Google Play Compliant

Privacy Policy

MaxDrive Multi-Account Google Drive Manager

Effective Date: June 6, 2026  ·  Last Updated: June 6, 2026

Privacy at a Glance

MaxDrive is a local-first app. Your files stay in your Google Drive accounts — we never operate our own cloud servers to store your data. All sensitive information (tokens, encryption keys, biometric data) is stored only on your device using Android's hardware-backed Keystore encryption.

1.Introduction

Sanzox ("we," "our," or "us") develops and operates MaxDrive (package: com.sanzox.maxdrive), a mobile application available on the Google Play Store. This Privacy Policy explains how we collect, use, store, and protect your information when you use MaxDrive.

By downloading, installing, or using MaxDrive, you agree to this Privacy Policy. If you do not agree, please uninstall the app and discontinue use.

2.Information We Collect

2.1 Google Account Information

When you sign in with Google, we receive:

DataPurposeStorage
Email addressAccount identification & multi-account managementOn-device (Isar DB)
Display nameUI personalizationOn-device (Isar DB)
Profile photo URLUI displayOn-device (Isar DB)
OAuth access tokenGoogle Drive API authenticationOn-device (SecureStorage)
OAuth refresh tokenSession persistence without re-sign-inOn-device (SecureStorage)

We do not store your Google password. Authentication is handled entirely through Google's OAuth 2.0 protocol.

2.2 Google Drive File Metadata

MaxDrive syncs your file metadata (not file contents) from Google Drive to provide file browsing, search, and organization features:

This metadata is cached locally on your device in an Isar database for offline access and fast loading.

2.3 Device Photos & Videos

If you enable the Photo Auto-Backup feature, MaxDrive accesses your device's photo library (via READ_MEDIA_IMAGES and READ_MEDIA_VIDEO permissions) to upload new photos and videos to your Google Drive. We:

2.4 Crash Reports & Diagnostics

We use Firebase Crashlytics (by Google) to collect anonymous crash reports in production builds. This includes:

No personal data, file names, email addresses, or file contents are included in crash reports.

2.5 Push Notification Tokens

We use Firebase Cloud Messaging (FCM) to receive real-time sync notifications when your Google Drive files change. Your FCM device token is:

2.6 Biometric Data

MaxDrive supports biometric authentication (fingerprint/face) via Android's BiometricPrompt API for the Vault feature. We never access, process, or store your biometric data. All biometric operations are handled entirely by Android's hardware-backed security system.

2.7 Encryption Keys

When you use the Vault feature, an AES-256-GCM encryption key is generated and stored in Android's hardware-backed Keystore via Flutter Secure Storage. This key:

3.Data We Do NOT Collect

4.How We Use Your Information

PurposeLegal Basis
Authenticate with Google Drive APIContract / Consent
Sync and display your file metadataContract / Consent
Upload and download files to/from your DriveConsent
Auto-backup photos to your Drive (if enabled)Explicit Consent
Encrypt/decrypt files in the VaultConsent
Display sync progress and notificationsLegitimate Interest
Diagnose and fix crashesLegitimate Interest
Deliver real-time sync notifications via FCMLegitimate Interest

5.On-Device AI File Tagging

MaxDrive includes an intelligent file tagging system ("NeuralMesh") that automatically categorizes your files into smart tags. This system:

6.Third-Party Services

ServiceProviderData SharedPolicy
Google Sign-InGoogle LLCEmail, name, profile photoLink
Google Drive APIGoogle LLCFile metadata, file content (upload/download)Link
Firebase CrashlyticsGoogle LLCAnonymous crash reports, device infoLink
Firebase Cloud MessagingGoogle LLCFCM device tokenLink
Firebase Remote ConfigGoogle LLCApp instance ID (anonymous)Link

We do not use any advertising SDKs, analytics trackers, or third-party data brokers.

7.Data Storage & Security

7.1 Local Storage

7.2 Security Measures

8.Data Retention

9.Your Rights

Depending on your jurisdiction (GDPR, CCPA, or other applicable laws), you have the right to:

User Rights

10.Data Deletion

You can request complete data deletion through any of these methods:

11.Children's Privacy

MaxDrive is not intended for children under the age of 13. We do not knowingly collect personal information from children. If you believe a child under 13 has provided us with personal information, please contact us and we will take immediate steps to delete such information.

12.Google API Services User Data Policy

MaxDrive's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically, MaxDrive:

13.International Data Transfers

Your file data is stored in your Google Drive, which may be hosted in data centers worldwide per Google's infrastructure. MaxDrive does not independently transfer your data to any servers. Crash reports are processed by Firebase (Google) under their standard data processing terms.

14.Changes to This Policy

We may update this Privacy Policy from time to time. When we make significant changes, we will:

Continued use of MaxDrive after changes constitutes acceptance of the updated policy.

15.Contact Us

If you have questions about this Privacy Policy or your data, contact us at:

Sanzox

Email: hello.sanzox@gmail.com

App: MaxDrive (com.sanzox.maxdrive)

Developer: Sanzox