Legal Document

Privacy Policy

Application: We ❤️ PDF  ·  Developer: AppZila  ·  Effective: June 20, 2026

1.

Introduction

Welcome to We ❤️ PDF, an all-in-one PDF utility application developed and published by AppZila ("we," "us," or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you download, install, or use the We ❤️ PDF mobile application (the "Application") on Android or iOS devices, and when you visit our website at www.appzila.com (the "Site").

Please read this Privacy Policy carefully. By accessing or using the Application, you acknowledge that you have read, understood, and agree to be bound by all the terms of this Privacy Policy. If you do not agree with the terms herein, please discontinue use of the Application immediately.

This Privacy Policy applies to all users of the Application globally, including users in the European Economic Area ("EEA"), the United Kingdom ("UK"), California (USA), and all other jurisdictions. Where applicable law grants you additional rights, those rights are described in the relevant sections below.

Summary of Key Points:
  • We do not sell your personal data to any third party.
  • We do not access, upload, or transmit your files, images, or documents to our servers. All PDF processing occurs locally on your device.
  • File access occurs only when you explicitly initiate an action.
  • We use Google AdMob for advertising and Firebase for analytics and crash reporting.
2.

Information We Collect

We collect different types of information in connection with your use of the Application. We only collect information that is necessary to provide and improve our services.

2.1 Information You Provide

The Application does not require you to create an account or provide personal information to use its core features. The Application is designed to function without registration. However, if you contact us for support, you may voluntarily provide your name and email address.

2.2 Information Collected Automatically

When you use the Application, we and our third-party service providers may automatically collect the following categories of information:

  • Device Information: Device model, operating system version, unique device identifiers (such as the Android Advertising ID or Apple IDFA/IDFV), screen resolution, and device locale.
  • Usage Data: Features accessed, actions performed within the Application (e.g., merge, split, compress, OCR), session duration, and in-app navigation patterns. This information is collected at an aggregated and/or pseudonymous level.
  • Diagnostic and Crash Data: Error logs, crash reports, stack traces, and performance metrics collected by Firebase Crashlytics to enable us to identify and fix software bugs.
  • Advertising Identifiers: Resettable advertising identifiers (Android Advertising ID / Apple IDFA) used by Google AdMob to serve personalized or non-personalized advertisements, subject to your consent preferences.
  • IP Address and Approximate Location: Your Internet Protocol (IP) address may be collected by third-party SDKs for fraud prevention and regional ad targeting. We do not collect precise GPS location.

2.3 Information We Do NOT Collect

We explicitly do not collect, upload, or store:

  • The content of your PDF files, images, or documents.
  • Your e-signatures or signature images.
  • Scanned document content.
  • OCR-extracted text from your documents.
  • Precise geolocation data.
  • Biometric data of any kind.
  • Financial or payment information.
3.

How We Use Information

We use the information we collect for the following purposes:

  • To provide and maintain the Application: Processing your requests to merge, split, compress, convert, watermark, sign, or otherwise manipulate PDF files and documents, entirely on your device.
  • To improve the Application: Analyzing aggregated usage data to understand which features are most used and to prioritize product improvements and new feature development.
  • To detect and fix bugs: Using crash logs and diagnostic reports to identify, reproduce, and resolve software defects, improving the stability and reliability of the Application.
  • To serve advertisements: Displaying relevant advertisements through Google AdMob to support the continued development and availability of the Application at no direct cost to users.
  • To comply with legal obligations: Responding to lawful requests from public authorities, including law enforcement, and meeting our obligations under applicable laws and regulations.
  • To communicate with you: Responding to support inquiries and, where permitted, sending important notices about the Application.

We process the above information under the following legal bases (where GDPR applies): performance of a contract (providing the service you requested), legitimate interests (product improvement and security), your consent (personalized advertising), and compliance with legal obligations.

4.

File and Document Processing

Important: All file processing in We ❤️ PDF is performed locally on your device. Your files are never uploaded to our servers. We have no ability to access or view your documents.

The Application enables you to select, open, and manipulate files stored on your device. The following principles govern how the Application interacts with your files:

  • User-Initiated Access Only: The Application accesses your files exclusively when you take an explicit action, such as tapping a button to select a file, choosing an image from your gallery, or granting temporary access for a specific task. The Application never accesses files in the background without your knowledge.
  • Local Processing: All PDF operations — including merging, splitting, compression, image conversion, OCR, watermarking, e-signing, and scanning — are executed entirely on your device's processor. No file content is transmitted over the network to our servers or any third-party server operated by us.
  • Purpose Limitation: Files and images you select are used exclusively to perform the specific PDF-related function you requested. Once the operation is complete, the Application does not retain, index, or analyze your file content for any other purpose.
  • Output Files: Processed files (e.g., a merged PDF or a compressed document) are saved to a location you specify on your device or to the Application's designated output folder. We do not retain copies of output files.
  • E-Signatures: Electronic signatures you create within the Application are applied to documents locally. Signature images are stored only on your device and are never transmitted to us.
  • Document Scanning: When you use the document scanning feature, the camera captures images that are processed locally to detect and crop documents. These images are not uploaded or shared.
5.

Permissions We Request and Why

The Application requests certain device permissions in order to deliver its core functionality. Below is a complete description of each permission, why it is required, and when it is used.

READ_MEDIA_IMAGES / Photo Library Access

Android: READ_MEDIA_IMAGESiOS: NSPhotoLibraryUsageDescription

Why we need it: This permission allows the Application to access images stored in your device's media library or photo gallery exclusively when you choose to convert an image to PDF, add an image watermark, perform OCR on an image, or insert images into a document. Without this permission, you cannot select images from your gallery for these features.

When it is accessed: This permission is invoked only at the moment you tap "Select Image," "Add from Gallery," or equivalent controls. The Application does not scan or index your photo library in the background.

Camera Access

Android: CAMERAiOS: NSCameraUsageDescription

Why we need it: Camera access is required to enable the document scanning feature, which allows you to capture physical documents using your device's camera and convert them into PDF files. Camera access may also be used for capturing images to convert to PDF or for adding photos to documents.

When it is accessed: The camera is activated only when you initiate a scanning or capture action within the Application. Camera access is never used in the background.

Storage / File Access

Android: READ_EXTERNAL_STORAGE / WRITE_EXTERNAL_STORAGE / MANAGE_EXTERNAL_STORAGE (as applicable)iOS: File Provider / UIDocumentPickerViewController

Why we need it: Storage access is essential for the Application to function. It enables you to open existing PDF files stored on your device for reading or editing, save processed or generated PDF files to your device, and manage files within the Application's file manager. On Android 10 and above, file access is scoped to the Application's designated folders and files you explicitly select via the system file picker.

Internet Access

Android: INTERNETiOS: (System-managed)

Why we need it: Internet access is required to load advertisements from Google AdMob, transmit anonymized analytics and crash reports to Firebase, and retrieve updates from Google Play Services. Internet access is not used to upload or transmit your files or document content.

Notification Permission

Android: POST_NOTIFICATIONS (Android 13+)iOS: UNUserNotificationCenter

Why we need it (if applicable): Notification permission, if requested, is used to inform you when a time-consuming operation (such as a large file compression or batch conversion) has completed while the Application is in the background. This permission is optional and the Application's core features remain available if you decline.

6.

Advertising and Google AdMob

The Application uses Google AdMob, a mobile advertising service provided by Google LLC, to display advertisements. AdMob helps us generate revenue to maintain and develop the Application at no direct cost to users.

How AdMob Works

AdMob may collect and use the following types of data to serve advertisements:

  • Advertising identifiers (Android Advertising ID / Apple IDFA)
  • IP address and approximate location (country/region level)
  • Device information (model, OS version, screen size)
  • In-app behavior data (ad impressions, clicks, interactions)
  • Coarse usage signals (app category, feature usage patterns)

Personalized vs. Non-Personalized Ads

Where required by law (including in the EEA, UK, and other jurisdictions), the Application presents a consent dialog before displaying personalized advertisements. If you decline consent, you will receive non-personalized advertisements. Non-personalized ads do not use your advertising identifier for behavioral targeting but may still use contextual signals.

You may reset or opt out of interest-based advertising at any time through your device settings:

  • Android: Settings → Google → Ads → Delete advertising ID (Android 12+) or Opt out of Ads Personalization.
  • iOS: Settings → Privacy & Security → Tracking → disable "Allow Apps to Request to Track," or Settings → Privacy & Security → Apple Advertising → disable "Personalized Ads."

AdMob Privacy Policy

For more information about how Google collects and uses data through AdMob, please review Google's Privacy Policy at policies.google.com/privacy and Google's partner sites and apps policy at policies.google.com/technologies/partner-sites.

7.

Analytics and Crash Reporting

Firebase Analytics

We use Firebase Analytics, provided by Google LLC, to collect anonymized and aggregated usage statistics. Firebase Analytics helps us understand how users interact with the Application, which features are most popular, and where users may encounter friction. Data collected includes:

  • App open and session events
  • Feature-level events (e.g., "merge_pdf_initiated," "ocr_completed")
  • Device and OS information
  • App version
  • First open and install attribution

Firebase Analytics data is pseudonymized. We do not use it to identify you personally. You may opt out of Firebase Analytics data collection on Android by enabling "Opt out of Ads Personalization" in Google settings, or on iOS by limiting ad tracking. For more information, visit firebase.google.com/support/privacy.

Firebase Crashlytics

We use Firebase Crashlytics to automatically detect and report application crashes and errors. Crashlytics collects:

  • Crash stack traces and error logs
  • Device state at time of crash (memory, OS version, device model)
  • Application version
  • A pseudonymous Crashlytics installation UUID (not linked to your identity)

Crashlytics data is used exclusively to diagnose and fix software defects. We do not use crash reports to identify individual users. You may disable Crashlytics collection by adjusting the relevant settings within the Application (if provided) or by contacting us.

8.

Third-Party Services

The Application integrates the following third-party services. Each service is subject to its own privacy policy and data practices, for which we are not responsible:

ServiceProviderPurpose
Google AdMobGoogle LLCIn-app advertising
Firebase AnalyticsGoogle LLCUsage analytics and product insights
Firebase CrashlyticsGoogle LLCCrash reporting and stability monitoring
Google Play ServicesGoogle LLCCore Android platform services, consent management
Apple System ServicesApple Inc.Core iOS platform services (iOS only)

We encourage you to review the privacy policies of these third-party service providers. We are not responsible for the data practices of these providers beyond our contractual arrangements with them.

Google Play Data Safety and Apple App Privacy Disclosures

In accordance with Google Play Store Data Safety requirements and Apple App Store App Privacy requirements, the following data types are disclosed:

  • Data Collected: Device or other IDs (Advertising ID), App interactions (usage data), Crash logs, Diagnostics.
  • Data Shared: Advertising ID and usage data may be shared with Google AdMob and Firebase for advertising and analytics purposes.
  • Data NOT Collected or Shared: File content, document text, images, e-signatures, precise location, financial information, or any personally identifiable information from your documents.
  • Data Security: Data is encrypted in transit. Users may request data deletion (see Section 13 and 14).
9.

Data Sharing and Disclosure

We do not sell, trade, rent, or otherwise transfer your personal information to third parties for their own marketing or commercial purposes. We may share information in the following limited circumstances:

  • Service Providers: We share data with third-party service providers (as listed in Section 8) who assist us in operating the Application, conducting analytics, and serving advertisements. These providers are contractually obligated to use the data only for the services they provide to us and in accordance with applicable privacy laws.
  • Legal Requirements: We may disclose your information if required to do so by applicable law, regulation, legal process, or governmental request (e.g., a court order or subpoena). We will notify you of such a request to the extent permitted by law.
  • Protection of Rights: We may disclose information where we believe it is necessary to investigate, prevent, or take action regarding illegal activities, suspected fraud, threats to the safety of any person, violations of our Terms of Service, or as evidence in litigation in which we are involved.
  • Business Transfers: In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will provide notice before your personal information is transferred and becomes subject to a different privacy policy.
  • With Your Consent: We may share your information for any other purpose with your explicit consent.
We never share the content of your PDF files, images, documents, or any data derived from your files with any third party for advertising, profiling, or any other purpose.
10.

Data Retention

We retain collected data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by applicable law.

  • Analytics Data: Aggregated and pseudonymized analytics data is retained in Firebase for up to 14 months (the default Firebase Analytics retention period), after which it is automatically deleted or anonymized.
  • Crash Logs: Crash reports in Firebase Crashlytics are retained for 90 days by default.
  • Advertising Data: Advertising-related data is governed by Google AdMob's retention policies, which you can review in Google's Privacy Policy.
  • Support Communications: If you contact us for support, we retain your communications for up to 24 months to facilitate follow-up support.
  • Files and Documents: We do not retain any user files, images, or document content, as all file processing is performed locally on your device.

When we no longer need to retain your information, we will delete or anonymize it. If deletion is not immediately possible (e.g., because the information is stored in backup archives), we will securely store the information and isolate it from further processing until deletion is possible.

11.

Security Measures

We take the security of your information seriously and implement industry-standard technical, administrative, and organizational measures to protect the data we collect against unauthorized access, disclosure, alteration, or destruction. Specific measures include:

  • Encryption in Transit: All data transmitted between the Application and our third-party service providers is encrypted using Transport Layer Security (TLS).
  • Local Processing: By processing all file operations locally on your device, we eliminate the risk of unauthorized server-side access to your documents.
  • Data Minimization: We collect only the minimum amount of data necessary to operate and improve the Application.
  • Access Controls: Access to any collected data (such as analytics dashboards) is restricted to authorized personnel on a need-to-know basis.
  • Third-Party Security: Our third-party service providers (Google Firebase, Google AdMob) maintain their own comprehensive security programs that comply with applicable industry standards.

Please be aware that no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of any credentials used to access device features.

12.

Children's Privacy

The Application is not directed to children under the age of 13 (or under 16 in the European Economic Area and the United Kingdom, or such higher age as required by applicable local law). We do not knowingly collect personal information from children.

If you are a parent or guardian and you believe that your child has provided us with personal information, please contact us immediately at info@appzila.com. If we become aware that we have collected personal data from a child without verification of parental consent, we will take steps to delete that information from our records promptly.

The Application is rated for general audiences. Advertising served within the Application is configured to exclude child-directed treatment as defined by Google's policies unless and until the Application is re-designated as a children's application.

13.

GDPR Rights (EEA and UK Users)

If you are located in the European Economic Area (EEA) or the United Kingdom (UK), the General Data Protection Regulation (GDPR) or UK GDPR grants you specific rights with respect to your personal data. We are committed to honoring these rights.

Your Rights

  • Right of Access (Art. 15 GDPR): You have the right to request a copy of the personal data we hold about you and information about how we process it.
  • Right to Rectification (Art. 16 GDPR): You have the right to request correction of inaccurate personal data we hold about you.
  • Right to Erasure (Art. 17 GDPR): You have the right to request deletion of your personal data, subject to certain exceptions where we are required to retain data for legal or legitimate business reasons.
  • Right to Restriction of Processing (Art. 18 GDPR): You have the right to request that we restrict the processing of your personal data under certain circumstances.
  • Right to Data Portability (Art. 20 GDPR): Where processing is based on your consent or performance of a contract and is carried out by automated means, you have the right to receive your personal data in a structured, commonly used, and machine-readable format.
  • Right to Object (Art. 21 GDPR): You have the right to object to our processing of your personal data on grounds relating to your particular situation, or where personal data is processed for direct marketing purposes.
  • Right to Withdraw Consent: Where processing is based on your consent (e.g., personalized advertising), you have the right to withdraw your consent at any time, without affecting the lawfulness of processing based on consent before withdrawal.
  • Right to Lodge a Complaint (Art. 77 GDPR): You have the right to lodge a complaint with the relevant data protection supervisory authority in your member state (or with the UK Information Commissioner's Office for UK residents).

How to Exercise Your Rights

To exercise any of the above rights, please contact us at info@appzila.com with the subject line "GDPR Data Request." We will respond to your request within 30 days. We may need to verify your identity before processing your request.

Please note that, because the Application does not require account creation and processes files locally, we may have limited personal data attributable to a specific individual. The data most likely to be subject to these requests is analytics and crash report data held by Firebase, which can be deleted by contacting Google's privacy team in addition to us.

Legal Basis for Processing

We process personal data under the following legal bases:

  • Legitimate Interests (Art. 6(1)(f)): Analytics, crash reporting, and fraud prevention.
  • Consent (Art. 6(1)(a)): Personalized advertising (where a consent dialog is presented).
  • Performance of Contract (Art. 6(1)(b)): Providing core PDF functionality.
  • Legal Obligation (Art. 6(1)(c)): Compliance with applicable laws.

Data Transfers Outside the EEA/UK

Our third-party service providers (Google LLC, operating Firebase and AdMob) are based in the United States. Data transfers to the United States are conducted in accordance with Standard Contractual Clauses approved by the European Commission and the UK International Data Transfer Addendum. Google LLC participates in the EU-U.S. Data Privacy Framework. For more information, visit Google's GDPR compliance page.

14.

CCPA Rights (California Residents)

If you are a resident of California, the California Consumer Privacy Act of 2018 ("CCPA"), as amended by the California Privacy Rights Act of 2020 ("CPRA"), grants you specific rights regarding your personal information. This section describes those rights and how to exercise them.

Categories of Personal Information Collected

In the preceding 12 months, we have collected the following categories of personal information as defined by the CCPA:

  • Identifiers: Resettable advertising identifiers (Android Advertising ID / Apple IDFA), device identifiers.
  • Internet or Network Activity: App usage information, feature interactions, crash data.
  • Inferences Drawn from Personal Information: Aggregated usage profiles created by Google AdMob for advertising purposes.

Your CCPA/CPRA Rights

  • Right to Know: You have the right to request that we disclose the categories and specific pieces of personal information we have collected about you, the sources of that information, our business or commercial purpose for collecting it, and the categories of third parties with whom we share it.
  • Right to Delete: You have the right to request deletion of personal information we have collected, subject to certain exceptions.
  • Right to Correct: You have the right to request correction of inaccurate personal information.
  • Right to Opt-Out of Sale or Sharing: We do not sell your personal information. We do not share your personal information for cross-context behavioral advertising within the meaning of the CPRA without your consent. If you wish to opt out of any interest-based advertising facilitated by third-party SDKs, you may do so via your device advertising settings as described in Section 6.
  • Right to Limit Use of Sensitive Personal Information: We do not collect or use sensitive personal information (as defined by the CPRA) beyond the purposes permitted by law.
  • Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights.

How to Submit a CCPA Request

To exercise your CCPA/CPRA rights, please contact us at info@appzila.com with the subject line "CCPA Privacy Request." We will respond within 45 days of receiving your verifiable consumer request. We do not charge a fee for processing your request unless it is excessive, repetitive, or manifestly unfounded.

15.

International Users

We ❤️ PDF is operated from India and is available globally. If you are accessing the Application from outside India, please be aware that your information may be transferred to, stored, and processed in countries other than your country of residence, including the United States (where our third-party service providers, including Google LLC, are based). The data protection laws of these countries may differ from the laws of your country.

By using the Application, you consent to such transfer, processing, and storage in accordance with this Privacy Policy. We take steps to ensure that your information receives an adequate level of protection in the jurisdictions in which we process it, including through contractual arrangements with our third-party service providers (such as Google's Standard Contractual Clauses and Data Processing Agreements).

In addition to the EEA/UK (Section 13) and California (Section 14) rights described above, users in other jurisdictions may have additional rights under local privacy laws, including but not limited to:

  • Brazil (LGPD): Rights of access, correction, deletion, anonymization, portability, and information about sharing.
  • Canada (PIPEDA/Law 25): Rights of access, correction, and withdrawal of consent.
  • Australia (Privacy Act): Rights of access and correction under the Australian Privacy Principles.

To exercise rights under any applicable local privacy law, please contact us at info@appzila.com.

16.

Changes to This Privacy Policy

We reserve the right to update or modify this Privacy Policy at any time. When we make material changes to this Privacy Policy, we will notify you by:

  • Updating the "Effective Date" at the top of this Privacy Policy;
  • Displaying a prominent notice within the Application or on our website at www.appzila.com; and/or
  • Sending a notification through the Application or via email (if we have your contact information), where required by applicable law.

Your continued use of the Application after the effective date of the revised Privacy Policy constitutes your acceptance of the updated terms. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. If you do not agree to the revised Privacy Policy, please discontinue use of the Application.

17.

Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us using the information below. We are committed to resolving complaints about our collection or use of your personal information.

Developer / Data Controller

AppZila

Application

We ❤️ PDF

Privacy Contact Email

info@appzila.com

Response Time

We aim to respond to all privacy-related inquiries within 30 business days.

For matters specifically related to GDPR (EEA/UK users) or CCPA (California users), please include the relevant jurisdiction in the subject line of your email to ensure your request is prioritized and processed in accordance with applicable legal timelines.

This Privacy Policy was last updated on June 20, 2026 and is effective as of that date. Previous versions of this Privacy Policy are available upon request.

© 2026 AppZila. All rights reserved.