Privacy Policy

Last updated: September 3, 2026

This Privacy Policy explains how IFIGO collects, uses, stores, and shares information when you use the IFIGO mobile app, related cloud services, backup features, automatic-delivery features, and this website.

IFIGO is a private-information handoff app with journals, a vault, backups, daily check-ins, and automatic delivery to trusted recipients. You choose the information assigned to each recipient and the missed-check-in period used by the delivery flow.

IFIGO is designed so that recipient packages are prepared and password-protected on your device before they are uploaded for delivery. The shared-memory answer used to open a recipient package is not sent to, stored by, or known by IFIGO's servers.

1. Information you provide or create

Depending on how you use IFIGO, you may provide or create the following types of information:

  • Account information, such as your email address, display name, sign-in provider, and account identifier.
  • Journal and vault content, such as notes, text, attachments, files, URLs, usernames, passwords, secrets, and other information you choose to store in the app.
  • Recipient information, such as recipient names, email addresses, shared-memory questions and answers, and the journals or vault items you assign to each recipient. The shared-memory answer stays on your device and is used locally to protect that recipient's PDF.
  • App settings and status, such as check-in preferences, reminder settings, lock settings, backup status, subscription status, package status, and delivery status.
  • Notification and delivery information, such as notification tokens, reminder timing, check-in status, package status, delivery status, timestamps, and email delivery results.
  • Backup information, such as encrypted backup files, backup status, timestamps, sync status, and related backup metadata.
  • Support information, if you contact us directly by email or through another support channel.

You choose what information to enter into IFIGO. Because IFIGO can store sensitive personal information, you should only add content you are comfortable protecting, backing up, or potentially sharing with the trusted recipients you select.

2. Information stored on your device

IFIGO stores its working app data locally on your device. This may include your journals, vault items, recipients, attachments, app settings, lock status, backup status, package status, and other app-related records.

The current app uses an encrypted local database and separately protects local attachment files. Security-related key records may also use device-provided secure storage. The protection available depends in part on your device, operating system, device lock settings, backup settings, and security capabilities.

If you delete the app, reset your device, disable backups, lose access to your device, or lose access to device security features, some local data may become unavailable.

3. Encryption and package protection

IFIGO is designed to protect sensitive content before it leaves your device.

  • App data stored locally is kept in encrypted app storage, and attachment files are separately protected.
  • Backup files are encrypted on your device before they are saved to a supported cloud backup provider.
  • Recipient packages are generated on your device as password-protected PDF files before they are uploaded for later delivery.
  • The shared-memory answer used as the PDF password is not sent to, stored by, or known by IFIGO's servers.

IFIGO's cloud services still process operational data needed to run the service. This may include account identifiers, recipient name, recipient email address, shared-memory question, package status, delivery status, timestamps, storage references, checksums, notification status, and subscription status. Recipient name, email, and shared-memory question used for cloud delivery are encrypted server-side before they are stored in IFIGO's Firestore data.

No app, device, network, cloud provider, email provider, or storage provider can guarantee complete security. You are responsible for keeping your device, device lock, cloud accounts, app access, and package passwords secure.

4. Cloud services used by IFIGO

IFIGO uses Firebase and related Google Cloud services for account authentication, cloud storage, cloud messaging, server-side scheduling and workflows, protected-package delivery, reliability, and security.

Cloud processing may include:

  • Signing you into your account.
  • Storing app metadata needed for settings sync, check-ins, packages, and delivery.
  • Uploading password-protected recipient packages for later delivery.
  • Sending cloud messages for check-in reminders, delivery status, and maintenance.
  • Tracking missed check-ins and deciding when automatic delivery is due.
  • Managing subscription and entitlement status.
  • Detecting errors, preventing duplicate processing, and maintaining service reliability.
  • Protecting the app against abuse, misuse, or unauthorized access.

Firebase is not used as a general readable cloud copy of journal body text, vault secrets, raw attachments, or shared-memory answers. Selected content is placed into a recipient-specific password-protected PDF on the device before that package is uploaded.

The cloud keeps the authoritative check-in schedule and delivery state. Check-in deadlines can continue even if the phone is offline, powered off, uninstalled, or otherwise unavailable.

5. Backups to Google Drive or iCloud Drive

If you enable backups, IFIGO may create an encrypted backup of your app database together with the metadata needed to restore it. Depending on your platform and settings, backups may be stored in your Google Drive or iCloud Drive account.

IFIGO does not control Google Drive or iCloud Drive. Their own privacy policies, terms, storage limits, retention rules, account security, and availability apply.

IFIGO's Delete All Data, Reset App, and Delete Account flows attempt to delete IFIGO backup files through the configured backup provider as part of those operations. Provider outages, account-access problems, provider-side retention, or copies outside IFIGO's control may affect deletion. If account deletion cannot complete its required cleanup, the app may report that account deletion failed rather than reporting a successful deletion.

6. Automatic delivery and protected packages

When package preparation is available for your account, IFIGO keeps a recipient-specific protected package up to date as relevant content or recipient information changes. Each package contains only the journals, vault items, and attachments assigned to that recipient.

Each recipient package is password-protected before upload. IFIGO's servers process package and recipient metadata needed to keep the current package authoritative and deliverable, such as recipient name and email, shared-memory question, package status, delivery status, storage reference, checksum, timestamps, and error status. The shared-memory answer itself is not uploaded.

If the configured missed-check-in deadline is reached and the subscription state permits automatic delivery, IFIGO's cloud service may send the latest verified protected package to the recipient you selected even if your phone is no longer available.

Current recipient delivery uses Brevo transactional email. Sending a package necessarily shares the recipient's name and email address, the delivery email text, the shared-memory question included in that email, and the password-protected PDF attachment with Brevo and the recipient. The shared-memory answer/PDF password is not included in the delivery email or sent to Brevo by IFIGO.

After a recipient receives a package, that recipient controls their copy. They may store, download, open, forward, or share it independently of IFIGO. You should only choose recipients you trust.

7. Notifications and check-ins

IFIGO uses Firebase Cloud Messaging and device notifications to support daily check-in reminders, delivery-status alerts, and silent maintenance messages.

To provide these features, IFIGO may process notification tokens, device platform, reminder timing, timezone, check-in status, missed-check-in settings, subscription status, and related operational timestamps.

Disabling notifications may prevent you from seeing a reminder, but it does not by itself pause the server-side missed-check-in period. The cloud may continue counting toward automatic delivery based on the synchronized check-in settings and status. You should open IFIGO and explicitly check in using the available I'm OK action when you want to acknowledge a check-in.

8. Subscriptions and purchases

Purchases and subscriptions are processed by the Apple App Store or Google Play and are managed in the app through RevenueCat.

IFIGO may process subscription-related information such as product identifiers, entitlement status, active or inactive state, expiration date, renewal status, environment, event identifiers, and related timestamps so paid features can be enabled, paused, restored, or verified.

IFIGO does not receive or store your full payment card details from Apple, Google, or RevenueCat. Completing an automatic delivery does not automatically cancel your App Store or Google Play subscription; the subscription remains subject to the store's billing lifecycle until you or the store changes it.

9. How we use information

  • To provide the app and its core features.
  • To authenticate your account.
  • To store, display, backup, restore, and protect your app data.
  • To generate, manage, upload, delete, and deliver protected recipient packages.
  • To send check-in reminders, cloud messages, delivery-status notifications, and recipient delivery emails.
  • To process missed check-ins and operate automatic delivery.
  • To manage subscriptions, entitlements, and access to paid features.
  • To troubleshoot errors and improve reliability, security, and performance.
  • To respond to support requests.
  • To enforce our Terms and comply with legal obligations.

10. Sharing of information

We do not sell your personal information. We share information only as needed to operate IFIGO, including with:

  • Firebase and Google Cloud, for authentication, metadata storage, cloud functions, cloud storage, messaging, logging, security, and app infrastructure.
  • Google and Apple sign-in services, when you use a supported sign-in provider.
  • Google Drive or iCloud Drive, if you enable cloud backups.
  • RevenueCat, Apple, and Google Play, for subscription and entitlement management.
  • Brevo, to send protected-package delivery emails to your selected recipients.
  • Your selected recipients, when automatic delivery is reached or when you otherwise choose to share information with them.
  • Legal, safety, or security parties, if required by law or needed to protect rights, safety, users, or the service.

11. Your choices and controls

  • You choose what journals, vault items, attachments, recipients, shared-memory questions and answers, and recipient assignments to create.
  • You can update or delete local content and recipients in the app.
  • You can change your daily check time and missed-check-in period.
  • You can enable or disable supported backup features.
  • You can manage camera, notification, Google Drive, iCloud Drive, and related permissions in your device or provider settings.
  • You can manage subscriptions through the Apple App Store or Google Play.
  • Delete All Data removes your journals, vault items, recipients, protected packages, and IFIGO backups while keeping app/check-in settings and existing delivery status.
  • Reset App removes app content, protected packages, backups, and notification/delivery state, restores default app and check-in settings, and restarts check-ins while preserving your account, subscription state, and Screen Lock PIN.
  • Delete Account permanently removes the account and attempts the associated local data, cloud package, notification, delivery, and IFIGO backup cleanup before deleting the Firebase Auth account.

Some service logs, provider-side records, billing records, or data that must be retained for legal, fraud-prevention, security, or operational reasons may remain after an app cleanup or account deletion.

12. Retention

We keep information only as long as needed to provide the service, operate the app, meet legal obligations, prevent abuse, resolve disputes, maintain security, and support account or subscription workflows.

Local data remains on your device until you delete it, reset the app, delete your account, uninstall the app, or the operating system removes app data. Cloud metadata, notification records, subscription records, package records, delivery records, logs, and support records may be retained for a limited time depending on operational, legal, and technical requirements.

Backup files stored in Google Drive or iCloud Drive remain there until you, IFIGO through an applicable cleanup flow, or the provider deletes them, subject to the provider's own retention behavior.

13. Security

We use reasonable technical and organizational measures to protect your information. IFIGO is designed to reduce server access to sensitive source content by preparing and password-protecting recipient packages before upload and by not sending the shared-memory answer/PDF password to IFIGO's servers.

However, no security method is perfect. You are responsible for keeping your device, account, device lock, cloud account, backup access, and shared-memory answers secure.

14. Children

IFIGO is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe a child provided information, contact us so we can help remove it.

15. International processing

IFIGO may use service providers that process data in countries outside your country of residence. These providers may process data in locations where they operate their infrastructure.

16. Changes to this policy

We may update this Privacy Policy to reflect product, security, legal, or operational changes. The updated version will be posted here, and continued use of IFIGO after an update means the updated policy applies.

17. Contact

If you have questions about this Privacy Policy, contact ifigoapp@gmail.com.