Privacy Policy

Notification Box — Android application

Effective date: 12 June 2026  •  Last updated: 12 June 2026
Application ID: com.rhs.notificationbox  •  Developer: Rahul Saliya

The short version. Notification Box stores your notification history on your device only. The contents of your notifications — titles, messages, images, OTP codes, sender names — are never uploaded to us or to any third party. We use Google Firebase for anonymous crash and usage diagnostics, and (unless you remove ads) third-party advertising networks, neither of which receive your notification content.

1. Overview

Notification Box ("the app", "we", "us") is an Android app that captures, organizes, and lets you browse and manage the notifications posted by other apps on your device. This policy explains what information the app accesses, where it is stored, and the limited cases in which information leaves your device.

We have designed the app to be local-first: the sensitive content it handles — your notifications — never leaves your phone through the app.

2. Notification data

To do its job, the app uses Android's Notification Listener permission (BIND_NOTIFICATION_LISTENER_SERVICE). You must grant this manually in your system settings; the app cannot read notifications until you do, and you can revoke it at any time.

When a notification is posted, the app may read and store locally:

This data stays on your device. The app does not contain any server, account system, or backend. It does not transmit your notification contents, OTP codes, message text, sender names, images, or rule keywords to us or to any third party.

3. Data stored on your device

The following are stored locally in the app's private storage:

This data is held in the app's sandboxed storage and is removed when you clear the app's data or uninstall the app.

4. Analytics & crash reporting

The app uses Google Firebase to understand stability and feature usage in aggregate:

We never send personal or notification content to Firebase. Analytics parameters carry only things like screen names, package names, feature/enum names, counts, booleans, and durations — never notification titles, message bodies, OTP codes, rule keywords, or any message content.

Firebase processes this data on Google's infrastructure. See Google's Firebase privacy and Google Privacy Policy.

5. Advertising

Unless you purchase ad removal, the app shows ads through AppLovin MAX mediation. MAX may serve ads from, and share an advertising identifier and standard ad-request data with, the following mediated networks:

AppLovin Google AdMob / Ad Manager Meta Audience Network Unity Ads Liftoff Monetize (Vungle) Chartboost

These networks may collect and use your device's advertising ID, coarse device and network information, and ad-interaction data to deliver and measure ads, including personalized ads where permitted. They act as independent controllers of that data under their own privacy policies.

Consent (GDPR / regulated regions)

In regions that require it, the app presents Google's User Messaging Platform (UMP) consent form (IAB TCF v2 / GDPR). Your choice is stored on the device and passed to the ad networks; ad personalization is gated on it. You can change your choice later from the app where the consent option is offered.

Relevant policies: AppLovin, Google, Meta, Unity, Liftoff/Vungle, Chartboost.

If you remove ads (see below), the app stops requesting ads and no advertising data is collected through it.

6. Purchases

The app offers an in-app purchase to remove ads, handled by Google Play Billing. Payment is processed entirely by Google Play — we never see or store your payment-card details. We receive only the purchase / entitlement state needed to unlock the ad-free experience, which is stored on your device. See the Google Play Terms.

7. Permissions

PermissionWhy it is used
Notification access (listener)Core function — to read and store the notifications you choose to keep. Granted manually; revocable anytime.
Post notificationsTo show the app's own notifications (e.g. scheduled reminders).
BiometricOptional app lock that protects your notification history with your device biometrics. Authentication is handled by the system; no biometric data reaches the app.
Exact alarms / Boot completedTo re-arm your scheduled notifications, including after a restart.
Ignore battery optimizationsOptional — helps the listener keep running reliably in the background.
Internet / Network stateRequired by Firebase, ads, and billing. Not used to upload your notification content.
BillingTo offer the ad-removal in-app purchase.

8. How data is shared

We do not sell your personal data. Information leaves your device only as described above:

Your notification contents are never part of any of these transfers.

9. Retention & deletion

10. Children

The app is not directed to children under 13 (or the equivalent minimum age in your jurisdiction) and we do not knowingly collect personal information from them.

11. Your rights

Depending on your jurisdiction (e.g. GDPR in the EEA/UK, CCPA/CPRA in California), you may have rights to access, correct, delete, or restrict processing of your personal data, and to withdraw advertising consent. Because your notification data lives only on your device, you can exercise deletion directly by removing it in the app or uninstalling. For requests relating to diagnostics or advertising data, contact us using the details below and we will help direct your request to the relevant processor.

12. Changes to this policy

We may update this policy as the app evolves. Material changes will be reflected by an updated "Last updated" date. Continued use of the app after changes take effect constitutes acceptance of the revised policy.

13. Contact

Questions or requests about this policy or your data:
Email: support@softplex.io