This Privacy Policy explains how Atrox ("Atrox", "we", "us") handles information in connection with the Mobile App Builder platform. It applies to:
io.atrox.mobileappbuilder, distributed on Google Play; andIn short: the Android app has no accounts and no sign-in. It asks for camera access for one purpose only — scanning a QR code to connect to a store you already control — and that scanning happens entirely on your device. No photographs, video, or camera imagery are ever captured, stored, or transmitted. We run no analytics, no advertising, and no tracking of any kind in the app, and we do not sell personal data.
Atrox provides a no-code platform that lets merchants design and preview mobile storefronts. The service has two parts. The web platform is where a merchant signs in and builds their app. The Android app is a companion previewer: it connects to a merchant's in-progress design by scanning a QR code and renders it on a real device.
Our users are merchants and their team members — this is business software. The Android app does not collect information about a merchant's own customers or shoppers.
| Information | Android app | Web platform | Why |
|---|---|---|---|
| Name and email address | Not collected | Collected | To create and sign you in to your account |
| Password | Not collected | Collected | Stored only as a one-way hash; optional if you use Google Sign-In |
| Photos, video, camera imagery | Never collected | Not collected | QR decoding happens entirely on your device |
| Content you upload (images, media) | Not collected | Collected | To display in the app you are designing |
| Preview session token | Used | Issued | Connects the app to your store design; expires after 24 hours |
| Precise or approximate location | Never collected | Never collected | — |
| Contacts, calendar, SMS, call logs | Never collected | Never collected | — |
| Advertising ID / tracking identifiers | Never collected | Never collected | — |
| Analytics or crash reporting | None | None | We do not operate any analytics or crash-reporting service |
The Android app has no sign-up, no sign-in, and no profile. It does not ask for your name, email address, phone number, or any other personal detail, and it contains no field for entering personal information.
The app requests the CAMERA permission for a single purpose: reading a QR code shown in your
Mobile App Builder admin panel in order to connect the app to your store design.
The QR code contains a preview session token — an opaque credential issued by the web platform that grants read-only access to one store's app design. The app sends this token to our API to fetch the design it needs to render. The token identifies a store connection, not a person, and it expires 24 hours after it is issued.
The app keeps a list of the stores you have connected in your device's private app storage. Each entry holds the store name and domain, the session token, the design configuration, a logo URL, and connection timestamps. This stays on your device. Removing a connected store from the app, or uninstalling the app, deletes it.
When the app contacts our API it makes standard HTTPS requests. As with any internet request, your IP address is necessarily visible to the receiving server in transit. We do not log, store, or retain IP addresses or user-agent strings.
Where your store design references images hosted elsewhere — your own CDN, for example — your device requests those images directly from that host, which will see your device's IP address in the ordinary course of serving them.
To use the web platform you create an account. We collect your name and email address. If you register directly, we also store a password as a one-way bcrypt hash — we never store your password in a readable form and cannot recover it.
If you sign in with Google, we receive your email address, name, and Google account identifier from Google, and we store those three items. We do not request or store your Google profile picture, and we do not store the Google token itself — it is verified at sign-in and discarded.
We store the app designs you build: screens, layout blocks, navigation, product and collection entries, and configuration. We also store images and other media you upload so they can be shown in your design. This content is yours; we process it to operate the service.
Signing in issues short-lived access tokens. These are self-contained and are not stored on our servers. They carry only your account identifier and role — not your name or email.
Neither the Android app nor the web platform collects, accesses, or requests any of the following:
We also operate no analytics platform, no crash-reporting service, no advertising network, and no behavioural tracking. We do not sell, rent, or trade personal data, and we do not share it with data brokers or advertisers.
We use the information described above only to:
We do not use your information for advertising, profiling, or automated decision-making.
We do not sell personal data. We share information only with the following categories of service provider, strictly as needed to run the service:
ap-south-1 region (Mumbai, India). Access is served
through short-lived, expiring links.
We may also disclose information where we are legally required to do so, or where necessary to protect our rights, safety, or the integrity of the service.
No system is perfectly secure, and we cannot guarantee absolute security. If we become aware of a breach affecting your personal data, we will notify affected users and any regulator as required by applicable law.
To delete your account and its associated data, email us at [email protected] from the address associated with your account. We schedule the deletion within 5 business days and confirm by email. Your data is then permanently erased after a 30-day grace period, during which signing in again cancels the request and restores your account. We may retain limited records where we are required to do so by law.
Full step-by-step instructions, and a breakdown of exactly what is deleted and what is kept, are on our Delete your account and data page.
Depending on where you live, you may have the right to access, correct, export, or delete the personal data we hold about you, to object to or restrict certain processing, and to lodge a complaint with your local data protection authority. To exercise any of these, contact [email protected]. We will not discriminate against you for exercising these rights.
Within the Android app you can also disconnect any store at any time, which removes that store's data from your device.
The service is business software intended for merchants and is not directed to children under 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.
Our application and database — your account details and everything you build — are hosted in
Singapore (Hetzner, ap-southeast).
Uploaded media (the images and video you upload) is stored separately in
India (Amazon Web Services ap-south-1, Mumbai).
If you access the service from outside these regions, your information will be transferred to and processed there. Where required, we rely on appropriate safeguards — such as the European Commission's Standard Contractual Clauses — for international transfers.
We may update this policy from time to time. When we do, we will revise the "Last updated" date at the top of this page. If the changes are significant, we will provide a more prominent notice. Please review this page periodically.
If you have questions about this policy or how we handle your information, contact us at:
Atrox
Email: [email protected]
Web: mobile-app-builder.atrox.io