Privacy Policy
Summary information on how data is handled within the MAX App.
1. Data Collected
MAX App is designed to operate without requiring personally identifiable information (such as name, surname, email address, or phone number).
- Secret phrases and cryptographic keys remain on the user’s device.
- No user profiles based on personal data are created.
- Any minimal technical data (server logs, IP address, etc.) may be processed by the hosting provider according to its standard policies.
2. Secret Phrases, Keys, and Encrypted Content
Secret phrases, derived keys, and encrypted content (including chat messages) are handled locally by MAX App:
- Secret phrases are never sent in plain text to the server.
- Cryptographic keys are deterministically derived from the phrases and are not stored in any cloud service.
- Encrypted content may pass through servers only in encrypted form when the user uses online features (e.g., login, chat).
3. Permissions (camera, files, network)
Some features require consent for specific device permissions (for example, camera for QR codes, file access for import/export). These permissions are used exclusively to provide the functions explicitly requested by the user.
4. Purpose of Processing
The only purpose of processing technical data and encrypted content is to enable the functioning of MAX App (encrypted login, encrypted chat, digital signatures, prime number generation, etc.).
5. Data Storage
Data managed by MAX App (phrases, keys, messages, encrypted files) is stored locally on the device until the user decides to delete it or uninstall the app.
6. Cookies
This website uses only the following types of cookies:
-
Essential technical cookies
Required for the proper functioning of the website (navigation, page loading, security). They do not profile the user and do not require consent. -
Google Analytics (IP anonymized version)
Used solely to collect aggregated and anonymous statistics about site traffic.
The IP address is anonymized before storage.
These cookies do not allow user identification.
No profiling or marketing cookies are generated, and no cross-site tracking is performed.
For more information on anonymous Google Analytics cookies,
please consult Google’s official documentation.
7. User Rights
The user may at any time:
- stop using the app;
- uninstall the app from the device;
- delete or regenerate phrases/keys according to the functions available in the app.
8. Contact
For privacy-related questions or clarifications, you may contact:
Email: max@max-russo.com
In case MAX App evolves, this document may be updated to reflect new features or changes in data handling practices.