Skip to content
GrowScope
Open app

How this actually works

Your plants are yours. Your identity isn't required.

End-to-end encryption

Every diary is protected by end-to-end encryption by default. This isn't a setting you toggle, and it isn't a feature limited to certain accounts. Plants, logs, notes, and saved AI history are encrypted on your device before being sent to the server. On our side, only encrypted data remains — data we cannot read.

The encryption key is created from a 12-word recovery phrase. It's generated on your device, shown once, and requires mandatory confirmation. We never receive or store this phrase. So if you lose every device that already has the key saved, the recovery phrase remains the only way to regain access. This isn't fine print — it's a direct consequence of our privacy model: we genuinely cannot read your diary.

How AI features fit into that

End-to-end encryption always covers data storage and synchronization. At the same time, we don't describe AI features as fully end-to-end encrypted. AI Plant Analysis, the Trichome Tracker, Pest Scouting, the Fertilizer Advisor, the Equipment-Placement Optimizer, Plant Comparison analysis, Grow Coach's weekly reports, and AI card generation all work on the same principle: when you run a specific action, the app decrypts on your device only the data that action needs, sends it once to our server, and the server passes the request to a third-party model provider, chosen automatically for the task.

We considered fully local processing of AI requests — using a small model directly in the browser, so analysis data would never leave the device. However, for the tasks these features are built for, including fertilizer calculations, trichome and pest photo analysis, comparing multiple plants, and preparing practical recommendations, that approach doesn't currently deliver comparable result quality. So we keep end-to-end encryption for data storage and synchronization, and separately state that for AI features, running a specific action means the request is processed with the involvement of a third-party model provider.

Identifiers

No email, phone, or real name is requested — and no password either. Signup is just a username.

Your account ID is a cryptographically secure random number, not derived from your username or personal data.

Data & analytics

No Google Analytics, ad trackers, or third-party crash reporters. Private analytics are never sold or shared.

IP addresses stay in memory for only a few seconds to stop abuse and are never written to the application database or logs.

GrowScope never accesses GPS. If you use outdoor weather features, you type a location yourself.

You can export everything or erase your grow data at any time.

Anonymous comparison

Comparison records are structurally disconnected from accounts. They contain cycle metrics, never names, account identifiers, photos, or analysis text.

Payment

Payment is cryptocurrency (USDT) only — no card, billing address, or name required.