Privacy Policy
Effective date: October 4, 2026
WiFi Card is built to work entirely without your personal data. This policy explains exactly what the app and this website do — and do not — do with information.
The short version
- No account. The app works fully offline from first launch. We never ask for your name, email, or phone number.
- No analytics, no ads, no tracking. The app contains no analytics SDKs and no advertising.
- No servers. Your cards never leave your device. There is no backend to send them to.
- This website is static. It sets no cookies, runs no analytics, and processes nothing server-side.
What the app stores, and where
All storage is local to your device:
- Cards and settings — an on-device database inside the app's private sandbox.
- Network passwords — protected by hardware-backed secure storage (Android KeyStore / iOS Keychain). Passwords are never written to the database in plain form.
- Imported logos and banner images — copied into the app's private sandbox, so they keep working even if you delete the original from your gallery.
- Encrypted backups — backups are created only when you explicitly export one. They are encrypted with a password only you know and saved wherever you choose (your files, your cloud drive). Sensitive files inside the app sandbox are additionally flagged as excluded from iCloud and platform device backups.
Purchases
- iOS: purchases are processed by Apple through the App Store. To recognize an existing purchase after reinstalls, the app uses RevenueCat, which maintains an anonymous device identifier for the entitlement. RevenueCat receives no name, email, or contact information from us, and we cannot link it back to you.
- Android: version 1.0 has no in-app billing. Google Play Billing is never invoked.
- Direct purchase (redeem codes): if you buy a license code directly (UPI or PayPal), payment is handled by those providers under their own privacy policies. We only see what you email us — your receipt — and we reply with your code. Codes are verified offline by cryptographic signature; redemption involves no server call.
Permissions
The app requests only what a feature needs, when it is needed: camera (scanning QR codes), precise location (only to read the currently connected network's name for the detect feature — you can decline and type the name manually), and notifications for nothing — the app sends none.
Children
The app is not directed at children, collects no data from anyone, and complies with data-minimization expectations by design.
Your rights & contact
Because we hold no personal data, there is nothing to export, correct, or delete on our side — deleting the app removes everything it stored. If you emailed a receipt for a redeem code and want that correspondence removed, write to us and we will delete it.
Contact: support@wificard.app
Changes to this policy
If the data posture ever changes, this page will be updated with a new effective date before the change ships.