Aegis Sentinel Lite Privacy Policy
Last updated: 2026-08-01
Aegis Sentinel Lite is a local device-security helper. It does not collect,
transmit, sell, or share user data. There are no ads, analytics SDKs, accounts,
or cloud services in the Play Store build.
What the app accesses, and why
- Installed apps and their granted permissions. Used on-device for
the searchable app inventory, permission-group filters, local change
tracking, and risky-combination audit. Nothing about other apps is
transmitted anywhere.
- Basic device signals. Root indicators, debuggable build status,
signing certificate status, and open Wi-Fi status on supported Android
versions. Used only for the device health summary.
- App-open timestamps. Stored locally in private app storage for a
small self-monitoring anomaly check. Never transmitted.
- Local scan history. The timestamp and findings from recent scans,
capped at 30 entries.
- Last permission-inventory baseline. Stored locally so Aegis can
show apps or granted permissions that changed since the previous audit.
- Local vault text. Text you choose to encrypt is stored in private
app storage, sealed with Android Keystore.
- Exported report files. Created only if you export a report through
Android's share sheet.
Background protection
Background protection is optional and off by default. If enabled, Aegis
schedules periodic local checks through Android WorkManager at the interval
chosen by the user. It notifies only when a scheduled scan finds something new
compared with the last known baseline. Turning it off cancels scheduled work
immediately.
What the app does not do
- No internet permission is requested in the Play Store build.
- No scan result leaves the device.
- No app inventory is sold, shared, used for ads, or used for analytics.
- No anti-uninstall behavior, hidden persistence, or always-running service.
- No other app is removed, blocked, modified, or controlled by Aegis.
Permissions requested
| Permission | Why |
QUERY_ALL_PACKAGES | Required for the core searchable installed-app inventory and permission audit. |
ACCESS_WIFI_STATE | Used only to check whether the current Wi-Fi connection is open or encrypted. |
POST_NOTIFICATIONS | Only requested when you turn on optional background protection; used solely for local finding alerts. |
User controls
Inside Privacy controls, users can delete scan history, exported reports,
background-check state, the permission-inventory baseline, and vault data.
Uninstalling the app also deletes app storage. If the vault key is deleted or
the app is uninstalled, sealed vault data cannot be recovered.
Contact
juanordunobusiness@gmail.com