StealthGuard Privacy Policy
Effective Date: August 2026
Last Updated: August 22, 2026
This is the app-specific privacy page for StealthGuard, published under the Krish Innovation Labs site. StealthGuard is developed and operated by an individual developer under the trade name "Krish Innovation Labs" - this is not a separate registered company.
Overview
StealthGuard is a local-first anti-theft app. Most detection and evidence handling occurs on your device. This policy explains what data is accessed, where it is stored, when it is transmitted off your device, and to whom - including the developer's own server, not just Google's services - reflecting the features included in the current release.
Data We Access and Process
StealthGuard may access the following categories when the relevant feature is enabled:
Device Administrator status - used solely to lock your screen instantly during an active anti-theft alarm and to detect failed unlock attempts. It cannot wipe device data, change your PIN/password, or read other apps' data, and you can revoke it at any time in Android Settings.
Camera - front and rear cameras may capture photos during alarm events for evidence storage, silently and without a live preview to avoid tipping off a potential thief.
Motion and sensor signals (accelerometer, gyroscope, proximity, light, gravity) - for on-device theft-detection logic. These are never transmitted anywhere.
Location (approximate and precise, including background location) - optional, used only if you turn on Auto-activate outdoors and/or Auto-deactivate on return home (arm/disarm protection based on up to two saved locations – Home and/or Work – you set, using your location - even when the app is closed or not in use) and/or a location snapshot in a Google Drive backup report. None of these is active unless you enable it, and background location is requested through its own in-app disclosure screen before the system permission prompt.
Google Account (Sign-In) - your email address is read and stored to identify your linked Google Drive account for backups. The underlying Google Sign-In configuration also returns a profile ID/basic profile to the app at sign-in time, even though only the email is persisted.
Notification/alert state and app settings.
Advertising identifier - via Google's Mobile Ads SDK (AdMob), for ad serving/measurement on the free tier only. Premium removes ads.
Crash logs, stack traces, and device diagnostics - via Firebase Crashlytics, collected automatically to help diagnose and fix crashes. This is not tied to any optional feature.
App usage analytics - via Firebase Analytics, collects anonymous app-interaction and feature-usage events (e.g. which features are used, not their content) to understand usage patterns and improve the app. No personal data is included. This is not tied to any optional feature.
StealthGuard does not collect contacts, call logs, SMS, microphone/audio recordings, or government ID data in the current shipped feature set. An ambient-audio-recording feature is present in code but shipped hard-disabled pending its own legal/privacy review before any future release.
Local Processing and Storage
By default, the following is processed and stored locally on your device only: captured evidence images; alarm and diagnostic logs; feature settings and preferences. Evidence retention is user-configurable (1 - 30 days on Premium; shorter fixed defaults on the free tier). You can delete local evidence and diagnostic logs at any time from the app's Privacy Dashboard in Settings.
Data Transmitted Externally
Location: Not transmitted anywhere by default. If you enable Google Drive Backup with a location snapshot, that single snapshot is included in the backup uploaded to your own Google Drive.
Cloud backup (Premium, opt-in, off by default): If you sign in with your Google account and enable backup, evidence photos, a location snapshot, and your Google account email are uploaded to a StealthGuard folder in your own Google Drive using the Google Drive REST API v3 over HTTPS/TLS. We use only the drive.file OAuth scope - the app can access only files it creates itself, never any other file in your Drive. You can revoke this access at any time via your Google Account → Security → Third-party apps.photos, a location snapshot, and your Google account email are uploaded to a StealthGuard folder in your own Google Drive using the Google Drive REST API v3 over HTTPS/TLS. We use only the drive.file OAuth scope - the app can access only files it creates itself, never any other file in your Drive. You can revoke this access at any time via your Google Account → Security → Third-party apps.photos, a location snapshot, and your Google account email are uploaded to a StealthGuard folder in your own Google Drive using the Google Drive REST API v3 over HTTPS/TLS. We use only the drive.file OAuth scope - the app can access only files it creates itself, never any other file in your Drive. You can revoke this access at any time via your Google Account -> Security -> Third-party apps.
Subscriptions and purchases: Google Play Billing processes the purchase itself. Separately, on a successful purchase, the app also sends purchase/order metadata - Google Play order ID, purchase token, product ID, purchase timestamp, purchase state, and the signed receipt - to the developer's own HTTPS activation server, used solely to record and verify your premium entitlement server-side. This payload contains no photos, location data, or personal identifiers. If the endpoint is not configured, this call is silently skipped and your in-app premium access is unaffected either way.
Advertising: The free tier displays ads via Google AdMob (never during an active alarm or on the alarm lock screen). The Mobile Ads SDK may access an advertising identifier for ad serving/measurement, governed by Google's own policies and your device-level ad settings.
Crash reporting: Firebase Crashlytics transmits crash logs, stack traces, and device diagnostics (device model, OS version) to Firebase automatically, independent of any optional feature.
Analytics: Firebase Analytics transmits anonymous app-interaction and feature-usage events (e.g. which features are used, not their content) to Firebase automatically, independent of any optional feature, to help us understand how the app is used and improve it. No personal data is included in these events.
Network: Internet access is also used for standard connectivity checks. All network transfers described above use HTTPS/TLS.
Data Sharing and Sale
StealthGuard does not sell personal and sensitive user data. We do not share personal data for third-party marketing. Processing by Google's services (Mobile Ads, Crashlytics, Sign-In, Drive, Play Billing) is governed by Google's own policies in addition to this one. Purchase/order metadata is shared with the developer's own activation server as described in Section 4. No other server-side sharing occurs.
Security
App-private local storage is used for evidence and diagnostic artifacts. All described network transfers use HTTPS/TLS. No custom master password or PIN exists anywhere in the app; screen lock/unlock always uses your own Android device credential. Device security and Google account security remain your responsibility.
Your Controls
From within app Settings and Android Settings, you can:
- Manage or revoke app permissions (camera, location, sensors, notifications, Device Admin)
- Delete local evidence, diagnostic logs, and your saved outdoor Home/Work locations and radii from the app's Privacy Dashboard
- Sign out of / revoke Google Drive access from your Google Account settings
- Reset or limit your advertising identifier in Android Settings
- Cancel a Premium subscription at any time via Google Play -> Subscriptions
Children
StealthGuard is not intended for children under 13, and we do not knowingly collect personal data from children under that age.
Account & Data Deletion
In-app self-service, available immediately, no request needed: Settings → Sign Out unlinks your Google account and clears the cached email. Settings → Privacy Dashboard → Delete Local Data clears evidence, logs, and the saved outdoor Home/Work location anchors. Uninstalling the app does this automatically too.
Google Drive backup files live in your own Google Drive, not on a developer server. Delete the StealthGuard folder directly in your own Google Drive, or revoke access at https://myaccount.google.com/permissions.
Depending on where you live, you may have GDPR, CCPA, and similar rights to access, correct, delete, or export personal data associated with you, or to object to certain processing. For anything not covered above — Firebase Crashlytics diagnostics (anonymous and not linked to your identity), and purchase/order verification metadata only if a Premium purchase was made — email krishinnovationlabs@gmail.com for questions or a manual check.
Changes to This Policy
We may update this policy to reflect product, legal, or policy changes. This file, the in-app Terms, and the Play Console Data Safety declarations are kept in sync whenever data collection changes.
Contact
For privacy questions or data requests: krishinnovationlabs@gmail.com