2FA Authenticator & OTP
Effective date: September 8, 2026
2FA Authenticator & OTP is designed to work without an account. This policy explains what the app stores locally and what may be processed when advertising is enabled.
Authenticator vault
Authenticator setup keys, time-based one-time codes, and saved generated passwords remain on your device. Vault values are encrypted with an AES-GCM key protected by Android Keystore. Zoopet does not receive or operate a cloud backup of your vault.
Permissions
Camera access is optional and used only while you scan an authenticator QR code. You can add a setup key manually and use saved codes without camera permission. The app does not request microphone, contacts, precise location, notification, or file-storage access.
Advertising and consent
If advertising is enabled, Google Mobile Ads and Google’s User Messaging Platform may process device identifiers, consent choices, diagnostics, approximate location derived from IP address, and advertising interaction data according to your choices and Google’s policies. The app does not request ads until the consent platform reports that ads may be requested. Where required, the app provides an entry point to reopen ad privacy choices.
Learn more in Google’s Privacy Policy.
Backups and deletion
Android system cloud backup and device-transfer backup are disabled for this app to reduce accidental exposure of authenticator secrets. Deleting the app removes its local vault. Before deletion, configure another authenticator or retain service recovery codes because Zoopet cannot recover your setup keys.
Children
The app is a general-purpose security utility and is not directed to children. We do not knowingly collect personal information directly from children.
Changes
If this policy changes, the effective date above will be updated. Material changes will be reflected in the app or its store listing as appropriate.
Contact
Questions may be sent to contact@zoopet.in.