VaultX

Legal Information & Policies

Effective Date: May 16, 2026  |  Developer: SoftTech Service

VaultX ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we handle your information. VaultX is designed as a local-first application — your data stays on your device, always.

1. Overview

VaultX operates on a strict privacy-first, local-first principle. Unlike cloud-based password managers, VaultX stores all your encrypted data exclusively on your device's internal storage. We have no servers that receive, store, or process your personal vault data.

Zero Server Storage: Your passwords, cards, notes, and documents never leave your device.

No Account Required: VaultX requires no sign-up, login, or email address to function.

No Telemetry: We collect no usage analytics, crash reports (that include personal data), or behavioral tracking.

2. Information Collection and Use

2.1 Personal Vault Data

We do not collect, store, or transmit any of the personal data you enter into VaultX — including passwords, credit card numbers, bank account details, identity documents, secure notes, or secret contacts. All such data is encrypted using AES-256-GCM and stored locally on your device's internal storage.

2.2 Camera Permission

VaultX requests camera access solely to power the OCR Scanner feature, which allows you to automatically extract card and bank details by pointing your camera at the physical card. Images captured during scanning are:

  • Processed entirely on-device using Google ML Kit
  • Never saved to your photo gallery or device storage
  • Never uploaded to any server or third-party service
  • Discarded immediately after text extraction completes

2.3 Biometric Data

VaultX uses Android's BiometricPrompt API to verify your identity before granting vault access. We do not have access to your actual biometric data (fingerprints, face scans, or iris data). The operating system handles all biometric verification and returns only a success or failure result to VaultX.

2.4 Information We Do NOT Collect

  • Name, email address, or phone number
  • Device identifiers (IMEI, Advertising ID, etc.)
  • Location or GPS data
  • Usage analytics or behavioral data
  • Crash reports containing personal information
  • Any content from your vault entries

3. App Permissions

VaultX requests the following permissions, each with a specific, limited purpose:

Permission Purpose Required?
Camera OCR Scanner — auto-extract card & bank details Optional
Biometric / Fingerprint Unlock vault with fingerprint or face authentication Optional
USE_BIOMETRIC Access BiometricPrompt API for authentication Optional
USE_FINGERPRINT Legacy fingerprint support on older Android versions Optional

All permissions are optional. You can use VaultX with device PIN/password as a fallback if you choose not to grant biometric or camera access.

4. Data Security

VaultX employs industry-leading security measures to protect your data:

  • AES-256-GCM Encryption: All vault entries are encrypted using the Advanced Encryption Standard with 256-bit keys in Galois/Counter Mode, providing both confidentiality and integrity.
  • Android Keystore: Encryption keys are stored in the hardware-backed Android Keystore, which is isolated from the application processor and protected from extraction even if the device is compromised.
  • Zero-Knowledge Design: VaultX is built so that even the app developers cannot access your encrypted data. We hold no master keys, recovery keys, or backdoors.
  • Local-Only Storage: All encrypted data resides in the app's private internal storage, which is inaccessible to other apps on your device.

5. Third-Party Services

VaultX does not integrate any of the following third-party services that could compromise your privacy:

  • Advertising or ad tracking SDKs (e.g., Google Ads, Facebook Audience Network)
  • Analytics platforms (e.g., Firebase Analytics, Mixpanel, Amplitude)
  • Crash reporting tools that transmit personal data (e.g., Crashlytics with PII)
  • Social media login or sharing SDKs
  • Cloud sync or backup services

The only third-party component used is Google ML Kit for on-device OCR text recognition. ML Kit processes data locally on your device and does not send image data or recognized text to Google's servers when used in on-device mode.

6. Data Retention and Deletion

Since all data is stored locally on your device, you have full control over retention and deletion:

  • Data remains on your device until you explicitly delete individual entries within the app
  • Uninstalling VaultX will remove all app data from your device
  • Using "Clear App Data" from Android Settings will erase all vault contents
  • We maintain no server-side backups of your vault data — deletion is permanent

7. Children's Privacy

VaultX is not directed at children under the age of 13. We do not knowingly collect any personal information from children. Since VaultX collects no personal data from any user, no special handling is required. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in the app or applicable laws. We will notify you of significant changes by updating the "Effective Date" at the top of this page. We encourage you to review this policy periodically. Continued use of the app after changes constitutes acceptance of the updated policy.

9. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your data:

SoftTech Service — VaultX Support

Email: contact@softtechservice.site

App: VaultX — Secure Digital Vault

Effective Date: May 16, 2026

By downloading, installing, or using VaultX ("the App"), you agree to be bound by these Terms & Conditions. Please read them carefully before using the application. If you do not agree with any part of these terms, please do not use VaultX.

1. Acceptance of Terms

These Terms & Conditions constitute a legally binding agreement between you ("User" or "you") and SoftTech Service ("we," "us," or "our") governing your use of the VaultX mobile application. By using VaultX, you confirm that you are at least 13 years of age and have the legal capacity to enter into this agreement.

2. License to Use

SoftTech Service grants you a limited, non-exclusive, non-transferable, revocable license to use VaultX strictly in accordance with these Terms for personal, non-commercial purposes. This license does not include:

  • Modifying, copying, or distributing the application or its content
  • Reverse engineering, decompiling, or disassembling the application
  • Removing any proprietary notices or labels from the application
  • Using the application for commercial purposes without written permission
  • Transferring the application to another person

3. Acceptable Use

You agree to use VaultX only for lawful purposes. You must not use the application to:

  • Store information related to illegal activities
  • Attempt to gain unauthorized access to any device, network, or system
  • Violate any applicable local, national, or international laws or regulations
  • Infringe upon the intellectual property rights of any third party

4. User Responsibilities

4.1 Master Password & Access Security

You are solely responsible for maintaining the confidentiality of your device PIN, biometric credentials, and any master password used to secure VaultX. We strongly recommend:

  • Using a strong, unique device passcode
  • Enabling biometric authentication for added security
  • Not sharing your device with others while VaultX is unlocked
  • Locking VaultX immediately after use

⚠️ Important: If you forget your master credentials and lose access to your biometrics, VaultX cannot recover your data. There is no password recovery mechanism by design, as this would compromise the zero-knowledge security model.

4.2 Data Backup

VaultX stores data locally only. We strongly recommend maintaining your own secure backups. SoftTech Service is not responsible for data loss due to device failure, theft, reset, or accidental deletion.

4.3 Accuracy of Information

You are responsible for the accuracy and completeness of the information you store in VaultX. The app does not validate or verify the correctness of any vault entries.

5. Intellectual Property

VaultX, including its source code, design, user interface, graphics, logo, and all associated intellectual property, is the exclusive property of SoftTech Service and is protected by applicable intellectual property laws. All rights not expressly granted in these Terms are reserved by SoftTech Service.

  • VaultX™ and the VaultX logo are trademarks of SoftTech Service
  • You may not use our trademarks without prior written permission
  • User feedback or suggestions submitted to us may be used without obligation

6. Third-Party Components

VaultX incorporates certain open-source and third-party libraries. Your use of these components is subject to their respective licenses, including but not limited to:

  • Google ML Kit (Google APIs Terms of Service)
  • Material Design 3 by Google (Apache License 2.0)
  • Kotlin Coroutines (Apache License 2.0)
  • Android Jetpack Libraries (Apache License 2.0)

7. Disclaimer of Warranties

VaultX is provided "as is" and "as available" without any warranties of any kind, either express or implied, including but not limited to:

  • Warranties of merchantability or fitness for a particular purpose
  • Warranties that the app will be uninterrupted, error-free, or free of viruses
  • Warranties regarding the accuracy, reliability, or completeness of any content

SoftTech Service does not warrant that security measures employed in VaultX will withstand all possible attack vectors or that the app is free from vulnerabilities.

8. Limitation of Liability

To the maximum extent permitted by applicable law, SoftTech Service and its officers, employees, and agents shall not be liable for any:

  • Loss or corruption of vault data stored in the application
  • Unauthorized access to your device or vault due to compromised device security
  • Financial loss resulting from lost access to stored credentials
  • Indirect, incidental, consequential, or punitive damages of any kind
  • Loss of profits, revenue, data, or business opportunities

Our total liability in any matter arising from your use of VaultX shall not exceed the amount you paid for the application (if applicable).

9. Termination

These Terms remain in effect as long as you use VaultX. SoftTech Service reserves the right to terminate or restrict your access to the application at any time, without notice, if we believe you have violated these Terms. Upon termination, you must stop using the app and delete it from your device.

10. Governing Law

These Terms shall be governed by and construed in accordance with applicable laws. Any disputes arising from these Terms or your use of VaultX shall be subject to the exclusive jurisdiction of the competent courts.

11. Changes to These Terms

We reserve the right to modify these Terms at any time. Material changes will be communicated via an updated posting on this page with a revised effective date. Your continued use of VaultX after changes are posted constitutes your acceptance of the revised Terms.

12. Contact Information

SoftTech Service — VaultX Support

Email: contact@softtechservice.site

App: VaultX — Secure Digital Vault

This Disclaimer outlines important limitations and responsibilities regarding the use of VaultX — Secure Digital Vault, developed and maintained by SoftTech Service. Please read this carefully before relying on VaultX for critical security needs.

1. General Disclaimer

VaultX is provided for personal convenience and organizational purposes. While we have taken significant measures to implement strong security within the application, SoftTech Service makes no absolute guarantee of perfect, impenetrable security under all circumstances.

⚠️ No software system is completely immune to attack. Security is a continuous process, and VaultX should be used as one layer in your overall personal security strategy.

2. Security Disclaimer

2.1 Device Security Dependency

VaultX's security depends significantly on the security of your Android device. The application cannot protect your data if:

  • Your device is rooted or has a compromised bootloader
  • Malicious software (malware, spyware, or keyloggers) is installed on your device
  • Your device screen lock is disabled or uses a weak PIN
  • An unauthorized party has physical access to your unlocked device

2.2 No Recovery Mechanism

By design, VaultX implements a zero-knowledge encryption model. This means:

  • SoftTech Service has no ability to recover your vault data if you lose access
  • Forgotten credentials, replaced biometrics, or a factory reset will result in permanent data loss
  • We cannot provide backdoor access under any circumstances, including legal requests

📦 Recommendation: Maintain regular, secure backups of critical credentials through an alternative secure method. Do not rely solely on VaultX as your only copy of critical information.

2.3 Encryption Disclaimer

While AES-256-GCM is currently considered industry-standard military-grade encryption, we acknowledge that:

  • Future advances in computing (e.g., quantum computing) may eventually affect current encryption standards
  • The strength of encryption is only as strong as the security of the key management system
  • We commit to updating our encryption standards as industry best practices evolve

3. OCR Scanner Disclaimer

The OCR Scanner feature uses on-device machine learning to extract text from physical cards and documents. Please be aware that:

  • OCR accuracy may vary based on card condition, lighting, and camera quality
  • Extracted data should always be verified by the user before saving
  • VaultX is not responsible for errors in OCR-extracted information
  • Storing incorrect payment or identity information is the user's responsibility to verify and correct

4. Financial Information Disclaimer

VaultX is a storage and organization tool only, not a financial or banking application. Regarding financial data stored in VaultX:

  • VaultX does not process, transmit, or verify any financial transactions
  • We are not responsible for fraudulent use of financial information stored in the vault
  • Storing card details or banking credentials is done entirely at your own risk
  • In the event of a device compromise, contact your bank or card issuer immediately
  • VaultX is not a regulated financial services provider and does not fall under PCI DSS compliance requirements

5. Identity Document Disclaimer

VaultX allows you to store details and images of identity documents (passports, driving licenses, ID cards, etc.) for personal reference only. We disclaim any responsibility for:

  • Misuse of digitally stored identity information
  • Acceptance of digital copies as valid identification by third parties
  • Any legal or compliance implications of storing identity documents digitally in your jurisdiction

We recommend checking local laws regarding the digital storage of official identity documents.

6. Password Security Disclaimer

VaultX's Security Score and password strength assessment are provided as helpful guidance only:

  • A high security score does not guarantee that your accounts are immune to compromise
  • Account security also depends on the security practices of third-party services where you use your passwords
  • VaultX does not monitor for data breaches or check if your stored passwords appear in known breach databases
  • Users are encouraged to regularly update passwords and enable two-factor authentication on all accounts

7. Third-Party App Disclaimer

VaultX may interact with third-party applications on your device (e.g., when auto-filling credentials or opening URLs). SoftTech Service:

  • Is not responsible for the security or privacy practices of any third-party applications
  • Does not endorse or guarantee any third-party apps or websites you may access using information stored in VaultX
  • Recommends exercising caution when sharing or using credentials outside of VaultX

8. "As Is" Disclaimer

THE APPLICATION IS PROVIDED "AS IS" AND "AS AVAILABLE," WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED. TO THE FULLEST EXTENT PERMITTED BY LAW, SOFTTECH SERVICE DISCLAIMS ALL WARRANTIES, INCLUDING BUT NOT LIMITED TO IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT.

SOFTTECH SERVICE DOES NOT WARRANT THAT THE APPLICATION WILL BE ERROR-FREE, UNINTERRUPTED, SECURE, OR FREE OF VIRUSES OR OTHER HARMFUL COMPONENTS.

9. Updates and Availability

SoftTech Service reserves the right to:

  • Modify, suspend, or discontinue VaultX at any time without prior notice
  • Release updates that change functionality, appearance, or security features
  • Require updates to maintain security standards — using outdated versions of VaultX is done at your own risk

10. Contact Us

If you have any questions about this Disclaimer or wish to report a security vulnerability:

SoftTech Service — VaultX Support

Email: contact@softtechservice.site

Security Issues: contact@softtechservice.site

App: VaultX — Secure Digital Vault

Effective Date: May 16, 2026