Intruder Detector Who touched my phone (the "App") · Contact: info.nz.blog@gmail.com · Last updated: October 9, 2026
This policy explains what information the App collects, why, and what you can do about it. By using the App you agree to it. If you do not agree, please do not use the App.
The App helps you find out who tried to unlock your phone. When a wrong PIN, pattern or password is entered on the lock screen, the App takes a photo with the front camera, records the phone's location and the time, saves them on your phone, and (if you turned on email alerts) sends them to the email address of the Google account you signed in with.
Account information: your Google account email address, name and a unique account ID, collected when you choose "Sign in with Google". Signing in is optional.
Photos: a photo taken with the front camera when an unlock attempt fails. The App's own PIN lock also takes a photo after a wrong PIN, which is kept only on your phone.
Location: the precise location of the phone at the moment of the incident, with its accuracy. The App does not track your location at other times.
Incident details: date and time, the number of failed attempts, whether the attempt came from the phone lock screen or the App lock, your device model and your phone language.
Advertising data: the App shows ads through Google AdMob. AdMob may collect your Advertising ID, IP address and device and app information to serve and measure ads.
Settings: your choices in the App (theme, language, email alerts, PIN lock). They stay on your phone.
The App does not collect your contacts, messages, call history or files.
Camera: to take the photo of the person who enters the wrong code.
Location: to include where the phone was during the incident.
Device administrator (limited): the App uses Android's device administration only to be told that an unlock attempt failed. It does not lock the phone, wipe data, change your password or control your device.
Notifications and foreground service (camera, location): to capture the incident reliably and to show you a notification.
Run at startup and background activity: so protection restarts after the phone reboots and is not stopped by the system.
Biometrics or PIN (optional): to protect access to the App itself.
Internet: to send incidents, load ads and sign in.
To capture, store and show you unlock incidents.
To email you the alert, with the photo, the time and a map link to the location.
To keep the service working, safe and free of abuse (for example, limiting how many alert emails are sent).
To show ads, which help us keep the App available.
We do not sell your personal information.
On your phone: photos are encrypted with a key that stays in the Android Keystore. Incident records are stored in the App's private storage.
Google Firebase (Authentication, Firestore, Cloud Storage, Cloud Functions): when you sign in and email alerts are on, incidents and photos are uploaded to our Firebase project and are linked to your account ID. Google processes this data on our behalf on its servers, which may be located outside your country, including in the United States.
Brevo (email delivery): to send the alert, the email (your address, the photo as an attachment and the location link) passes through Brevo, our email service provider.
Google AdMob: Google provides the ads and receives the advertising data described above, under Google's own privacy policy (policies.google.com/privacy).
We do not share your photos or location with anyone else, except when the law requires it.
Where required (for example in the European Economic Area, the United Kingdom and Switzerland), the App asks for your consent before showing personalized ads, and you can change your choice later under "Ad privacy settings" in the App menu. You can also reset or delete your Advertising ID in your Android settings.
Email alerts are optional. If you turn them off, or use the App without signing in, photos and locations stay on your phone only and nothing is uploaded or emailed.
Incidents on your phone stay until you delete them in the App or uninstall it. Incidents uploaded to our servers are kept until you ask us to delete them. Deleting an incident inside the App removes the copy on your phone; to delete your account and everything stored online, see the section "Delete your account and data" below.
Photos on your phone are encrypted, data is sent over encrypted connections, and access to server data is restricted to your own account. No method is perfectly secure, so we cannot guarantee absolute security.
You can ask us to access, correct or delete your data, to stop processing it, or to delete your account and all uploaded incidents. Email us at info.nz.blog@gmail.com from the address of your Google account and we will respond within a reasonable time. Depending on where you live, you may also have the right to complain to your local data protection authority.
You can delete your account and all the data we hold about you at any time:
In the App: open the menu and choose "Delete my account and data", then confirm with your Google account. This permanently deletes your account, the photos and incident records stored on our servers, and the incidents saved on your phone.
Without the App: email info.nz.blog@gmail.com from the address of your Google account with the subject "Delete my account". We will delete your account and the data linked to it within 30 days.
Deleted data cannot be recovered. Data held by Google itself, such as your Google account or advertising data, is governed by Google's own policies.
The App is not directed to children under 13 (or the minimum age in your country), and we do not knowingly collect their data. If you believe a child has given us personal data, contact us and we will delete it.
Use the App only on devices you own or are authorized to protect. Do not use it to monitor other people without their knowledge and permission, which may be illegal.
We may update this policy. The date at the top shows the latest version, and we will post any important change in the App or on this page.
info.nz.blog@gmail.com