Privacy Policy – Clean Dufile Storage Cleaner
Last Updated: July 07, 2026
Effective Date: July 07, 2026
1. Overview & Acceptance of Terms
This Privacy Policy constitutes a legally binding agreement between you (“User”) and Clean Dufile Studio (“We”, “Us”, “Our”), the developer and operator of the Android storage cleaning application Clean Dufile (the “App”). The core function of Clean Dufile is scanning junk cache, residual app files, duplicate photos/videos, unused APK installers and oversized redundant media to free device storage space.
By downloading, installing, launching Clean Dufile, granting storage permissions, running file/media scans, or performing any cleanup operations within the App, you confirm that you have fully read, understood, and unconditionally consented to all data handling rules set forth in this Policy. If you disagree with any clause herein, you must uninstall Clean Dufile and terminate all usage immediately.
This document complies with Google Play Developer Policies, Google Data Safety disclosure standards, Android MANAGE_EXTERNAL_STORAGE permission regulatory requirements, United States federal and state privacy laws including COPPA, CCPA/CPRA, CalOPPA, as well as the EU General Data Protection Regulation (GDPR) for users residing in the European Economic Area, United Kingdom and Switzerland.
2. Sensitive Permission Full Disclosure: MANAGE_EXTERNAL_STORAGE (All Files Access)
The only sensitive permission requested by Clean Dufile: MANAGE_EXTERNAL_STORAGE (All Files Access)
This App does NOT request contacts, SMS, call logs, camera, microphone, GPS location, calendar or notification permissions at any time.
2.1 Legitimate Functional Necessity (Google Play Mandatory Justification)
Android Scoped Storage and MediaStore APIs only provide limited access to public media folders, and cannot retrieve hidden app cache directories, uninstall residual folders, external SD card partitions, system hidden storage paths, private download folders and leftover installation packages. Without MANAGE_EXTERNAL_STORAGE full-file access, Clean Dufile cannot complete its core advertised storage cleaning functionality, including detecting duplicate images, blurry redundant videos, long-term unused compressed files and hidden system junk files. Restricted media-only storage APIs cannot replace this permission to deliver full-device deep scanning, which is the primary selling feature of this storage cleaner utility.
2.2 Strict Boundaries Governing File & Media Access (Privacy Protection Guarantees)
- Clean Dufile only extracts file metadata during scanning: file name, absolute storage path, file format extension, resolution and file size. The App never parses, previews, reads, uploads or stores the internal visual, textual, financial or confidential content contained within your private photos, personal videos, encrypted documents and sensitive user files stored on your device.
- No file, photo or video will be deleted automatically under any circumstance. All identified junk, duplicate and oversized media candidates are fully displayed to you for manual checkbox selection before any deletion action is executed; Clean Dufile will never remove any user file without your explicit affirmative manual confirmation.
- All file scanning, duplicate matching, sorting and classification logic runs entirely offline and locally on your device’s CPU and memory. No raw image/video binary data, complete file bodies or full media content will be transmitted to remote cloud servers during any storage scan process.
- You retain full unilateral revocable consent to withdraw All Files Access permission at any time via your Android system Application Settings panel. Immediately after permission revocation, all storage scan, media detection and file cleanup functionality within Clean Dufile will be permanently disabled until you re-grant the permission manually.
- Clean Dufile will never scan, collect or upload sensitive private documents such as bank statements, ID photos, chat history attachments or personal confidential files to external servers; all file analysis is confined to your local device hardware only.
3. Categories of Information We Collect
We only collect anonymous non-personal technical data without unique user identifiers, plus voluntary feedback you actively submit to our official support channel. No sensitive personal identifiable information is collected under any circumstances.
3.1 Voluntarily Submitted User Information
- Feedback text, scan failure descriptions and device error notes you submit via the in-app support form to report media matching bugs, scan crashes or storage detection failures.
- Optional email address you provide solely for our support team to send written follow-up replies to your technical service tickets.
- Local custom scan configuration preferences: media filter thresholds, hidden folder exclusion lists and auto-clean rules saved exclusively on your device local storage; these preference records will not be uploaded to cloud servers by default.
3.2 Automatically Collected Anonymous Technical Data
- Device hardware metadata: device brand, hardware model identifier, Android OS build version, Clean Dufile app build version, total internal storage capacity and remaining free space metrics.
- Anonymous Google Advertising ID (GAID): used solely to serve non-personalized contextual in-app advertisements, with no user profiling, cross-device tracking or targeted ad building enabled.
- De-identified crash logs and performance statistics: anonymized error stack traces and scan speed benchmarks used exclusively to fix media duplicate matching bugs and improve cross-device scan stability; crash logs contain zero private media or user file content extracted from your local storage.
- Aggregated anonymous usage metrics: total scan launch frequency, total junk storage space cleared per session, feature click counts; all aggregate statistical data cannot be linked back to a single unique user or hardware device.
3.3 Data We Never Collect Under Any Circumstance
Clean Dufile Studio will never capture full legal names, phone numbers, bank/credit card financial information, government-issued identity documents, contact list address books, real-time geolocation coordinates, biometric authentication data, camera captured images, microphone audio recordings or private chat message history.
4. Lawful Purposes for Data Processing
All data processing activities described herein operate under the lawful basis of legitimate business interest and contractual necessity to deliver the App’s core storage cleaning service. We will not repurpose, repackage or reuse your anonymous device metadata and scan statistics for unrelated commercial marketing activities without separate, written, affirmative opt-in consent submitted by you through our official support communication channel.
- Deliver core full-device storage cleaning features: duplicate photo/video detection, oversized media sorting, hidden junk cache scanning and manual file removal workflow;
- Optimize cross-hardware compatibility and resolve runtime scan crash exceptions across all mainstream Android device brands and API levels;
- Deliver free non-targeted in-app advertisements through Google AdMob to offset development and server operational costs, enabling full-feature free distribution of Clean Dufile to all global users;
- Review voluntarily submitted user support feedback to troubleshoot MANAGE_EXTERNAL_STORAGE permission detection errors, media matching failures and device compatibility defects;
- Fulfill mandatory legal disclosure, audit and compliance requirements mandated by the Google Play Store marketplace and global cross-border privacy regulatory frameworks.
Clean Dufile Studio will never sell, rent, trade, license or monetize your device metadata, scanned file metadata, anonymous diagnostic logs or voluntary support feedback information to third-party advertising agencies, consumer data broker platforms, marketing firms or commercial data aggregators for monetary profit.
5. Integrated Third-Party SDKs & Data Sharing Rules
Clean Dufile only integrates official Google LLC service SDKs. All data shared with these third-party vendors is fully anonymized, non-personal statistical data stripped of all user identity markers. All Google subsidiaries execute legally binding data protection agreements prohibiting unauthorized secondary disclosure or commercial resale of shared device metadata.
5.1 List of Active Third-Party SDK Integrations
- Google Firebase Crashlytics: Purpose – collect anonymous crash diagnostic logs to identify and repair runtime scanning bugs and improve overall App stability; this SDK cannot independently access local private media, encrypted documents or raw full-storage file contents residing on your mobile device without your manually granted All Files Access permission.
- Google AdMob: Purpose – serve free non-personalized contextual in-app advertisements; processes only anonymous GAID advertising identifiers to regulate ad display frequency and limit repetitive pop-up ad interruptions during App usage sessions.
- Google Play Billing: Purpose – process optional one-time ad-free premium purchases and recurring subscription upgrades; all complete payment transaction data is securely stored and managed exclusively by Google LLC. Clean Dufile Studio never caches, retains or stores any user credit card numbers, billing addresses or payment credential details on our backend cloud servers.
5.2 Compelled Legal Disclosure Exception
We may release aggregated, anonymized device statistical data without additional user consent only when responding to valid, formally issued court orders, official federal/state government regulatory data disclosure subpoenas, or when data disclosure is reasonably necessary to protect platform operational security, Our registered legal intellectual property rights, or the general personal data safety of all Clean Dufile end users.
6. Data Storage & Retention Policies
- Temporary scan cache data: Local file scanning indexes and on-device media preview cache stored within Clean Dufile’s private application sandbox folder are automatically and permanently erased the instant you fully close and exit the App.
- Anonymous crash & usage analytics logs: Anonymized diagnostic data is retained on encrypted Google cloud backend servers for a maximum fixed retention window of twelve (12) calendar months. Upon expiration of the 12-month period, all log records are permanently auto-deleted from all cloud storage systems with no manual recovery option available.
- User voluntary support feedback records: Messages submitted via the in-app help form are stored for ninety (90) calendar days solely to facilitate follow-up technical support inquiries. After the 90-day retention window expires, all feedback text and associated optional email addresses are fully purged from Our internal support databases.
- Local user custom scan preferences: Filter rules, storage size thresholds and hidden folder exclusion lists reside solely on your mobile device’s local storage partition. These preference records are permanently deleted when you manually clear Clean Dufile’s application storage cache or fully uninstall the software from your device hardware.
Clean Dufile does not enable automatic cloud synchronization or silent background upload of local device user files by default. All scanned file metadata information remains confined to your mobile hardware and will not be transmitted to remote external servers unless you voluntarily submit feedback content through the built-in in-app support form.
7. Industry-Standard Data Security Protection Measures
We implement layered technical, administrative, and operational security safeguards consistent with global information security industry standards to shield anonymous device metadata and local scan cache records from unauthorized access, data leakage, malicious tampering, and permanent irreversible data loss:
- All network data transmission pipelines between your device and third-party Google SDK backend servers utilize TLS 1.3 end-to-end encryption protocols to block packet interception and man-in-the-middle data theft during data transfer sessions.
- Third-party SDK data access channels are strictly isolated via Android operating system runtime permission sandbox restrictions; external integrated tool modules cannot independently read full local storage media files without your manually activated MANAGE_EXTERNAL_STORAGE permission grant.
- Internal backend staff data access control protocols mandate multi-factor identity verification and strict role-based access authority segmentation to limit which team members may review aggregated anonymous statistical log data only.
- Quarterly automated vulnerability scanning operations are performed on Clean Dufile’s source code and all outbound data transmission pipelines to identify and remediate potential security loopholes in advance of public release App updates.
- A standardized formal data breach emergency response protocol is fully documented and enforced company-wide. In the event of any unauthorized confidential user data exposure incident, all impacted end users and relevant federal/state data regulatory authorities will receive formal written notification within seventy-two (72) hours of breach detection, in full compliance with United States state-level data breach notification statutes.
No digital storage or internet transmission system can guarantee 100% absolute invulnerability to data security risks at all times. We strongly recommend all users enable secure screen lock passwords or biometric authentication for Your mobile device hardware to prevent unauthorized physical third-party access to local private media gallery and document files stored on your device.
8. Your Global Controllable Privacy Rights
- Right to restrict anonymous data tracking: Toggle off anonymous crash log reporting and GAID advertising ID tracking functionality through your Android system native privacy settings menu panel.
- Right to erase local App data: Clear all temporary Clean Dufile scan cache and custom storage filter preference configurations via your mobile device’s native system application management panel.
- Right to withdraw storage consent: Revoke the MANAGE_EXTERNAL_STORAGE All Files Access permission at any time inside system App Settings; all core storage scan and media cleanup functionality will be fully disabled immediately following permission revocation.
- Right to terminate all data collection: Complete full uninstallation of Clean Dufile from your device hardware will erase all local on-device App preference data and cease all future anonymous technical data collection originating from your hardware permanently.
9. CCPA / CPRA Statutory Rights for California Residents (United States)
If You are a permanent legal resident of the State of California, United States of America, You hold supplementary statutory privacy rights established under the California Consumer Privacy Act and California Privacy Rights Act:
- The Right to Know: You may submit a formal written request to receive full written disclosure of all categories of non-personal device technical data We collected linked to Your unique hardware GAID advertising identifier over the preceding twelve (12) calendar months;
- The Right to Delete: You may submit a formal written demand requesting permanent full erasure of all anonymous usage statistics and crash log data tied to Your device advertising identifier stored on Our third-party Google cloud server infrastructure;
- The Right to Opt Out of Sale: Clean Dufile Studio never sells, trades, or monetizes any personal or anonymous user information to commercial third parties for profit. No separate formal opt-out process for data sales activities is required or available to users;
- The Right to Non-Discrimination: Exercising any of Your statutory CCPA privacy rights will not result in discriminatory service limitations, price increases, or restricted access to all free core storage scanning and media cleanup feature sets contained within the Clean Dufile application.
To submit a formal CCPA data disclosure or permanent deletion request, send a complete written email to Our dedicated privacy support address listed in Section 13 below. We will complete mandatory user identity validation and issue a formal written compliance response within thirty (30) calendar days of receipt of Your fully submitted request.
10. COPPA Federal Children’s Privacy Protection Rules (U.S. Federal Law)
Clean Dufile Storage Cleaner is designed, marketed, and intended exclusively for end users thirteen (13) years of age and older. This App is not targeted, advertised, or directed to minors under the age of 13, in full strict compliance with the United States Children’s Online Privacy Protection Act (COPPA) federal regulatory requirements.
We will not intentionally, knowingly, or voluntarily collect any personally identifiable information from children under the age of thirteen without verifiable, written parental consent meeting strict COPPA identity verification standards. If You are a parent or legal guardian and discover Your minor underage child has downloaded, installed, or utilized Clean Dufile without Your formal written approval, contact Our dedicated privacy support email listed below. We will fully delete all child-related stored feedback records and anonymous device usage statistical data within fourteen (14) business calendar days following successful verification of Your legal guardian identity documentation.
11. GDPR Legal Protections for EEA, UK & Swiss Residents
Users located within the European Economic Area, United Kingdom, and Switzerland receive full formal data subject legal protections under the EU General Data Protection Regulation (GDPR). You hold the legal right to formally object to data processing activities carried out under Our legitimate business interest legal basis, request data portability of aggregated anonymous statistical records, demand rectification of inaccurate aggregate device data, and submit a formal written complaint to Your local regional data protection supervisory authority if You believe Clean Dufile Studio has violated official GDPR privacy compliance standards.
All cross-border data transfers originating from European regional territories utilize European Commission officially approved Standard Contractual Clauses (SCCs) to maintain equivalent data protection compliance levels for all EU-based end users transferring anonymous device data to United States-hosted Google cloud server infrastructure.
12. Policy Amendments & Update Notification Rules
We reserve the full unilateral legal right to revise, amend, modify, and update this Privacy Policy on a regular periodic basis to align with updated Google Play marketplace platform policies, United States federal and state data protection privacy legislation, global cross-border privacy regulatory frameworks, and functional feature adjustments deployed to Clean Dufile via official App updates.
Material policy revisions that alter storage data access control rules, MANAGE_EXTERNAL_STORAGE permission usage boundary standards, third-party data sharing scope limitations, or sensitive user data processing compliance rules will be formally announced via in-app pop-up alert notifications delivered to all active App users at least fourteen (14) calendar days before the updated policy officially takes legal effect. Minor textual wording corrections, formatting tweaks, and grammatical revisions will only refresh the “Last Updated” date label located at the top of this document without separate advance user notification alerts.
Your continued active usage of Clean Dufile’s storage scan, duplicate media identification, and file cleanup functional tools after the revised policy official effective date constitutes Your full voluntary acceptance of all updated privacy clauses contained within this revised Policy document.