🚨 OUR PRIVACY CORE PRINCIPLE: ZERO-DATA ACCESS
Smart Drop is built on a local-first philosophy. We do not own, operate, or maintain any external databases or cloud servers. All files, notes, tags, and images you drop into this app stay securely isolated inside your physical device's private storage folder. We cannot see, read, upload, access, or collect the contents of your files. Backups are pushed only to your personal Google Drive account, only when you manually tap the backup button, and are handled directly between your phone and Google. No data ever passes through us.
--------------------------------------------------
Privacy Policy
Effective Date: July 27, 2026
1. Introduction
Welcome to Smart Drop ("we," "our," "us"). We are committed to protecting your privacy as an individual independent developer. This Privacy Policy outlines how Smart Drop handles data when you use our mobile application ("Application", "App"). Smart Drop is designed as a secure local-first file management ecosystem that operates primarily using local on-device storage sandboxing techniques alongside optional user-directed cloud backups.
2. Information We Collect and Process
Because Smart Drop functions primarily as a private on-device vault, we minimize the amount of personal information we collect.
* Authentication & Account Identity:
If you choose to sign in with your Google account, we collect your Google account name and email address to create and manage your Smart Drop account. We also record your country (based on your device locale), the date and time of your first sign-in, and your account status (such as Premium status, if applicable). This information is securely stored using Google Firebase services to provide account management, cloud synchronization, backup, and other account-related features. We do not sell or share your personal information with third parties for advertising purposes.
Your Google account email may also be stored locally on your device to create and manage your isolated Smart Drop storage directories and personalized app experience.
* User Files, Thumbnails, and Metadata: All files imported into Smart Drop, along with their generated .thumb.png metadata and custom indexing elements, are saved directly onto your physical device storage within your user account-specific sandbox path directory (/users/your_email/). This structural setup ensures absolute partition isolation on shared local storage hardware platforms. Smart Drop may generate searchable text indexes from supported documents and images to provide fast local search. These indexes remain stored only on your device unless you choose to include them in your Google Drive backup.
* Google Drive Access Scopes: When you explicitly authorize and initiate data migrations using our Google Drive integration tools, the App requests access to the selective drive.file scope. This permission is limited exclusively to interacting with folders and files that are directly generated by Smart Drop (the master directory root named "Smart Drop" and its associated tag subdirectories).
* Firebase Analytics: Smart Drop uses Google Firebase Analytics to collect anonymous usage information to help improve the Application. Analytics may include information such as app version, device model, operating system version, country or region, and anonymous feature usage (for example, onboarding completion, file imports, searches, file openings, backup completion, and Private tag usage). Smart Drop does not send your file contents, document names, tags, indexed text, search terms, email address, or other personally identifiable information to Firebase Analytics.
* Biometric Data and System Security: To unlock your locally stored "Private" tag file filters, the Application invokes your operating system's native LocalAuthentication security API. We do not access, gather, record, or transmit your biological facial maps, fingerprint signatures, or master device passcode phrases; the authorization loop is handled entirely by the underlying operating system layer.
3. How We Use Your Information
Smart Drop uses your locally stored data exclusively to operate its core utility functions:
* To organize, search, index, filter, and view local assets natively based on user-designated hashtags.
* To accurately track your local backup counts and manage premium tier unlocks securely via local device preferences.
* To execute target cloud data mirror pipelines strictly when manually requested via the interface.
4. Third-Party Services
The Application interacts with third-party components to verify payments and handle off-device backups:
* Google Play Services / Apple App Store (In-App Purchases): Transaction processing is safely routed directly through official payment channels via our integrated BillingService API layers. Run-time transactions are governed explicitly by the privacy policies of the respective Google Play or Apple App Store platform providers.
* Google Drive API: External client connections are created using your authorized identity parameters to back up non-consumable localized records directly onto your personal cloud drive space. This interaction is subject to Google’s privacy standards.
* Google Firebase: Smart Drop uses Firebase services for authentication, analytics, and optional account-related functionality. Firebase Analytics collects anonymous usage information to help us improve the Application. Firebase services are governed by Google's Privacy Policy.
5. Data Retention and Deletion
* On-Device Data Removal: You maintain absolute governance over your structural file entries. Deleting an asset or wiping the Application's core cache profiles permanently removes the file, along with its specific .tag metadata dependencies, from your device’s sandbox framework.
* Google Drive Cloud Backup Deletion: Because Smart Drop handles backups via a decentralized model directly to your personal cloud storage (using the secure drive.file scope), we do not store your files on external servers and cannot delete them for you. Users can permanently delete their cloud backups at any time by opening their personal Google Drive, navigating to the app-generated master folder named "Smart Drop", and deleting its contents.
* Google Session Revocation & Identity Wiping: Utilizing the built-in "Logout" or "Switch Account" menu modules completely severs existing active OAuth tokens, triggers automated local profile cache resets, and disconnects Google API interaction sessions instantly. To completely wipe the OAuth link from the web, users can visit their Google Account Security Settings and revoke access for Smart Drop.
6. Security
Smart Drop incorporates platform-level privacy guard protections. Whenever a user moves into a workspace marked as "Private", the Application dynamically interfaces with native hardware APIs (setSecure) to block operating system background snapshot tools from capturing running view states or caching layout views when the mobile app transitions to an inactive or minimized lifecycle phase.
7. Children's Privacy
Smart Drop does not intentionally target, collect, or monitor personally identifying logs from children under the age of 13. Since all user data is stored locally within sandboxed workspaces on the device, parents or guardians can manage security configurations by clearing out local app directories or revoking individual Google account authorizations.
8. Changes to This Privacy Policy
We may periodically update this Privacy Policy to reflect app enhancements or legal adjustments. Continued use of the Application after changes are made constitutes an implicit acceptance of the revised privacy rules.
9. Contact Information
If you have any questions regarding data sandboxing procedures, local folder partitions, or our Google Drive backup architecture, contact us at: appdeveloping991@gmail.com