Privacy Policy & Data Protection Declaration
Effective & Last Updated: August 2026
Entity: Exocon ("we," "our," or "us")
Primary Contact: info@exocongroup.com
Core Architecture Notice: Local-First / Zero-Server Architecture
Exocon operates on a strict "Local-First / Zero Remote Retention" model. At present, Exocon does not own, lease, or operate central databases, user account servers, or external analytical storage. All user-entered information, health metrics, calculations, and application state data remain exclusively on the user’s local device under the user's sole physical and operational control.
1. Introduction & Global Scope
This Privacy Policy applies to all mobile applications, software tools, and digital services published and distributed by Exocon (collectively, the "Services").
This document informs all users ("User," "you," or "your") worldwide of our operational handling of personal data in strict compliance with:
California Consumer Privacy Act / California Privacy Rights Act (CCPA / CPRA)
European Union & United Kingdom General Data Protection Regulation (GDPR / UK GDPR)
South African Protection of Personal Information Act (POPIA)
Lei Geral de Proteção de Dados (LGPD - Brazil)
Personal Information Protection and Electronic Documents Act (PIPEDA - Canada)
Google Play Developer & Health Connect Limited Use Policies
2. Architecture & Data Ownership (Zero Remote Collection)
To eliminate privacy risks and potential security liabilities:
No User Accounts: Exocon does not require user registration, usernames, passwords, or personal identity verification to use our standalone applications.
No Remote Central Servers: We do not collect, ingest, index, or store personal identifiable information (PII) on external cloud repositories or remote servers.
Local Sandboxed Processing: All user inputs, calculations, activity tracking logs, and application configurations are processed and retained locally within the protected, encrypted sandbox of your mobile operating system.
3. Categories of Data Handled
A. Local Fitness, Wellness & User Inputs
For applications providing health, fitness, or analytical utilities:
Local Processing Only: Step counts, session logs, biometric measurements, or user-entered numbers are computed locally on your device. Exocon has zero remote access to or visibility of these records.
Health Connect & Sensitive API Compliance: If an app interfaces with Android Health Connect or system sensors, all data is accessed solely in real-time to execute core app features. In adherence to Google Play's Health Connect Permissions Policy:
We never transfer health data to external servers.
We never sell, rent, or trade health data to third-party brokers, data aggregators, or advertisers.
We never use health metrics for user profiling, credit evaluation, or targeted advertising.
B. Diagnostics & Standard Platform SDKs
Our applications may integrate standard third-party software development kits (SDKs) to facilitate basic OS integration and monetization:
Google Play Services: Provides fundamental operating system support and app licensing.
Google AdMob: Monetization frameworks may process non-sensitive, pseudonymized device identifiers (e.g., Google Advertising ID) solely to serve advertisements in compliance with Google's policies. Health metrics are strictly segregated and never shared with advertising frameworks.
Firebase Crashlytics / Diagnostics: Transmits anonymized crash traces and device hardware specifications (e.g., OS version, device architecture) strictly to diagnose software crashes and publish bug fixes.
4. Data Retention Policy
Because Exocon does not transmit or ingest user data to external servers:
Exocon Remote Retention: Zero (0) Days. We maintain no central data reservoirs, backups, or databases.
On-Device Retention: Data generated within the application is retained locally on your hardware until you intentionally overwrite it, reset application storage, or uninstall the app.
5. Data Deletion & Fulfillment Policy
Notice Regarding Data Export & Access Requests
Because Exocon does not collect, index, or store user-identifiable data on central servers, Exocon is technically unable to extract, compile, or deliver user-specific records upon individual request. There is no database from which to pull your data, as all records reside exclusively within your physical hardware.
User-Directed Deletion Mechanisms
You maintain complete, immediate autonomy over data deletion at all times:
Application Storage Reset: Erase all local files, configurations, and logs instantly by accessing:
Android Settings → Apps → [App Name] → Storage → Clear Storage / Clear Data.Uninstallation: Removing the application permanently purges all local sandbox files and cached assets from your hardware.
Health Connect Revocation: Access permissions can be severed at any moment via Android Settings → Privacy → Health Connect → Permissions.
6. International Statutory Rights (CCPA, GDPR, POPIA)
Legal Right
Exocon Operational Implementation
Right to Access & Portability
Fulfilled directly on-device via the app interface. No central copy exists to export.
Right to Erasure / Deletion
Executed directly by the user via OS storage reset or app uninstallation.
"Do Not Sell My Data" (CCPA)
Exocon does NOT sell, monetize, rent, or lease personal data to any third party.
Right to Non-Discrimination
We do not alter service delivery or charge fees based on privacy rights exercised.
7. Children's Privacy (COPPA & Global Standards)
Our applications are not directed toward children under 13 years of age (or under 16 where specified by local law). We do not knowingly harvest or solicit information from minors. Given that our applications operate locally with zero remote data intake, no minors' personal records are stored or processed on remote systems.
8. Evolution of Services & Future Cloud Deployments
As Exocon expands its software portfolio, certain future services (such as cross-device synchronization, enterprise utility tools, or cloud backup features) may introduce dedicated server architectures.
Policy Update Notice: Prior to the launch of any application utilizing remote server databases or cloud-side data processing, Exocon will update this Privacy Policy, provide explicit in-app disclosure notices, and establish server-side data retention and deletion pipelines in full compliance with applicable international laws.
9. Contact Information
For legal, regulatory, or policy-related questions:
Entity: Exocon
Support / Legal Email: info@exocongroup.com