Privacy Policy

Last updated: 26 July 2026

This Privacy Policy explains what information the Noxterra mobile application ("Noxterra", "the app", "we", "us") handles, why, and the choices you have. Noxterra is an on-device utility toolkit for Android. Our guiding principle is simple: the work happens on your phone, and we are honest about the few things that don't.

The short version. Noxterra has no accounts. Your photos and files stay on your device — we never upload them, and we never send your app list or your location anywhere ourselves (the ad partners inside the app do collect advertising data, including your location and which apps are installed — see §3). Two tools do send something, and only when you ask them to: if you check a link or message for scams, that text is sent to our server to be checked; if you check an email address for breaches, that address is sent to our server to be looked up. To keep the app free we use anonymous diagnostics and third-party ads, which involve a random identifier and standard advertising data. You can opt out of diagnostics at any time, and in the EEA/UK you are asked for ad consent before any ad is shown.

1. What stays on your device

The core of Noxterra runs entirely locally. The following features read and process data only on your phone, and none of the content they touch is transmitted to us or anyone else:

  • Storage cleaner — scanning for cache, duplicate/similar photos, large files, screenshots and old installers.
  • File manager — browsing internal storage, SD cards and USB drives.
  • Document scanner & PDF tools — captured pages, OCR text and edited documents.
  • Photo Vault — hidden photos are stored encrypted on the device (see §7).
  • App Lock — the apps you lock and the PIN you set never leave the device.
  • Battery, Vitals, Wi-Fi & Network tools — readings are shown live and are not collected.
  • QR reader/generator — scans and generated codes are processed locally; scan history is stored only on the device.

2. What we collect

To fix crashes and understand which features are used, Noxterra sends anonymous diagnostics. These are designed so they can never identify you.

DataWhyNotes
A random installation IDTo group events from one install so we can debug an issueGenerated on your device. Not your name, email, phone number, Google account or hardware serial. You can reset it by reinstalling.
App events & usage (e.g. "opened cleaner", "check completed")To see which tools people rely onEvent names and counts only — never the content of your files, photos or messages.
Basic device contextTo reproduce bugsAndroid version, device model/manufacturer, app version, language.
Crash & error diagnosticsTo find and fix crashesWhere the crash happened and the technical state at that moment (via Google Firebase Crashlytics, when enabled in a build).
Ad performance & usage measurementTo see, per anonymous install, how many ads are shown and how much revenue they produce, so we can keep the app free and improve itAggregate ad-impression events and ad-revenue amounts, processed by AppMetrica (a Yandex analytics service), which uses its own analytics identifier. Never the content of your files, photos or messages.

Diagnostics and usage measurement are sent to servers we operate, to Google Firebase (Crashlytics), and to Yandex AppMetrica (product & ad-performance analytics), under their own privacy policies. We do not sell this data or use it to build an advertising profile of you.

3. Advertising

Noxterra is free and supported by ads. Ads are delivered through the AppLovin MAX mediation platform together with partner ad networks (which may include Yandex, Mintegral, Unity Ads, Pangle, Bigo Ads, InMobi and ironSource). To select and measure ads, these third parties may collect and process data such as your device's advertising identifier, your location — precise location where you have granted the app the location permission (Noxterra itself requests it only for the Wi-Fi analyser), otherwise coarse location derived from your IP address — which apps are installed on your device, device information and ad-interaction events, under their own privacy policies. These ad partners collect this data themselves, inside our app; Noxterra's own code does not send your location or your app list anywhere. Because it still leaves your device, it is declared in our Google Play Data safety form.

Install & campaign attribution. To understand which ad campaigns bring users, the app reads the standard Google Play install referrer and sends anonymous campaign events (install, activity, aggregate ad-revenue amounts) to our measurement endpoint. These events carry a campaign click identifier and the same random installation ID as diagnostics — never your name, contacts or file contents.

EEA / UK / Switzerland. Before any ad is shown, Noxterra presents a consent request. Ads and non-essential diagnostics are gated on your choice, and personalised advertising only occurs where you have consented. You can revisit this choice where our mediation partner supports it (see §6), and you can limit ad personalisation from Android settings at any time.

4. Checks you ask for: links, messages & email (only if you use them)

Link & message check. Noxterra can check a link — or the text of a suspicious message — for known scam signs. This runs only when you paste or share something into that tool and ask for the check; it is never triggered on its own and nothing else on your device is read. What you submitted is sent over an encrypted connection to a server we operate, together with a random installation ID (never your name, email or accounts). Our server checks it against link-reputation sources (such as Google Web Risk) and returns the verdict. We do not log the submitted text against you, and we do not use it for advertising. Because the text you paste is whatever you choose to paste, please avoid submitting a message that contains information you do not want to send off your device.

Email breach check. Noxterra includes an optional feature that lets you check whether an email address has appeared in a known public data breach. This is only performed when you type an address and ask for the check. When you do, that email address is sent to a third-party breach-lookup service (XposedOrNot) to perform the search. For a one-off check, Noxterra does not store the address after the lookup, and this feature is never triggered on its own.

Breach monitoring (opt-in). On a result you can choose to watch an address. If you turn this on, we store that address on our own server encrypted at rest and re-check it periodically; if it appears in a new breach, we send you a notification. We store it only to run the re-check, never log it, and you can turn monitoring off at any time (which deletes it). Monitoring uses Firebase Cloud Messaging: to reach your device we register a messaging token (a device identifier) with our server. We send these messages only for security reasons — a new-breach alert, or an occasional important security notice — never for ordinary marketing, and delivery is best-effort, not guaranteed.

5. Permissions

Noxterra requests each permission only for the feature that needs it, and explains it in-context. Key ones:

  • All files access — so the cleaner and file manager can work with files outside the media folders (e.g. the Downloads folder). Nothing is uploaded.
  • Query installed apps — so App Lock, the app-safety check and the "unused apps" tool can list your apps on the device. Noxterra itself never sends that list anywhere; note that the third-party ad SDKs inside the app may separately collect which apps are installed (see §3).
  • Usage access — so App Lock can tell which app is in the foreground and prompt for your PIN. Detection is on-device; we do not use it for tracking.
  • Camera — for the QR reader and document scanner. Frames are processed on-device. If you enable the optional Vault break-in photo, a front-camera photo is taken after repeated wrong passphrase attempts and stored only on your device, inside the Vault.
  • Location — Android requires it to read nearby Wi-Fi details for the Wi-Fi analyzer. Noxterra uses it in the foreground only, never for tracking or ads, and Wi-Fi scan results are never collected. The third-party ad networks inside the app may collect location separately for advertising — see §3.
  • Notifications, exact alarm, foreground service — for features you turn on, such as the charge alarm, reminders and the App Lock service.

6. Your choices & rights

  • Turn off diagnostics — open Settings → Privacy inside the app and switch off anonymous diagnostics. Egress stops immediately and any pending data is dropped.
  • Advertising choices — in the EEA/UK/Switzerland you make an ad-consent choice on first launch. Where our mediation partner supports re-presenting that choice, Settings → Privacy shows an “Ad privacy choices” row that reopens it; the row is hidden when re-presenting is not available, rather than shown as a control that would do nothing. You can limit ad personalisation from your Android settings at any time ("Reset/Delete advertising ID").
  • Reset your identifier — reinstalling the app generates a new random installation ID.
  • Access, deletion & other rights — depending on where you live (e.g. GDPR, UK GDPR, CCPA/CPRA), you may have rights to access or delete data associated with you. Because our diagnostics are anonymous and we hold no account, we usually cannot link data to an individual; contact us (see §9) and we will help where we can.

7. Retention & security

Anonymous diagnostics are retained only as long as needed to monitor stability and product quality, then aggregated or deleted. Vault content is protected on your device with strong encryption, unlocked by your passphrase and, if you set one up, a recovery key that only you hold — we cannot recover vault contents for you. We apply reasonable technical measures to protect the limited data we handle, though no method of transmission or storage is ever 100% secure.

8. Children

Noxterra is a general-audience utility app and is not directed to children under 13 (or the equivalent minimum age in your country). We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will address it.

9. Changes & contact

We may update this policy as the app evolves. Material changes will be reflected here with a new "last updated" date. Your continued use after an update means you accept the revised policy.

Questions or requests about privacy: support@noxterra.app.