This privacy policy governs your use of the Android application Root File & Data Manager (the “Application”, package identifier com.flx_apps.rootdatamanager), a developer and power-user utility created and published by FLX Apps (Felix Heller), flx.es. It explains what the Application does and does not do with information, which device permissions it uses and why, and how the optional in-app purchase is handled. Please read it in full before installing or using the Application.
Root File & Data Manager is an on-device tool for developers, QA engineers, and technically advanced users who need to inspect and edit application data on hardware they own or are authorized to work with. It provides a file browser, a shared-preferences editor, a DataStore editor, an SQLite editor, a hex editor, a per-app logcat viewer, an app inspector, and a self-audit scanner. To reach protected storage it relies on a privileged backend that you provide and control: either device root, or the no-root Shizuku (ADB-shell) backend. The Application never bypasses Android’s security model on its own; without root or Shizuku it cannot access another application’s private data.
All of this functionality is local. The Application operates on files and databases that already exist on your device, presents them to you, and writes back only the changes you make. It does not upload, mirror, back up to a remote service, or otherwise transmit this content anywhere.
For the avoidance of doubt, the Application does not collect or transmit any of the following: your name, e-mail address, phone number, or contacts; your precise or approximate location; your device’s advertising identifier or any persistent hardware identifier; a list of the apps installed on your device; the contents of the files, preferences, databases, or logs you open; your search queries or navigation within the Application; crash logs or diagnostic telemetry; or any behavioural or analytics event. None of this information is sent to us or to any third party, because the Application contains no code that would do so.
Any configuration the Application itself needs (for example your preferences within the app, such as theme or backend selection) is stored locally in the Application’s own private storage on your device. The files and application data you view and edit belong to the target applications and to you; the Application simply provides an interface to them and does not keep its own copy. You remain in full control: you can undo or discard edits, and you can remove all of the Application’s own local settings at any time by clearing its data in Android’s system settings or by uninstalling it. Uninstalling the Application removes its local settings from your device.
The Application requests only the permissions required for its core purpose. Each is used strictly on-device and none of them results in any data being sent to us.
QUERY_ALL_PACKAGES). The Application is, by its nature, a data editor and inspector for the applications installed on your device: its central feature is letting you choose one of your installed apps and browse or edit that app’s data directory, preferences, DataStore and databases. To present that chooser it must be able to enumerate the installed packages on the device. On Android 11 and later, the system’s package-visibility filtering would otherwise hide most third-party (user-installed) applications and show only system components, which would make the tool unable to fulfil its stated function. This permission is used only locally, to build the on-device list of apps you can select. The list of installed packages is never transmitted, logged, or shared — it exists only transiently in memory to render the picker.
moe.shizuku.manager.permission.API_V23). Reading and writing another application’s protected storage requires elevated privileges that only you can grant, either by rooting your device or by running the third-party Shizuku service (which exposes ADB-shell-level access). The Application uses whichever backend you have enabled to perform the file and data operations you request. It does not obtain, escalate, or retain these privileges beyond the scope of the actions you initiate, and it does not use them to contact any network service.
INTERNET, ACCESS_NETWORK_STATE) and billing (com.android.vending.BILLING). These permissions are present solely because of the Google Play Billing library used for the optional one-time Pro purchase (see below). The Application uses network access exclusively for that billing/entitlement check, which is handled by Google’s own SDK. The Application does not use the network to transmit any file, application data, or personal information; if you never purchase Pro, the Application has no reason to use the network at all.
The Application offers an optional one-time in-app purchase (“Pro”) that unlocks additional features. This purchase is processed entirely by Google Play Billing. Google handles the transaction and your payment details; we never see, receive, or store your payment-card information or billing address. From Google, the Application receives only your purchase / entitlement status (that is, whether the Pro unlock has been bought), which it uses locally to enable the Pro features. Google’s processing of your payment is subject to the Google Privacy Policy. If you do not make a purchase, no billing interaction takes place.
We do not share information with third parties, because the Application does not collect information to share. It contains no advertising SDK, no analytics SDK, and no crash-reporting SDK. The only third party involved in the Application’s operation is Google, and only in its role as the operator of Google Play Billing for the optional purchase described above.
We would disclose information only where legally compelled to do so — for example to comply with a subpoena or comparable legal process, or where we believe in good faith that disclosure is necessary to comply with the law or to protect our rights or the safety of others. In practice, because the Application stores no personal data on any server we operate, we hold no such user data to disclose.
The Application is a technical utility intended for developers and advanced users. It is not directed at children, does not knowingly collect any information from anyone (including children under 13/16), and offers no social or content-sharing features.
Because your data stays on your device and is not transmitted to or stored by us, there is no server-side repository of your information to be breached. On-device data remains protected by Android’s standard application-sandboxing and by whatever device security (screen lock, encryption) you have configured. Note that the Application is a powerful tool: editing another application’s data can change or break that application’s behaviour, and you should only modify data you understand and keep backups where appropriate. You use these capabilities at your own responsibility and only on devices and applications you own or are authorized to access.
For users in the European Economic Area and the United Kingdom: since the Application does not collect or process personal data on our infrastructure, no processing of your personal data by us takes place through your use of the Application. Any processing performed by Google in connection with the optional purchase is carried out by Google as an independent controller/processor under its own terms, on the legal basis of contract performance (Art. 6(1)(b) GDPR) for the transaction you initiate.
We may update this privacy policy from time to time, for example to reflect changes in the Application or in legal requirements. The current version is always the one published at this URL, and the “Last updated” date above indicates when it last changed. Continued use of the Application after an update constitutes acceptance of the revised policy.
The section above concerns the mobile Application. The website on which this policy is hosted (operated by FLX Apps on the operator’s own first-party server, flx.es) may use a self-hosted, cookieless system to compile anonymous, aggregate visit statistics (such as page views, referring sites, browser/device type and approximate country). No cookies are set, no data is shared with any third party, and your IP address and browser user-agent are never stored — they are used only transiently, with a secret key that changes every day, to derive an anonymous identifier and an approximate two-letter country code. Visits cannot be linked to a person or across days. You can opt out at any time by enabling the “Do Not Track” or “Global Privacy Control” setting in your browser. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in privacy-friendly, aggregate statistics).
By using the Application you consent to the terms of this privacy policy as it may be amended from time to time.
If you have any questions about this privacy policy or the Application’s privacy practices, please contact FLX Apps (Felix Heller) at felixheller@mailbox.org.