PRIVACY POLICY
Effective Date: September 9, 2026
General Provision, Scope and Applicability
1.1 Regulatory Scope and Applicability
This comprehensive Privacy Policy (“Privacy Policy” or “Policy”) governs the data collection, processing, local storage, security, and disclosure practices executed by Notepad App: Digital Planner (“Service Provider,” “we,” “us,” or “our”) through the Digital Notepad mobile application, including all integrated features, tools, user interfaces, and software modules collectively referred to as the “Notepad App: Digital Planner”.
This Policy applies universally to any individual who downloads, installs, accesses, executes, or otherwise interacts with the Application (“User,” “you,” or “your”).
1.2 Underlying Philosophy and Data Architecture
The core operational principle of the Application is built upon client-side privacy, data minimization, and local user ownership. The primary functionality of the Application—namely, creating notes, organizing checklists, assigning custom color themes, setting task reminders, configuring secret PIN-locked entries, searching entries, and managing daily plans—is executed directly on your mobile device.
The Service Provider does not maintain continuous remote database synchronization, cloud hosting platforms, or central application servers to collect, index, view, or back up your personal note entries. Your personal writings, passwords, checklists, and private notes remain confined within the isolated, sandboxed local storage partition of your specific Android hardware unless you explicitly initiate an external transmission using system sharing functions.
1.3 User Acceptance and Consent
By downloading, installing, launching, or using any portion of the Application, you explicitly acknowledge that you have read, understood, and agreed to the data practices and terms set forth across all articles of this Privacy Policy. If you do not agree with or consent to any portion of this Policy, you are instructed to immediately cease all use of the Application and uninstall it from your mobile device.
Categories of Information Processed
The Application processes two distinct classifications of data: User-Generated Content (stored locally) and Automatically Collected Technical Identifiers (processed by integrated third-party frameworks).
2.1 User-Generated Content (Locally Stored Data)
To deliver the core digital notebook and task management experience described in the Application specifications, the Application allows you to input, configure, edit, organize, and protect custom user data (“User Content”). This content encompasses:
Textual Note Content: Free-form text pages, personal thoughts, daily plans, work summaries, meeting notes, creative ideas, and custom page titles.
Checklist and Task Items: Step-by-step to-do lists, daily schedules, shopping lists, interactive checkbox states, and completion markers.
Custom Note Attributes: Custom color markers, visual background selections, folder structures, favorite flags, and user-assigned tags.
Calendar and Reminder Attributes: User-defined alert timestamps, target schedule dates, notification titles, and custom task reminder parameters.
Protected Entries and Security Credentials: Secret notes assigned to protected folders, encrypted note states, and custom PIN authentication codes created for the Secure Note Lock feature.
Storage Architecture Note: All User Content enumerated in this Section 2.1 is stored strictly on the local storage sandbox of your Android device. The Service Provider does not collect, receive, store, transmit, or inspect your User Content on external servers.
2.2 Automatically Collected Technical Data
When the Application is executed, integrated third-party frameworks, diagnostic SDKs, and advertising networks may automatically capture non-sensitive, technical system indicators:
Device Identifiers and Hardware Specifications: Device manufacturer, marketing model, screen resolution, display density, total memory allocation, CPU architecture, and device orientation settings.
System Identifiers and Locale Settings: Android operating system version, OS build number, system security patch level, default language preferences, system region, time zone, and mobile network operator details.
Mobile Advertising Identifiers: Resettable advertising identifiers, specifically the Google Advertising ID (AAID), used for delivering contextual or personalized ad units and measuring ad campaign performance.
Network and Connection Metrics: Internet Protocol (IP) address (used solely to determine general regional geographic location for localized advertising compliance and diagnostic routing), connection status (Wi-Fi or cellular), and carrier routing metrics.
Diagnostic Logs and Telemetry: Application launch frequencies, session durations, screen transition events, feature interaction counters, API execution times, memory overflow events, runtime stack traces, and system crash reports.
Detailed Breakdown of Android System Permissions
To deliver specialized utility features—such as scheduling background reminders, vibrating during alerts, locking secret folders, and supporting file imports—the Application requests specific system permissions from the Android operating system. You maintain complete statutory control over these permissions via your device settings.
3.1 Post Notifications (POST_NOTIFICATIONS)
Type: Runtime (Android 13+).
Purpose: Required to display task reminder notifications on screen. The application prompts the user for explicit permission on supported operating systems.
Data Scope: Used strictly to post local scheduled notification alerts on your device display. It does not read or intercept notifications from other applications.
3.2 Schedule Exact Alarm (SCHEDULE_EXACT_ALARM)
Type: Special (Android 12+).
Purpose: Allows the application to fire task reminders at the exact user-specified time. Configured and allowed through system settings.
Data Scope: Used exclusively for timing local alarms. No schedule metadata or alarm details are collected or transmitted externally.
3.3 Use Exact Alarm (USE_EXACT_ALARM)
Type: Normal (Android 13+).
Purpose: Enables exact alarm functionality for alarm/reminder-focused utilities without requiring continuous explicit user prompts.
Data Scope: Operates locally to trigger precise time-based reminders.
3.4 Receive Boot Completed (RECEIVE_BOOT_COMPLETED)
Type: Normal.
Purpose: Reschedules saved user reminders automatically after the mobile device restarts or reboots.
Data Scope: Runs a local background routine on startup to restore active reminders into the system alarm manager. Collects no personal data.
3.5 Internet Access (INTERNET)
Type: Normal.
Purpose: Required to serve third-party advertisements (via Google AdMob) and support integrated AI features.
Data Scope: Facilitates network data transfer between the app and third-party advertising or AI API endpoints.
3.6 Access Network State (ACCESS_NETWORK_STATE)
Type: Normal.
Purpose: Checks whether an active internet connection (Wi-Fi or cellular data) is available before attempting to load ads or online features.
Data Scope: Queries system network status flags. Processes no personal user information.
Third-Party SDK Integrations and Service Providers
The Application incorporates software development kits (SDKs) provided by established third-party services. These third parties process technical device data under their own independent privacy documentation.
4.1 Google Play Services
Function: Delivers foundational operating infrastructure, app licensing verification, security checks, and platform API routing.
Data Processed: Device hardware metrics, IP addresses, OS versions, and platform interaction logs.
4.2 Google AdMob (Advertising Platform)
Function: Manages the distribution, rendering, frequency capping, and performance measurement of banner, interstitial, and rewarded ad units within the free tier of the Application.
Data Processed: Advertising IDs (AAID), IP address, coarse location data, ad interaction logs, and device hardware specifications. AdMob may deliver personalized or non-personalized ads based on user location, local regulations, and consent management platform (CMP) configurations.
4.3 Google Analytics for Firebase & Firebase Crashlytics
Function: Monitors system stability, collects aggregate usage trends, tracks feature adoption, and records detailed crash stack traces following application errors.
Data Processed: Anonymous installation IDs, session duration, screen interaction events, memory states at the moment of a crash, and device hardware signatures.
4.4 RevenueCat (Subscription and In-App Purchase Infrastructure)
Function: Validates digital purchase receipts, tracks premium status entitlements, and manages ad-free subscription states.
Data Processed: Anonymous user identifiers, purchase transaction timestamps, product IDs, and Google Play receipt tokens. RevenueCat does not receive or process your underlying credit card details.
Secure Note Lock and Privacy Safeguards
5.1 Encryption and PIN Protection
The Application includes a Secure Note Lock feature allowing you to restrict access to private notes, passwords, and sensitive folders using a custom personal identification number (PIN).
When you apply a lock to a note or folder, the entry is secured locally using standard software protection controls within the Android application sandbox.
5.2 Zero-Knowledge Security Model and PIN Recovery Disclaimer
Because the Application operates on a local client-side framework without remote server integration, we do not store, receive, or maintain copies of your Secure Note Lock PIN on any external server.
Zero Access: The Service Provider has zero knowledge of your chosen PIN and possesses no technical capability to remotely access, inspect, or decrypt your locked notes.
Non-Recoverability: If you forget or lose your custom PIN lock code, the Service Provider CANNOT recover, reset, or bypass your PIN lock, nor can we retrieve the contents of your locked notes. You are solely responsible for memorizing and maintaining the confidentiality of your security credentials.
User-Initiated Data Sharing
The Application includes "Share Notes" functionality, enabling you to export or transmit note content to external applications, family members, or colleagues.
6.1 Shared Content Operations
When you select the share option, the Application formats your selected note or checklist into plain text or supported document formats and hands off the content directly to the Android operating system's native sharing interface.
6.2 Third-Party Recipient Responsibilities
Once User Content is handed off to third-party applications (such as email clients, instant messaging platforms, cloud storage providers, or social networks), the transmission and subsequent handling of that data are entirely governed by the privacy policies and security practices of those receiving platforms. The Service Provider accepts no liability or responsibility for how third-party platforms process, store, or transmit data shared by you.
Data Retention, Erasement and Deletion Procedures
7.1 User Content Retention
Because all notes, checklists, task schedules, and preferences are stored locally within the internal database sandbox of your Android device, your User Content is retained indefinitely until you manually perform one of the following erasure procedures:
Individual Item Deletion: Deleting a specific note, checklist item, or task folder inside the Application interface immediately removes that item from the active database.
Application Storage Clearing: Navigating to Android System Settings > Apps > Digital Notepad > Storage > Clear Data / Clear Storage permanently wipes all stored notes, checklists, custom note colors, settings, and locked entry databases.
Application Uninstallation: Uninstalling the Application from your mobile device triggers the Android operating system to completely delete the isolated sandbox storage directory, thereby permanently purging all locally stored notes, files, PIN configurations, and application data.
7.2 Third-Party Diagnostic Data Retention
Technical non-personal identifiers collected by integrated third-party analytics and crash diagnostic tools are retained by those respective third-party providers according to their standard corporate retention policies, typically ranging from 60 days to 14 months depending on data type and diagnostic categorization.
Medical, Legal &Financial Disclaimer
8.1 Informational Utility Only
The Application is designed strictly for personal organization, productivity, creative writing, daily scheduling, and task management purposes.
8.2 Prohibited Reliance
The Application is NOT certified for legal document custody, official record archival, critical medical monitoring, or official financial reporting. You should NOT rely on the Application as your sole repository for critical legal contracts, medical prescriptions, urgent financial credentials, or emergency recovery data.
The Service Provider accepts no responsibility for financial losses, legal complications, missed business deadlines, or personal inconveniences resulting from missing, unbacked, or unrecoverable note entries.
CHILDREN'S PRIVACY MANDATE
The Application is a general audience productivity tool and is not intended for, marketed to, or directed toward children under the age of 13 (or under 16 in specific jurisdictions governed by the European Union General Data Protection Regulation).
We do not knowingly collect, solicit, or maintain personal information from children. If a parent, legal guardian, or regulatory authority becomes aware that a child has accessed the Application and provided personal identifiers through third-party SDK frameworks, please contact us using the details in Article 13 so we can initiate prompt removal of any associated technical identifiers from our analytics partners.
International Data Transfer & Regional Rights
10.1 Cross-Border Data Transmissions
Technical data, advertising identifiers, and anonymous crash telemetry processed by integrated third-party SDKs (such as Google and Firebase) may be transferred to, processed in, and stored on servers located outside your state, province, or country of residence, including within the United States. These transfers are executed under standard contractual clauses, lawful adequacy frameworks, and corporate privacy shields maintained by those third-party providers.
10.2 Statutory Rights (EEA, UK, California, and Global Privacy Laws)
Depending on your geographical location and local statutory provisions (e.g., GDPR, UK GDPR, CCPA/CPRA), you may hold specific statutory rights regarding your technical diagnostic identifiers:
Right of Access and Transparency: The right to request information regarding the categories of diagnostic data collected by integrated services.
Right to Opt-Out of Personalized Advertising: You have the right to decline or restrict personalized advertising. You can exercise this right at any time by navigating to your device settings (Android Settings > Privacy > Ads > Reset or Delete Advertising ID) or by configuring choices within the in-app Consent Management Platform (CMP).
Right to Data Erasure: The right to request the deletion of non-essential technical identifiers held by integrated third-party SDK platforms.
To submit a formal statutory privacy query or exercise your regional rights regarding diagnostic telemetry, please contact our Privacy Compliance Officer using the details provided below.
Technical Security & User Safeguards
11.1 System Security Implementations
The Service Provider employs standard software development practices, code obfuscation mechanisms, secure Android sandbox architecture, and encrypted transport layer security (TLS) protocols for third-party API communications to safeguard the integrity of the Application framework.
11.2 Physical and Hardware Device Security
Because your notes, task checklists, and personal plans are stored locally on your physical device, the ultimate security of your User Content relies directly on your device security posture. To maintain maximum protection, we strongly advise that you:
Maintain an active device lock screen utilizing strong PINs, alphanumeric passwords, or biometric authentication (fingerprint/facial recognition).
Avoid rooting your Android device or altering system permission frameworks, which could compromise the isolation of the application sandbox.
Keep your Android operating system updated with the latest manufacturer security patches.
Amendments & Policy Revisions
The Service Provider reserves the explicit right to update, revise, amend, or modify this Privacy Policy at any time to reflect software updates, feature enhancements, statutory compliance requirements, or operational changes.
When modifications are executed, the updated Privacy Policy will be published within the Application and posted on associated distribution channels with a revised "Effective Date" stated at the top of the document. Your continued access to, installation of, or use of the Application following the publication of an updated Privacy Policy signifies your binding acceptance of the modified practices.
Contact Information & Privacy Compliance
If you have questions, feedback, legal inquiries, or formal privacy requests regarding this Privacy Policy or the data practices of the Application, please contact our privacy representative at:
Entity/Developer Name: Golden Associate Pvt. Ltd.
Privacy Team Contact Email: goldenassociatespvt@gmail.com