Ironbox privacy policy
This policy covers the Android application Ironbox, published by LLJ Studios ("we", "us").
The short version: Ironbox collects nothing about you. There is no account, no analytics, no advertising, no crash reporting and no tracking of any kind. Your photos are encrypted on your device and never leave it. This version has no network access whatsoever — not restricted, not optional: absent.
1. What we collect
Nothing. We operate no servers, hold no database and have no account system. We do not know that you installed Ironbox, how you use it, or what you keep in it.
2. Your photos and videos
Items you add to Ironbox are encrypted with AES-256-GCM and written into a folder you choose on your own device storage. The encryption key is derived from your PIN using Argon2id. Thumbnails are encrypted with the same key.
Your content is never uploaded, never transmitted, and never readable by us. We hold no copy of your PIN, your recovery phrase, or your key, and we cannot recover your vault if you lose them.
3. Permissions
Ironbox needs no permission for normal use. Importing goes through the Android system photo picker, which requires none and shows us only the specific items you pick.
The app declares access to your photos and videos
(READ_MEDIA_IMAGES, READ_MEDIA_VIDEO) for
one optional feature: deleting the original files from
your gallery after you have imported them, which is impossible without
it. Android asks you the moment you tap that action, never before, and
declining leaves every other feature working. We would rather name the
permission here than have you discover it on the Play listing.
There is no INTERNET permission in this
version. Not requested, not held, not conditional. The app is
physically incapable of opening a network connection, which makes "your
photos never leave the device" something you can verify from the Play
listing instead of trusting us about.
4. Purchases
There are none. This version contains no in-app purchase, no payment library and no price. We are not a trader on Google Play and take no money from you, so there is no transaction, no payment processor and no purchase data — ours or anyone else's.
A future version will offer a one-time purchase. When it does, this section will be rewritten before that version ships, the version number below will change, and the app will say so on screen.
5. Data we share
We share nothing, because we hold nothing. We do not sell data, and there is no data to sell.
6. Children
Ironbox is not directed at children and collects no data from anyone, including children.
7. Your rights
Under the GDPR you have rights of access, rectification, erasure, restriction, portability and objection over personal data a controller holds about you. We hold no personal data about you, so there is nothing for us to retrieve, correct or delete — and no request you could make of us would return anything.
If you would like to exercise a right, or simply ask what we hold, write to lljaistudios@gmail.com and we will answer.
You also have the right to lodge a complaint with a data protection authority — either the one in your own country of residence, or the CNIL in France, where the publisher is established.
8. Changes to this policy
If this policy changes we will update the date below and the version number. Because we collect nothing, we do not expect substantive changes; any change that did introduce data collection would be announced in the app before it took effect, not slipped in quietly.