ZivoFlow policy
Privacy Notice
This notice explains how ZivoFlow handles information when you use the ZivoFlow Android app and public website.
Last updated: July 26, 2026
Who we are
ZivoFlow is an independently developed application and service operated by an independent developer under the ZivoFlow name. This notice applies to the ZivoFlow Android app and the public website.
Current public browsing, local library, aggregate-counter, and content-report features do not require an end-user account or sign-in.
Information kept on your device
The app keeps its library, downloaded media, locally created stickers or packs, collections, and pending delivery records on your device. ZivoFlow does not provide its own account-based cloud synchronization or restoration for this local library.
Depending on your device and Android backup settings, eligible app data may be included in Android system backup or device-transfer features. Those features are controlled by your device and Google/Android settings, not by a ZivoFlow user account.
Anonymous aggregate activity data
When you view, download, share, like, or unlike a public sticker or pack, the app may send the content slug, action type, and a randomly generated client event ID to the API. The API uses this information to maintain aggregate content counters and prevent duplicate retries.
Client event IDs are used to prevent duplicate processing, and these requests update aggregate content counters. They are not tied to an end-user account, advertising ID, hardware identifier, Firebase identifier, or device ID.
Content reports
You can report a public sticker or pack from the Android app. A report can include the selected content, a report reason, optional details that you enter, a client report ID, and a random installation ID generated by the app.
The API stores a SHA-256 hash of the installation ID rather than the raw installation ID, uses it for report-rate limits and idempotency, and is configured to remove stored reports after 12 months.
Service providers and third-party services
ZivoFlow uses service providers to host the public website, API, database, and public media. These include Vercel for the website, Railway for the API and PostgreSQL hosting, Backblaze B2 for media object storage, and Cloudflare for public media delivery through cdn.zivoflow.com. Those providers may process ordinary technical request information needed to deliver, secure, and operate their services.
Firebase Authentication protects administrative access. The current public Android application does not require Firebase sign-in. The current Android release source does not include advertising, third-party analytics, or crash-reporting SDK dependencies.
If you choose to add a sticker pack to WhatsApp, that handoff is initiated by you and WhatsApp handles the receiving service under its own terms and privacy practices. Google Play handles app distribution under Google's policies.
Retention, choices, and contact
You can remove local ZivoFlow data through your device's app-storage controls or by uninstalling the app. Because the current public app does not provide end-user accounts or server-side library synchronization, there is no account-deletion process for this release.
Aggregate counters remain part of public catalog records. We have not set a separate public retention period in this source for ordinary infrastructure logs; provider retention may vary. We may update this notice when verified product behavior changes.
For privacy or terms questions, contact us at kevinchen198802@gmail.com.