# pintask Privacy Policy _Last updated: 23 July 2026_ pintask is built privacy-first. This policy explains, plainly, what the app does and does not do with your data. ## The short version - **No accounts.** pintask never asks you to sign in or create an account. - **No tracking, no ads, no analytics.** There are no third-party advertising or analytics SDKs in the app. - **No network access.** The app does not request the `INTERNET` permission. Your task data cannot be transmitted off your device by pintask. - **Your data stays on your device.** All lists and tasks are stored locally in the app's private storage. ## What data pintask stores pintask stores only the content you create: - Task lists and tasks (names, priorities, labels, due dates, completion state). - Your app preferences (theme, dynamic-color choice). - A backup recovery key, if you choose to enable encrypted backups. - A local security audit log recording backup-related events (event type and timestamp only — never the content of your tasks). All of the above is kept in the app's private, sandboxed storage on your device. ## Backups you create pintask lets you create an optional **end-to-end encrypted backup** file. If you use this feature: - The backup is encrypted on your device with AES-256-GCM before it is written anywhere. The encryption key is derived from a recovery key that is generated on your device. - You choose where the backup file goes using Android's system file picker (for example: local storage, or a cloud provider you already have installed such as Google Drive). pintask itself does not upload anything — it only hands the encrypted file to the destination you pick. - Only someone with your recovery key can decrypt a backup. If you lose the recovery key, the backup cannot be recovered — by you, by us, or by anyone. ## The Wear OS companion If you install the Wear OS app, your lists are synced to your watch over the Android Wear Data Layer, directly between your phone and your paired watch. This data does not pass through pintask servers (there are none). ## Permissions pintask uses - **Notifications (`POST_NOTIFICATIONS`)** — to show your pinned lists as checkable notifications. This is the core feature of the app. - **Run after restart (`RECEIVE_BOOT_COMPLETED`)** — to restore your pinned notifications after your device reboots. pintask does **not** request location, contacts, camera, microphone (beyond the system voice-input dialog on Wear, which returns text to the app), or network permissions. ## Data sharing pintask does not share your data with anyone. There is no server, no third party, and no data collection by the developer. ## Children pintask does not collect any personal data and is suitable for all ages. ## Contact Questions about this policy: iamhp2k@gmail.com