can occasionally be wrong or inappropriate. The App lets you report an AI diagnosis or chat reply from within the App. When you do, we receive the flagged text, any note you add, and your install identifier (so repeated reports can be correlated), and we store them so we can review the output and improve safety. You can have these deleted at any time — see “Data retention and deletion”.
On-device data is used only to provide the App's features (your plant history, timelines, reminders). Photos and messages are used to produce the diagnosis or reply you asked for. The install identifier is used only to count scans against your plan and to prevent abuse. Analytics and crash reports are used in aggregate to understand usage and fix problems. Store data is used by Apple/Google to process purchases.
We do not sell or rent your personal information. We do not share your plant library with anyone. The only sharing is with the service providers named above — the AI providers that produce a diagnosis or chat reply (Google Gemini, Mistral AI, and Groq), Cloudflare (which hosts our proxy and, if you enable Cloud Backup, stores your backed-up plant data + compressed photos), Open-Meteo (weather, if you allow location), Google Firebase (analytics and crash reporting), and Apple/Google (purchases) — strictly to provide their part of the App.
Your plants, photos, diagnoses and chats live on your device: delete a plant or a scan in the App, or uninstall the App, to remove them locally. Photos and messages sent for a diagnosis are not retained by us. The scan counter tied to your install identifier is retained so limits still work if you reinstall. If you turned on Cloud Backup, a copy of your plant data and compressed photos is also kept on our servers under your anonymous backup ID until you erase it (below); uninstalling the App does not remove the cloud copy.
You can erase what we hold at any time from Settings → Delete my data in the App. This resets the analytics identifier and asks our server to remove the data tied to your install: any reported content is deleted, the scan counter is replaced with an anonymous, one-way hashed record so it cannot simply be reset by reinstalling, and — if you used Cloud Backup — every backed-up record and photo is erased from our servers. You can also contact us at the address below to make the same request.
Plumula is a general-audience plant-care app and is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided personal information, contact us and we will address it.
Depending on where you live (e.g. the EEA/UK under GDPR, or California under CCPA), you may have rights to access, correct, or delete personal data and to object to certain processing. Because the App stores your plant data only on your device, you can exercise most of these directly in the App and in your device settings. For anything held on our side (the scan counter, and any reported content), use Settings → Delete my data or contact us below.
Your plant data remains on your device, protected by your device's own security (lock screen, OS sandboxing). All network requests use secure (HTTPS) connections, and our proxy is locked to the App. Cloudflare processes your device's IP address transiently to route requests and rate-limit abuse; we do not store it. No method of storage or transmission is 100% secure.
We may update this policy from time to time. Material changes will be posted here with a new “Last updated” date. Continued use of the App after an update means you accept the revised policy.
Questions about this policy or your data? Contact us at vambranstudio@gmail.com.
This page is the official privacy policy for the Plumula app referenced in its Google Play and App Store listings.