Zoopet · Privacy

2FA Authenticator & OTP

Effective date: September 8, 2026

2FA Authenticator & OTP is designed to work without an account. This policy explains what the app stores locally and what may be processed when advertising is enabled.

Authenticator vault

Authenticator setup keys, time-based one-time codes, and saved generated passwords remain on your device. Vault values are encrypted with an AES-GCM key protected by Android Keystore. Zoopet does not receive or operate a cloud backup of your vault.

Permissions

Camera access is optional and used only while you scan an authenticator QR code. You can add a setup key manually and use saved codes without camera permission. The app does not request microphone, contacts, precise location, notification, or file-storage access.

Advertising and consent

If advertising is enabled, Google Mobile Ads and Google’s User Messaging Platform may process device identifiers, consent choices, diagnostics, approximate location derived from IP address, and advertising interaction data according to your choices and Google’s policies. The app does not request ads until the consent platform reports that ads may be requested. Where required, the app provides an entry point to reopen ad privacy choices.

Learn more in Google’s Privacy Policy.

Backups and deletion

Android system cloud backup and device-transfer backup are disabled for this app to reduce accidental exposure of authenticator secrets. Deleting the app removes its local vault. Before deletion, configure another authenticator or retain service recovery codes because Zoopet cannot recover your setup keys.

Children

The app is a general-purpose security utility and is not directed to children. We do not knowingly collect personal information directly from children.

Changes

If this policy changes, the effective date above will be updated. Material changes will be reflected in the app or its store listing as appropriate.

Contact

Questions may be sent to contact@zoopet.in.