Granting an app access to your photo library is one of the largest permissions you can hand over on a phone. It is not a folder of documents. It is every birthday, every holiday, your children, your home, your friends, and — depending on how organised you are — a photograph of your passport.
So the question is fair, and I should say up front that I build one of these apps, which makes me both well informed and interested. What follows is what I looked at when I was evaluating the competition before writing my own, and what I would check if I were you.
Are photo cleaner apps safe?
Some are and some are not, and you can tell which is which in about two minutes without any technical knowledge. Three things decide it: where the analysis happens, what data the app collects about you, and how it charges you.
The first two are safety questions in the ordinary sense. The third is not about data at all, but it is where most people actually get hurt, so it belongs on the list.
Where does the analysis actually happen?
This is the one that matters most, and it has only two possible answers: on your device, or on somebody's server.
Finding duplicates and similar shots requires the app to look at every photo in your library. If it does that on the phone, your photos never move, and there is no copy of your library anywhere else to be leaked, subpoenaed, or sold with the company. If it does it on a server, your photos are uploaded — even if they are deleted afterwards, even if the company is entirely honest about it.
Server-side processing is not automatically sinister. It is cheaper to build, it lets you use bigger models, and plenty of reputable products work that way. But it is a materially different risk, and you are entitled to know which one you have installed.
The simplest test costs you nothing: put the phone in airplane mode and run a scan. If it works offline, the analysis is happening on the device. If it stalls or errors, it is not.
The word to watch for in marketing copy is "secure". Secure transmission and secure storage are claims about a server — they quietly confirm that your photos are going somewhere. An app that processes on-device does not need to talk about encryption in transit, because there is no transit.
What does the App Store privacy label tell you?
More than you would expect, and it is right there on the listing before you install. Scroll to "App Privacy" and read the categories.
The strongest signal is Data Not Collected, which means exactly that. Below it you will see labels like "Data Linked to You" and "Data Used to Track You", and it is worth pausing when a photo cleanup utility declares analytics or identifiers tied to your account.
I want to be fair here: analytics are not evidence of wrongdoing, and I understand the appeal. I have no idea how many people who install Curator ever finish a scan, or which features go untouched, and that information would genuinely help me with marketing and understanding my users to build a better app. I chose not to collect it, because I did not want to be in the position of asking people to trust a boundary I had drawn myself. When a photo app collects data linked to your identity, you are trusting that the boundary between "usage analytics" and "your library" is drawn correctly and will stay that way through every future release, every SDK update, and whoever buys the company.
Curator carries the "Data Not Collected" label. No accounts, no analytics, no tracking, no servers.
What does on-device processing cost you?
Two real things, and it would be dishonest to pretend otherwise.
The download is bigger. The neural network that recognises similar scenes ships inside the app rather than living on a server. Curator is around 170 MB after a recent optimisation pass, which is more than I would like for a utility. That is the price of the model being on your phone.
The first scan takes real time. Analysing tens of thousands of photos is genuine computation, and it is happening on a phone rather than in a data centre. On my own 23,000-photo library it runs a little over 30 minutes and costs about 30% of the battery, once, in the background. There is more detail on that in what actually happens when an app analyses your photos.
The trade is that every path out of your phone is simply closed. Not policed, not encrypted — absent.
Why do so many of these apps charge weekly?
Because storage panic is an excellent time to sell someone a subscription, and because a lot of people forget to cancel. That is my honest reading of it, and it is the thing that pushed me from trying these apps to building one myself.
The pattern is familiar: a three or seven day free trial, auto-renewing into something in the region of seven to ten dollars — sometimes monthly, sometimes weekly. Weekly recurring billing for photo cleanup does not match how anyone uses the thing. Around 80% of the value is a one-off historical clear-out: you deal with the accumulated years, and after that you are maintaining, not excavating. Almost nobody is genuinely decluttering hard enough every week to justify a weekly charge. A business model that only works if a meaningful share of customers forget they are paying is not one I wanted to run.
Building the app cost time and money, so it is not free forever. It is a one-time purchase that unlocks everything permanently, from around US$5 (depending on your country). That is the whole pricing model.
Can you tell whether it works before you pay?
You should be able to, and this is the other complaint I saw repeatedly in App Store reviews of other apps: people spend twenty minutes sorting through their photos, reach the end of a session or the limit of what they can do, and discover that nothing can actually be deleted without paying first. The work is lost along with the goodwill.
That specific experience is why Curator's free tier is not a preview. On the last 30 days of your library, everything works — you can review the suggestions, actually delete the photos, and actually build and publish an album. Beyond 30 days you can see what it found across the whole library and what it estimates you would recover, but you decide with a real result in hand rather than a promise. Youn only pay the one-time fee once you've had the chance to decide if you like the experience.
A checklist before you grant library access
- Run a scan in airplane mode. Works offline means on-device. This is the single most informative test.
- Read the App Store privacy label, not the marketing page. "Data Not Collected" is unambiguous; anything linked to your identity deserves a second thought.
- Find the price before you install. Check the In-App Purchases list on the listing, and look specifically for the billing period.
- Check what the free tier actually lets you finish. If you cannot complete a single real deletion without paying, expect to lose whatever time you invest.
- Confirm deletions are recoverable. On iOS, anything a well-behaved app deletes goes to Recently Deleted and stays there for 30 days. If an app claims to permanently erase photos immediately - particularly without your review first - be careful.
- Prefer specific claims to reassuring ones. "Your photos never leave your device" is checkable. "We take your privacy seriously" is not.
None of this requires you to trust me, which is the point. Every item on that list is something you can verify yourself in a couple of minutes, on any app including mine.
Curator is a one-time-purchase iPhone app that cleans and curates your photo library entirely on your device — no servers, no accounts, no analytics, no subscription. Get it on the App Store, read the FAQ, or see the privacy policy, which is short.