Lifora MeshLink
Privacy Policy.
lifora.appOverview
Lifora ("App") is a privacy-first, off-grid peer-to-peer (P2P) emergency mesh communication and evidence preservation utility developed by Lifora Mesh Systems.
Zero Cloud & Zero Account ArchitectureThe App operates primarily without central servers, corporate databases, or user accounts. All peer-to-peer mesh communication occurs directly between nearby mobile devices using short-range wireless technologies (Bluetooth Low Energy, Wi-Fi Direct, and Peer-to-Peer Mesh Networks).
This Privacy Policy explains how data is handled locally on your device, across mesh relay networks, and how we comply with Google Play Developer Policies.
1. Google Play Data Safety Disclosures
A. Data Collection & Cloud Services
No Account Registration
We DO NOT require registration (no email, phone number, real name, or social login).
Firebase Cloud Messaging (FCM)
Utilized solely for delivering remote push notifications and emergency push broadcasts. FCM processes transient device push tokens (Instance IDs) assigned by Google.
App Diagnostics
Anonymous, non-personally identifiable diagnostic and crash data may be collected via Google Play / Firebase services to ensure app stability. No personal user data or message content is linked.
B. Data Shared / Transmitted Peer-to-Peer (P2P)
Because the App operates as a mesh network, certain data types are shared directly with nearby devices over encrypted local wireless channels:
SOS Emergency Alerts
- Data: Precise GPS Location (Lat/Long), Custom Emergency Notes, Medical Info.
- Purpose: Transmitted as unencrypted local mesh broadcasts so nearby devices or emergency personnel can relay distress signals.
- Security: Sent unencrypted intentionally for maximum reach.
Peer-to-Peer Messages
- Data: Text messages, voice notes.
- Purpose: Sent directly between paired mesh nodes.
- Security: End-to-End Encrypted (AES-GCM-256). Relaying nodes cannot read message contents.
Evidence Packages & Files
- Data: Recorded audio/video, files, and photos.
- Purpose: Sharded across nearby nodes via Reed-Solomon Erasure Coding for tamper-proof preservation.
- Security: Encrypted before sharding; relay nodes cannot reassemble or view fragments.
2. Device Permissions & Usage Rationale
Lifora MeshLink requests access to specific Android device permissions solely to provide core emergency and mesh communication capabilities:
CAMERATo record emergency video evidence into the encrypted Lifora Vault and scan QR codes for secure cryptographic key exchange.
RECORD_AUDIOTo capture voice notes for evidence storage and broadcast live microphone streams during active SOS alerts.
ACCESS_FINE_LOCATION & ACCESS_COARSE_LOCATIONRequired by the Android OS to perform Bluetooth Low Energy (BLE) / Wi-Fi Direct peer discovery and to attach optional GPS coordinates to SOS distress broadcasts.
BLUETOOTH_SCAN, CONNECT, ADVERTISE & NEARBY_WIFI_DEVICESTo discover, establish, and maintain off-grid wireless mesh connections with nearby devices.
READ / WRITE / MANAGE_EXTERNAL_STORAGETo store encrypted evidence packages and quarantine incoming mesh files in Downloads/LiforaVault/.
POST_NOTIFICATIONS & FOREGROUND_SERVICETo keep the background mesh discovery and emergency SOS alert listener active when the screen is locked.
3. Zero-Trust Security & Malware Prevention Policy
To protect users against untrusted or malicious files sent over open peer-to-peer networks:
Automatic Local Quarantine
All incoming mesh files are isolated in Downloads/LiforaVault/.
High-Risk Execution Blocking
Executable and script file types (.apk, .exe, .bat, .sh, .vbs, .js, .dex) are hard blocked from execution within the app to prevent virus or malware distribution.
Security Warning Dialogs
Document and archive files (.pdf, .doc, .zip) display an explicit security warning modal before previewing.
4. Data Retention & Deletion Rights
User Control
Users can delete any local message, evidence recording, or quarantined file at any time directly from the app interface.
Relay Purging
Temporary pass-through packets stored on relay devices expire automatically via Time-To-Live (TTL) limits and are permanently removed from device memory.
No Account Deletion Needed
Because no user accounts or cloud servers exist, uninstalling the app or clearing app data permanently removes all local keys, messages, and settings.
5. Children’s Privacy (COPPA & GDPR Compliance)
Lifora MeshLink does not target children under the age of 13. The App does not collect any personally identifiable information from any user, including children. Because no central registration exists, no child data is ever transmitted to or stored by Lifora Mesh Systems.
6. Security & Cryptography
Ed25519 Signatures
All mesh envelopes are signed with Ed25519 cryptographic keypairs generated locally on the device.
AES-256-GCM Payload Encryption
Confidential payloads use AES-256-GCM authenticated encryption.
Vault Protection
Evidence files use Reed-Solomon Erasure Coding for tamper verification and distributed storage.
7. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Updated versions will be published in the application repository and reflected on the Google Play Store listing page.