Privacy Policy
Last updated: July 20, 2026
This Privacy Policy describes how SmartScan ("SmartScan", "we", "us", or "our") collects, uses, and protects information when you use the SmartScan mobile application (Android package com.scanmate.scanmate) and this website (collectively, the "Service"). SmartScan is an offline-first, encrypted card wallet built for users in India.
Our core principle: your card details stay on your device. We do not upload, view, sell, or share your card numbers, CVV or expiry dates.
1. Data stored on your device
The following data is stored only on your device, encrypted with AES-256-GCM using keys protected by the Android Keystore or iOS Keychain, and is never uploaded to our servers:
- Bank card details you add (card number, cardholder name, expiry, CVV, notes, colors)
- Loyalty and gift card details (numbers, barcodes, balances)
- Visiting card contents you save or design
- Card images captured with the camera during scanning
- Your app PIN, decoy PIN and hidden vault contents
2. Data processed on our servers
To enable authentication, security and referrals, we process a minimal set of information on our servers (Google Firebase):
- Email address — for sign-up, login, one-time passcode (OTP) verification, password reset and important account notifications.
- Firebase Authentication identifiers — a user ID (UID) generated by Firebase, and the authentication method (email/password or Google Sign-In).
- Referral data — your referral code, number of successful referrals, and reward status.
- Device identifiers for security alerts — a hashed device fingerprint used to detect new-device logins and send you an alert email.
Email delivery (OTPs, alerts, password resets) is handled by Resend as our email processor.
3. Optional Google Drive backup
If you enable backup, an encrypted backup file is stored in your own Google Drive in a private, app-scoped folder. We do not have access to your Drive contents and cannot read this backup — only the SmartScan app on a device where you enter your passphrase can decrypt it. You can disable backup or delete the file at any time from your Google Drive.
4. Advertising (free version)
The free version of SmartScan displays ads via Google AdMob. AdMob may use an advertising identifier (Android Advertising ID / iOS IDFA) and general device information to serve and measure ads. You can reset or opt out of personalised ads in your device settings. Upgrading to Pro removes all ads.
5. Analytics & crash reporting
We do NOT collect analytics or crash data.
6. Permissions we request
- Camera — to scan cards. Images are processed on-device with Google ML Kit and are not uploaded.
- Biometric — to unlock the vault with fingerprint or face.
- Notifications — for reminders (bill due dates, security alerts). Optional.
- Contacts — only if you choose to share a visiting card with a contact. Optional.
- Storage / Photos — only if you import an existing image or export a backup. Optional.
- Google Drive — only if you enable backup; access is limited to SmartScan's own app folder.
7. Data sharing
We do not sell your personal data. We do not share your card data with anyone. We share the minimal data described above with the following processors, strictly to run the Service:
- Google Firebase (authentication, cloud infrastructure)
- Google Drive (only your own, encrypted backup, at your option)
- Google AdMob (ads in the free version)
- Resend (transactional email delivery)
- Google ML Kit (on-device OCR; no data leaves your phone)
8. Data retention & deletion
Card data on your device is retained until you delete it or uninstall the app. Server-side account data (email, Firebase UID, referral data, device fingerprints) is retained while your account is active. You can delete your account at any time — see the Account & Data Deletion page. On deletion we remove your account and associated server-side records within 30 days.
9. Children
SmartScan is not directed to children under 16. We do not knowingly collect data from children. If you believe a child has provided us data, contact us to have it removed.
10. Security
- AES-256-GCM authenticated encryption for card data at rest
- Keys protected by Android Keystore / iOS Keychain (hardware-backed where available)
- PBKDF2 key derivation for passphrase-based backups
- TLS 1.2+ in transit for all server communication
- New-device login alerts by email
No system is 100% secure. You are responsible for choosing a strong PIN and backup passphrase, and keeping them safe. We cannot recover your passphrase.
11. Your rights
Subject to applicable law, you have the right to access, correct, export, or delete your personal data. You can exercise these rights in-app or by emailing support@YOURDOMAIN.com.
12. Changes to this policy
We may update this policy. If changes are material, we will notify you in-app or by email. The "Last updated" date at the top of this page reflects the current version.
13. Contact us
Questions about this policy? Email support@YOURDOMAIN.com.