Welcome to "Digital Wallet - Cards & IDs" ("App", "we", "our", or "us"). This comprehensive Privacy Policy governs your use of our application and outlines our practices concerning the processing of your information.
Our core architecture is built upon a "Zero-Knowledge, Local-First" framework. This means we are not a cloud storage provider; we are a local client utility. By operating without mandatory user accounts and restricting data storage exclusively to the user’s physical device (AES-256 encrypted Hive databases), we mathematically eliminate the possibility of server-side data breaches from our end regarding your stored documents.
This policy complies with stringent global data protection regulations, including but not limited to:
The General Data Protection Regulation (GDPR - Europe/UK)
The California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA - USA)
The Personal Information Protection and Electronic Documents Act (PIPEDA - Canada)
The Lei Geral de Proteção de Dados (LGPD - Brazil)
Google Play Developer Policy regarding Highly Sensitive Personal and Financial Information.
We strictly DO NOT collect, transmit to our servers, or share the following data points:
Identity Documents: Passports, National IDs, Driver's Licenses, Visas, or SSNs.
Financial Data: Credit/Debit Card Numbers, Expiration Dates, and highly restricted authentication data such as CVV (Card Verification Value) / CVC / Security Codes. (Note: While the App provides optional fields for CVVs if a user explicitly chooses to record them, this data never leaves the encrypted local enclave of the device).
Health and Work Records: Medical records, insurance details, employee IDs, or educational certificates.
Biometric Signatures: Fingerprint hashes or facial recognition vectors (these are handled exclusively by your device's native OS, e.g., Android Keystore).
All personal information inputted by you—whether manually typed, scanned via the device camera, or read via Near Field Communication (NFC)—is stored entirely within the device’s internal, sandboxed application directory. If you lose your device or uninstall the App without backing up, your data is irrevocably lost. We cannot recover it.
To operate and monetize the App, certain metadata and transient data are handled by vetted global infrastructure providers:
A. Generative AI Optical Character Recognition (OCR):
If a Premium user actively selects the "Gemini AI Scan" feature for enhanced accuracy, the image of the document is temporarily transmitted via an encrypted (HTTPS/TLS) channel to Google Generative AI (Gemini) APIs. This transmission is strictly for transient processing (extracting text from the image) and is governed by Google Cloud's enterprise privacy terms, which prohibit the use of customer payload data to train public AI models.
B. App Telemetry and Diagnostics:
We integrate Google Firebase (Crashlytics, Analytics, Remote Config, and App Check) to monitor stability. Firebase collects anonymized telemetry, including:
Device Model, OS Version, and Network Status (Wi-Fi/Cellular).
Anonymized Instance IDs (which reset upon uninstallation).
Crash traces and performance metrics.
C. Advertising:
For non-premium users, we utilize Google AdMob. AdMob collects the Android Advertising ID (AAID) and IP addresses to serve contextual or personalized advertisements. This data collection is subject to user consent mechanisms (e.g., Google UMP for EU/UK users).
The App requests specific granular permissions only when a feature is invoked. You can revoke these at any time via Android Settings:
Camera: Required to capture images of documents for local or AI-assisted OCR.
NFC: Required exclusively to read public EMV data from contactless financial cards directly to the local database.
Biometrics: Required to secure the App UI from unauthorized local access.
Notifications: Required for local alerts regarding document expiration dates. All scheduling is calculated locally without server interaction.
Billing: Required to facilitate In-App Purchases (IAP) via the Google Play Store infrastructure. We do not handle your payment credentials.
Given our Local-First architecture, the traditional methods of exercising privacy rights differ fundamentally:
Right to Access & Portability: You have full access to your data within the App. You can export it if the App provides export functionalities (e.g., encrypted local backups).
Right to Erasure (Right to be Forgotten): Because your sensitive data is stored locally, you have full control. We provide a dedicated "Factory Reset" option directly within the App's settings. You can use this feature at any time to instantly and permanently erase all your stored documents and records from your device. Alternatively, uninstalling the App will also destroy the encrypted local database.
Consent Management: EU/UK users are presented with a Consent Management Platform (CMP) to accept or decline personalized tracking by AdMob upon initialization.
"Do Not Sell or Share My Personal Information": We do not sell your personal or financial data to data brokers. The only "sharing" as defined by California law involves analytical and advertising identifiers processed by Google (AdMob/Firebase). California residents can opt-out of personalized advertising via the App settings or device-level opt-outs (e.g., "Opt out of Ads Personalization" in Android).
Right to Limit Use of Sensitive Personal Information: We inherently limit the use of your sensitive data (SSN, CVV, Passports) because we do not collect or possess it.
We process non-sensitive telemetry data based on legitimate business interests (app stability) and user consent (advertising). Financial and identity data remains under the exclusive custody of the user.
We recognize that users may store financial instruments (Debit/Credit Cards).
Optional CVV Storage: The field for CVV/CVC is strictly optional. If a user inputs this data, it is subjected to the same rigorous local encryption as the primary card number.
No Network Transmission: The App contains no code capable of transmitting your encrypted database, card numbers, or CVVs to our developer servers.
User Responsibility: The security of the data is inherently tied to the security of the user's physical device. We mandate that users enable device-level screen locks (PIN, Pattern, Biometrics) to protect the underlying Android Keystore which secures the App's data.
Sensitive Data: Retained locally on your device for as long as the App is installed.
Telemetry Data (Firebase): Retained according to Google's standard retention policies (typically 14 to 24 months for analytics, and 90 days for crash logs).
Our application is designed for adult professionals handling legal and financial documents. It is not directed at children under the age of 13 (or 16 in the EEA). We do not knowingly collect information from children. If you are a parent and believe your child has downloaded the App, you can simply uninstall it from their device to instantly erase any inputted data.
Transactions for Premium features (e.g., "Gemini AI Scan" access or "Remove Ads") are processed entirely through the Google Play Billing Library. We do not collect your credit card data for these purchases. Refunds and subscription management are governed by Google Play's Terms of Service.
We reserve the right to modify this Privacy Policy. Substantive changes regarding how we utilize third-party APIs or handle permissions will be communicated via an in-app prompt and by updating the "Last Updated" date at the top of this document.
For legal inquiries, data protection questions, or general support, you may contact our Data Protection Officer (DPO) at:
Email: contact@galexaworld.com
Last Updated: 15-May-2026