Privacy Policy
ForgeOps AI ("we", "us", or "our") operates the DebtShift mobile application (the "App"). This Privacy Policy explains how we handle information when you use the App. We are committed to protecting your privacy and being transparent about our data practices.
1. Information We Collect
We do not collect personal data. The App does not require you to create an account, and we do not ask for your name, email address, phone number, physical address, or any other personally identifiable information.
Financial data you enter (debt balances, interest rates, minimum payments, credit limits, and promotional rates) is stored exclusively on your device. This data never leaves your device and is never transmitted to us or any third party.
If you subscribe to DebtShift Premium, the App sends the Google Play purchase token and the product identifier for that subscription to our server so we can confirm the subscription is genuine and still active. That is the only information the App transmits to us, and it is described in full in sections 2 and 3 below. It contains no debt data and no information that identifies you by name.
2. How Your Data Is Stored
On your device. All data you enter into the App is stored locally on your device and is encrypted at rest using AES-GCM with a 256-bit key. The encryption key is generated on your device and held in Android’s hardware-backed secure storage (the Android Keystore). The key never leaves your device and is never transmitted to us.
You may export your data (CSV, PDF, or JSON backup) at your own discretion. Exported files are written unencrypted so that other software can read them; once exported they are under your control, and we recommend storing them somewhere you trust.
On our servers. We operate a small server component for one purpose only: verifying Premium subscriptions. It runs on Google Cloud Functions in the United Kingdom (europe-west2), backed by a Google Cloud Firestore database in the European Union (eur3). It stores, against the Google Play purchase token, only: the subscription state (active, cancelled, or expired), the expiry date, the product identifier, and the time the record was last updated.
No debt data, balance, interest rate, payment, or export ever reaches our servers. The subscription record is locked down so that it cannot be read or written by any app client — only our verification service can access it.
3. Third-Party Services
The App uses the following third-party services:
- Google Play Billing: If you subscribe to DebtShift Premium, your subscription is managed entirely by Google through Google Play. Google processes your payment and manages your subscription account. We do not receive or store your payment details. Google's handling of your data is governed by Google's Privacy Policy.
- Firebase Crashlytics: The App uses Google Firebase Crashlytics to collect crash and error reports. This helps us identify and fix bugs. Crashlytics collects the following: crash stack traces, app version, device model, Android OS version, and timestamp. No personal information, financial data, or user content is included in crash reports. Crashlytics data is governed by Google's Privacy Policy and Firebase's Privacy and Security Guidelines.
- Google Cloud Functions and Firestore (our subscription verification service): When you subscribe, restore a purchase, or the App periodically re-checks your entitlement, the App sends your Google Play purchase token and product identifier to our verification service. The service asks Google whether that subscription is genuine and active, and caches the answer as described in section 2. Google Cloud acts as our data processor for this service; we are the controller. Google also notifies this service directly when a subscription is renewed, cancelled, or refunded, so that entitlement stays correct without the App having to ask.
The App does not use any analytics services, advertising SDKs, tracking technologies, or other third-party services beyond those listed above.
4. Data We Do Not Collect
To be explicit, the App does not collect or transmit:
- Personal identification information (name, email, phone number, address)
- Advertising identifiers, or any identifier used for advertising or cross-app tracking
- Location data
- Usage analytics or behavioural data
- Bank account, credit card, or other financial account credentials
- Cookies or similar tracking technologies
- Any of the debts, balances, rates, payments or plans you enter into the App
5. Data Sharing
We do not sell, rent, or trade user data with anyone, and we never will. We do not share your data with third parties for their own purposes.
The only parties that handle any data on our behalf are Google entities acting as our processors: Google Play (which manages your subscription and payment), Google Cloud (which hosts the subscription verification service described in section 2), and Firebase Crashlytics (which receives crash reports). They process this data on our instructions in order to run the service, not for their own purposes.
6. Data Retention and Deletion
Data on your device. Everything you enter into the App exists only on your device. You can delete all of it at any time by:
- Using the App's built-in data management features
- Clearing the App's data through your device's Settings (Apps > DebtShift > Storage > Clear Data)
- Uninstalling the App
Once deleted, this data cannot be recovered — we hold no copy of it.
Subscription records on our servers. If you have subscribed, the verification record described in section 2 is kept while your subscription is active and for 90 days after it expires, then deleted automatically. That window exists so that renewals, cancellations and refund disputes can be handled correctly; it comfortably outlasts Google Play’s own refund and chargeback windows, after which the record serves no purpose. Deletion is enforced by the database itself rather than left to us to remember. You may also ask us to delete a record sooner by emailing the address in section 11, quoting the Google Play order concerned.
Crash reports. Crash reports held by Firebase Crashlytics are deleted automatically according to Google’s Firebase retention schedule.
7. Children's Privacy
The App is not directed at children under the age of 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect information from children. If you believe a child has used the App in a manner that raises concern, please contact us at the email below.
8. Your Rights Under GDPR (UK and EU Users)
Under the UK General Data Protection Regulation (UK GDPR) and the EU General Data Protection Regulation (EU GDPR), you have rights regarding your personal data. ForgeOps AI is the data controller for the limited processing described in this policy.
The debts and financial details you enter are never sent to us, so for that data these rights are satisfied by design — it is yours, on your device, and we cannot see it. Where we do process data (the subscription verification record and crash reports), our lawful basis is the performance of our contract with you, namely providing and maintaining the Premium subscription you purchased.
- Right of access: We hold no personal data about you beyond the subscription record and crash reports described above. Email us and we will tell you what, if anything, is held against your subscription.
- Right to rectification: You can edit any data stored locally within the App at any time. The subscription record simply mirrors Google Play's own record, so corrections are made through Google Play.
- Right to erasure: You can delete all on-device data by clearing the App's data or uninstalling it. For the subscription record, see section 6.
- Right to data portability: You can export your data using the App's export features (CSV, PDF, JSON).
- Right to object / restrict processing: You may object to our processing of the subscription record, though we may then be unable to keep your Premium entitlement working.
- Right to complain: If you are in the UK you may complain to the Information Commissioner's Office (ico.org.uk); in the EU, to your national supervisory authority.
If you have questions about your rights, or wish to exercise any of them, please contact us at the address below. We aim to respond within one month, as the legislation requires.
9. Security
On your device. Your financial data is encrypted at rest with AES-GCM (256-bit), with the key held in Android's hardware-backed secure storage. The App also offers a PIN and biometric lock, with rate limiting and lockout after repeated failed attempts. Even so, the security of your data ultimately depends on the security of your device — we recommend using a device screen lock and keeping your operating system up to date.
In transit and on our servers. The subscription verification request described in section 2 is sent over an encrypted HTTPS connection. The subscription record is stored in Google Cloud Firestore with access rules that deny all app clients; only our verification service can read or write it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted within the App and on our website. The "Last updated" date at the top of this page reflects the most recent revision. Continued use of the App after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions or concerns about this Privacy Policy, please contact us:
- Email: debtshift@agentmail.to
- Developer: ForgeOps AI
- Website: https://debtshift.info