PhoneKit

Marvium

Data Safety

This page summarizes Marvium's data handling for app store review and user transparency. The Privacy Policy is the controlling privacy notice.

Data Stored Locally

  • Markdown content, file names, notes, collections, and favorites.
  • Reading progress, completed headings, table of contents, and scroll position.
  • AI summaries and app settings.
  • AI provider usage metrics, including model, token counts, file count, and response time.
  • Downloaded on-device AI models and model settings.
  • Optional AI API keys in secure device storage where supported.
  • Ad eligibility counters stored in app preferences.

Data That May Be Collected Or Shared

  • App interactions, device and app information, and service-generated identifiers through Firebase Analytics, used for product analytics.
  • Crash diagnostics through Firebase Crashlytics, used for app stability.
  • Advertising identifiers, device information, app activity, diagnostics, approximate network-derived location, and ad interactions through Google Mobile Ads, used for ads, measurement, fraud prevention, and compliance.
  • Selected content, prompts, files, images, PDFs, and extracted text sent to the AI provider you choose when you use optional AI features.
  • Issue-report content you submit to GitHub, such as descriptions, screenshots, logs, device details, or contact information.
  • URL import requests sent from your device to the website you choose to import.
  • Model download requests sent from your device to Hugging Face when you choose to download an on-device model.
  • Anonymous app user identifiers, purchase history, subscription and entitlement status, and related app or device information processed by RevenueCat and the applicable app store for purchases, restoration, fraud prevention, and subscription analytics.
  • Selected document text sent to Google when you choose Search with Google, and remote image requests sent to image hosts when referenced images are displayed or included in an export.

Security Practices

  • The app does not require a PhoneKit account.
  • Local content is stored on device using platform app storage.
  • AI API keys use secure storage where supported.
  • On-device AI keeps prompts and document content on your device.
  • Network requests to AI providers, Google, Firebase, RevenueCat, GitHub, and external websites use those services' transport security.

Deletion

Local app data can be deleted in the app where controls are available, by removing saved settings or API keys, or by uninstalling the app. Third-party data deletion is handled by the relevant third-party service.