Privacy Policy
Last updated: 2026-08-10
This Privacy Policy describes how MangoPort (“we”, “us”) handles personal information when you use the MangoPort Android application (the “Service”).
1. What we collect
- Email address. Provided by Google Sign-In when you log in. We use the email as your account identifier; it is also visible to a peer who pairs with you.
- Display name. Provided by Google Sign-In and stored to identify your account and show your name to you and your contacts. MangoPort does not store your Google profile picture.
- IP address and approximate country. Our coordinator receives your IP when you connect and derives a country code locally to choose a reachable relay server. The IP may also appear in security and diagnostic logs retained for no more than 30 days. We do not request GPS or precise location.
- Purchase history: subscription status (active / canceled / expired), expiry and purchase token, received from Google Play Billing. Used to grant Premium features and manage the account. We never see your card or other payment instrument.
- Connection data: the email of the user you are connected with, when the connection was made, and the optional active-hours schedule you set.
- Recording consent and authorization metadata. If a participant uses Premium local recording, our coordinator stores the recorded account's directional decision (allowed, denied, or revoked), the trusted-contact generation and disclosure version. It also processes short-lived recording request IDs, authorization challenges, notice acknowledgements, and leases for the live call. This metadata prevents silent or stale recording authorization; it does not contain audio or video.
- Contact matching (optional). If you grant the contacts permission, the app sends the email addresses (and names) from your device's address book to our server only to check which of them already use MangoPort. Matches are added to your in-app contact list; the rest are used only for that check and are not stored. If you don't grant the permission, nothing is sent.
- Advertising and SDK data (free accounts only). The free version shows a banner supplied by Google AdMob. The Google Mobile Ads SDK automatically collects and shares with Google an IP address (which may be used to estimate general location), user interactions with the ad/app, diagnostic information, and device or account identifiers such as the Advertising ID. Google uses this for advertising, analytics, and fraud prevention. These SDK records go to Google, not to our coordinator, and are not linked by us to calls or contacts. MangoPort initializes the SDK only when an ad banner is shown; Premium removes the banner. Google's use of this data is described in its Privacy & Terms.
2. What we do NOT collect
- Our servers do not record, upload, receive, or store the content of your video or audio calls. All live media is end-to-end encrypted via DTLS-SRTP between the two devices. When traffic is relayed through our TURN server, it is forwarded as opaque encrypted packets — the server cannot read it. This applies equally to optional in-call screen sharing: your screen is captured only after you explicitly confirm it twice (in the app and in Android's system dialog), travels the same encrypted call connection directly to your peer, and is never received or stored by our servers.
- We do not collect messages outside the Service, microphone or camera input outside an active call, precise/GPS location, or hardware identifiers such as IMEI. Our coordinator does not receive the Advertising ID; Google's ad SDK receives identifiers and the other SDK data described above on free accounts. We do not retain contacts that did not match a MangoPort user.
3. Premium local call recording
A Premium user may choose to record the remote audio and video received during a live call. Recording happens only on that user's device, into the folder that user selects, including removable storage when Android exposes it. The other participant must first give directional consent and sees This call is being recorded. throughout every recorded call. Consent may be revoked in Settings; revocation stops that recording direction without ending the call.
Recordings are user-visible H.264/AAC MP4 files in five-minute segments under MangoPort/Videos/<contact>/. The recorder chooses a total storage limit. MangoPort deletes its oldest indexed recording files when needed for that limit or real free space and removes empty contact folders; it never deletes unrelated files. If sufficient space still cannot be reserved, it does not start the next segment. Files on shared or removable storage may be visible to other people or applications that can access that storage. Deleting the MangoPort account removes server-side consent metadata but does not delete recording files already stored on a user's device; the device owner controls those files.
4. How we use the information
- To authenticate you, match contacts, and let you reach a paired peer.
- To select a relay in a country the participants can reach.
- To verify your subscription with Google Play and grant Premium features.
- To remember and enforce directional recording consent and to authorize the continuous disclosure for each recorded call.
- To diagnose technical problems (logs are kept < 30 days).
5. Sharing
Your email and display name are shown to contacts you deliberately connect with. Google provides authentication (Identity), payment (Billing), and — on free accounts only — advertising (AdMob). As described above, the Mobile Ads SDK shares its automatically collected data with Google. We do not sell personal information or independently send account, contact, subscription, or call information to advertisers.
6. Data retention & deletion
You can delete your account from inside the app (Settings → Account → Delete account); it is removed immediately and you are signed out. Deletion permanently removes your user record, your contacts, the connections you participate in, and server-side recording consent. Locally recorded MP4 files remain under the device owner's control and must be deleted from that storage separately. To request deletion outside the app, email us at ufamax.apps@gmail.com.
7. International transfers
Our coordinator and relay servers are located in Europe. By using the Service you consent to your data being processed there.
8. Children
The Service is not directed to children under 13. We do not knowingly collect data from children.
9. Changes to this policy
We may update this policy. The “Last updated” date at the top reflects the latest revision. Continued use of the Service after a change constitutes acceptance.
10. Contact
Questions or requests: ufamax.apps@gmail.com.
IP geolocation data provided by DB-IP.com under CC BY 4.0.