Legal & Trust

Privacy Policy
for Halt

Last updated: June 19, 2026

Effective Date: July 9, 2026
Company Name: Halt Tech
Contact Email: hello@gethalt.in

Halt Tech ("we," "us," or "our") built the Halt application (the "App") and the gethalt.in website (the "Website") to serve as an un-bypassable physical circuit breaker for screen addiction.

This Privacy Policy explains how we collect, use, and protect your information. Because Halt relies on deep system integrations (such as the Android Accessibility Service) to function effectively, we have prioritized radical transparency regarding what data we collect and, more importantly, what data we never collect or transmit.

1. Summary of Data Collection

To provide our core blocking features, Halt requires specific Android permissions. We minimize off-device data transmission.

  • We DO transmit: Your account profile (email, name), your focus session history (start/end times), NFC card cryptographic signatures, and technical device metadata during tamper attempts.
  • We DO NOT transmit: Your screen time statistics, the specific names of apps you try to open during a block, or the contents of your screen. This data is processed strictly locally on your device.

2. Information We Collect and Transmit

When you use Halt, we collect and sync the following information to our secure cloud database:

  • Account & Profile Information: When you sign in using Google, we collect your email address, display name, and a link to your profile avatar. Your selected avatar and display name are synced to allow you to maintain your identity across devices.
  • Focus Session Data: We record the start time, end time, and status of your focus sessions. If a session is broken early using an emergency exit or due to a device reboot, we log the reason.
  • Security & Tamper Detection Data: If the App detects an attempt to circumvent the blocking mechanism, we log the event alongside device metadata (Android version, SDK integer, device manufacturer, and model) to patch exploits.
  • NFC Authentication Data: When you scan your physical Halt card, we read the card's Unique Identifier (UID) and generate cryptographic rolling signatures (HMAC-SHA256). These signatures are verified by our servers to prevent card cloning.

3. Information Processed Locally (Never Transmitted)

The following information is processed strictly on your device and is never sent to our servers or third parties:

  • App Usage Statistics: Halt requests the "Usage Access" permission to generate screen time insights and display your most-used apps. This data never leaves your phone.
  • Window & App Monitoring (Accessibility Service): See Section 4 below.

4. Android System Permissions & Accessibility Service

To function as a strict app blocker, Halt requires sensitive Android system permissions.

  • Accessibility Service API: Halt requires the Android Accessibility Service to detect when you open a blocked application. We use the TYPE_WINDOW_STATE_CHANGED event to monitor the package name of the active window on your screen. If the package name matches an app you have chosen to block, Halt immediately overlays a blocking screen. The Accessibility Service is used exclusively for detecting blocked package names. We do not use it to read your messages, capture your passwords, record your screen, or monitor your activity inside unblocked apps. The package names detected by the Accessibility Service are evaluated locally and are never transmitted off your device.
  • Device Administrator (Optional): You may optionally grant Halt "Device Admin" privileges. This is used solely to prevent the App from being uninstalled during an active focus session. We do not use this permission to wipe your device or enforce enterprise policies.

5. Third-Party Services

We use trusted third-party service providers, including Supabase (for secure database hosting, user authentication, and real-time data synchronization) and Google OAuth (to facilitate secure sign-in). These providers are bound by strict data processing agreements and are not permitted to use your data for their own independent marketing purposes.

6. Data Security

We implement robust security measures to protect your data. We utilize Android's Keystore system to securely store cryptographic keys used for NFC rolling codes, preventing replay attacks and card cloning. All communication between your device and our servers occurs over encrypted channels (HTTPS/WSS).

7. Account Deletion and Data Retention

You have the right to request the deletion of your account and associated data at any time. You can initiate account deletion directly within the Halt App by navigating to Settings > Delete Account. You will be securely redirected to our web portal to confirm the deletion. Confirming account deletion will permanently erase your profile, focus session history, and NFC card bindings from our servers. Local data stored on your device will be cleared upon logging out or uninstalling the App.

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or Android system requirements. If we make material changes, particularly concerning the Accessibility Service or data collection, we will notify you within the App or via email before the changes take effect.

9. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your data, please contact us at hello@gethalt.in.

[ ← Back to home ]

© 2026 Halt Tech.