Privacy-First Design
DepositDefender is built with privacy as the foundation. By default, all your data stays on your device. We only handle your data when you explicitly choose to share reports.
Data Collection and Storage
Local Storage (Default Operation)
- Photos and Documents: All photos, room data, and session information are stored locally in your browser's IndexedDB
- No Server Upload: By default, your data never leaves your device
- Browser Storage: Data is stored locally and persists between browser sessions
- Your Control: You can delete all data at any time through your browser settings
Optional Cloud Sharing
When you choose to create a share link:
- Encrypted Upload: Your report bundle is uploaded to secure, encrypted storage
- Temporary Storage: Files are automatically deleted after 7 days
- No Permanent Storage: We do not keep permanent copies of your shared files
- Signed URLs: Share links use cryptographically signed URLs that expire
Data Processing
Client-Side Processing
- Image Compression: All image processing happens in your browser
- PDF Generation: Reports are generated locally using client-side libraries
- No Analytics: We do not track your usage or behavior
- No Cookies: We do not use tracking cookies
Third-Party Services
When Sharing is Used
- Cloud Storage: We use reputable cloud storage providers with server-side encryption
- Data Retention: Automatic deletion policies ensure data is not retained beyond 7 days
- No Third-Party Access: Storage providers cannot access your encrypted data
Your Rights and Control
- Complete Control: You have full control over your data at all times
- Local Deletion: Delete all local data through browser settings or app interface
- Share Link Management: Shared files are automatically deleted after 7 days
- No Account Required: The app works without creating accounts or providing personal information
Security Measures
- Local-First Architecture: Minimizes data exposure by keeping data on your device
- Encryption in Transit: All network communications use HTTPS encryption
- Server-Side Encryption: Shared files are encrypted at rest
- No Persistent Storage: Our servers do not maintain databases of user data
Progressive Web App (PWA)
- Offline Functionality: The app works offline after initial load
- Service Workers: Used only for caching app resources, not tracking
- Installation: Can be installed on your device like a native app
- Local Processing: All features work without internet connection
Contact Information
If you have questions about this privacy policy or how your data is handled, please contact us through our support channels.
Updates to This Policy
We may update this privacy policy from time to time. Any changes will be reflected in the app and on our website. Continued use of the app after changes indicates acceptance of the updated policy.
Last Updated: 8/18/2025
Effective Date: 8/18/2025