# PDF Cepte Privacy Policy Last updated: August 8, 2026 PDF Cepte processes documents locally whenever possible. Local PDF tools do not upload your documents, photos, OCR text, output files, or file contents to a server. Document scanning works offline with the device camera or gallery and requires no separate scanner component installation. If advanced scanning is already supported on the device, PDF Cepte uses it automatically; otherwise, it falls back to the device camera or gallery. Scanned pages and saved outputs stay on your device and are not uploaded to a PDF Cepte server. The app may keep a local recent-operations history on your device, including operation type, display name, output reference, date, status, output size, and whether the operation was online or offline. This history stays on your device and can be cleared in the app. If you use the in-app contact form, the app sends the name, email address, message, and app identifier you enter to the configured support endpoint over HTTPS. The contact form does not attach PDF files, photos, OCR text, document URIs, or document contents. PDF Cepte may show an interstitial ad only before an output-producing action. It does not show banner ads, and ads are not intended to appear during menu navigation or file picking. The app uses Google Mobile Ads SDK and Google User Messaging Platform where configured. These Google SDKs may collect or process data such as device identifiers, advertising identifiers, app interactions, diagnostics, approximate location derived from network information, and other data described by Google's policies. Usage analytics is disabled by default. If you explicitly enable it in the app, PDF Cepte uses Google Firebase Analytics to send anonymous app-interaction events about quota and Pro screens. These events do not include file names, document contents, OCR text, contact messages, or advertising identifiers. You can disable usage analytics at any time in Settings. Data may be shared with service providers only for the features you use: Google for ads and consent services, Cloudflare or equivalent infrastructure for support endpoint hosting and rate limiting, and Resend or equivalent email delivery service for support messages. Local document contents are not intentionally shared for local PDF tools. The app rejects non-HTTPS contact endpoints. Broad storage access is not requested, and Android system pickers are used for file selection and saving. The app should not log document contents, OCR text, contact messages, or secret values. ## Data deletion and retention You can immediately clear the local recent-operations history from the Recent screen in the app. The contact Worker does not keep the name, email address, or message after forwarding the request. A one-way hash derived from the request IP is kept only for the configured abuse-prevention window; the current production window is 10 minutes, after which the key expires automatically. Support correspondence delivered to the publisher's mailbox is kept for no more than 90 days after the final response unless a longer period is required for security, fraud prevention, or a legal obligation. To request earlier deletion of your name, email address, and support message, use the in-app contact form or the publisher email shown on the Google Play listing. Use the subject "PDF Cepte Data Deletion" and identify the email address used for the original request. After reasonable identity verification, publisher-controlled copies are deleted within 30 days and deletion requests are forwarded to relevant processors where applicable. Processor-side security or delivery logs may follow the processor's own legally permitted retention period. For privacy or support questions, use the same in-app contact form or publisher email shown on the Google Play listing.