Privacy Policy
Effective Date: January 14, 2026Firedown is built as a No-Data-Collection app. We value your privacy and believe that your data belongs to you. This Privacy Policy explains our stance on data collection and your rights.
01 Information Collection and Use
We do not collect, store, or transmit any personal information or data from your device. Specifically:
- Personal Data: We do not collect names, email addresses, phone numbers, or any other personally identifiable information.
- Usage Data: We do not track how you use the app, your location, or your device information.
- Permissions: Any permissions requested by the app (e.g., Camera or Storage) are used strictly for the app's local functionality and are never uploaded to any external servers.
02 Third-Party Services
The App contains no analytics, no advertising networks and no trackers of any kind. Nothing reports your browsing, your downloads or your usage to anyone.
The optional paid features described in section 03 do rely on infrastructure providers, and we would rather name them than imply they don't exist. None of them can read your data:
- Cloudflare: Our servers sit behind Cloudflare, and encrypted file backups are stored in Cloudflare R2. They handle ciphertext and connection metadata only — the encryption keys never leave your device, so the stored bytes are as unreadable to Cloudflare as they are to us.
- Stripe (card payments only): If you buy backup credit with a card, the payment happens on Stripe's own hosted page — card details never touch Firedown. Paying by Lightning involves no card processor at all.
Payments are deliberately unlinkable to what they buy: credit is issued as an anonymous token using a blind signature, so our payment system only ever sees an amount, never which account the credit is spent on. We cannot connect a payment to a set of files even if asked to.
03 Data Storage
By default, all data generated within the App stays stored locally on your device. We do not have access to it, and it is deleted if you uninstall the App.
Firedown also offers an optional bookmark sync feature, off by default, that keeps your bookmarks in step across your own devices. When you turn it on, the only thing uploaded is end-to-end-encrypted data we cannot read:
- Ciphertext only: Your bookmarks are encrypted on your device before they leave it. Our server stores only opaque ciphertext — never your titles, URLs or any contents.
- No account, no email, no phone number: A recovery code generated on your device is the sole key. We never see it, and it cannot be recovered if you lose it.
- Firedown's own server: Encrypted bookmarks are stored on our own server, with no analytics and no tracking.
Firedown also offers optional, paid backup for your downloaded files, under the same zero-knowledge model. Here is exactly how it works, because "encrypted" on its own is a word, not a guarantee:
- Encrypted on your device, before upload: Each file gets its own key and is encrypted on your phone. That key is itself locked with a key derived from your recovery code, which never leaves your device. We are never in possession of anything that could decrypt a file.
- Where the bytes live: Your encrypted files are stored in Cloudflare R2 and uploaded from your phone straight to it. The list of what you've backed up — names, types, dates, preview images — is a single encrypted blob on Firedown's own server, which we can store and hand back but not open.
- What we can see, stated plainly: file sizes, how many files you have, when you backed them up, and the IP address you connected from. We cannot see file names, file contents, thumbnails, or what any file is.
- Your recovery code is the only key: Lose it and your backed-up files are permanently unrecoverable — by you and by us. There is no reset link, because there is no account and no second copy of the key.
- The Safe Folder is never backed up: Files you put in the Safe Folder stay on your device and are excluded from cloud backup entirely.
Because everything is end-to-end encrypted, our core promise still holds: we cannot read your data.
How Cloud Backup works — the threat model, what the server can and cannot see, and the limits we don't hide.
04 Children's Privacy
Our App does not collect any information from anyone, including children under the age of 13. We are fully compliant with the Children's Online Privacy Protection Act (COPPA).
05 Changes to This Policy
We may update our Privacy Policy from time to time. However, since we do not collect any data, any changes will likely be for clarity or to comply with new legal requirements. We will notify you of any changes by posting the new Privacy Policy on this page.
06 Contact Us
If you have any questions or suggestions about our Privacy Policy, do not hesitate to reach out.
Email us at [email protected]