Privacy Policy

Your privacy is important to us. This policy explains how we collect, use, and protect your information when you use our services.

Effective Information

Effective Date: september 1, 2025

Last Updated: September 1, 2025

XeroOne built this app as a free mobile application. This Service is provided at no cost and is intended to be used as is. This Privacy Policy explains how we collect, use, store, and protect your information when you use our mobile applications and services. By using this Service, you agree to the terms described in this Privacy Policy.

Information We Collect

Depending on the version of the app you are using, we may collect the following information:

  • Email address and phone number – used for account registration, authentication, and communication. (Not required in the demo version)
  • Device information – such as device model, operating system version, app version, and device identifiers for improving performance and troubleshooting.
  • Notification token – to send personalized notifications about your requests or account activity.
  • Usage data – anonymized information about how you interact with the app to improve user experience.

We do not collect sensitive personal data such as physical addresses, payment information, precise location data, or biometric information unless explicitly required and disclosed in future updates.

How We Use Your Information

We use the information we collect only to:

  • Provide, maintain, and improve the Service
  • Enable secure login and user authentication
  • Send you notifications related to your requests or account activity
  • Analyze usage patterns to enhance app performance (using anonymized data only)
  • Respond to your support requests and communications
  • Ensure the security and integrity of our Service

We do not sell, trade, rent, or share your personal data with any third parties for commercial purposes.

Data Retention

  • Account data: We retain your email and phone number as long as your account is active
  • Device information: Stored for up to 2 years for performance optimization
  • Usage data: Anonymized usage data may be retained indefinitely for analytics
  • Deleted accounts: All personal data is permanently deleted within 30 days of account deletion

Your Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of your personal data we hold
  • Correction: Update or correct inaccurate personal data
  • Deletion: Request deletion of your personal data ("right to be forgotten")
  • Data portability: Request your data in a machine-readable format
  • Withdraw consent: Unsubscribe from communications or delete your account at any time

To exercise these rights, contact us at support@xero-one.app. We will respond within 30 days.

Third-Party Services

We currently use Firebase Cloud Messaging (FCM) by Google to deliver push notifications. FCM may collect device information according to Google's Privacy Policy.

Future versions of the app may integrate additional services such as:

  • Google Analytics or Firebase Analytics for usage insights
  • Crash reporting tools for app stability improvements

You will be notified before any new third-party services are implemented, and you can opt out where applicable.

Data Storage and Security

Security Measures
  • All data is encrypted in transit using TLS/SSL protocols
  • Data at rest is stored on secure, access-controlled servers
  • Regular security audits and vulnerability assessments
  • Multi-factor authentication for administrative access
  • Regular data backups with encryption
Limitations

While we implement industry-standard security measures, no method of transmission or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to protecting your information using reasonable safeguards.

International Data Transfers

Your data may be processed and stored in countries other than your own. We ensure appropriate safeguards are in place for international transfers in compliance with applicable data protection laws.

Children's Privacy

Our Service is not directed to children under 13 (or 16 in the EU). We do not knowingly collect personal information from children. If we learn that we have collected such information, we will delete it immediately and may terminate the associated account.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. When we make changes:

  • Minor changes: Will be posted immediately with an updated "Last Updated" date
  • Material changes: You will be notified 30 days in advance via email or in-app notification
  • Continued use of the Service after changes take effect constitutes acceptance of the updated policy

Compliance

This Privacy Policy complies with applicable data protection regulations, including GDPR (for EU users) and CCPA (for California residents). Additional rights may apply based on your location.

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, you can contact us at:

📧 support@xero-one.app

📱 Response time: Within 48 hours for general inquiries, 30 days for data rights requests

By using XeroOne services, you acknowledge that you have read and understood this Privacy Policy.

An unhandled error has occurred. Reload 🗙