Privacy Policy
Last Revised: April 28, 2026
Effective Date: April 28, 2026
SoftDroidApp ("Services", "SoftDroidApp", "we", "us", "our" or "ours") collects information from you in order to provide better services and a better user experience. Your privacy is one of our top priorities, and this Privacy Policy explains how we collect, use, protect, retain, and delete your information — including data accessed through Google APIs.
By installing and using our apps (including the Subscription Manager app), you agree to this Privacy Policy and give an explicit and informed consent to the processing described below. If you do not agree, please do not install or use our apps.
1. Scope of This Policy
This Privacy Policy applies to all mobile and web applications published by SoftDroidApp, including but not limited to the Subscription Manager application that connects to Google services to help users track their subscriptions.
2. Information We Collect
2.1 Non-Personal Data
Non-personal data means information that, by itself, does not personally identify you. We may collect non-personal data such as your device model number, operating system version, country code, language, app version, and crash logs for purposes of managing the apps, fixing bugs, and communicating with you.
2.2 Information from Your Google Account
When you sign in with Google in our Subscription Manager app, we access the following information through Google APIs, only after you grant explicit OAuth consent:
- Basic profile information: Your name, email address, and profile picture from your Google account.
- Gmail data (read-only): The app scans your Gmail inbox to identify subscription-related emails — such as receipts, recurring billing notifications, free-trial confirmations, and renewal reminders — so that it can detect and track your active subscriptions.
2.3 What We Do NOT Collect
- We do not read, store, or process the full content of personal emails unrelated to subscriptions.
- We do not collect or have access to your Google account password.
- We do not sell your data to any third party.
- We do not use your Gmail data for advertising or marketing.
- We do not use your Gmail data to develop, train, or improve generalized or non-personalized AI/ML models.
3. How We Use Your Information
We use the information collected solely to provide and improve the core features of our apps:
- Identify recurring charges and active subscriptions from your Gmail.
- Display a consolidated dashboard of your subscriptions, renewal dates, and estimated costs.
- Send you optional reminders about upcoming renewals or free-trial expirations.
- Maintain your account session and personal preferences.
- Diagnose and fix issues, and improve the overall stability of the app.
4. Compliance with Google API Services User Data Policy (Limited Use)
SoftDroidApp's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, we confirm that:
- Google user data is used only to provide or improve user-facing features of the app that are prominent in the user interface.
- Google user data is not transferred to third parties except as necessary to provide or improve these features, to comply with applicable law, or as part of a merger, acquisition, or sale of assets with proper user notice.
- Google user data is not used or transferred for serving advertisements, including retargeted, personalized, or interest-based advertising.
- Humans do not read Google user data unless we have your explicit consent to view specific messages, it is necessary for security purposes (e.g., investigating abuse), to comply with applicable law, or the data has been aggregated and anonymized for internal operations.
5. Data Protection & Security
We take the security of your data seriously and apply industry-standard safeguards to protect it:
5.1 Encryption
- In transit: All communication between your device, our servers, and Google's APIs is encrypted using TLS 1.2 or higher (HTTPS).
- At rest: Any data stored on our servers is encrypted using AES-256 encryption.
- OAuth tokens: Google OAuth access and refresh tokens are stored in encrypted form and are never exposed in plain text.
5.2 Access Controls
- Access to user data is strictly limited to authorized SoftDroidApp personnel on a need-to-know basis.
- All administrative access requires multi-factor authentication (MFA).
- Access events are logged and reviewed regularly.
5.3 Infrastructure Security
- Our backend is hosted on reputable cloud providers that comply with security standards such as ISO 27001, SOC 2, and GDPR.
- We perform regular security reviews, vulnerability scans, and dependency updates.
- Production systems are isolated from development and testing environments.
5.4 Data Minimization
- We extract and store only the metadata required for subscription tracking — such as merchant name, billing amount, billing frequency, and renewal date. Full email bodies are not retained on our servers.
6. Data Retention
We retain your data only for as long as necessary to provide the app's services:
- Account data (name, email, preferences): retained as long as your account remains active.
- Subscription metadata extracted from Gmail: retained while your account is active so the app can display your subscription history.
- Gmail message content: processed in memory only and not retained beyond the time required to extract subscription metadata.
- OAuth tokens: retained only while you remain signed in. If you revoke access through your Google Account permissions page, your tokens are invalidated immediately.
- Inactive accounts (no sign-in for 12 consecutive months): flagged for automatic deletion after we send a reminder to your registered email address.
7. Data Deletion
You have full control over your data and may delete it at any time:
7.1 How to Delete Your Data
- In-app deletion: Open the app and go to Settings → Account → Delete Account. This will permanently delete your account and all associated data.
- Email request: Send a deletion request to support@softdroidapp.com from the email address linked to your account.
- Revoke Google access: You may revoke the app's access to your Google account at any time via https://myaccount.google.com/permissions.
7.2 What Happens After Deletion
- Your account, profile data, and all subscription metadata are permanently deleted from our active databases within 30 days of the deletion request.
- Encrypted backups containing your data are purged within 90 days of the deletion request, after which no copy of your data remains in our systems.
- OAuth tokens are revoked and invalidated immediately upon deletion.
- We may retain limited information (such as transaction or legal records) only where required by law, and only for the legally mandated period.
8. Sharing of Information
We do not sell, rent, or trade your personal information. We may share information only in these limited cases:
- Service providers: Trusted infrastructure providers (e.g., cloud hosting, error monitoring) bound by strict confidentiality and data processing agreements.
- Legal requirements: When required by law, court order, or to protect the rights, property, or safety of our users or the public.
- Business transfers: In the event of a merger, acquisition, or asset sale, with prior notice to users.
9. Your Rights
Depending on your jurisdiction (including under the GDPR and CCPA), you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data.
- Restrict or object to certain processing.
- Request a copy of your data (data portability).
- Withdraw consent at any time.
To exercise any of these rights, contact us at support@softdroidapp.com.
10. Children's Privacy
Our apps are not directed to children under the age of 13 (or 16 in some jurisdictions). We do not knowingly collect data from children. If we become aware of such data collection, we will delete it immediately.
11. Disclaimers
a. SoftDroidApp will not assume any responsibility for any of your personal information that is disclosed for your own reasons (for example, when you voluntarily disclose your password to others or when you share your account with other people).
b. While we apply industry-standard security measures, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but commit to acting promptly to investigate and remediate any incidents.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any material changes will be communicated via the app or by email. The "Last Revised" date at the top reflects the latest revision. Continued use of our apps after such changes constitutes acceptance of the updated policy.
13. Contact Us
If you have any questions, concerns, or complaints about this Privacy Policy or our data practices, please contact us:
This Privacy Policy is provided in compliance with the Google API Services User Data Policy, including the Limited Use requirements, and applicable data protection laws including the GDPR and CCPA.