NumenShield

Privacy Policy — NumenShield Guard

Last updated: July 1, 2026

In short

NumenShield Guard analyzes your messages, links and calls inside your phone.

1. Who we are

NumenShield Guard is an application developed by SecPro LLC ("SecPro Security Professionals", "we", "us"). This policy explains what data the app handles, why, and what does (and does not) leave your device. By using the app you agree to what is described here.

2. Our principle: your phone first

The app is designed to work, whenever possible, without sending anything to the Internet. Scam detection in messages, call-pattern analysis and app scanning all run on your own device. The cloud is used only for what cannot technically be resolved locally (for example, knowing whether a domain was registered very recently).

3. What we do NOT collect

4. What data is handled, by feature

Checking messages, links and QR codes

On-device The text and the heuristics (urgency, prizes, requests for passwords, suspicious links, brand impersonation) are evaluated on the phone.

To the cloud (link only) If a message contains a link and you choose to analyze it, we send only that link (not the message text) to our verification service to check its security reputation. If the message has no link, nothing leaves.

Automatic message alerts

On-device With your "notification access" permission, the app reads the text of notifications from messaging apps to warn you if an incoming message looks like a scam. This evaluation is entirely local: the text does not leave the phone. Only if you tap "Analyze" and the message carries a link does the step above apply (the link is sent, not the text).

Web filter (blocking dangerous sites)

On-device The filter uses a local VPN on your device that blocks dangerous domains at the DNS level. Your traffic is not sent to us: we do not see which sites you visit. Domain lookups (DNS) that are not on the threat list are resolved by a public DNS (Google, 8.8.8.8), which sees those domains just as your carrier’s DNS already does when the filter is off. The app only periodically downloads the list of dangerous domains from our server; that download contains no information about you.

Call protection and community reputation

On-device Alerts for unknown, hidden or suspicious numbers (robocalls, international calls) are computed on the phone.

To the cloud (anonymous) To learn whether a number was reported as a scam by the community, the app sends only a fragment of an anonymous cryptographic fingerprint of the number: the server returns possible matches and the final comparison happens on your phone. This way our server never learns the number queried or who you called. If you are the one reporting a number as a scam, the full fingerprint is sent: we don't store the number in the clear, but that fingerprint does identify the reported number, which is what lets us warn everyone else. What we never store is who filed the report.

Reviewing apps (heuristic anti-malware)

On-device The app lists your installed applications and evaluates risk signals (dangerous permissions, accessibility services, install source). All analysis is local; we do not send the list of your apps.

Checking your email for breaches

To a verification service (at your request) If you use this feature, you enter an email and the app checks it against a specialized breach-checking service to see whether it appears in known data breaches. To do this, that email is sent encrypted to the service. This is an action you start explicitly; if you don't use it, no email is sent.

Reporting a link

To the cloud (at your request) If you flag a link as suspicious, you send us that link to improve protection for everyone. Only the link you choose to report is sent.

Crash reports

Diagnostics If the app closes due to an error, we send our own server a technical report with the error message, an excerpt of the stack trace and environment data (device model, system and app version). It never includes the content of your messages, links or personal data. It is processed on our own infrastructure, not on third-party analytics services, and nothing is sent in development builds.

5. Services and third parties

Features that require the cloud rely on our own infrastructure and, in some cases, on trusted third-party security providers (for example, to cross-check a link's reputation or check an email for breaches). In every case:

6. Permissions and why we ask for them

You can grant or revoke each permission from your phone's settings. Without a permission, only the feature that needs it is disabled; the rest of the app keeps working.

7. Data retention

Your analysis history, statistics and settings are stored only on your device and you can delete them from the app or by uninstalling it. Fingerprints of reported numbers and reported links are kept in our service to maintain community protection. Crash reports are kept as long as needed to fix bugs.

8. Security

All communication with our services and with third parties is encrypted over HTTPS. We minimize by design what is sent: whenever possible, anonymous fingerprints instead of data in the clear.

9. Children

NumenShield Guard is intended for adult users and is not designed for children under 13. We do not knowingly collect data from children.

10. Changes to this policy

We may update this policy to reflect app improvements or legal changes. The current version will be published on this page with its update date.

11. Contact

For any privacy question or to exercise your rights over your data, write to us at [email protected].