🔒 Privacy Policy

Your Privacy,
Our Commitment

Astola Toolkit respects your privacy and aims to be transparent about how information is collected, used, processed, and protected when you use our application and services.

Effective: April 23, 2026
Last Updated: April 23, 2026
Ages 17+
Data Sold?
Never Sold
📊
Analytics
Firebase Analytics
🛡️
Status Saver
100% Local
🗑️
Account Deletion
In-App Automated
01

Information You Provide

Depending on the features you use, Astola Toolkit processes information that you voluntarily submit or provide while interacting with the application.

Account & Profile Info: Display name, email address, profile photo URL, or authentication identifiers provided during Google Sign-In or guest account initialization.
User-Submitted Tools & Links: Titles, descriptions, category choices, and URLs submitted via the tool contribution feature.
Referral Activity: Unique user referral codes, referrer identifiers, and referred account links.
Support & Problem Reports: Problem descriptions, bug reports, or communications sent through the in-app support sheet.
Price Alert Thresholds: Custom target prices and notification preferences configured for gold and silver price tracking.
Users should avoid submitting unnecessary sensitive personal information (such as financial card details or official identity numbers) in open text fields or contribution forms.
02

Account & Authentication Information

Astola Toolkit uses Firebase Authentication to manage user accounts securely across authentication providers.

Google Sign-In: When signing in with Google, we process your unique User ID (UID), email address, display name, and avatar image URL provided by Google.
Guest / Anonymous Accounts: The app supports anonymous guest access so you can explore utility features without creating a account.
Guest Recoverability Warning: Guest accounts have limited recoverability. If you uninstall the app, clear application data, or lose access before linking your guest profile to Google Sign-In, associated account points and data will become permanently inaccessible.
03

Device & Technical Information

Astola Toolkit and integrated service SDKs automatically process limited technical telemetry to maintain security, optimize app performance, deliver ads, and monitor stability.

Device Hardware & OS: Device model, brand, operating system version, and system language.
App Telemetry: App version, build number, session start times, and screen navigation events.
Network & Location: Coarse IP-derived country/region level location and general network connectivity status.
Advertising Identifiers: Google Advertising ID (AAID/GAID) where permitted by operating system settings and user privacy consent choices.
04

Firebase Services

Astola Toolkit relies on Google Firebase infrastructure. Specifically, our production application utilizes the following enabled Firebase SDKs:

Firebase Authentication: Manages secure user login states, anonymous sessions, and Google account tokens.
Cloud Firestore: Scalable cloud database storing user profiles, wallet points, submitted tools, notifications, and gold price alert settings.
Firebase Cloud Messaging (FCM): Delivers push notifications for tool updates, announcement alerts, and target price notifications.
Firebase Remote Config: Manages dynamic app configurations, policy URLs, and feature flags without requiring app updates.
Firebase Analytics: Tracks anonymized feature usage and event metrics to guide app improvements.
Firebase Cloud Storage: Stores application image assets and user-uploaded media files securely.
Notice: Firebase Crashlytics is NOT enabled in the production application.
05

Advertising

Astola Toolkit displays advertisements through Google AdMob (including Banner, Interstitial, Native, and Rewarded Video ads) to support free app services.

Ad Data Processing: AdMob may process advertising identifiers (AAID), device info, coarse IP location, ad view metrics, and interaction data to serve contextual or personalized ads.
User Privacy Consent (UMP): In regions requiring privacy consent (such as the EEA and UK under GDPR), Google User Messaging Platform (UMP) consent choices are presented to allow users to manage ad personalization preferences.
Independent Privacy Policies: AdMob operates independently according to Google's Privacy Policy. Astola Toolkit does not directly control third-party ad server processing outside the app.
Google AdMob UMP Consent Rewarded Video Ads Native Ads
06

Analytics & Crash Reporting

To maintain application health, understand feature popularity, and diagnose performance bottlenecks, Astola Toolkit uses analytics services.

Firebase Analytics Enabled: We log aggregated events (such as tool views, screen visits, and feature interactions) to improve usability.
No Personal Identity in Analytics: Analytics data is processed in aggregate without attaching real-world personal identities or sensitive user content.
Crash Reporting Disclosure: External third-party crash reporting SDKs (such as Firebase Crashlytics) are not integrated in this app version.
07

Push Notifications

Astola Toolkit uses Firebase Cloud Messaging (FCM) and local notifications to send optional alerts, including gold/silver price alerts, new tool updates, and system announcements.

Token Processing: To deliver notifications to your specific device, a unique FCM registration token is generated and stored in Cloud Firestore.
Permission Management: Push notification permissions can be granted, customized, or revoked at any time via Android system settings or in-app notification toggles in Settings.
08

Wallet & Reward Points

Astola Toolkit maintains an in-app reward points system to engage users and reward tool contributions and referrals.

Processed Data: Current point balances, point transaction history (`wallet_transactions`), completed earning activities, referral rewards, tool submission rewards, and rewarded ad completion logs.
Purpose: Point records are stored in Firestore to manage user rewards, verify transaction validity, prevent duplicate rewards, and prevent fraudulent abuse.
Not a Financial Instrument: In-app points carry no real-world monetary currency value and do not constitute a financial bank account, credit balance, or stored-value currency.
09

Referral System

When participating in the Astola Toolkit referral program, the application processes referral metrics to credit points fairly.

Referral Data: Unique referral codes, referrer user UID, referred account UID, referral timestamps, pending/completed status, and reward history.
Abuse Prevention: Referral linkage data is validated in Firestore to verify legitimate user invites and block duplicate or self-referral attempts.
10

Subscription & Purchase Information

When purchasing premium subscriptions (Astola Premium), all financial transactions are processed securely through the Google Play Store Billing API.

No Payment Card Storage: Astola Toolkit does NOT collect, handle, process, or store credit card numbers, banking details, or payment card security codes.
Entitlement Verification: Astola Toolkit receives purchase verification tokens, product IDs, subscription active status, and expiration dates to unlock premium ad-free features.
11

e-Challan Feature

The e-Challan lookup feature allows users to query traffic violation records convenient from publicly available portals.

Transmission & API Processing: Search queries (such as vehicle registration numbers) entered by the user are transmitted to our secure backend API service to fetch live violation results from official traffic portals.
Data Handling: Vehicle query parameters are processed to complete the search request. Search results are presented to the user for informational convenience.
No Government Ownership: Astola Toolkit does not alter, generate, or own official traffic fine records. Information should be verified directly with issuing traffic authorities.
12

SIM Info & Network Finder

The SIM Info and Network Finder feature provides general, publicly available mobile network operator lookup utility.

Public Network Data Only: Search queries are processed via external APIs to return public mobile operator codes and network provider names only.
No Government or Personal Data: This feature does NOT access PTA, NADRA, or telecom owner databases. It does NOT retrieve SIM owner names, CNIC numbers, addresses, or private personal identities.
No Phone Number Mining: Search queries entered in this feature are NOT sold, rented, or harvested for commercial contact lists.
13

Gold Prices & Alerts

Astola Toolkit provides live gold and silver rate tracking along with price target notification alerts.

Alert Storage: User-selected target price thresholds, alert status (running, reached, paused), and metal type choices are stored in Firestore under your account profile.
Market Data Sources: Commodity market prices are sourced from public financial feeds and market providers. Rates are provided for informational tracking only.
14

WhatsApp Status Saver

The WhatsApp Status Saver feature helps users view and save temporary status media on their Android devices.

100% Local Device Processing: All status media files (photos, images, videos) are accessed, viewed, and saved strictly on your local device storage.
Zero Server Uploads: Status media is NEVER uploaded, transmitted, copied, or backed up to Astola Toolkit servers or any third-party server.
Permissions & Non-Affiliation: Requires standard Android storage/Media Store permissions. Astola Toolkit is an independent utility and is NOT affiliated with WhatsApp or Meta.
Your media files remain entirely private on your device. We never upload status photos or videos to cloud servers.
15

Temporary Email

The Temporary Email feature provides disposable email addresses for temporary online registrations to reduce main inbox spam.

External Service API: Temporary email addresses, incoming messages, and attachment headers are fetched and processed via external disposable email service providers.
No Permanent Storage by Astola: Astola Toolkit does not store temporary email contents or message bodies on our backend servers.
Unsecure Channel Warning: Temporary email inboxes are public and unencrypted. Do NOT use temporary email for confidential, financial, banking, or sensitive accounts.
16

In-App Browser & Cookies

Astola Toolkit includes an integrated in-app browser powered by webview technology for opening web links safely within the application.

External Site Operations: Third-party websites accessed inside the in-app browser operate under their own independent privacy policies, terms, and cookie rules.
Zero Browser History Tracking: Astola Toolkit does NOT inspect, read, save, or transmit your web browsing history, typed passwords, or cookie data.
Clear Cache & Cookies Tool: Using the built-in browser settings drawer to clear cache and cookies deletes local web session data stored inside the app's internal webview. It does not affect your phone's default Chrome/System browser.
17

User-Generated Content

Users can submit links and utility tools through the "Add Tool" contribution screen in Astola Toolkit.

Storage & Moderation: Submitted tool metadata (title, URL, description, category, submitter UID) is stored in Cloud Firestore and reviewed by moderators before public display.
Content Guidelines: Users must not submit malicious URLs, illegal links, or personal information belonging to third parties without authorization.
18

Third-Party Services

Astola Toolkit integrates trusted third-party SDKs and service providers to deliver core app functionality:

Google Firebase: Authentication, Firestore Database, Cloud Messaging, Remote Config, Storage, and Analytics. (Google Privacy Policy)
Google AdMob & Play Services: Ad serving, UMP consent framework, and Google Play billing verification.
Disposable Email Providers: Powering temporary disposable email inbox generation.
External Financial & Utility APIs: Supplying gold market rates, e-Challan records, and network operator information.
19

How Information Is Used

Information processed through Astola Toolkit is used strictly for legitimate operational purposes:

To provide, maintain, and deliver all core utility features of the application.
To authenticate user account sessions and manage account security.
To operate the wallet rewards system, track points balances, and prevent fraudulent duplicate claims.
To send requested push notifications, gold price alerts, and system updates.
To verify premium subscription access entitlements via Google Play.
To analyze aggregate performance trends and respond to user problem reports.
20

Data Sharing

We handle user data responsibly and limit data access strictly to necessary technical service providers.

No Sale of Data: Astola Toolkit does NOT sell, rent, or trade your personal information to third parties for monetary compensation.
Service Providers: Information is made available to infrastructure providers (Google Firebase, Google AdMob, payment billing gateways) solely to execute app operations.
Legal Compliance: We may disclose information if required by applicable law, court order, or valid legal process.
21

Data Retention

We retain personal and technical data only for as long as necessary to fulfill the operational purposes set forth in this policy.

Account Profiles & Wallet Data: Retained while your account remains active.
Analytics Data: Aggregated Firebase analytics events are retained up to standard provider retention limits (typically up to 14 months).
Account Deletion Purge: When an account deletion is executed by a user, account records in Firestore and Firebase Auth are deleted immediately.
22

Data Security

Astola Toolkit employs industry-standard administrative, technical, and physical safeguards designed to protect user information.

Encrypted Transmission: Network communications between the app and cloud backend servers utilize encrypted HTTPS/TLS protocols.
Cloud Security Rules: Firebase Firestore security rules enforce strict authentication and document-level permission access control.
No Absolute Security Guarantee: While we enforce robust security controls, no internet transmission or electronic cloud storage system is 100% secure. Users are responsible for keeping their devices secure.
23

User Choices & Rights

Astola Toolkit empowers users with direct controls over their personal information and privacy choices.

Notification Preferences: Toggle push notification preferences anytime inside App Settings or system notification settings.
Advertising Consent Choices: Reset advertising preferences or update UMP consent choices via device operating system privacy controls.
Self-Service Account Deletion: You can delete your account directly inside the app at any time by opening Settings > Delete Account.
Executing "Delete Account" inside Settings immediately deletes your Cloud Firestore user profile, saved items, wallet transaction logs, notification subcollections, and Firebase Auth account.
24

Children's Privacy

Astola Toolkit is designated for users aged 17 and older (17+) in alignment with our Google Play content rating, target audience declaration, Terms of Service, and Disclaimer policy.

Astola Toolkit does not knowingly solicit or collect personal information from children under the age of 17.
If we become aware that a child under 17 has provided us with personal information, we will take immediate steps to delete such data from our systems.
25

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in app features, legal requirements, or operational practices.

When updates are published, the revised policy will be posted on this page with an updated "Last Updated" date.
Continued use of Astola Toolkit after policy updates signifies acceptance of the revised Privacy Policy.
26

Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please reach out to us:

In-App Support
Settings > Report a Problem