Privacy policy

Privacy policy · version 1.0 · 21 August 2026 · for DiSafe 1.0.0

The documents you put into DiSafe are not transmitted to us.

DiSafe holds scans of passports, ID cards, insurance policies and contracts, which is exactly the kind of document you do not want to hand to anyone. The app has no user account and no server for your documents to be uploaded to: your scans, photos, expiry dates and everything you type stay on your device. The only connection the app opens is to the store you installed it from, for the subscription, and not one of your documents goes through it. The rest of this page says the same thing in detail, situation by situation.

Who is responsible for your data

ARCTIC MAG S.R.L., VAT ID RO48130587, Trade Register J2023003030232, registered at Str. Popasului nr. 78, bl. A, sc. 1, et. 2, ap. 9, Voluntari, Ilfov county, postal code 077190, Romania. Write to contact@dimiol.com.

Throughout this page, "we" means ARCTIC MAG S.R.L.

What the app keeps on your phone

In a single database file and a few folders, all inside the app's own storage area on your phone:

We do not ask for your name, email address, phone number or any payment method. What you type into a document, you type for yourself, and it stays with you.

What leaves your phone

Of the content you enter, nothing. The app has no server of ours, contains no code written by us that sends anything elsewhere, and we have added no modules for analytics, tracking, advertising or automatic updates. Managing your documents needs no internet connection: you can add, scan, search and read them with the phone in airplane mode.

The internet connection is used for the features related to the subscription and the app store. The app asks the store (Google Play or the App Store) whether the subscription is paid and what it costs, at start-up and when you bring it back to the front. The store learns that the app was opened; what you put in it goes nowhere.

There are two ways your content can leave the phone, and you start both: the backup file and the metadata export, described below.

The backup is encrypted

This is the part we cared about most, because a file holding a scan of your passport must not be an ordinary file.

The backup you create in Settings is an encrypted .disafe file, protected by a password you choose. The contents are sealed with AES-256-GCM, and the key is computed from your password with scrypt, a function deliberately made slow so it cannot be guessed by repeated attempts. Without your password the file cannot be opened, not even by us.

The password is stored nowhere, not on the phone and not with us. If you lose it, that backup can no longer be restored by anyone. That is the price of there being no back door.

Where the file goes is your decision: on Android you pick a folder on your phone and it is written straight there, on iPhone you choose from the share sheet. From that point the file is yours and follows the rules of wherever you put it. The backup does not pass through us.

Separately from the backup, Settings offers a metadata export, a text file with what you typed, without the attached files. That one is not encrypted, because it is meant to be read by you. It only runs when you ask for it.

The subscription and the payment

DiSafe is free for up to 5 items in total. Beyond that there is Premium, a yearly subscription. Payment and subscription processing are handled by Google Play or the App Store, depending on your phone. DiSafe does not receive or store your card details, your billing address or your purchase history. The store may make purchase information available to ARCTIC MAG S.R.L.: transaction or order identifiers, subscription status, country, amount paid and, in the Google Play Console, the email address used for the purchase. We use it only to administer purchases, refunds and our accounting obligations, on the basis of performing the contract and of our legal obligations, we keep it for as long as those require, and we do not link it to the content in the app, which we cannot see in any case.

For the subscription to work, the app talks to the store on your phone. It asks exactly two things:

Through that connection none of the content you enter into the app is transmitted: no document, no scan, no photo, no note and no expiry date. To make a payment work, the store uses its own technical identifiers and transaction information, under its own rules. The store knows you anyway, because you are signed in to it on the phone, as you are for every other app installed from there.

The store's answer ("paid" or "not") is kept on the phone, next to the other settings, so the app knows what it may do before it gets to ask again. It is kept nowhere else.

The subscription is cancelled from your store account, not from the app. When it ends, nothing is deleted: everything you saved stays readable, searchable and exportable, and the backup can be made at any time, free. Only adding new items beyond the first 5 stops.

Store policies: Google, Apple.

Your phone's own backup

Here the two systems behave differently, and it is only fair that you know exactly how.

On Android, the app asks the system not to include its data in the Google backup. That is a deliberate choice, precisely because identity documents are involved. The consequence you need to know: if you change phones, the data does not come across on its own. You move it with the encrypted backup in Settings, which exists for that.

On iPhone, the app's files are included in your phone's backup if you have iCloud switched on, as with any other app. Apple's rules apply there, not ours, and we still have no access to it. You can turn it off in your phone's settings.

Camera, photos and document scanning

The app asks for camera and photo library access only when you tap to take or choose a picture. Document scanning, including multipage scanning and conversion to PDF, happens entirely on the phone. There is no text recognition, no artificial intelligence, and no image is sent anywhere to be read by someone else.

Photos and scans are copied into the app's own storage area. What was in your gallery stays in your gallery, untouched.

Notifications

Reminders for important dates are scheduled locally, by the app, on your phone, 60, 30 or 7 days ahead as you choose. Their text is written there, from your own data, and passes through no server. These are not push notifications sent from a distance. If you switch them off in Settings, the ones already scheduled are cancelled.

What we do not do

The Android version declares the "internet" permission. It is not a formality: the app talks to the store through it, for the subscription. We have added nothing that would use it for any other purpose: there is no server of ours to go to. We checked this in the built app's manifest rather than assuming it: the only permissions requested are those for internet and network state, camera, notifications, start after reboot, vibration, and the icon badge count.

If you write to us

If you write to us at contact@dimiol.com, we process your email address and the information you choose to send us, in order to answer your request and to resolve any technical problems.

What you put in the message is up to you, and documents should not be emailed to us: we do not need them in order to help you.

Deleting your data

From Settings → Delete all data, or by deleting the app from your phone. Either way the data goes with it. No copy of the content from DiSafe remains with us, because it was never transmitted to us.

The backups you made stay wherever you put them, because they are yours. Those you delete by hand, from wherever you keep them.

On iPhone, if your phone's backup is switched on, a version of the data may remain there until the backup is replaced. That is cleared from your phone's settings, not from the app.

Your rights

Under the European regulation (GDPR) you have the right to ask a controller what data it holds about you, to correct it, delete it, move it, or object to its processing.

The content you enter into DiSafe does not reach us, so there is nothing in it for us to show, correct or delete: your data is on your phone, and you move it yourself with the backup in Settings, without asking us. For the data we may receive directly from you or from the app store, that is support messages and purchase information, you can exercise the rights above by writing to the same address.

If you believe something is wrong, you may complain to the Romanian data protection authority (dataprotection.ro) or to the supervisory authority in your own country.

Children

DiSafe is not intended for children. The documents and other information you enter into the app are stored only locally and are not transmitted to us.

Changes

If anything changes, we raise the version and date at the top, and this page always carries the version in force. A change that made the app send anything off your phone would be stated in the app as well, not only here.


Support · Terms of use · Versiunea în română · Deutsche Fassung