Version 2026-08-02 · Effective 2 August 2026 · Replaces version 2026-07-25
This is the version your app records when you accept it. What changed: contacts removed (the app does not request that permission), the network sensor described accurately, the password-check processor named, exposure monitoring added, and self-service deletion written down.
SireShield is a continuous mercenary-spyware detection and bounded-protection service for people at elevated risk of targeted surveillance. It is operated by:
CodeSire Private Limited
CIN: U72502KA2017PTC098946
Registered office: #44/1, MS Ramaiah Layout, Raja Reddy Layout, Hesaraghatta Road, Bangalore, Karnataka, India – 560073
Because SireShield is an invitation-only, vetted service, we process your personal data as part of an assessment and protection relationship you enter into with us. We have deliberately designed the service to collect as little personal data as possible.
This policy applies to personal data we process through:
It does not apply to third-party services, websites, or apps that we do not control, even where we link to them.
| Data | When & why |
|---|---|
| Full name; email address; profession/field; device platform; your description of your situation and concerns ("your story"); preferred way to meet | When you apply through our website, so a human analyst can assess your eligibility and risk. Your description may contain sensitive information about your work, affiliations, or safety, which you choose to share with us. |
| Name, email address, and (if you provide it) phone number; assigned service tier | To create and administer your account once your application is approved. |
| The subject and content of any support ticket you raise | To provide human analyst support when you contact us. |
To assess how exposed your device is, the app periodically sends a posture-only snapshot. This describes the security state of the device, not its contents:
To detect signs of surveillance software, the app processes the following metadata on your device and may report detections (not raw data) to our backend for correlation and analyst review:
If you choose to use exposure monitoring, we store the email addresses, phone numbers, or Twitter/X handles you nominate to be watched for appearance in breach corpora and credential leaks, together with the time you consented to each one. We keep a keyed cryptographic hash alongside each value so lookups can be performed without sending the value itself wherever a provider supports that.
You choose what to add, you can remove any of it at any time, and the whole list is deleted the moment your subscription ends or you ask to be deleted — not at the end of a retention window. It is the one part of your record we treat as more dangerous to keep than to lose, because a list of the identities you care about is a list of what to attack.
An anti-spyware product must not behave like spyware. SireShield is designed not to collect, read, store, or transmit:
We process your personal data on the basis of your consent, given when you apply and when you activate the app, and for the certain legitimate uses permitted under the DPDP law. You may withdraw your consent at any time (see Section 11); doing so will end our ability to provide the service.
| Purpose | Data used |
|---|---|
| Assessing your application and verifying eligibility | Information you provide (3.1) |
| Providing detection, alerts, and bounded protection | Device posture and security detections (3.2, 3.3) |
| Assessing your device's exposure to known vulnerabilities | Device posture (3.2) |
| Providing human analyst support and responding to tickets | Ticket content, device posture snapshot (3.1, 3.2, 3.3) |
| Securing the service, preventing misuse, and meeting legal obligations | Technical and log data (3.5) |
| Watching the assets you nominate for exposure in breach corpora (Managed plan, not yet live) | Exposure-monitoring assets (3.4) |
The app requests only what it needs to do its job. This is the complete list as declared by the Android app; there are no others.
| Permission | Why we use it |
|---|---|
| VPN service | To run the local network sensor described in Section 7.1. Your traffic is not routed to us. |
| Query all packages | To compare the apps installed on your device against lists of known surveillance and stalkerware software, and to identify apps holding the sensitive access stalkerware depends on. |
| Internet | To fetch the signed threat list and report detections. |
| Notifications | To tell you when protection stops, or when something needs your attention. |
| Foreground service (special use) | To keep the network sensor running while the app is closed. |
| Start on boot | So protection resumes after you restart your phone. |
We do not request contacts, location, storage, camera, microphone, SMS, or call-log permissions. On iOS the app requests none of the above: Apple does not permit an app to inspect other installed apps or to filter network traffic this way, and the app says so rather than implying parity.
We do not use these permissions to build a profile of you or to serve advertising. We do not sell your personal data, and SireShield contains no third-party advertising.
To block connections to known spyware and malicious servers, the Android app uses Android's VpnService to run a local filter on your device.
There is no remote VPN server. Your traffic is never routed through SireShield's infrastructure, and we do not hide your IP address or change your apparent location. The tunnel does not carry your general traffic: it carries DNS lookups so they can be checked, and — only if you switch on "Block bad connections" — the specific addresses on our signed threat list.
Each DNS lookup is compared on your device against a cryptographically signed list of known-malicious infrastructure. A lookup that matches receives a locally generated blocking response. Every other lookup is passed unchanged to your device's own DNS servers. Only the fact that a block occurred — which indicator matched, and when — is sent to us. Your browsing history is not collected, transmitted, or stored.
Android shows a key icon in your status bar whenever this is running, and you can turn it off at any time from the Protection screen. If you use another VPN, Android permits only one at a time — the SireShield sensor pauses, and the app tells you it has.
We do not sell your personal data. We share it only as necessary to run the service, using vetted processors ("Data Processors") acting on our instructions:
The breached-password check and our threat-intelligence sources do not receive any information that identifies you. We may disclose personal data where required by law, by a valid order of a court or competent authority, or to protect the rights, safety, and security of our users, the public, or CodeSire.
Your personal data is stored and processed on Microsoft Azure infrastructure located in India (Central India region). Service emails are handled by Azure Communication Services with data residency configured in the United Kingdom. We do not transfer your personal data to any country or territory that the Central Government of India has restricted for such transfers.
We keep your personal data only for as long as necessary to fulfil the purpose for which it was collected, or as required by law. In particular:
If you request deletion yourself from the app, your record is destroyed 48 hours later (Section 11.1). We hold it for those 48 hours for one reason: so that a mistaken request can be undone by you. We stop collecting from your devices the moment you ask, not when the 48 hours are up.
Records that prove consent was given, and the administrative audit trail, are retained after erasure with your identity replaced by an opaque reference that cannot be traced back to you. Backups cannot be selectively edited; an erasure completes across backups as they age out of their retention cycle.
Under the DPDP law you have the right to:
To exercise any of these rights, contact our Director using the details in Section 12. We will respond within the timelines prescribed under the DPDP law, and in any case within 90 days for access, correction, and erasure requests. We may need to verify your identity before acting on a request.
You do not have to ask us, and you do not have to give a reason. In the app: Help → Your account → Delete my account and all my data.
Deletion takes effect 48 hours after you request it. The app shows you the exact date and time before you confirm, and again afterwards. The window exists so that a mistaken tap can be undone — it is not a cooling-off period and not a chance for us to change your mind. During those 48 hours:
You can also end your subscription without deleting your record, or pause it — pausing stops all monitoring, deletes nothing, and you resume it yourself from the same screen.
Use the form at sireshield.io/delete, or write to privacy@codesire.net.
A request made that way carries no proof of who sent it, so an analyst will verify your identity through the channel you already know us through before anything is destroyed. For the same reason the form is deliberately uninformative: whatever you submit, you see the same confirmation. We will not tell you whether an address is associated with an account — not in the response, not in an error, not by answering faster — because a page that answered differently for real subscribers would let anyone test whether a particular person is one of ours. We do not send email about these requests either.
| Destroyed | Retained, and why |
|---|---|
| Your application and the assessment notes made about you. Every device on your account and its full history — posture reports, detections, and the underlying diagnostic data. Every concern you reported, every case, investigation and written finding. Your monitored-asset list. Any deletion request you made through the website. | Proof that consent existed, so we can show we had a lawful basis for processing that already happened — with your identity replaced by an opaque reference and the IP address removed. The administrative audit trail, repointed at the same reference with details cleared. A device tombstone — an opaque device identifier and one word, up to 180 days: the only way to tell a phone we have already forgotten to stop claiming protection and wipe itself. It names nobody. Backups, until they age out. |
We can give you written confirmation listing exactly what was destroyed and what was kept.
If you have any complaint or question about how we handle your personal data, or wish to exercise your rights, please contact:
Director
CodeSire Private Limited
Email: privacy@codesire.net
Address: #44/1, MS Ramaiah Layout, Raja Reddy Layout, Hesaraghatta Road, Bangalore, Karnataka, India – 560073
If you are not satisfied with our response, you have the right to lodge a complaint with the Data Protection Board of India.
No system is perfectly secure, but we take the protection of the people we serve extremely seriously and design accordingly.
SireShield is intended only for adults aged 18 years and over. We do not knowingly process the personal data of children. If you believe a child's data has been provided to us, please contact our Director so we can erase it. Where we process the data of a person with a disability who has a lawful guardian, we do so in accordance with the DPDP law.
In the event of a personal data breach, we will notify each affected Data Principal without undue delay, and report the breach to the Data Protection Board of India within the timelines required under the DPDP law (within 72 hours of becoming aware, unless a longer period is permitted), including the nature of the breach and the measures we are taking.
We may update this policy from time to time. Each version carries a date, and that date is what your app records when you accept it — so it is always possible to establish which version you agreed to. When we make material changes we will publish the new version here and ask you to accept it in the app.
For any privacy question or to exercise your rights, contact our Director at privacy@codesire.net. To delete your data, see sireshield.io/delete. For general information about the service, see sireshield.io, our Terms of Use, and our Trust & Transparency page.