# Privacy Policy for Wallet **Effective Date:** September 17, 2026 **Last Updated:** September 17, 2026 **App Package Name:** `com.wallet.arworks` --- ## 1. Introduction & Core Philosophy **Wallet** ("we", "our", or "the App") is an ultra-secure, privacy-first personal digital vault designed for Android. Our core philosophy is simple: **Your sensitive personal data belongs exclusively to you on your device.** The App operates **100% offline** and does **not** connect to external servers, cloud storage providers, or third-party analytics services. We do not collect, transmit, sell, or rent any personal information, document content, or device data. --- ## 2. Information Handled by the App (Stored Locally Only) ### 2.1 Vault Documents, Cards & Credentials - All documents (Government IDs, Driving Licenses, Passports, Health Cards, Work Badges), digital payment cards, custom fields, notes, and password credentials created within the App are stored **exclusively in local app-private storage** on your device. - All stored payload fields are encrypted using **AES-256 GCM encryption** backed by the hardware-level **Android KeyStore**. ### 2.2 Biometric & Lock Information - The App uses your device's native **Android BiometricPrompt API** to enable fingerprint or face recognition unlock. - **We do not collect, store, or have access to raw biometric data.** Biometric verification is processed entirely by the Android operating system and secure hardware enclave. - Your In-App Lock PIN is stored locally in encrypted preferences on your device. --- ## 3. Device Permissions & Usage The App requests minimal permissions required strictly for local functional features: | Permission | Purpose | Data Handling | | :--- | :--- | :--- | | `android.permission.CAMERA` | Used for document scanning, card scanning, and optical character recognition (OCR). | Images and text are processed **100% locally on-device**. No camera data is transmitted. | | `android.permission.NFC` | Used for contactless reading of NFC-enabled cards. | Data is processed locally to populate card details. | | `android.permission.USE_BIOMETRIC` | Used to prompt device hardware authentication for unlocking the vault. | Handled by Android OS. No biometric data is stored by the App. | | **Storage / File Access** | Used to export or import user-initiated encrypted backup files (`.bpv`) to a custom folder selected by the user. | Backups are encrypted locally using keys derived from your App Lock PIN. | > **Note**: The App deliberately **omits the `android.permission.INTERNET` permission**, guaranteeing that data transmission off your device is technically impossible. --- ## 4. Third-Party Services & Analytics The App **does not integrate any third-party SDKs, tracking tools, advertisement networks, or cloud analytics services** (e.g., Google Analytics, Firebase Analytics, Crashlytics, or ad providers). --- ## 5. Data Security, Retention & Deletion - **Security**: Your data is secured using AES-256 GCM encryption. - **Retention**: Data is retained on your device for as long as the App remains installed. - **Deletion**: - Deleting an item in the App moves it to the local Trash (soft-delete), which is automatically purged after 30 days or immediately upon manual emptying. - **Uninstalling the App** permanently deletes all local vault databases, attachments, and encrypted preferences from your device. --- ## 6. Children's Privacy The App does not knowingly collect or solicit data from anyone, including children under the age of 13. Since no data is collected or transmitted, children's privacy is inherently protected. --- ## 7. Changes to This Privacy Policy We may update this Privacy Policy from time to time. Any changes will be reflected by updating the "Effective Date" at the top of this document. --- ## 8. Contact Us If you have questions or feedback regarding this Privacy Policy or the security of the App, please contact us: - **Support Email:** `support@arworks.wallet` (or your support email) - **App Name:** Wallet - **Package Name:** `com.wallet.arworks`