DebtShift icon

DebtShift

Smart Debt Payoff Planner

Privacy Policy

DebtShift — Smart Debt Payoff Planner
Last updated: August 2026

ForgeOps AI ("we", "us", or "our") operates the DebtShift mobile application (the "App"). This Privacy Policy explains how we handle information when you use the App. We are committed to protecting your privacy and being transparent about our data practices.

1. Information We Collect

We do not collect personal data. The App does not require you to create an account, and we do not ask for your name, email address, phone number, physical address, or any other personally identifiable information.

Financial data you enter (debt balances, interest rates, minimum payments, credit limits, and promotional rates) is stored exclusively on your device. This data never leaves your device and is never transmitted to us or any third party.

If you subscribe to DebtShift Premium, the App sends the Google Play purchase token and the product identifier for that subscription to our server so we can confirm the subscription is genuine and still active. That is the only information the App transmits to us, and it is described in full in sections 2 and 3 below. It contains no debt data and no information that identifies you by name.

2. How Your Data Is Stored

On your device. All data you enter into the App is stored locally on your device and is encrypted at rest using AES-GCM with a 256-bit key. The encryption key is generated on your device and held in Android’s hardware-backed secure storage (the Android Keystore). The key never leaves your device and is never transmitted to us.

You may export your data (CSV, PDF, or JSON backup) at your own discretion. Exported files are written unencrypted so that other software can read them; once exported they are under your control, and we recommend storing them somewhere you trust.

On our servers. We operate a small server component for one purpose only: verifying Premium subscriptions. It runs on Google Cloud Functions in the United Kingdom (europe-west2), backed by a Google Cloud Firestore database in the European Union (eur3). It stores, against the Google Play purchase token, only: the subscription state (active, cancelled, or expired), the expiry date, the product identifier, and the time the record was last updated.

No debt data, balance, interest rate, payment, or export ever reaches our servers. The subscription record is locked down so that it cannot be read or written by any app client — only our verification service can access it.

3. Third-Party Services

The App uses the following third-party services:

The App does not use any analytics services, advertising SDKs, tracking technologies, or other third-party services beyond those listed above.

4. Data We Do Not Collect

To be explicit, the App does not collect or transmit:

Two identifiers do exist and are described here for completeness: the Google Play purchase token, if you subscribe (section 2), and an installation identifier generated by Firebase Crashlytics so that repeated crash reports from one installation can be grouped. Neither is used for advertising or tracking you across apps, and neither identifies you by name.

5. Data Sharing

We do not sell, rent, or trade user data with anyone, and we never will. We do not share your data with third parties for their own purposes.

The only parties that handle any data on our behalf are Google entities acting as our processors: Google Play (which manages your subscription and payment), Google Cloud (which hosts the subscription verification service described in section 2), and Firebase Crashlytics (which receives crash reports). They process this data on our instructions in order to run the service, not for their own purposes.

6. Data Retention and Deletion

Data on your device. Everything you enter into the App exists only on your device. You can delete all of it at any time by:

Once deleted, this data cannot be recovered — we hold no copy of it.

Subscription records on our servers. If you have subscribed, the verification record described in section 2 is kept while your subscription is active and for 90 days after it expires, then deleted automatically. That window exists so that renewals, cancellations and refund disputes can be handled correctly; it comfortably outlasts Google Play’s own refund and chargeback windows, after which the record serves no purpose. Deletion is enforced by the database itself rather than left to us to remember. You may also ask us to delete a record sooner by emailing the address in section 11, quoting the Google Play order concerned.

Crash reports. Crash reports held by Firebase Crashlytics are deleted automatically according to Google’s Firebase retention schedule.

7. Children's Privacy

The App is not directed at children under the age of 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect information from children. If you believe a child has used the App in a manner that raises concern, please contact us at the email below.

8. Your Rights Under GDPR (UK and EU Users)

Under the UK General Data Protection Regulation (UK GDPR) and the EU General Data Protection Regulation (EU GDPR), you have rights regarding your personal data. ForgeOps AI is the data controller for the limited processing described in this policy.

The debts and financial details you enter are never sent to us, so for that data these rights are satisfied by design — it is yours, on your device, and we cannot see it. Where we do process data (the subscription verification record and crash reports), our lawful basis is the performance of our contract with you, namely providing and maintaining the Premium subscription you purchased.

If you have questions about your rights, or wish to exercise any of them, please contact us at the address below. We aim to respond within one month, as the legislation requires.

9. Security

On your device. Your financial data is encrypted at rest with AES-GCM (256-bit), with the key held in Android's hardware-backed secure storage. The App also offers a PIN and biometric lock, with rate limiting and lockout after repeated failed attempts. Even so, the security of your data ultimately depends on the security of your device — we recommend using a device screen lock and keeping your operating system up to date.

In transit and on our servers. The subscription verification request described in section 2 is sent over an encrypted HTTPS connection. The subscription record is stored in Google Cloud Firestore with access rules that deny all app clients; only our verification service can read or write it.

10. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted within the App and on our website. The "Last updated" date at the top of this page reflects the most recent revision. Continued use of the App after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions or concerns about this Privacy Policy, please contact us: