Zero-Knowledge & Local-First

Privacy Policy for Secure Notes

Application: Secure Notes Developer: Angs Corp Package: com.angs.securenotes Last Updated: September 19, 2026

1. Overview & Our Core Philosophy

Welcome to Secure Notes (“we”, “our”, or “the App”), developed and operated by Angs Corp.

Secure Notes is designed from the ground up as a local-first, privacy-first secure vault. We firmly believe that your private notes, passwords, financial records, and personal media belong solely to you. We do not operate centralized servers that store your vault data, and we cannot read, decrypt, access, or sell your information under any circumstances.

Zero-Knowledge Guarantee: All personal data is highly encrypted on your device using hardware-backed cryptographic keys. Because encryption and decryption occur solely on your local device, no external party has access to your master keys or plaintext data.

2. Data We Handle and How It Is Protected

The application processes and stores the following types of information strictly on your local device:

2.1 Encrypted Vault Information

2.2 Storage & Encryption Safeguards

2.3 Preferences & Configuration

Non-sensitive preferences (selected theme, language/locale, auto-lock timeout duration, and onboarding status) are stored locally in the application sandbox to preserve your app settings.

3. Device Permissions and Usage

Secure Notes requests device permissions only when necessary to perform actions you initiate:

Permission Purpose
Biometrics (Face ID / Fingerprint) Used to authenticate and unlock your vault. Biometric authentication is handled entirely by your device OS. The App never captures, accesses, or transmits your biometric data.
Camera Used to take photos or record videos directly into the encrypted media gallery, or capture receipt photos linked to expense entries.
Microphone / Audio Used to record audio notes or capture video sound in media utilities.
Photos & Storage Used to import images/videos into your encrypted vault or save exported media to your device storage upon your explicit command.
Local Network / Wi-Fi Used solely for direct, peer-to-peer (P2P) device-to-device migration and file transfer between nearby devices on the same local network without going through external servers.
Notifications Used to deliver on-device reminders, budget thresholds, and auto-lock security warnings.
Haptics & Vibration Provides tactile feedback for button presses, authentication events, and accessibility cues.

4. Third-Party Services

We work with trusted third-party SDKs to support advertising and notification delivery while maintaining complete vault isolation:

4.1 Google Mobile Ads (AdMob)

4.2 Push Notifications (Firebase Realtime Database)

4.3 Optional Cloud Backup (Google Drive)

4.4 Local Diagnostic Logs

Diagnostic crash logs are stored locally on your device for troubleshooting. They are never automatically uploaded to external telemetry servers and can only be exported manually by you.

5. Data Retention, Erasure & User Control

You have full ownership and control over all information stored in the application:

6. Local Storage Architecture, Data Theft Disclaimer & Limitation of Liability

Important Legal Notice: Secure Notes is a 100% offline, local-first utility. Angs Corp operates no servers, databases, or cloud vaults storing your notes, credentials, transactions, or files. Because no user data is hosted or transmitted to developer servers, Angs Corp bears no legal responsibility or liability for any data leakage, unauthorized access, or data theft occurring on or originating from your device.

6.1 Exclusively Local-First Operation (Zero Server Custody)

Secure Notes is explicitly designed, engineered, and operated as an offline, local-first secure vault. All user content—including personal notes, credentials, passwords, bank/credit records, budgets, transactions, and private media gallery files—is encrypted and saved strictly in your local device's isolated application storage sandbox.

Angs Corp does not operate, host, or maintain any centralized servers, cloud databases, intermediate proxies, or remote storage systems holding your vault data. Consequently:

6.2 Full Disclaimer of Legal Liability for On-Device Data Theft, Leaks, or Loss

Because Angs Corp never receives, stores, or transmits your sensitive information to developer servers, Angs Corp, its developers, contributors, officers, and affiliates bear NO LEGAL RESPONSIBILITY OR LIABILITY WHATSOEVER for any data leakage, data breach, unauthorized access, exfiltration, loss, corruption, or data theft that occurs on or originates from your device, operating system, or local storage environment.

Under no circumstances shall Angs Corp be held legally or financially liable for security compromises arising from factors outside of the application's direct on-device encryption implementation, including but not limited to:

  1. Malware, Spyware & Malicious Apps: Any infection of your device by trojans, keyloggers, screen scrapers, unauthorized accessibility services, or malicious third-party software that captures keystrokes, screen contents, or clipboard data.
  2. Physical Loss, Theft & Unauthorized Physical Access: Physical theft of your device, loss of custody, unauthorized physical access while unlocked, shoulder-surfing, or compelled device unlock.
  3. Compromised Operating Systems & Rooting/Jailbreaking: Use of Secure Notes on rooted, jailbroken, bootloader-unlocked, modified, or custom ROM devices where operating system security sandboxes, hardware keystores, or inter-process isolation have been disabled, weakened, or bypassed.
  4. User Security Negligence: Failure by the user to maintain an active device screen lock (PIN, password, pattern, or biometrics), setting weak or guessable Master Passwords, sharing credentials with third parties, or leaving unlocked sessions unattended.
  5. Third-Party Services & User-Initiated Exports: Unauthorized access to your personal cloud accounts (such as Google Drive backups), lost or unencrypted manual export files, or exposure resulting from file sharing initiated by you.
  6. Operating System & Hardware Vulnerabilities: Zero-day exploits, hardware vulnerabilities, memory extraction attacks, or security flaws inherent in the underlying device hardware, firmware, or vendor operating system.

6.3 User Responsibilities for Vault and Device Security

As a user of Secure Notes, you acknowledge and agree that you retain sole and exclusive responsibility for:

6.4 Disclaimer of Warranties & Limitation of Liability

TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, THE APPLICATION IS PROVIDED ON AN “AS IS” AND “AS AVAILABLE” BASIS, WITHOUT WARRANTIES OF ANY KIND, WHETHER EXPRESS, IMPLIED, STATUTORY, OR OTHERWISE. Angs Corp SPECIFICALLY DISCLAIMS ALL IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT.

IN NO EVENT SHALL Angs Corp, ITS DIRECTORS, EMPLOYEES, AGENTS, OR AFFILIATES BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, EXEMPLARY, OR PUNITIVE DAMAGES—INCLUDING BUT NOT LIMITED TO LOSS OF DATA, LOSS OF PROFITS, LOSS OF REPUTATION, UNAUTHORIZED DISCLOSURE, IDENTITY THEFT, OR FINANCIAL LOSS—ARISING OUT OF OR IN CONNECTION WITH THE USE OF, INABILITY TO USE, OR DEVICE-LEVEL SECURITY BREACHES INVOLVING THE APPLICATION.

7. Security Safeguards

We apply industry standard security measures:

8. Children's Privacy

Secure Notes is not directed to children under 13 years of age (or under 16 in the European Economic Area). We do not knowingly collect personal information from children.

9. Policy Updates & Contact

We may update this Privacy Policy periodically. Any changes will be posted on this page with an updated “Last Updated” date.

If you have any questions or feedback regarding this Privacy Policy, please contact us: