Privacy Policy
Last updated:
This Privacy Policy explains what personal data eLex ("we", "us") collects, why we collect it, who we share it with, how long we keep it, and the choices and rights you have. We wrote it in plain language on purpose.
Data we collect, and why
We collect only the data the app needs to work and to improve. What we actually collect depends on the features below that are turned on in this app. If a section below does not appear, we do not collect that data.
Usage analytics (Firebase Analytics)
When this is enabled, we use Google Firebase Analytics to understand how the app is used so we can improve it. Through this service we may process:
- Device and advertising identifiers (for example a resettable app-instance ID and, where applicable, an advertising ID);
- Approximate location derived from your IP address (city/region level);
- Usage events — which screens you open and which features you use.
This data is processed by Google as our service provider. It is used to measure and improve the app and is not sold. The same disclosures appear on the app’s Apple App Privacy label and Google Play Data Safety section on the respective store listings.
Crash and stability reporting (Firebase Crashlytics)
To find and fix crashes, we use Firebase Crashlytics. When the app crashes or hits a serious error, we may collect:
- Crash logs and stack traces describing what went wrong;
- Device metadata — device model, operating-system version, app version, and the state of the app at the time of the crash;
- A random install identifier (install UUID) that lets us group reports from the same installation.
These reports are processed by Google as our service provider, used only to diagnose and fix problems, and are not sold.
Advertising (Google AdMob)
If the app shows ads, we use Google AdMob. Ads rely on:
- An advertising identifier — the IDFA on iOS or the Advertising ID
(
AD_ID) on Android; - On iOS, your choice under App Tracking Transparency (ATT) — if you don’t allow tracking, you’ll still see ads, but they won’t be personalized;
- SKAdNetwork signals (iOS) used to measure ad performance without identifying you.
Depending on your consent and region, ads may be personalized (tailored using the advertising identifier) or non-personalized. Google acts as an independent advertising partner for this data. You can reset or limit your advertising identifier in your device settings at any time.
Purchases and subscriptions (RevenueCat)
If the app offers in-app purchases or subscriptions, we use RevenueCat to manage them. Through RevenueCat we process:
- Your purchase history — which products you bought, and your subscription status and renewal dates.
The actual payment is handled by Apple or Google; we never receive your full card number. RevenueCat acts as our service provider to validate receipts and keep your entitlements in sync across devices. This data is used to deliver what you paid for and is not sold.
Notifications and performance (Cloud Messaging, Performance, Remote Config)
If the app sends push notifications or tunes itself remotely, we use Firebase Cloud Messaging, Performance Monitoring, and Remote Config. These may process:
- App version and configuration details;
- Network and latency information — for example request timing, so we can keep the app fast;
- Device information — device model and operating-system version, plus a registration token used to deliver notifications to your device.
This data is processed by Google as our service provider to deliver messages and monitor and improve performance. You can turn off notifications at any time in your device settings.
How we use your data
We use the data above to provide and operate the app, keep it secure, fix crashes and bugs, understand and improve how it is used, and — where you've allowed it — show relevant ads. We do not use it to make decisions about you that produce legal effects.
Who we share it with (recipients)
We do not sell your personal data. We share it only with the service providers that make the app run, acting on our instructions:
- Google / Firebase — analytics, crash reporting, authentication, messaging, and performance, as enabled above.
- Google AdMob — advertising, if ads are enabled.
- RevenueCat — purchase and subscription management, if in-app purchases are enabled.
- Apple and Google — payment processing for in-app purchases, and app distribution.
We may also disclose data if required by law, or to protect our rights, users, and the public. Some providers are located outside your country; where that involves an international transfer, we rely on appropriate safeguards (such as standard contractual clauses).
How we keep it secure
Data is encrypted in transit (HTTPS/TLS). Access is limited to what's needed to run the service. No method of transmission or storage is 100% secure, but we work to protect your data using industry-standard measures.
How long we keep it (retention) and deletion
We keep personal data only as long as we need it for the purposes above, then delete or anonymize it. Crash and analytics data are retained for a limited period under the relevant provider's default retention settings. You can request deletion of your data at any time:
- Or email us at REPLACE-ME@example.com and we'll handle it.
Revoking consent and your choices
Where we rely on your consent (for example, analytics or personalized ads in regions that require it), you can change your mind at any time through the in-app privacy controls or your device settings. You can also reset or limit your advertising identifier in your device settings, and turn off notifications there.
Your rights in the EEA, UK, and Switzerland (GDPR)
If you are in the European Economic Area, the United Kingdom, or Switzerland, the GDPR / UK GDPR gives you rights over your personal data. We process your data on these legal bases (Art. 6): to perform our contract with you (to run the app), with your consent (for example, analytics or personalized ads where required), and for our legitimate interests (keeping the app secure and working). Where required, we obtain consent through a consent prompt and you can withdraw it at any time.
You have the right to:
- access the personal data we hold about you;
- rectify inaccurate data;
- erase your data (“right to be forgotten”);
- restrict or object to processing;
- data portability — receive your data in a portable format;
- withdraw consent at any time, without affecting prior processing; and
- lodge a complaint with your local supervisory authority.
To exercise any of these rights, contact us using the details in the “Contact us” section below. We respond within the time limits the law requires.
Your rights in California (CCPA / CPRA)
If you are a California resident, the CCPA, as amended by the CPRA, gives you rights over your personal information. You have the right to:
- know what personal information we collect, use, and disclose, and to access it;
- delete the personal information we hold about you;
- correct inaccurate personal information;
- opt out of the “sale” or “sharing” of personal information; and
- not be discriminated against for exercising your rights.
We do not sell your personal information for money. Some advertising or analytics features may count as “sharing” for cross-context behavioral advertising under California law; where they do, you can opt out through the in-app privacy controls or the request methods in the “Contact us” section. We do not knowingly process the data of consumers under 16 without the required consent.
To exercise these rights, contact us using the details below. We will verify your request and respond within the statutory timeframe.
Children
This app is not directed to children under the age of 13 (or the equivalent minimum age in your country), and we do not knowingly collect their personal data. If you believe a child has provided us data, contact us and we'll delete it.
Changes to this policy
We may update this policy as the app or the law changes. We'll revise the "Last updated" date above and, for material changes, provide a more prominent notice.
Contact us
Questions or requests about your data? Reach the developer of eLex:
- Email: REPLACE-ME@example.com
- Address: REPLACE-ME (see SETUP.md)