Resolve Vault
Home Downloads Docs Forum Help Buy
Privacy Policy Terms of Service EULA Disclaimer Refund Policy Third-Party Notices

Privacy Policy

Effective date: 2026-02-21 · Last updated: 2026-09-27

This Privacy Policy explains how Hugo Miguel Carvalho Soares (“we”, “us”, “our”) collects, uses, stores, and shares personal data when you use Resolve Vault (the “App”).

1. Data Controller

  • Controller: Hugo Miguel Carvalho Soares
  • Address: Portugal (full address available upon request)
  • Email: info@resolvevault.app

2. Data We Process

We split this into two parts, because it matters: what actually reaches our server, and what stays only on your own device.

Data that reaches our server (api.resolvevault.app)

  • Your email address, associated with your license.
  • License status data: license key, expiry date, enabled features.
  • A one-way hashed device identifier (SHA-256), used only to enforce license seat limits. We receive only this hash — never your raw hardware ID, MAC address, or hostname.

That's it. We do not receive your files, your backup names, your Google Drive/Dropbox account details, your app settings, or any usage/analytics data.

Data that stays only on your device

The following is stored locally by the App and is never transmitted to us:

  • App configuration: backup paths, schedule preferences, which cloud providers you've connected.
  • Cloud integration credentials: your Google/Dropbox account email and OAuth tokens, stored locally so the App can talk directly to Google/Dropbox on your behalf. We never see or receive these tokens.
  • Backup metadata: local file names, local file paths, timestamps, sizes, and which cloud provider each backup was uploaded to.
  • Diagnostic logs: technical logs written to your device for troubleshooting, automatically capped and rotated (older entries are overwritten, never kept indefinitely).

We have no automated way to access any of this. The only way we ever see log data is if you choose to send it to us yourself for support.

Apart from the referral cookie described below, we do not use analytics, telemetry, or usage tracking of any kind. We do not collect or have access to your backup content (your .drp project files) — cloud sync happens directly between your device and Google Drive/Dropbox, never through our servers.

Referral tracking on our website

Our website loads a referral script from Lemon Squeezy. If you arrive through a link shared by one of our affiliate partners, it stores a cookie in your browser for up to 30 days so that partner can be credited with a commission if you buy. It is used only for affiliate referrals, not for analytics or advertising, and it does not change the price you pay. You can block or delete it in your browser settings at any time.

3. Why We Process Data (Purposes)

  • Provide licensing and anti-fraud controls.
  • Enable backup automation and cloud backup workflows.
  • Provide support, diagnostics, and service reliability.
  • Meet legal obligations.

4. Legal Bases (GDPR/UK GDPR)

Where applicable, we process data under one or more of:

  • Contract performance (Art. 6(1)(b)).
  • Legitimate interests (Art. 6(1)(f)) for fraud prevention, security, and reliability.
  • Legal obligation (Art. 6(1)(c)).
  • Consent (Art. 6(1)(a)) for optional integrations where required.

5. Data Retention

  • License/account records on our server (email, license status, hashed device ID): kept up to 7 years for tax/accounting and legal obligations.
  • Diagnostic logs on your device: capped automatically (current log plus a few rotated backups, a few MB total) — older entries are overwritten, not kept indefinitely. If you send us a log file for support, we keep that copy only as long as needed to resolve your issue.
  • App settings and cloud credentials on your device: retained until you disconnect the integration or uninstall the App.

6. Sharing and Processors

We may share data with:

  • Licensing/hosting providers.
  • Payment/checkout providers used to fulfil your purchase (Lemon Squeezy, acting as merchant of record).
  • Cloud providers used by your chosen integrations (for example Google APIs).
  • Legal/regulatory authorities when required by law.

We do not sell personal data.

7. Google User Data (Google Drive)

Google Drive is an optional integration. If you connect it, Resolve Vault asks Google for your permission through the standard Google sign-in and consent screen, and uses the access you grant only to provide the backup features described below.

What the App accesses and why

  • Your Google account email address — shown in the App so you can see which account is connected.
  • Google Drive — to create a “Resolve Vault” folder, upload the backup files (.drp project exports and database backups) that you ask the App to back up, list those backups so you can see them in the App, delete a backup when you choose to delete it, and read your Drive storage quota to show available space. If you choose a custom destination, the App lists the names of your Drive folders so you can pick one.

How Google user data is handled

  • Everything happens directly between your device and Google. Your Google data and your backup files are not sent to, stored on, or visible to our servers.
  • Your Google sign-in tokens are stored only on your device, in a protected credentials file with restricted permissions.
  • We do not read the contents of your files, other than uploading the backup files you chose to back up.
  • We do not sell Google user data, use it for advertising, or share it with third parties. No person at Resolve Vault reads your Google data.
  • We do not use Google user data to develop, improve, or train artificial intelligence or machine-learning models.

Limited Use disclosure

Resolve Vault’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Revoking access and deleting data

  • In the App, open Cloud Manager and choose Remove Account for Google Drive. This disconnects the account and deletes the sign-in tokens stored on your device.
  • You can also revoke access at any time in your Google Account under Security → Third-party apps & services (Resolve Vault).
  • Backup files already uploaded stay in your own Google Drive until you delete them there or from within the App.

8. International Transfers

If data is transferred internationally, we use lawful safeguards (for example SCCs) where required.

9. Security Measures

We use technical and organizational measures including:

  • Signature verification for licenses.
  • Access controls on backend services.
  • Transport security (HTTPS/TLS) in production.
  • Runtime storage separation and limited credential exposure.

No system is perfectly secure; users should also secure endpoints and backups.

10. Your Rights

Where applicable, you may have rights to access, correct, erase, restrict, object, and data portability.

Contact: info@resolvevault.app

If unresolved, you may lodge a complaint with your local data protection authority.

11. Children

The App is not directed to children under 16.

12. Changes to This Policy

We may update this Policy. Material changes will be communicated through in-app notice and website/legal page updates.

13. Contact

For privacy requests or questions:

  • Email: info@resolvevault.app
  • Postal address: Portugal (full address available upon request)
Copyright Resolve Vault.
Home Buy