ExpiryVault Privacy Policy

Effective date: July 21, 2026

ExpiryVault is an offline-first Android app for tracking expiry dates of documents, licenses, permits and warranties. This privacy policy explains what data the app stores and how it is protected.

Information stored on your device

The app stores records you enter, including:

All records are stored locally on your device using a Room database and EncryptedSharedPreferences (AndroidX Security Crypto).

Information we do not collect

ExpiryVault does not upload your document records to developer servers. The app does not sell personal data, does not use advertising SDKs, and does not request contacts, location, SMS, call log or broad media-library access.

Payments

Purchases are processed by Google Play Billing. Google may process payment and account information under Google Play terms and policies. ExpiryVault stores purchase entitlement status locally on your device only.

Notifications

If you grant notification permission, ExpiryVault sends local expiry reminders from your device. Reminder schedules are automatically rescheduled after device reboots. Notification data is not sent to developer servers.

Biometric authentication

If you enable the app lock feature, ExpiryVault uses the Android BiometricPrompt API to authenticate you with your enrolled fingerprint or face. Biometric data is never accessed or stored by the app — authentication is handled entirely by the Android system.

Data export and import

You can export your records to a JSON file and import them back using the Android system file picker (Storage Access Framework). The exported file is saved to a location you choose. You are responsible for the security of exported files.

Backups

The app excludes its local database and secure preferences from Android cloud backup. Your data stays only on your device unless you explicitly export it.

Data deletion

You can delete individual records or all data from within the app settings. Uninstalling the app removes all local app data from your device according to Android system behavior. No developer server copy exists to delete.

Permissions used

PermissionPurpose
POST_NOTIFICATIONSDisplay local expiry reminder notifications
USE_BIOMETRICOptional biometric app lock (fingerprint/face)
RECEIVE_BOOT_COMPLETEDReschedule reminders after device reboot
com.android.vending.BILLINGGoogle Play in-app purchase

Legal notice

ExpiryVault does not provide legal, immigration, financial or government-service advice. Users are responsible for checking official renewal requirements.

Contact

If you have questions about this privacy policy, please contact: wangyang3565@gmail.com

Changes to this policy

We may update this privacy policy from time to time. Any changes will be posted on this page with an updated effective date.