Legal
Privacy Policy
Summary
AIPIA is built to collect as little as possible. We do not collect your name, email, contacts, or location. We show no ads and use no third-party analytics or tracking. The only information we receive is crash and diagnostic data used to keep the app stable, and it is sent only to servers we operate ourselves — never sold or shared with third parties. Separately, two optional features — the AI assistant tile and the stock tile — send what you provide (a message, or a ticker symbol) together with your own provider key directly to the third-party provider you choose; that data goes to them, never to us. A further optional feature, the gesture screen lock, uses Android’s Accessibility service solely to lock your screen; it reads no screen content and collects no data. As a launcher, AIPIA also reads your list of installed apps on the device so you can search for and start them — that list never leaves your device.
Who we are
AIPIA is an Android launcher developed by AIPIA LLC (Georgia, USA). You can reach us at support@aipia.app.
Information we collect
When the app encounters an error or crashes, it sends us a diagnostic report so we can find and fix the problem. A report may include:
- the type of error and a technical stack trace (where in the code it occurred);
- device class information — manufacturer and model, hardware specs (memory, storage, screen), operating-system version, language, and time zone;
- app information — the app version and build, which permissions are granted, and whether the app was in the foreground;
- a short technical trail of in-app screen navigation and network or system events leading up to the error.
These reports are configured to exclude personal identifiers. AIPIA does not attach screenshots, does not capture a view of your screen contents, does not record session replays, and removes the per-installation identifier before any report leaves your device. We do not require an account and never ask for your name, email, contacts, or location.
Installed apps on your device
To work as a home screen, AIPIA reads information that already exists on your device — such as the list of installed apps, their icons and names, and the home-screen layout and settings you create. This information is used only to display and operate your home screen. It stays on your device at all times, is never transmitted to us or to any third party, and is removed when you uninstall the app.
AIPIA’s core feature is app search: you type in the drawer’s search overlay and the launcher matches every installed app by name, then starts it. For that to work, AIPIA declares the Android QUERY_ALL_PACKAGES permission. Without the full installed-app inventory, search returns incomplete results and apps become unreachable, which breaks the app’s core purpose. The same inventory backs the drawer grid, folders, the dock, and gesture shortcuts, and it refreshes when apps are installed or removed so your home screen stays accurate. It is read on your device and used solely to display and launch your apps.
AIPIA does not upload, transmit, sell, or share your list of installed apps, and does not use it for advertising, analytics, profiling, audience building, or any purpose unrelated to operating your launcher. It is not included in crash and diagnostic reports. A backup file you create yourself may reference the apps in your own layout so it can be restored; that file is written only where you choose, as described under Backup and restore.
How we use this information
We use crash and diagnostic data solely to detect, diagnose, and fix errors, to understand which app versions and device types are affected by a problem, and to improve the stability and performance of AIPIA. We do not use it for advertising, profiling, or marketing.
AI assistant tile
AIPIA includes an optional AI assistant tile. It is off by default and does nothing until you add it to your home screen and choose a model. Two kinds of model are offered, and what happens to your data depends entirely on which you pick.
On-device model. On supported recent devices you can run a local, open-weights model (Gemma) directly on your phone. In this mode no API key and no internet connection are required: your prompts and the model’s replies are processed entirely on your device and are never transmitted to us or to any third party. This option is experimental and is not available on older hardware, which must use a cloud model instead.
Cloud model. Alternatively you may enter your own API key for a third-party AI provider (such as Google, Anthropic, or OpenAI). When you send a message from that tile, your message and your API key are sent directly from your device to the AI provider you chose, over an encrypted (HTTPS) connection, so that provider can generate a reply. This applies only when you have selected a cloud model; it does not apply to the on-device model described above. This data goes to that provider — not to AIPIA. We operate no server in this path and never receive, store, see, or process your messages or your key. How that data is handled is governed by that provider's own privacy policy. Your API key is stored encrypted on your device (using the Android Keystore) and is never transmitted to us.
Optional market-data tile
AIPIA includes an optional stock (market-data) tile. Like the AI tile, it is off by default and does nothing unless you add it to your home screen and enter your own API key for a third-party market-data provider (such as Finnhub or Twelve Data). When the tile refreshes a quote, the ticker symbol you chose and your API key are sent directly from your device to the market-data provider you chose, over an encrypted (HTTPS) connection, so it can return the current price. This data goes to that provider — not to AIPIA. We operate no server in this path and never receive, store, see, or process your symbols or your key. How that data is handled is governed by that provider's own privacy policy. Your API key is stored encrypted on your device (using the Android Keystore) and is never transmitted to us.
Backup and restore
AIPIA includes a local backup and restore feature for your home-screen layout and settings. When you create a backup, the file is written only to the location you choose in your device's system file picker. AIPIA never uploads or transmits your backup — it is not sent to us or to any third party, and we keep no copy. Once the file is saved, where it goes next (for example, if you move it to cloud storage or share it) is under your control.
By default a backup contains only your layout and settings, with no keys or personal images, so it is safe to share. Separately, you may choose to include your API keys and your photo-tile images in a backup — for example, to move them to your own new device. If you choose to include them, AIPIA requires you to set a password and encrypts the entire backup file with it, so the keys and photos are protected inside the file. We recommend keeping any backup that includes your keys private and not sharing it, since anyone who has both the file and its password could use those keys.
Accessibility Service (optional screen lock)
AIPIA includes an optional “Standard lock” feature that
lets you lock your screen with a gesture, such as double-tapping the home
screen. To perform the lock, this feature uses Android’s
AccessibilityService API to invoke the system lock-screen
action (performGlobalAction(GLOBAL_ACTION_LOCK_SCREEN)), which
locks the device while keeping biometric unlock (fingerprint or face)
available.
Locking the screen is the only function this service performs. The service is configured with no event subscriptions and does not request permission to retrieve window content, so it does not read the contents of your screen, does not monitor other apps or what you type, does not record audio, and does not collect, store, or share any personal or sensitive information. No data of any kind is transmitted to us or to any third party through this feature.
The feature is off by default. Before the permission is requested, AIPIA shows a consent screen explaining this use, with separate options to accept or decline; declining changes nothing. If you accept, you enable the service yourself in Settings › Accessibility, and you can disable it there at any time. Screen locking is also available without this permission through the “Secure lock” option, which uses the Android device administrator API; that method always requires your PIN or password and does not allow biometric unlock.
Sharing
We do not sell your data, and we do not share it with third parties for their own purposes. Crash and diagnostic reports are sent to error-tracking infrastructure that we operate ourselves — not to a third-party analytics or advertising service — over an encrypted (HTTPS/TLS) connection. The optional AI and stock tiles send what you provide (your messages, or a ticker symbol) and your key directly to the third-party provider you choose, at your own initiation and under that provider's policy; AIPIA is not an intermediary in that exchange. We may disclose information only if required by law or to protect our rights, safety, or property.
Analytics and advertising
AIPIA contains no third-party analytics, tracking, or advertising software, and uses no advertising identifier. We do not profile you and we do not track your activity across apps or services.
Permissions
Any device permissions AIPIA requests are used solely to provide launcher functionality on your device. The app's core home-screen features work without an internet connection; a network connection is used to deliver the crash and diagnostic reports described above and, if you enable the optional AI or stock tile, to reach the third-party provider you choose. Separately, the optional gesture screen lock uses the Android AccessibilityService permission for the single purpose described in Accessibility Service above; it is off by default and requires your explicit consent. AIPIA also declares QUERY_ALL_PACKAGES so its app search can match and launch every app you have installed, as described in Installed apps on your device.
Data retention
We keep crash and diagnostic reports only as long as needed to investigate and resolve stability issues, after which they are deleted or rotated out of storage.
Security
Diagnostic data is transmitted over encrypted (HTTPS/TLS) connections and stored on infrastructure we control in the United States. No system can be guaranteed perfectly secure, but we take reasonable measures to protect the limited data we collect.
Your choices and rights
Depending on where you live (for example under the EU/UK GDPR or the California CCPA/CPRA), you may have rights to access, correct, or delete information relating to you. Because AIPIA removes the per-installation identifier from reports before they are sent, we generally cannot link a stored report back to a specific device or person. To make a request, email support@aipia.app. To stop all diagnostic reporting, you may uninstall the app.
Children
AIPIA is a general-audience home-screen app and is not directed at children under 13. We do not knowingly collect personal information from children.
Purchases
If AIPIA offers a paid upgrade, the purchase is handled entirely by Google Play. We do not receive or store your payment details; Google processes the transaction under its own privacy policy.
Changes to this policy
If a future version of AIPIA ever changes what it collects, we will update this policy and the revision date above before that version is released, and describe clearly what changed.
Contact
Questions about privacy? Email support@aipia.app.