Privacy Policy
Mozget Vault · Effective 11 October 2026 · Version 2026-10-11
This policy explains what information Mozget ("we") processes when you use the Mozget Vault app (shown on your home screen as "Calculator") and this website.
The short version
- Your vault stays on your phone. Your photos, videos, documents and notes are encrypted on your device with keys only you control. We never receive them, their names, thumbnails or any information about them.
- Your online account is anonymous. It is a random ID created by the app. We do not ask for your name, e-mail address or phone number.
- We do not store IP addresses with your account or your usage statistics, and our web server access logs contain none. (Server error logs, which can record one, are kept for 7 days.)
- You are in control. You can turn off usage statistics and crash reports, change your ad privacy choices, and delete your account data at any time.
1. Who we are
Mozget is responsible for the processing described here.
Privacy questions: privacy@mozget.com. Support: support@mozget.com.
2. What we never receive
The content of your vault (photos, videos, documents, notes), file names, thumbnails, album names, image metadata (such as location or camera details), your PIN, passphrase, recovery phrase or encryption keys. The vault is encrypted on your device and is never uploaded. Because we do not hold your keys, we cannot reset your PIN or passphrase or recover your vault for you.
The vault is also excluded from iCloud and Google backups, so it does not move to a new phone.
3. What we process, and why
| Information | Why we use it | Kept for |
|---|---|---|
| Account and device data: a random account ID, random device and installation IDs, platform (iOS or Android), operating-system and app version, language, the version of our Terms you accepted, and a country | To run the online features: settings and updates for the app, restoring your purchase, notices, and preventing abuse. The country comes from your phone's region setting, or from our network provider's country header when available | Until you delete your account data |
| Usage statistics (on by default; switch off in Settings → Privacy): counts such as "app opened", "vault opened" (and the unlock method), "file imported" (type and number only), "note created", "disguise changed", "ad shown". Never file names or content | To understand which features are used and to keep the app reliable | 180 days, then only daily totals remain |
| Crash reports (same setting): device model, operating-system version and the technical trace of the crash, with no vault content | To find and fix crashes | Per Google Firebase Crashlytics' retention (currently 90 days) |
| Purchase records: whether you bought "Remove ads", the product, store, price and country reported by the App Store or Google Play | To give you what you paid for and restore it on another phone | Purchase events: 2 years. Our record that ads are removed: until you delete your account data |
| Advertising (unless you bought Remove ads): handled by Google AdMob, only while the vault is unlocked | To show ads that pay for the free app | See section 5 |
| Abuse reports you choose to send, and contact details only if you give them (stored encrypted) | To investigate and respond | Until the report is closed and no longer needed |
| Rate-limiting counters: a one-way, keyed hash of your IP address, never the address itself | To protect the service from abuse | Minutes to one hour |
We process this information to provide the service you asked for (contract), for our legitimate interests in keeping the app reliable and secure (usage statistics, crash reports, abuse prevention, which you can switch off or object to), to meet legal obligations (purchase records), and with your consent where the law requires it (advertising in some regions).
The app makes no network connections while it is locked or showing the calculator. Online features start only after you unlock the vault.
4. Who processes it for us
| Provider | What for |
|---|---|
| RevenueCat | Processing and restoring the in-app purchase |
| Apple (App Store) and Google (Google Play) | Distributing the app and handling payment |
| Google AdMob | Advertising and its consent form |
| Google Firebase Crashlytics | Crash reports |
| Sentry | Error reports from our servers (no vault content; technical data about failed requests) |
| Our hosting and network providers | Running vault.mozget.com |
These providers act on our instructions, except where they process data for their own purposes under their own terms (for example Google for parts of ad delivery, measurement and fraud prevention, and the app stores for payments).
5. Advertising
The free app shows ads from Google AdMob inside the unlocked vault: a banner, an ad after you unlock, an optional ad before opening a file (the file opens even when no ad is shown), and an occasional ad after an import. No ad code runs before you unlock the vault, and no ads appear on the calculator, the lock screen, during setup or on your recovery phrase.
Google's software collects device and usage information for ads, measurement and fraud prevention: on Android this includes the advertising ID; on iPhone the app does not ask to track you and does not use the advertising identifier (IDFA). It never receives your vault content. Where the law requires consent (the EEA, the UK, Switzerland and some US states), Google's consent form asks first, and Settings → Ad privacy choices lets you change your answer. See how Google uses information from apps that use its services.
Buying Remove ads turns all of this off: the advertising software is not started at all.
6. International transfers
Our providers may process information outside your country, including in the United States. Where required, transfers rely on safeguards such as the European Commission's standard contractual clauses.
7. How long we keep information
- Account and device data, and the record that ads are removed: until you delete your account data.
- Usage statistics: 180 days (daily totals without any account ID are kept for reporting).
- Purchase events: 2 years after they occur, as financial records.
- Server error reports: up to 90 days. Failed background tasks: 30 days.
- Database backups: 14 days, then overwritten.
- After you delete your account data, the account ID remains as an empty record so that purchase records and late store notifications can still be matched. RevenueCat keeps its own purchase history for that ID so that restores and refunds keep working; you can ask us to request its deletion.
8. Your choices and rights
- Switch off usage statistics and crash reports: Settings → Privacy.
- Change ad consent: Settings → Ad privacy choices (where offered).
- Delete your account data: Settings → Account → Delete my account data, or follow vault.mozget.com/delete-account if you no longer have the app. This does not touch the vault on your phone; uninstalling the app deletes the vault for good.
- Depending on where you live, you may have the right to access, correct, delete or port your information, to object to or restrict processing, and to withdraw consent. Contact privacy@mozget.com and quote your account ID (Settings → Account). Because the account is anonymous, we can only find your data through that ID. You can also complain to your data protection authority.
9. Security
Vault content is encrypted on your device with modern, audited cryptography (XChaCha20-Poly1305 and Argon2id via libsodium), and keys are protected by your phone's secure hardware. Information sent to our servers travels over HTTPS, and our systems keep access to a minimum with audit logging.
10. Children
The app is not intended for children under 13, and we do not knowingly process information about them. If you believe a child has used the app, contact us and we will delete the related account data.
11. Future cloud sync
The app does not offer cloud sync today. If we add it, cloud copies will be protected with keys we manage, which means a legally required, two-person-approved and audit-logged access process could reach them. This will never apply to the vault on your phone. We will update this policy and ask you before you turn cloud sync on.
12. Changes
We will post changes here with a new effective date, and tell you in the app about material changes.
13. Contact
privacy@mozget.com · Mozget