Orixa Studio Back to site
  1. Home
  2. Privacy Policy
  3. SafetyCam

SafetyCam Privacy Policy

Last Updated: October 4, 2026

1. Scope of This Policy

This Privacy Policy applies specifically to SafetyCam, a mobile application developed and published by Orixa Studio ("we", "our", or "us"). It describes what SafetyCam stores on your device, what data its analytics, advertising, and purchase services process, and the choices available to you.

SafetyCam is a personal-safety recording app. Its core function is designed to work without an Orixa Studio account and without uploading your recordings to us.

This policy covers the SafetyCam app only. For our website, other Orixa Studio products, and general business practices, see the Orixa Studio Privacy Policy.

2. Content That Stays on Your Device

SafetyCam stores the following content locally on your device only:

  • Video recordings you capture
  • Audio recordings you capture
  • Photo bursts you capture
  • Optional incident-location information, when you enable that feature

Recordings are encrypted with Android Keystore-backed AES-GCM in the app's private vault or a supported on-device destination you select. They are not automatically uploaded to Orixa Studio, Firebase, Google, or any other cloud service. We cannot see or retrieve them.

Opening a recording for playback creates a temporary decrypted cache copy that SafetyCam removes on its next startup. When you choose Download, SafetyCam creates a separate decrypted copy in your device's Movies, Music, or Pictures collection, depending on the recording type. The encrypted original remains in the vault. Deleting the original later does not delete a copy you saved to the gallery.

If you explicitly share or export a recording to another app or person, that copy leaves SafetyCam's vault and is then governed by the recipient's practices. SafetyCam does not initiate that transfer automatically.

3. Firebase Analytics

SafetyCam uses Google Firebase Analytics to understand general app usage and improve features. Firebase Analytics may collect:

  • App interactions, such as which screens are opened and which features are used
  • Session information, such as session start, duration, and app open events
  • App and device information, such as app version, device model, and operating-system version
  • Installation identifiers generated by Firebase for this app installation
  • An approximate region derived from a masked IP address

Analytics events describe that a feature was used, not the contents of what you recorded.

4. Firebase Crashlytics

SafetyCam uses Google Firebase Crashlytics to identify crashes, application-not-responding (ANR) events, and stability problems. Crashlytics may collect:

  • Crash logs and stack traces
  • Relevant application state at the time of the failure
  • Device model
  • Operating-system and app versions
  • Session information
  • Installation identifiers generated by Firebase for this app installation

Crash reports describe the technical failure so we can fix it. They do not include your recordings or vault contents.

5. What SafetyCam Never Sends Off Your Device

SafetyCam does not send any of the following to Firebase, Google, Orixa Studio, or any other third party:

  • Video recordings
  • Captured audio
  • Photos and photo bursts
  • Saved incident coordinates
  • Vault contents of any kind
  • AccessibilityService key events

We do not sell recordings or accessibility input. Google Mobile Ads handles limited device and app data for advertising as described below.

6. How This Information Is Used

Firebase diagnostic and analytics information described above is used to:

  • Understand general app usage patterns
  • Investigate technical failures, crashes, and ANRs
  • Improve SafetyCam's reliability, stability, and features

Advertising and purchase-related data are described separately below. SafetyCam does not supply recording contents, saved location, or accessibility input to those services.

7. Permissions SafetyCam Requests

SafetyCam declares the following permissions and system access in its Android manifest. Each is used only for the purpose stated below:

  • Internet: for Firebase analytics and diagnostics, advertising and consent services, and Google Play/RevenueCat purchase status; recordings and vault content are never transmitted automatically
  • Camera: to record video and capture photo bursts, saved only to the encrypted local vault
  • Microphone: to record audio, saved only to the encrypted local vault
  • Location: optional, to attach approximate or precise incident coordinates to a recording stored on your device
  • Notifications and foreground service: to keep camera and microphone recording running reliably and to show an ongoing recording or ready-status notification
  • Wake lock: to keep the device awake as needed while an active recording is in progress
  • Vibration: to provide on-device haptic confirmation for recording actions or alerts
  • Run at startup: to restore SafetyCam's ready-status notification after the device restarts or the app is updated
  • Display over other apps: optional special access used to show SafetyCam recording controls or status over other apps when you enable that feature
  • Battery optimisation exemption: optional special access that lets you exempt SafetyCam from battery restrictions so an active recording is less likely to be interrupted; Android requires you to approve this setting
  • Accessibility: optional, for the selected Volume Down, shake, or Accessibility button trigger described in the next section

On Android 9 and earlier, Download may request the legacy storage permission after an in-app disclosure. The manifest limits that permission to Android 9 and earlier. Android 10 and later do not require broad storage permission for the app-created gallery copy. Vault files remain encrypted in app-controlled storage. Sharing a selected file can grant the receiving app temporary access to that file.

Depending on your Android version, sensitive permissions and special access require your approval. You may revoke them at any time in device settings. Revoking access disables the feature that depends on it but does not delete content already saved to your vault.

8. AccessibilityService Disclosure

After a separate in-app disclosure and your affirmative choice, the optional AccessibilityService can use your selected trigger: Volume Down double-press or triple-press timing, a firm shake detected by the accelerometer, or the Android Accessibility button. It can start or stop recording when SafetyCam is not in the foreground. Start paths that need a disclosure or permission pass through the app.

Volume events are not consumed. Key timing and motion-trigger data are processed briefly in memory on your device; they are not logged, stored, shared, or sent to analytics or advertising services. The service does not retrieve screen content, observe other keys, or perform gestures. You can disable it in Android settings at any time.

9. Advertising and Consent

SafetyCam uses Google Mobile Ads for fixed bottom banners on Home, Gallery, Settings, and Help & FAQ. After an eligible Capture or Display setting is saved, a cached full-screen ad may appear at most once during that Settings visit, subject to the app's frequency limits. Opening a Gallery recording or choosing Download, including Download from the player, attempts a full-screen ad before opening the player or saving the copy. A cache miss starts a cancelable load of up to 15 seconds. The action continues after the ad closes or after a confirmed ad load/show error or timeout, with an explanation. Closing a Download ad keeps the current screen. Protected Gallery content requires fresh unlock after the ad; media and authorization are cleared during that handoff. Ads do not appear during recording, stopping, securing, setup, permission, emergency-trigger, legal, privacy, or confirmation flows. Advertising never gates recording or another safety action.

Where required, Google's User Messaging Platform presents an advertising consent choice before ad requests. An in-app Ad privacy choices entry is available when required. Google Mobile Ads may collect or share IP address, app interactions, diagnostics, and device or account identifiers, including the Android advertising ID when available, for advertising, analytics, and fraud prevention. Its handling depends on applicable consent choices and Google's terms. SafetyCam does not provide recordings, vault metadata, precise recording locations, or accessibility input to the ad SDK.

Premium removes ads. Ad requests are suppressed while purchase status is being checked and while Premium is active.

10. Purchases and RevenueCat

SafetyCam offers optional Weekly, Monthly and Yearly subscriptions through Google Play. Only Yearly may offer an eligible seven-day trial; Weekly and Monthly have no trial. Lifetime is no longer offered and Lifetime purchases, including previous purchases, no longer grant Premium. An active recognized subscription with the Premium entitlement removes advertising. Localized prices, renewal terms and eligibility are shown in Google Play. Recording, the encrypted vault, playback and emergency features remain available without payment.

RevenueCat processes purchase status using an automatically generated anonymous app-user identifier, Google Play product and transaction information, subscription and entitlement status, and purchase or restore diagnostics. SafetyCam uses that status to determine whether Premium is active and to provide restore and Customer Center features. Google Play processes payment details; SafetyCam does not receive your full payment-card information. Neither RevenueCat nor Google Play receives recording contents, vault files, encryption keys, saved incident location, or accessibility input from SafetyCam.

Clearing app data or uninstalling SafetyCam does not cancel a subscription or erase a Google Play purchase. You can restore purchases in SafetyCam and manage or cancel a subscription through Customer Center or Google Play. RevenueCat and Google Play retain purchase records according to their own service, legal, fraud-prevention, and accounting requirements.

11. Sharing and Transfer of Data

Firebase Analytics and Crashlytics process app usage and diagnostic data under Google's terms. Google Mobile Ads handles the advertising data described above. RevenueCat and Google Play handle purchase-related data. These services may process data outside your country of residence. SafetyCam does not automatically upload recordings, vault contents, or saved incident coordinates to them.

We may also disclose information if required to do so by law, regulation, legal process, or an enforceable governmental request. Note that we cannot produce your recordings, vault contents, or saved coordinates in response to such a request, because we never receive them.

12. Security

  • Vault content is encrypted at rest in app-controlled storage on your device
  • Firebase, advertising, and purchase services use encrypted network connections
  • Access to Firebase analytics and crash dashboards is limited to authorised Orixa Studio personnel

Device-level protections matter too: keeping a screen lock enabled and keeping your operating system up to date meaningfully protects your vault. No application or system can be guaranteed 100% secure.

13. Data Retention

  • On-device content: retained until you delete it in the app, clear the app's data, or uninstall SafetyCam. You are in full control of it.
  • Analytics data: retained according to the retention period configured in Google Analytics for Firebase.
  • Crash data: retained according to the Firebase Crashlytics retention period.
  • Advertising and purchase data: handled under the retention and deletion controls of Google Mobile Ads, RevenueCat, and Google Play.

Uninstalling or clearing app data removes local app storage, but may not remove encrypted files you placed in another on-device destination or gallery copies you explicitly saved. It does not cancel a Google Play subscription. Please export anything you need to keep before deleting the vault, because we cannot recover it.

14. Your Rights and Choices

  • Access or deletion: you may request information about, or deletion of, applicable data we control by emailing support@orixastudio.com. Provider-held advertising and purchase records are also subject to the relevant provider's controls and legal obligations.
  • Permissions: you may revoke camera, microphone, location, notifications, accessibility, display-over-other-apps access, or the battery-optimisation exemption at any time in your device settings.
  • Advertising choices: use Ad privacy choices in Settings when available, or your device's advertising controls.
  • Purchases: restore purchases in SafetyCam and manage or cancel subscriptions through Customer Center or Google Play.
  • Stop future app collection: uninstalling SafetyCam stops future app activity and crash reporting from that installation; providers may retain earlier records under their policies.

Depending on where you live, you may have additional rights under laws such as the GDPR or the DPDP Act, including the right to object to or restrict processing. Contact us at the address above and we will respond within the period required by applicable law.

15. Data Safety Overview

These are the principal categories of data SafetyCam and its integrated services may process. The Google Play Data safety section provides the current declaration for the version distributed through Play.

Data collected and transmitted off the device

  • App activity: app interactions used by Firebase Analytics and potentially Google Mobile Ads
  • App info and performance: crash logs and diagnostics used for stability and potentially advertising diagnostics
  • Device or other IDs: installation and advertising identifiers when available, used for analytics, advertising, and fraud prevention
  • Purchase information: Google Play product, transaction, subscription, and entitlement information used by RevenueCat and Google Play
  • Network information: IP address processed by network services, including Google Mobile Ads

Data handled only on the device

  • Photos and videos: processed and stored on-device only, never transmitted
  • Audio recordings: processed and stored on-device only, never transmitted
  • Location: optional, processed and stored on-device only, never transmitted

Security practices

  • Data is encrypted in transit
  • Vault content is encrypted at rest on the device
  • You can request deletion of applicable analytics and diagnostic data

SafetyCam does not sell recording or accessibility data. Advertising and purchase services process the limited data described in Sections 9 and 10.

16. Children's Privacy

SafetyCam is designed for users aged 13 and older and is not directed to, or intended for use by, individuals under 13 years of age. We do not knowingly collect personal data from children under 13. Users aged 13 to 17 should use SafetyCam with the involvement of a parent or legal guardian where required by applicable law. If you believe a child under 13 has used SafetyCam and that diagnostic data was collected, contact us at support@orixastudio.com and we will delete the applicable records.

See also our Child Safety and CSAE Policy.

17. Changes to This Policy

We may update this Privacy Policy to reflect changes to SafetyCam, to the third-party services it uses, or to our legal obligations. The revised policy will be published on this page with an updated "Last Updated" date. Material changes affecting how data is collected or used will also be reflected in the app's Google Play Data Safety declaration.

18. Contact Us

Orixa Studio is the data controller for SafetyCam.

  • Privacy and data requests: support@orixastudio.com
  • General enquiries: hello@orixastudio.com
Orixa Studio

Independent studio for mobile apps, web products, product design, and thoughtful AI-powered experiences.

Legal

  • Privacy Policy
  • SafetyCam Privacy
  • Terms & Conditions
  • Child Safety

Contact

  • hello@orixastudio.com

© 2026 Orixa Studio. All rights reserved.

Privacy · Terms · Safety