Cam PDF Scanner: Sign & QR

Privacy Policy for Cam PDF Scanner: Sign & QR

Effective date: September 6, 2026 · Last updated: September 6, 2026

DEEJAI LAB Co ., Ltd, company registration number 0105569117953, operating under the brand DJAI Academy ("DJAI", "we", "us", or "our"), provides Cam PDF Scanner: Sign & QR (the "App"). This policy explains what information is processed when you use the App, why it is processed, who may receive it, how long it is kept, and the controls available to you.

This revision describes the Android release distributed through Google Play under package name com.djai.campdfscan. It does not claim coverage for an iOS release or platform features that have not been verified in the current production source.

1. Important summary

  • Scans, imported files, signatures, annotations, OCR text, QR-code content, and generated files are primarily processed and stored on your device.
  • DJAI stores limited account, usage, survey, notification, consent, and reward data in Firebase when you use connected App features.
  • The Android App uses Firebase Analytics, Google Mobile Ads, Google's consent tools, Firebase App Check with Play Integrity, and Sentry diagnostics.
  • You can delete your account in the App or request deletion through https://www.djai.academy/Cam_PDF_Scan_Signer_QR-Gen/delete-account/.

2. Documents and media on your device

The App performs scanning, image editing, signatures, annotations, OCR, QR-code creation and reading, media processing, and export work in App-controlled storage on your device. DJAI does not intentionally upload your document pages, imported files, signatures, annotations, OCR text, QR payloads, or generated files to its account database.

Content leaves the App when you choose a system action such as sharing, printing, saving to another folder or photo library, or opening the content in another app. The destination you select then processes that content under its own privacy practices.

The App may create temporary working files during import, editing, recognition, conversion, or export. Saved projects and exported copies remain until you delete them, clear the App's storage, use an applicable cleanup option, or uninstall the App. Android App backup is disabled by the App.

Diagnostic reporting is separate from document storage. As explained in Section 8, an error event may contain technical context generated during an operation. DJAI does not use diagnostic reporting to access or reconstruct your documents.

3. Account and authentication information

An account is required for connected usage allowances, rewards, preferences, and account controls. Firebase Authentication and DJAI's Firebase backend may process:

  • your Firebase user identifier;
  • your email address and email-verification status;
  • your display name;
  • your sign-in method, currently email/password or Google sign-in;
  • authentication tokens, login and password-reset events, timestamps, IP address, device information, and security signals processed by Firebase;
  • the versions and acceptance time of the Terms, Privacy Policy, and required consent; and
  • account creation, update, and profile-preference timestamps.

Firebase Authentication handles passwords. DJAI does not store or receive your plain-text password.

4. App usage, allowances, quests, and rewards

To apply free usage limits and rewards consistently, DJAI may store your weekly allowance period, used and remaining exports, pending export reservations, completed export identifiers, rewarded credits, quest completion state, and synchronization timestamps.

For rewarded advertisements, Google Mobile Ads may receive a pseudonymous account value and reward-purpose marker. DJAI's Firebase function receives Google's signed reward callback, including transaction, ad-unit, reward, timestamp, and verification information, so it can reject duplicate or invalid rewards and credit the correct account.

Firebase Analytics separately records limited events such as feature opened, export completed, sign-in method, registration completed, preference changes, and quest completion as described in Section 7.

5. Optional preference survey

If you voluntarily complete the in-App reward survey, DJAI stores the answers under your Firebase user identifier. The survey currently asks for:

  • your display name;
  • your age bracket;
  • your gender selection;
  • your country or region;
  • your broad profession;
  • your primary use of the App;
  • whether the use is personal, work, education, or a combination;
  • how you discovered the App;
  • whether you drive;
  • your vehicle preference; and
  • the survey completion time.

The survey is optional for using the App but may be required to earn the related survey reward. DJAI uses the answers for product planning, feature prioritization, and aggregated product analysis. The answers are not configured as Firebase Analytics user properties and are not sent to Google Mobile Ads by the survey submission function.

You can request correction or deletion of survey information by emailing contact@djai.academy. Deleting your App account also deletes the active survey record.

6. Advertising and consent choices

The Android App uses Google Mobile Ads and Google's User Messaging Platform. Depending on your region, consent choice, device settings, and Remove Ads status, Google may process:

  • advertising, app-instance, and device identifiers;
  • IP address and approximate location derived from it;
  • device model, operating system, language, App version, network, and diagnostic information;
  • consent choices;
  • ad requests, impressions, interactions, frequency, and fraud signals; and
  • information used to deliver, limit, measure, secure, or personalize advertising where legally permitted.

The App does not request precise-location permission for advertising. Where Google's privacy-options interface is available, you can open it from the App to review or change available advertising choices. Contextual or non-personalized ads may still use limited device, approximate-location, measurement, frequency, and fraud-prevention information.

DJAI does not intentionally send scanned pages, signatures, OCR text, annotations, or QR payloads to Google Mobile Ads.

7. Firebase Analytics

Firebase Analytics is enabled in the current Android release. It may process a Firebase user identifier, app-instance and device identifiers, App version, device model, operating-system version, language or region, approximate country, session information, feature interactions, sign-in method, export completion, quest completion, and other technical events.

DJAI uses this information to understand feature use, diagnose product problems, prevent abuse, and improve the App. Analytics events are designed not to contain document pages, OCR text, QR payloads, signatures, user-selected file contents, passwords, authentication tokens, or payment-card information.

The current App does not provide a separate Firebase Analytics switch. Advertising privacy choices do not necessarily disable Firebase Analytics. You may request deletion of account-linked information as described below; Firebase may retain aggregated or provider-controlled analytics according to its own retention rules.

8. Crash reports and diagnostics

When a production release is configured with Sentry, Sentry may receive App and release version, timestamps, device and operating-system details, session information, stack traces, error types, performance measurements, network-request status, and technical error context. DJAI may associate Sentry diagnostics with a pseudonymous Firebase user identifier.

Before a Sentry event is sent, the current App removes the device-name field. It does not currently remove every possible path or filename from all exception text. An error generated during a file operation may incidentally contain a local file path, file URI, or filename. DJAI does not intentionally attach document contents, OCR text, QR payloads, signatures, passwords, authentication tokens, or payment-card information to Sentry events.

If a release is not configured with a Sentry DSN, that release sends no Sentry events.

9. Email preferences and notifications

DJAI stores your optional promotional-email and marketing-notification preferences with your account. Choosing not to receive promotional communications does not prevent essential account or security messages.

If you enable push notifications, Firebase Cloud Messaging and DJAI may process your Firebase user identifier, Android notification token, permission and preference status, and update time. When you disable push notifications in the App, the backend marks the preference disabled and replaces the stored token with a null value. You can also revoke notification permission in Android settings.

10. Google Play purchase

The Android App offers an optional one-time Remove Ads product through Google Play. Google Play processes payment details, billing-account information, purchase and order records, tax, refunds, and payment-risk information under Google's terms. DJAI does not receive your full payment-card or bank-account details.

The App uses the Google Play billing interface to request the product, receive purchase status, acknowledge a completed purchase, restore eligible purchases, and store a local ads-removed entitlement on the device. The current Android release does not send a separate purchase record to DJAI's backend.

Deleting your App account does not cancel, refund, or erase Google Play's transaction record. You must use Google Play's purchase-management and refund controls for those actions. Clearing App storage or changing devices may require the App to query Google Play again to restore an eligible purchase.

11. Permissions and device features

Depending on the feature you choose, the App may use:

  • Camera: to scan documents and QR codes.
  • System photo and document pickers: to access only the files or photos you select.
  • Biometric or device authentication: for optional App Lock; the operating system performs the match and the App receives only the result.
  • Notifications: for optional marketing notifications and user-initiated functional notices.
  • Network access: for accounts, Firebase functions, App Check, Analytics, diagnostics, advertising, purchases, reward verification, and messaging.
  • Advertising identifier and related device signals: for advertising, measurement, frequency limiting, consent, and fraud prevention through Google services.

The App does not request microphone, precise-location, contacts, all-files, overlay, or app-installation permission. QR contact, email, Wi-Fi, phone, SMS, location-text, and similar payloads are created from information you enter and remain on the device unless you choose to share or open them.

12. How and why information is used

  • to create, authenticate, recover, maintain, and delete accounts;
  • to provide connected allowances, exports, quests, rewards, preferences, notifications, and support;
  • to show, measure, limit, and secure advertising;
  • to recognize an eligible Remove Ads purchase on the device;
  • to understand feature usage and improve reliability;
  • to diagnose failures and prevent fraud, abuse, duplicate rewards, and unauthorized requests;
  • to respond to support and privacy requests;
  • to send optional promotional communications when selected; and
  • to comply with legal obligations and protect DJAI's and users' rights.

Where applicable law requires a legal basis, DJAI relies on performance of the service agreement, legitimate interests in operating and securing the App, consent where required for optional processing, and compliance with legal obligations. You may withdraw optional consent, but withdrawal does not affect earlier lawful processing or processing required on another legal basis.

13. Service providers, sharing, and transfers

DJAI does not sell your document content, survey answers, or account profile for money. DJAI shares information only for the purposes described here, including with:

  • Google Firebase for authentication, Firestore database, Cloud Functions, Analytics, Cloud Messaging, and App Check;
  • Google Play for Android distribution and the Remove Ads purchase;
  • Google Mobile Ads and User Messaging Platform for advertising, consent management, measurement, fraud prevention, and rewarded-ad verification;
  • Sentry for crash reporting and diagnostics when configured;
  • professional advisers and operational providers subject to appropriate duties; and
  • authorities, successors, or other parties when required by law or reasonably necessary to protect rights, safety, security, or the service.

Some laws may describe advertising disclosures as sharing or targeted advertising even when no money is exchanged. Where required and available, advertising choices are provided through the App or Google's consent interface.

Providers may process information outside your country, including in the United States. Where they act on DJAI's behalf, DJAI uses their contractual and legal data-protection terms and expects them to protect the information consistently with applicable law. Google privacy information is available at https://policies.google.com/privacy and https://policies.google.com/technologies/ads. Firebase privacy information is available at https://firebase.google.com/support/privacy. Sentry's privacy policy is available at https://sentry.io/privacy/.

14. Retention

  • Documents, projects, recent QR history, and exported files on your device remain until you delete them, clear App storage, use an applicable cleanup option, or uninstall the App.
  • Active Firebase account, profile, consent, usage, survey, notification-preference, quest, and reward records are generally kept while your account is active and as needed to operate the connected service.
  • When App account deletion succeeds, DJAI deletes the active Firebase Authentication user and the active account-linked records described in Section 14. The current backend does not create a separate post-deletion account guard.
  • Google Play retains purchase and payment records under Google's rules. DJAI's current backend does not maintain a separate purchase ledger for the App.
  • Firebase, Google Mobile Ads, and Sentry may retain provider-controlled logs, backups, analytics, advertising, security, and diagnostic records under their configured retention periods, terms, and legal obligations.
  • DJAI may retain information when specifically required by law or necessary to address security, fraud, disputes, or enforceable claims, and will limit that retention to the relevant purpose.

15. Account deletion, choices, and privacy rights

You can delete your account in the Android App through Me → Account and consent → Delete account. For security, Firebase may require a recent sign-in. You can also request deletion through https://www.djai.academy/Cam_PDF_Scan_Signer_QR-Gen/delete-account/.

When deletion succeeds, DJAI deletes the Firebase Authentication user and the active Firestore profile, consent and marketing preferences, usage and quest state, survey, notification-token record, rewarded-ad verification records, and reward balance associated with the Firebase user identifier.

Account deletion does not delete files stored on your device, copies already exported or shared, Google Play transaction records, or provider-controlled analytics, security logs, and backups. Delete local files through the App or Android storage and manage Play transactions through Google Play.

Depending on applicable law, you may request access, correction, deletion, restriction, portability, or objection; withdraw consent; or complain to a data-protection authority. Email contact@djai.academy to exercise a right not available in the App. DJAI may verify your identity before responding.

16. Security

DJAI uses reasonable technical and organizational measures including encrypted network transport, Firebase Authentication, owner-scoped database rules, App-Check-protected Firebase functions, Play Integrity for Android release attestation, transactional updates for usage and rewards, Android backup restrictions, and optional device authentication for App Lock.

No method of storage or transmission is completely secure. Keep your device protected, review sensitive exports before sharing them, and send no document files, passwords, or identity documents when requesting support unless DJAI specifically provides a secure and necessary process.

17. Children

The App is a general productivity utility and is not directed to children under 13. A person under 13 should not create an account or submit the survey. If local law sets a higher minimum age for independent consent, that higher age applies unless valid permission is provided as required by law.

Contact contact@djai.academy if you believe a child provided personal information improperly so DJAI can investigate and delete it where required.

18. Changes to this policy

DJAI may update this policy when the App, its providers, or legal requirements change. The current version will be published at https://www.djai.academy/Cam_PDF_Scan_Signer_QR-Gen/privacy/ with a new last-updated date. DJAI will provide additional notice or request renewed consent when required.

19. Contact

DEEJAI LAB Co ., Ltd Company registration number: 0105569117953 Operating brand: DJAI Academy Website: https://www.djai.academy/ Privacy and support email: contact@djai.academy

Related pages: