PAA Bootcamp — Privacy Policy

Effective date: 2026-05-30
Last updated: 2026-05-30
App: Phone Addict Anonymous Bootcamp / “PAA Bootcamp” (com.AMIRGROUP.paabootcamp)
Developer contact: paa@am3rgroup.com

This page explains what data the PAA Bootcamp Android application (“PAA Bootcamp”, “the app”, “we”, “us”, “our”) processes, where it goes, and the controls you have. The app is designed around the principle that your data stays on your phone unless a third-party service we depend on (Google) needs it to function.


1. Summary in plain English


2. Data the app processes locally on your device

The following data is read, computed, and stored only on your device. None of it is transmitted to us.

DataSourceWhy it’s usedWhere it lives
Step countDevice step sensor or Google Health ConnectConvert steps to earned screen-time minutesDevice-only Room database + Android SharedPreferences
Foreground app package nameAndroid Accessibility ServiceBlock restricted apps when you have not earned enough minutes; protect Settings / Play Store from being used to uninstall the app outside your unlock windowIn-memory only, not persisted
App-usage eventsPACKAGE_USAGE_STATS permissionSame blocking logic as aboveIn-memory only, not persisted
Your passwordYou type it during setupLock the app’s own settings and uninstall flowDevice-only, hashed with PBKDF2 and a per-install salt (older installs upgraded from SHA-256) in SharedPreferences. The plaintext password never leaves the input field.
Trivia progressYour gameplayTrack your cumulative trivia gradeDevice-only SharedPreferences
Setup time, last-unlock time, last-difficulty-change timeComputed by the appEnforce the cooldown for changing protected settingsDevice-only SharedPreferences
Battery-optimization exemption statusDeviceKeep the foreground service aliveDevice-only

When you uninstall the app, all of the above is deleted with it.


3. Data shared with third parties

We embed three Google services. Each is governed by Google’s own privacy practices, not ours. We do not have access to the data they collect.

3.1 Google AdMob (advertising)

3.2 Google Play Billing (in-app purchases)

3.3 Google Health Connect (optional step source)

We do not embed analytics SDKs (no Firebase Analytics, no Crashlytics, no Facebook SDK, no Amplitude, no Mixpanel). The app does not report crash reports or usage analytics to anyone.


4. Permissions and why each is requested

PermissionPurpose
ACTIVITY_RECOGNITION / HIGH_SAMPLING_RATE_SENSORSRead your step count to convert to screen-time minutes.
health.READ_STEPS (Health Connect)Optional alternative step source.
FOREGROUND_SERVICE, FOREGROUND_SERVICE_HEALTH, WAKE_LOCKKeep the step-counting and app-blocking service running while the app is in the background.
RECEIVE_BOOT_COMPLETEDRestart the protection service after a reboot.
REQUEST_IGNORE_BATTERY_OPTIMIZATIONSAsk Android not to kill the foreground service to save battery. Granting is optional but the app may not function reliably without it.
POST_NOTIFICATIONSShow the persistent foreground-service notification and earned-minute alerts.
Accessibility ServiceDetect which app is in the foreground so we can block it when you are out of minutes, and prevent uninstall through Settings outside your unlock window. The accessibility service does not read text input, navigate other apps, or send any data off-device.
PACKAGE_USAGE_STATSSame purpose as the accessibility service: identify which app is in the foreground.
SYSTEM_ALERT_WINDOWRender the lock-overlay screen on top of blocked apps.
QUERY_ALL_PACKAGESRead the list of installed apps so you can pick which apps to restrict.
Device AdminPrevent uninstall of the app outside your unlock window — the core anti-bypass mechanism.
INTERNET / ACCESS_NETWORK_STATERequired by Google AdMob and Google Play Billing. The app’s own logic does not make network calls.
VIBRATEHaptic feedback in the UI.

5. Children’s privacy

PAA Bootcamp is not directed at children under 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect personal information from children. Ad requests are tagged as family-safe (rated G). If a parent or guardian believes their child under 13 has used the app, they can simply uninstall it; no server-side deletion request is needed because no data has been transmitted to us.


6. Data retention and deletion

Because all your data lives on your device:

We do not retain any backups of your data because we never received it, and cloud backup is disabled in the app.


7. Security

No system is perfectly secure. If you discover a security issue, please email paa@am3rgroup.com.


8. Your choices


9. International users

The app is the same everywhere. The third-party services we embed (AdMob, Play Billing, Health Connect) operate Google’s regional compliance themselves (GDPR in the EU/UK, CCPA in California, etc.). The GDPR consent form for personalised vs. non-personalised ads is shown via Google’s UMP SDK on first launch in regulated regions.


10. Changes to this policy

If we change this policy, we will update the “Last updated” date at the top of this page and bump the app’s version. Material changes will be called out in the Play Store release notes. Continuing to use the app after the change constitutes acceptance.


11. Contact

If you have any questions about this policy or about the data the app processes, email paa@am3rgroup.com.