Privacy & security

Privacy Policy

Jibonpotro is designed so your personal documents, family information, responsibilities and emergency details remain on your device. This policy explains what the app handles, where it is stored, and the limited technical data involved when public content is downloaded.

Effective: 26 July 2026 Last updated: 26 July 2026 Android app: com.jibonpotro.app
In brief: Jibonpotro has no mandatory account, ads, analytics, or personal cloud vault. Your personal content is not uploaded to the developer’s servers.

1. Who we are

Jibonpotro (“the app”, “we”, “us”) is a private, offline-first life-administration app created for people in Bangladesh. It is developed and operated by Akash Sarker. Contact hello@akashsarker.com with privacy questions.

2. Scope

This policy applies to the Jibonpotro Android app, the published Guide and Life Pack content service it accesses, and support communications you voluntarily send by email. External websites—including official government websites—have their own privacy policies.

3. Personal data kept on your device

You may add the following information to use app features. It is not sent to Jibonpotro’s servers and remains in the app’s private storage on your device.

DataExamplesStorage
Profiles and familyNames, photos, relationship labels and family membersOn device only
Documents and identity informationNID, passport, birth registration, licences, certificates, identifiers, dates, notes, tags, images and PDFsEncrypted local database and file storage
Responsibilities and billsDeadlines, amounts, providers, recurrence, completion/payment statusOn device only
Emergency and health-administration dataBlood group, allergies, medicines, doctor, emergency contacts and instructionsOn device only
Life Pack progressChecklists, assignments, target dates and completion evidenceOn device only
Security and preferencesApp-lock setting, one-way PIN verifier, language and notification preferencesOn device only
Biometrics: Optional fingerprint or face unlock is verified by Android’s secure system. Jibonpotro never receives or stores your biometric template.

4. Public content and technical network data

When internet access is available, the app downloads developer-published Guides, Life Packs, content manifests and related public images from Firebase Cloud Firestore and hosting infrastructure. Requests never include your personal vault, profiles, documents, emergency information, bills, responsibilities, evidence or backups.

The Firebase SDK may automatically process a limited Firebase user agent to provide, maintain and improve its services. This may include OS version, device name/model/brand/form factor, the store that installed the app, and Firebase SDK names and versions. Firebase states this user agent is not linked to a user or device identifier. As part of ordinary network delivery, Firebase/hosting infrastructure may also process IP addresses and request headers.

The Android app does not include Firebase Analytics, Crashlytics, advertising SDKs, Firebase Authentication, or end-user Cloud Storage uploads.

If you email support, we receive your email address, message, and anything you voluntarily attach. We use it only to respond, troubleshoot and follow up. Do not email sensitive documents or a backup password.

5. Android permissions and system features

  • Internet and network state: to download published Guides, Life Packs and images, and open official links.
  • Notifications: to remind you about deadlines and responsibilities. This is optional and can be disabled in Android Settings.
  • Camera/file selection: Android’s camera, photo picker or document picker is used only when you explicitly capture or choose a file. The app does not request broad storage access.
  • Biometrics: Android’s system prompt is used only if you enable biometric app unlock.

6. How information is used

  • To display and manage documents, profiles, bills, responsibilities, emergency information and Life Pack progress on your device;
  • To create local reminders for expiries, bills and responsibilities;
  • To create or restore an encrypted .jptr backup at your request;
  • To download, cache and update published Bangladesh-focused Guides and Life Packs;
  • To provide security, prevent errors and answer support requests you send.

We do not use personal documents, images, PDFs, profiles, health/emergency details, bills, responsibilities, Life Pack progress, or backups to build advertising profiles. That vault content is not used for ad personalisation, sold, or used for independent marketing.

7. Disclosure and sharing

We do not sell or share your private vault content. Limited exceptions are:

  • Service provider: Google Firebase provides the technical delivery of public content.
  • Your direction: when you confirm an export or share action, Android grants the app you choose temporary access to that specific file.
  • Legal requirements: we may disclose limited information we possess in response to a valid, binding legal request. We cannot access the local vault on your device.

Opening an official link from a Guide lets that website process your visit under its own policy.

8. Security

  • The personal database uses SQLCipher-based encryption with a device-protected key.
  • Attachments and evidence use AES-GCM authenticated encryption in private app storage.
  • Optional app lock and Android biometric authentication help reduce unauthorised access.
  • Android cloud backup and device-to-device extraction are disabled for private app data.
  • A .jptr backup uses PBKDF2-HMAC-SHA-256 to derive a key from your password and AES-256-GCM to encrypt the package. We do not know and cannot reset the password.

No safeguard is risk-free. Use a strong device lock and unique backup password, keep Android updated, and store backup files securely.

9. Retention, backup and deletion

  • Local personal data remains until you delete it, clear app data, or uninstall. Archived or recycled items may remain until permanently deleted.
  • Permanently deleting a profile or evidence removes the related local information. Copies in an older external backup remain until you delete that backup.
  • You control .jptr files stored in a location you choose. Delete them through your file manager or cloud provider.
  • Downloaded public content can remain in an offline cache and may be replaced or removed by refresh, clearing app data, or uninstalling.
  • Support emails may be retained for as long as reasonably needed to resolve the issue, prevent abuse and meet legal obligations. You may request deletion by email.

Jibonpotro has no online user account, so server-side account deletion does not apply.

10. Children and dependent family members

The app is intended for users aged 18 or older and is not directed to children. An adult guardian may add a child or dependent’s profile and documents to their own device. That adult is responsible for having the lawful authority or consent to do so and for protecting the device and backups.

11. Your controls

  • View, edit, archive, recycle and permanently delete local information inside the app.
  • Disable notifications or biometric use through Android Settings.
  • Clear app data or uninstall to remove app-local data. External backups must be deleted separately.
  • Request access to or deletion of support correspondence at hello@akashsarker.com. We may reasonably verify the request.

12. Government and health notices

Jibonpotro is not a government entity, does not represent one, and does not submit or approve government applications. Guides aim to link to official sources and show verification dates, but rules can change. Verify important decisions with the official authority.

Emergency Card, medicine and health-administration features do not provide diagnosis or medical advice and are not a replacement for emergency services. Contact local emergency services or a qualified professional when needed.

13. Changes

If Firebase Analytics or Google AdMob is added in the future, this policy and the Google Play Data safety declaration will be updated before a release containing those services is published. Where applicable law or Google Play policy requires it, we will provide a clear notice and obtain consent before analytics or advertising SDKs are activated. AdMob or Analytics SDKs may themselves process limited device, app-interaction, advertising or diagnostic data, but content in the Jibonpotro private vault will not be sent for ad selection or personalisation.

We may update this policy as the app, law or services change. We will update the “Last updated” date and, where appropriate, notify users in the app. Where law requires separate consent, we will request it.

14. Contact

Jibonpotro / Akash Sarker
Email: hello@akashsarker.com
Website: jibonpotro.akashsarker.com