The short version
Your documents and personal details are encrypted and stored only on your device. We never upload them to our servers, and we have no technical ability to read them. We collect the bare minimum needed to run your account.
1. Introduction
Guardian Angel ("we," "our," or "us") is committed to protecting your privacy. This policy explains how we collect, use, and safeguard your information in compliance with applicable privacy laws, including the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable regulations.
2. Data stored locally on your device (never sent to us)
The following data is stored ONLY on your device using AES-256-GCM encryption and is NEVER transmitted to our servers:
- Scanned and uploaded documents
- Home address and specific location information
- Personal identification details
- Financial account information and details
- Vehicle registration and insurance details
- Warranty information and receipts
- Maintenance schedules and service history
- Personal notes and custom reminders
Encryption keys are stored securely in your device's Keychain. We have no technical ability to access, read, or decrypt this data.
3. Data we may collect (with your consent)
For account management and service improvement, we may collect:
- Email address (required for account creation and notifications)
- Display name (optional)
- General region / climate zone (NOT your specific address)
- Home type (apartment, house, condo, etc.)
- Ownership status (rent or own)
- Subscription status and history
- Anonymous app usage analytics (only if you opt in)
4. Data we never collect
We explicitly do NOT collect, store, or transmit:
- Your specific home address or GPS coordinates
- The contents of your documents or photos
- Financial account numbers, PINs, or credentials
- Social Security numbers or government ID numbers
- Passwords or authentication credentials
- Email contents, attachments, or metadata
- Your contacts or personal relationships
- Precise location data
- Biometric data
5. How we use your data
The limited data we collect is used only to provide account services and notifications, process subscription payments (through the Apple App Store only), improve the app based on aggregated anonymous usage, provide customer support, and comply with legal obligations.
6. Data sharing and third parties
We do NOT sell, rent, or trade your personal information. We may share limited data only with Apple (for App Store subscription processing), with service providers under strict data-processing agreements, or when required by law.
7. Email scanning privacy
If you connect your email, we request read-only access with minimal permissions, all processing occurs locally on your device, and we never store, upload, or access your email content or credentials. You can disconnect at any time, which immediately revokes access.
8. Data security
- AES-256-GCM encryption for all sensitive local data
- Encryption keys stored in the iOS Keychain
- No server-side storage of sensitive personal data
- Secure coding practices following OWASP guidelines
9. Your privacy rights
You have the right to access, correct, delete ("right to be forgotten"), export, and restrict processing of your data, and to withdraw consent or opt out of analytics at any time. California residents have the additional rights described under the CCPA. You can exercise these rights directly in the app's Settings, or by contacting us below.
10. Data retention
Local device data is stored until you delete it or uninstall the app. Account data is deleted within 30 days of a deletion request. We maintain no backups of your personal data.
11. Children's privacy
Guardian Angel is not intended for users under 18 years of age, and we do not knowingly collect data from children.
12. Changes to this policy
We will notify you of material changes through in-app notice. Continued use after changes constitutes acceptance.
13. Contact us
For privacy questions or to exercise your rights, contact us at tyreehawkins42@gmail.com. You also have the right to lodge a complaint with your local data protection authority.