Privacy Policy for Vindra
Effective date: July 14,2026 Last updated: July 14,2026
The short version
Vindra is built to work entirely offline. Everything you write — your journal entries, photos, voice recordings, and mood logs — is stored only on your own device. We do not collect it, see it, or have any way to access it. There are no user accounts, no cloud storage, and no advertising in Vindra.
This policy explains exactly what that means in detail.
1. Who we are
Vindra is developed by Carl John Hicban, an independent developer, referred to as "we," "us," or "the developer" in this policy. You can reach us at carlhicban813@gmail.com.
2. What data Vindra collects
Vindra does not collect, transmit, or store your personal data on any server.
Specifically:
Journal entries, photos, videos, audio recordings, mood logs, and tags you create are stored locally on your device only, inside an encrypted local database. We have no access to this content, no copy of it, and no ability to retrieve it if you lose your device.
We do not require an account. There is no sign-up, login, email address, or username needed to use Vindra.
We do not use advertising SDKs, analytics trackers, or third-party tracking tools that collect behavioral data about you.
We do not collect your location, contacts, browsing history, or any data unrelated to the core function of journaling.
3. Permissions Vindra requests, and why
Vindra only requests a permission at the moment you use the specific feature that needs it — never in advance, and never bundled together.
Permission
Why it's requested
When
Camera
To let you attach a photo to a journal entry
Only when you tap "Add photo"
Microphone
To let you record a voice note or use voice-to-text
Only when you tap the microphone icon
Notifications
To send your daily journaling reminder
Only if you enable reminders
Biometric / fingerprint
To unlock the app or a locked entry using your device's biometric hardware
Only if you enable app lock or entry lock
Storage (backup, if enabled)
To save an encrypted local backup file so your journal can survive an app reinstall
Only if you opt in to local backup
Vindra does not request location, contacts, call log, SMS, or background location permissions under any circumstances.
4. Network use — the one limited exception
Vindra's core journaling features work completely offline, including in airplane mode. The only network connection Vindra makes is for subscription billing validation through Google Play's billing system (via our billing provider, RevenueCat), so that your Premium subscription status can be verified. This connection is limited to confirming your purchase — it does not transmit any journal content, photos, or personal writing.
5. Local backup (if you choose to enable it)
If you opt in to local backup, Vindra creates an encrypted copy of your journal data and stores it in your device's shared storage, protected by a password that Vindra generates automatically and shows you once at setup. This backup:
Never leaves your device and is never uploaded anywhere by Vindra
Is encrypted using industry-standard encryption (AES-256); without the password, the file cannot be read
Is solely your responsibility to keep safe — if the password is lost, the backup cannot be recovered, as we have no account system through which to reset it
Is intended to protect against data loss from reinstalling Vindra on the same device — it is not a cloud sync feature and does not help if you switch to a new phone, since the backup file stays on the original device
We have also disabled Android's built-in "Auto Backup for Apps" system feature within Vindra, which by default can copy app data to a user's Google account. This means your journal data is never automatically backed up anywhere by the operating system either — the only backup that exists is the one described above, which you control.
6. Data deletion
Because your data lives only on your device, deleting an entry, journal, or the app itself permanently removes that data — we have no separate copy to delete on our end because we never had one to begin with.
7. Children's privacy
Vindra is not directed at children and is not designed to collect any personal information from anyone, including children. Since Vindra collects no personal data at all, there is nothing collected from a child user to be concerned about, but Vindra is not intended for use by children under 13 (or the relevant minimum age in your country).
8. Changes to this policy
If this policy changes — for example, if a future feature changes how data is handled — we will update this page and revise the "Last updated" date above. Since Vindra has no accounts or email addresses on file, we are unable to notify users individually, so we encourage checking this page periodically if you have concerns.
9. Your rights
Because Vindra does not collect, store, or process your personal data on any server, there is no personal data held by us for you to request, correct, or delete under regulations such as GDPR or CCPA — your data has never left your device in the first place. If you have any questions about this, contact us at [YOUR CONTACT EMAIL].
10. Contact
If you have questions about this privacy policy or Vindra's data practices, contact:
CARL JOHN HICBAN carlhicban813@gmail.com