LEGAL / PRIVACY
Privacy Policy
Effective August 31, 2026
The short version: Your private Contrite information stays on your device. Brand-F does not collect or receive your examination, confession, notes, State of Life, or personalization data. Because we never possess it, we cannot read it, sell it, or share it.
Contrite is developed and published by Brand-F. Contrite is designed around a simple privacy principle: information related to your examination of conscience and confession should remain private and under your control.
Information Stored on Your Device
Contrite may process and store information you enter or select while using the app, including:
- Examination of conscience selections
- Counts or notes associated with examination items
- Information used to prepare your confession
- Your last confession date
- Your State of Life and selected responsibilities used to personalize the examination
- App security settings
- Reminder and notification preferences
- Other app preferences and settings
This information is processed locally by the Contrite app and stored on your device. Brand-F does not collect, receive, upload, or have access to your confession-related information or personalization profile. There is no Brand-F server to which this private information is transmitted.
Local Storage and Encryption
Sensitive information, including your active confession session and personalization profile, is stored in an encrypted local vault on your device. Contrite uses device-supported cryptographic protections, including Android Keystore and authenticated encryption, to protect private information stored by the app.
Contrite disables Android cloud backup and device-transfer backup for its private app data. Private confession information is therefore not intentionally included in Android backup or device migration. Because this information remains on your device, Brand-F does not possess a copy of it and cannot view or retrieve it.
No security measure can provide absolute protection against a compromised, rooted, or otherwise malicious device.
No Accounts or Cloud Storage
Contrite does not require or provide a Brand-F user account. There is no Contrite cloud account, synchronization service, server-side confession database, or Brand-F storage service for your private information.
Your examination selections, confession notes, confession preparation information, State of Life, responsibilities, and other private vault information are not collected by Brand-F. Because Brand-F never receives this information, Brand-F cannot access, recover, restore, disclose, sell, or remotely delete it.
Analytics and Tracking
Contrite does not use:
- Advertising SDKs
- Behavioral advertising
- Analytics services
- User tracking
- Telemetry services
- Crash-reporting services
Contrite does not transmit your app activity to Brand-F for analytics or tracking. Brand-F does not collect your confession-related information and therefore cannot sell, share, profile, or monetize that information.
Google Play Purchases
Contrite may use Google Play Billing for purchases or subscriptions offered through the app. Google Play processes billing transactions. Contrite may receive limited billing information necessary to determine purchase or entitlement status, such as product identifiers, purchase status, purchase tokens, acknowledgement status, and pricing information.
This billing information is separate from the private Contrite vault. Your examination selections, confession notes, confession script, State of Life, responsibilities, last confession date, and other private vault information are not sent to Brand-F or Google Play as part of the billing process.
Brand-F does not receive your payment-card information. Payment processing and information associated with your Google Play account are handled by Google according to Google's own terms and privacy practices.
Device Authentication
Contrite may use Android's device authentication or biometric authentication features to protect access to private information. Authentication is performed by Android using the system authentication interface. Contrite does not receive or store your fingerprint, facial recognition data, device unlock pattern, or other biometric data. Brand-F does not receive biometric or device-authentication information.
If you choose to use a Contrite PIN, the PIN itself is not stored in readable form and is not transmitted to Brand-F.
Notifications and Reminders
Contrite may request permission to display local notifications for reminders you configure. Reminder scheduling is performed locally on your device. Contrite does not use a Brand-F server to send reminder notifications, and your reminder configuration is not transmitted to or collected by Brand-F.
Quiet Mode
Contrite's Quiet Mode may use Android's notification policy or Do Not Disturb functionality to reduce interruptions while you are using sensitive portions of the app. Contrite does not read, collect, store, or transmit the contents of notifications from other applications. Brand-F does not receive information about your other applications' notifications.
Android controls the permissions required for this functionality, and you may revoke those permissions through your device settings.
Screenshots and Screen Protection
Contrite uses Android screen-security features on sensitive portions of the app to reduce the risk of private information appearing in screenshots, screen recordings, or recent-app previews. These protections operate locally on your device. Brand-F does not receive screenshots, screen recordings, or information about what is displayed within Contrite.
These protections depend on Android and the device manufacturer and cannot protect against every possible method of observing or capturing information displayed on your device.
Data Retention and Deletion
Your private information is retained locally on your device only as needed for the functions you choose to use. Contrite provides functionality to destroy private confession-session information. When private information is destroyed, Contrite deletes the relevant encryption key material and encrypted app data so that the app can no longer decrypt that information.
Contrite may also provide an option to destroy all private data stored in its encrypted vault. Because Brand-F never receives or stores your private vault information, there is no copy of that information on Brand-F systems that needs to be deleted. Uninstalling Contrite or clearing its app data through Android removes locally stored Contrite data.
Due to the characteristics of flash storage, operating systems, and physical storage hardware, deletion should not be interpreted as a guarantee of forensic physical-media erasure.
Data Sharing
Brand-F does not collect or receive your confession content, examination selections, personalization profile, notes, last confession date, or other private vault information. Because Brand-F does not possess this information, it cannot share, sell, disclose, or use it for advertising, analytics, profiling, or any other purpose.
Contrite also does not transmit this private information to third parties. Limited billing information necessary to process or verify Google Play purchases may be processed through Google Play as described above. This billing information does not include the contents of your private Contrite vault.
Internet Connectivity
Contrite's core examination, confession preparation, personalization, security, and private-storage functions operate locally on your device. Network communication may occur when interacting with Google Play services for billing or other operating-system/store functionality.
Your private confession information, examination selections, notes, State of Life, responsibilities, and personalization data are not included in those communications and are not transmitted to Brand-F.
Contrite Website
The Contrite promotional website at contrite.brandf.app does not load Google Analytics, advertising scripts, tracking pixels, or behavioral analytics scripts. Brand-F does not use this site to connect website visits to your private Contrite app data.
Like any website, ordinary network and hosting infrastructure may necessarily process technical request information, such as an IP address, browser information, requested URL, and request timing, in order to deliver the site, provide security, and maintain service. That infrastructure data does not include the contents of your private Contrite vault.
Changes to This Privacy Policy
Brand-F may update this Privacy Policy when Contrite's functionality or privacy practices change. When material changes are made, the effective date at the top of this policy will be updated.
Contact
For questions about this Privacy Policy or Contrite's privacy practices, contact Brand-F at brandf@brandf.app or visit brandf.app.