This Privacy Policy explains how Membership Tracker (com.maelkotl.membershiptracker) handles information. Membership Tracker is provided by Siarhei K. (the “Service Provider”). Questions and privacy requests can be sent to maelstorm.dev@gmail.com.
Membership Tracker is local-first: you can use its core tracking features without creating an account. Optional online features and the diagnostic services described below send limited data from your device.
Data stored on your device
Without cloud sync, membership details, categories, payment-method labels, visits, comments, amounts, currencies and preferences are stored locally. They are not uploaded merely because you enter them. Local information may leave the device if you enable cloud sync, include it in a support email, export or share it yourself, or use another online feature described below.
Uninstalling normally removes local app data, subject to Android backup, device-management and operating-system behavior outside the Service Provider’s control.
Optional account and cloud sync
Creating an account and using cloud sync are optional. Firebase Authentication may process your email address, display name, user ID, sign-in provider information, profile-photo URL when provided, IP address and user-agent security data. Signing in creates or updates a Cloud Firestore profile containing user ID, name, email, profile-photo URL and login timestamps, and may read or observe existing profile, app-preference and entitlement records. These account operations occur when you sign in even if content sync is turned off.
If you separately enable content sync, Cloud Firestore may additionally upload and store:
- membership names, dates, statuses, plans, amounts, currencies and payment cycles;
- category names and user-defined payment-method labels;
- visit and event timestamps, costs, comments and other user-generated content;
- favourites and notification, language, sync and guidance preferences.
This data provides account management, cross-device synchronization and app functionality. The Application does not request or store payment-card numbers, CVCs or bank-account credentials.
Automatically collected data
The current version uses the following Firebase services automatically. The Application does not currently provide an in-app switch to disable this collection.
Firebase Analytics
Google Analytics for Firebase may collect app-instance and device or advertising identifiers, app interactions, screen and session activity, launches and updates, app/device information, approximate geography derived without Android precise-location permissions, purchase-related events and technical update events. This is used to understand feature usage and improve the Application. Membership Tracker does not request precise location.
Firebase Crashlytics and Firebase Sessions
Firebase Crashlytics and Firebase Sessions may collect crash and non-fatal reports, stack traces, app/device/session state, installation identifiers, diagnostic keys and analytics breadcrumbs. A Firebase user ID may be attached when an error relates to a signed-in user. This is used to diagnose problems and improve reliability.
Firebase Remote Config and Firebase Installations
Firebase Remote Config and Firebase Installations may process an installation ID, country code, language, time zone, platform/OS details, Firebase App ID, package name and SDK/app version to deliver configuration and maintain Firebase services.
These services may transmit device and usage information to Google even without an account. Depending on device, OS and service configuration, Android or Google Play services identifiers may be included. Membership Tracker does not display third-party advertising and does not use these identifiers to show ads inside the Application.
Purchases
Optional purchases and subscriptions use Google Play Billing. The Application and Google Play may process product identifiers, purchase token, purchase time/state, acknowledgement status, renewal or entitlement and fraud-prevention information. Google handles payment credentials independently; Membership Tracker does not receive full card details. Deleting an account does not cancel an active Google Play subscription.
Exchange rates
When a currency feature needs fresh exchange rates, the Application sends the selected base-currency code to ExchangeRate-API (AYR Tech). That provider may receive network metadata such as IP address. The request is used to provide currency conversion data.
Support communications
If you contact support, the Service Provider receives the email, message, attachments and other information you choose to send. Optional diagnostics may include package/build variant, version code, device model, Android/API version, locale and sanitized error summaries.
How information is used
- provide local and optional cloud features;
- authenticate users and synchronize data;
- process purchases and restore entitlements;
- operate, configure, secure and troubleshoot the Application;
- measure feature usage and improve performance and reliability;
- respond to support, privacy and deletion requests; and
- comply with law and enforce legal rights.
The Service Provider does not use information collected by Membership Tracker for its own direct advertising campaigns.
Service providers and disclosure
- Google Play services and Google Play Billing — platform services, purchases, entitlements and security;
- Firebase — Authentication, Cloud Firestore, Analytics, Crashlytics, Sessions, Remote Config and Installations; and
- ExchangeRate-API — exchange-rate requests.
Information is transmitted to or processed by the listed providers as needed for the purposes above. They process data under their own terms and privacy documentation. Firebase states that listed Android SDK data is encrypted in transit using HTTPS and is not transferred to third parties except Firebase subprocessors or transfers made under the developer’s instructions. Depending on the Service Provider’s Firebase/Analytics settings, configured product links or exports, data may also be made available to linked Google products or other configured destinations; when enabled, the linked service processes data under its own terms.
Information may also be disclosed when reasonably necessary to comply with law, protect users or the Service Provider, investigate fraud/security incidents, or complete a business transfer with safeguards. The Service Provider does not receive payment for selling personal information collected through Membership Tracker.
Data retention and deletion
Local data remains until you delete it, clear app data or uninstall, subject to OS or backup behavior. Account and synchronized data is retained while the account is active and as needed for requested cloud features.
You can request account and associated-data deletion in Settings → Account Settings → Delete account and associated data, at https://membership-tracker-516b3.web.app/delete-account, or by emailing support.
Externally submitted requests are completed within 30 days after ownership verification. Account deletion does not cancel Google Play subscriptions, and Google independently controls purchase records it may retain. External deletion-request correspondence is kept for up to 90 days after completion, then deleted.
Analytics, installation, configuration and crash data follows applicable Firebase/Google retention settings or is kept as reasonably needed for the purposes above. Other support correspondence is kept only as reasonably needed to resolve the request, maintain security and meet legal obligations. Information may be kept longer where legally required, necessary for disputes, fraud prevention or agreement enforcement, then deleted or de-identified.
Your choices and rights
You may use the Application without an account, choose cloud features, decide what to send to support, manage purchases in Google Play and delete local app data through Android. Depending on your location, you may request access, correction, deletion, restriction or a copy of personal information by contacting support. Uninstalling stops future collection from that installation but does not itself delete an account or cloud records.
Security
The Service Provider uses reasonable administrative and technical safeguards. Listed API connections use HTTPS, and Firebase documents encryption in transit for data collected by its Android SDKs. No storage or transmission method is completely secure.
International processing
Listed providers may process information in other countries. Their privacy documentation describes locations and safeguards. Online-feature data may be transferred where necessary to provide the feature, subject to applicable law.
Children
Membership Tracker is not directed to children under 13 and does not knowingly collect their personal information. Contact support if you believe a child provided information so it can be investigated and deleted where appropriate. A higher minimum age may apply in some countries.
Changes to this Policy
The Policy may change with the Application, providers or legal requirements. The effective date will be updated, and material changes may also be communicated in the Application or store listing where appropriate.
Canonical language
Translations are provided for convenience. If a translation conflicts with English, English is the canonical description except where applicable law requires otherwise.
Contact us
Privacy questions, rights requests and complaints: Siarhei K., maelstorm.dev@gmail.com, Membership Tracker (com.maelkotl.membershiptracker).