Skip to main content

Privacy Policy

AuraLock is designed with privacy as a core principle. Your Aura data — sessions, what stays alive, preferences — lives on your device, not our servers. We keep this policy as plain and honest as the app itself.

Last updated: August 2026

01

What We Collect

We built AuraLock to help you focus — not to learn everything about you. Here is exactly what we collect:

  • Device ID — A unique identifier generated by your device. Used solely for analytics. Nothing else.
  • Aura session data — durations, streaks, focus scores, and journal entries — stored entirely on your device.
  • Installed apps & usage time — read locally to let you build What Stays Alive and power your presence reports. We never send these lists anywhere.
02

How We Use It

Everything we collect has a single purpose: making AuraLock work better for you — on your device.

  • Powering your Aura — holding what you choose outside and keeping what stays alive inside.
  • Building your private presence reports so you can see how your intention is improving.
  • Fixing bugs and improving stability. Nothing more.
03

Where Your Data Lives — Local First

Local-first means your data stays on your device by default. No account, no cloud sync, no server copy.

  • All What Stays Alive configurations, sessions, and journal entries are saved locally in encrypted storage on your device.
  • We don't keep a server-side copy of your app usage. What's on your phone stays on your phone — AuraLock works fully offline.
  • Uninstalling the app deletes all local data. There is nothing left on a server to hunt down.
04

We Never Sell Your Data

We do not sell your data. Period. We also do not share it, rent it, or trade it.

  • No sale to advertisers, data brokers, or third parties — ever.
  • No advertising profiles, no cross-app tracking, no behavioral targeting.
  • No analytics SDKs that profile you. The only identifier we use is the on-device Device ID for aggregated analytics, and nothing else.

If our business model ever changes, we will update this policy and ask for clear consent before any new use — but selling data is not our model.

05

Permissions Explained

AuraLock asks for sensitive Android permissions only because the focus boundary cannot work without them. Here is exactly what each one does, why we need it, and what we don’t do with it. Learn more on our permissions overview.

  • Accessibility ServiceWhat it does: Detects when an app outside your Aura comes to the foreground and immediately shows the holding screen. Why it’s needed: Android does not allow apps to block other apps directly; observing the foreground app is the only reliable way to hold the boundary. What we DON’T do: We don’t read keystrokes, passwords, messages, or screen content. Only the foreground package name is checked, entirely on-device.
  • Usage Stats (Usage Access)What it does: Reads how long you have spent in each app to calculate Focus Score, streaks, and presence analytics. Why it’s needed: Powers your private insights. What we DON’T do: Does not track browsing history, does not transmit stats anywhere, and processes everything locally.
  • Draw Over Other AppsWhat it does: Lets AuraLock display the Aura timer and holding screen on top of a distracting app you are trying to avoid. Why it’s needed: Without it, there is no visible boundary to return you to your Aura. What we DON’T do: Only draws during an active Aura enforcement; it never overlays outside that purpose.
  • Alarms & RemindersWhat it does: Ensures a timed Aura ends exactly on time and scheduled Auras start precisely, even in the background or when the screen is off. Why it’s needed: Keeps timing honest and scheduling reliable. What we DON’T do: No extra background tracking — only fires the timers you set.

We only request permissions we actively use. You can review or revoke any permission anytime in Android Settings or in AuraLock’s Guardian health check. Revoking a permission will limit the related feature, but the rest of the app keeps working.

06

Third Parties

We use a minimal set of trusted services — and we are transparent about them:

  • Crash reporting (optional) — anonymized crash logs help us fix issues faster. No personal data is included and nothing is tied to your Device ID.

We do not use ad networks, tracking SDKs, or analytics platforms that profile you.

07

Your Rights

You're in control. Here's what that means in practice:

  • Delete all your data anytime by uninstalling the app — there's no server-side copy to worry about.
  • Adjust or revoke permissions from Android Settings at any time.
  • Request clarification or a full account of what we hold by emailing us at auralockapp@gmail.com.

If you have any questions about this policy or what we hold, email auralockapp@gmail.com. We will answer plainly.