ENCRYPTED // DATA PROTOCOL

PRIVACY POLICY

INTELLIGENCE BRIEFING ON DATA HANDLING & USER PRIVACY

[SECTOR 1.0] SCOPE & DEFINITIONS

This Privacy Policy ("Policy") explains how information is handled within the Meyej Application ("Meyej", "we", "us", or "our"). This Policy applies to all users of the Application across all supported iOS devices and versions. By downloading, installing, or using the Application, you acknowledge that you have read and understood this Policy.

For the purposes of this Policy: "Personal Information" means any information relating to an identified or identifiable natural person; "Processing" means any operation performed on data, whether or not by automated means; "User Data" means all information input, uploaded, generated, or stored by you within the Application, including gear inventory records, photographs, trip templates, lending records, notes, tags, and analytical outputs.

[SECTOR 2.0] INFORMATION WE COLLECT

Because the Application operates on a strict local-only architecture without user accounts, we do not collect, store, or process Personal Information on our servers. The following categories of information exist ONLY on your device and are never transmitted to us:

[SECTOR 3.0] HOW WE USE YOUR INFORMATION

All User Data is processed exclusively on your local device for the following operational purposes and is never transmitted to our servers:

We do NOT use your information for advertising, marketing, profiling, behavioral targeting, third-party analytics (except anonymous crash reporting), or any purpose other than delivering the core functionality of the Application.

[SECTOR 4.0] DATA STORAGE & LOCAL PROCESSING

PRIVACY-FIRST ARCHITECTURE: Meyej is architected as a zero-cloud application. All User Data is stored exclusively on your device's local storage using industry-standard encrypted database technology (Hive with AES-256 encryption where supported by the platform). Your data never leaves your device during normal Application operation. We do not maintain cloud servers, remote databases, or API endpoints that receive, store, or process your data. We literally cannot access your data because we do not possess the infrastructure to receive it.

Photographs attached to gear items are stored as local files within the Application's sandboxed document directory. These files are protected by iOS file system permissions and are inaccessible to other applications unless you explicitly share them through native iOS share sheets.

The Application does not use cloud synchronization services, real-time databases, or remote backup systems. If you wish to back up your data, you must rely on Apple's device-level backup solutions: iCloud Backup, iTunes Backup, or Finder encrypted backups. The security of these backups is governed by Apple's privacy and security policies.

[SECTOR 5.0] YOUR PRIVACY RIGHTS

Depending on your jurisdiction, you may have certain rights regarding your Personal Information under laws such as the California Consumer Privacy Act ("CCPA"), the California Privacy Rights Act ("CPRA"), the Virginia Consumer Data Protection Act ("VCDPA"), the General Data Protection Regulation ("GDPR") for users in the European Economic Area, and other applicable privacy laws.

Because the Application stores all data locally on your device and we do not collect or process your data on our servers, the exercise of privacy rights is primarily accomplished through your direct control of the Application and your device. Your rights include:

If you are a California resident and wish to exercise CCPA/CPRA rights that cannot be fulfilled through the Application's built-in controls, please contact us using the information in Sector 13.0.

[SECTOR 6.0] THIRD-PARTY SERVICES & DATA PROCESSORS

The Application integrates with the following third-party services solely for operational purposes. These services may process limited technical data according to their own privacy policies:

We do not integrate with Facebook, Google, Twitter, or any social media platforms for login, analytics, or advertising. We do not use Firebase Analytics, Google Analytics, Mixpanel, Amplitude, or any third-party analytics SDKs that track user behavior.

[SECTOR 7.0] CHILDREN'S PRIVACY (COPPA COMPLIANCE)

The Application is not directed to children under the age of 13, and we do not knowingly collect, solicit, or process Personal Information from children under 13 in compliance with the Children's Online Privacy Protection Act ("COPPA"), 15 U.S.C. ยง 6501 et seq., and its implementing regulations, 16 C.F.R. Part 312.

Because the Application does not require user accounts and does not collect contact information, age verification data, geolocation data, or persistent identifiers from children, the standard COPPA data collection triggers do not apply. However, if you are a parent or guardian and believe that your child under 13 has provided Personal Information to us through the Application, please contact us immediately at the address provided in Sector 13.0, and we will work with you to address the situation in accordance with applicable law.

If we learn that we have inadvertently collected Personal Information from a child under 13 without verifiable parental consent, we will take immediate steps to delete such information from our systems (to the extent it exists in anonymous crash reporting databases) and terminate any associated processing activities.

[SECTOR 8.0] DATA SECURITY MEASURES

We implement appropriate technical and organizational security measures to protect your data against unauthorized access, alteration, disclosure, or destruction. These measures include:

Despite these measures, no method of electronic storage or transmission is 100% secure. You acknowledge that absolute security cannot be guaranteed and that you use the Application at your own risk. We encourage you to enable device passcodes, Face ID, or Touch ID to protect against unauthorized physical access to your device.

[SECTOR 9.0] DATA RETENTION & DELETION

Because all User Data is stored locally on your device, data retention is entirely under your control. The Application retains your data indefinitely on your device until you choose to delete it or uninstall the Application.

Deletion Methods: You may delete data through the following mechanisms: (a) Delete individual gear items, trip templates, or lending records using the delete functions within the Application interface; (b) Delete individual photographs using the photo management tools; (c) Delete ALL Application data by uninstalling the Application from your device, which permanently removes the Application's sandboxed document directory and all contained files; (d) Reset your entire device through iOS Settings, which erases all data including Application data.

Important Notice: We do not retain copies of your User Data on our servers. Therefore, once you delete data from your device, it is permanently irretrievable. If you have enabled iCloud Backup, deleted data may persist in backup archives until those backups are updated or expired according to Apple's retention policies. We cannot delete data from your iCloud backups because we do not have access to them.

[SECTOR 10.0] COOKIES & TRACKING TECHNOLOGIES

The Application does not use cookies, web beacons, pixel tags, device fingerprinting, or any similar tracking technologies. Because the Application is a native iOS application (not a web application or website), traditional browser-based tracking mechanisms are not applicable.

The Application does not implement cross-app tracking, advertising identifiers (IDFA), or behavioral profiling. We do not display advertisements within the Application, and we do not share data with advertising networks, demand-side platforms, or data brokers.

If Apple prompts you to grant permission for "Tracking" through the App Tracking Transparency ("ATT") framework, this prompt relates solely to Apple's own systems and any third-party crash reporting, not to User Data collection by the Application. You may deny this permission without affecting core Application functionality.

[SECTOR 11.0] INTERNATIONAL DATA TRANSFERS

Because the Application stores all User Data locally on your device and does not transmit data to remote servers under our control, international data transfer issues are largely mitigated. Your data remains on your device within the jurisdiction where your device is physically located.

If you use iCloud Backup and your Apple ID is registered in a different jurisdiction, encrypted backup data may be stored on Apple servers located in the United States or other countries pursuant to Apple's iCloud Terms and Conditions. We do not control these transfers and refer you to Apple's Privacy Policy for details on their international data handling practices.

Anonymous crash reporting data may be transmitted to Apple's servers, which may be located in the United States. This data contains no Personal Information and is used solely for Application stability improvements.

[SECTOR 12.0] CHANGES TO THIS POLICY

We reserve the right to modify, amend, or replace this Privacy Policy at any time to reflect changes in our practices, legal requirements, or Application functionality. Material changes to this Policy will be communicated by updating the "Last Updated" date within the Application Settings screen and, where required by applicable law, through additional notice mechanisms.

Your continued use of the Application after the effective date of revised Policy constitutes your acceptance of the changes. We encourage you to review this Policy periodically. If you do not agree to the revised Policy, you must discontinue use of the Application and delete it from your devices.

For material changes that significantly expand the scope of data collection or sharing, we will provide prominent notice through in-app banners or push notifications before the changes take effect, to the extent required by applicable privacy laws.

[SECTOR 13.0] CONTACT PROTOCOL

For privacy-related questions, data subject requests, concerns about this Policy, or to exercise your privacy rights under applicable law, please contact the Meyej Privacy Office:

EMAIL: meyejX7q3m@outlook.com
RESPONSE WINDOW: 48 business hours
PROTOCOL: Include "PRIVACY REQUEST" in subject line for data rights inquiries

We are committed to responding to all legitimate privacy inquiries within forty-eight (48) business hours. For legal or regulatory correspondence, please clearly indicate "LEGAL NOTICE" in the subject line. Physical mail is not accepted.

TRANSMISSION COPIED