VaultCam — Privacy Policy
Last updated: July 11, 2026
VaultCam ("the app", "we", "our") is a privacy-focused photo and video vault for
Android, published by Aoufi Labs. This policy explains what data the app handles,
where it lives, and your rights.
The short version: VaultCam is 100% offline. There are no accounts,
no cloud, and no servers. Your photos, videos, notes and passwords are encrypted on
your device and are never uploaded, transmitted, or accessible to us or anyone else.
The only third-party service in the app is Google AdMob, configured to serve
non-personalized ads only, and ads never appear inside your vault.
1. Data that stays on your device
The following data is stored exclusively on your device and is never transmitted
to us or any third party:
- Vault contents — all photos and videos you import or capture are
encrypted with AES-256-GCM and indexed in an encrypted (SQLCipher) database.
- Secure notes and passwords — encrypted with the same scheme.
- PIN and authentication data — your PIN is processed with PBKDF2
key derivation and stored only in hashed/derived form. We never see your PIN.
- Break-in log — if enabled, photos taken on failed PIN attempts,
with timestamps, are stored locally only.
- Settings and preferences — stored in encrypted preferences.
- Backups — created only when you choose, as a passphrase-encrypted
file saved where you decide (e.g. your own storage or your own cloud drive).
We never receive a copy.
Uninstalling the app (or clearing its data) permanently destroys the vault and its
encryption keys. Because nothing is stored server-side, there is no server copy for
anyone to delete — or to leak.
2. Data we collect
None. VaultCam has no account system, no analytics SDK, and no
server of ours. We cannot access, view, or recover your vault.
3. Permissions the app requests
- Camera — to take photos directly into the vault, and (if you
enable it) to capture a break-in selfie on failed PIN attempts.
- Photos/Media — to import items you select into the encrypted vault,
and to delete the originals from your gallery when you confirm it.
- Biometrics — optional unlock. Biometric data is handled entirely by
Android and is never accessible to the app.
- Approximate location (optional) — only used, if granted, to record
where a failed unlock attempt happened in your local break-in log. Never transmitted.
- Internet — used solely to display ads on ad-eligible screens
(see below). Vault data is never transmitted.
4. Advertising (Google AdMob)
- The free version shows small banner ads only on the Settings and
How-to-Use screens — never inside the vault, next to your photos, in the
camera, notes, or on PIN screens. There are no full-screen ads.
- All ad requests are configured as non-personalized ("npa=1").
AdMob may still process limited device data (such as IP address and device
identifiers) for fraud prevention, frequency capping and aggregate measurement, as
described in Google's Privacy Policy
and Google's Advertising
Policy.
- Where required (e.g. EEA/UK), a consent dialog from Google's User Messaging
Platform is shown before any ad loads.
- The advertising SDK is initialized only when you open an ad-eligible screen —
no ad-network traffic occurs while you browse your vault.
5. Children
VaultCam is not directed at children under 13 and does not knowingly collect
personal information from anyone, including children.
6. Data security
Vault items are encrypted with AES-256-GCM using per-file keys wrapped by a master
key derived from your PIN. The database is encrypted with SQLCipher. Screenshots and
screen recording are blocked on vault screens. No security is perfect, but the
strongest guarantee VaultCam offers is architectural: your data simply never leaves
your device.
7. Your rights
Because we hold no data about you, requests for access, correction, or deletion
can be satisfied entirely on your device: delete items in-app, or uninstall the app
to erase everything. For anything related to AdMob's processing, see Google's privacy
controls at myadcenter.google.com.
8. Changes to this policy
If we change this policy, the new version will be posted at this address with an
updated date above.
9. Contact
Questions? Email andr.aoufi.riadh@gmail.com.