Version 2026-08-22 · Effective 22 August 2026 · Replaces version 2026-08-02
This is the version your app records when you accept it. What changed: analyst investigations defined as the metered unit, exposure monitoring added, the network sensor named accurately, and the account lifecycle — pause, end, delete, emergency purge — written down.
The Service is offered on an invitation-only basis to individuals who have applied and been approved following a human assessment. You must be at least 18 years old and legally capable of entering into a contract. You may access the Service only using an activation code issued to you, and only for your own protection. Access is personal to you and may not be transferred.
SireShield is a continuous detection and bounded-protection service designed to reduce your exposure to mercenary and commodity spyware. Depending on your plan it provides:
Please read this section carefully.
SireShield detects, warns about, and helps reduce the risk of spyware, and blocks connections to known malicious infrastructure. It is a risk-reduction tool, not a guarantee of safety.
SireShield cannot and does not guarantee that it will detect or prevent every form of spyware or surveillance. In particular, no unprivileged mobile application — including SireShield — can reliably detect or remove a sophisticated, zero-click, or nation-state-grade implant. Mobile operating systems deliberately prevent any app, ours included, from inspecting another app's memory or the system itself at that depth. New and unknown threats may not be detected. The Service is not a substitute for good security practices (such as keeping your device updated), professional security advice, or legal advice, and should be used as one layer of your overall safety, not your only one.
What we commit to instead is honesty about what is running. If protection stops, the app tells you. If we have not been able to check something, the app says so rather than showing you a reassuring colour.
You acknowledge that you understand these limits and that you do not rely on SireShield as a complete or guaranteed defence.
Some of what SireShield does depends on knowing a threat in advance; some does not, by design.
Decoy tripwires place realistic but fabricated artifacts on your device that you would never use, each carrying a marker unique to your device. Software that harvests a device sweeps them up indiscriminately, and any use of one is strong evidence of exfiltration — regardless of whether we have ever seen the software responsible. These artifacts live inside the app's own sandbox; nothing is written to your real contacts, files, or accounts.
Behavioural monitoring learns your device's own normal rhythm on the device itself and flags departures from it. It is a supporting signal and is deliberately never sufficient on its own to raise an alert; it corroborates other findings, which a human analyst then reviews.
These reduce the gap between the known and the unknown. They do not close it, and Section 3 continues to apply in full.
When your application is approved, we issue a single-use activation code to bind your device to your account. There is no SireShield password: possession of the enrolled device is the credential, which is why the actions in Section 6 can be taken from the app without any further proof of identity, and why a request made without the device requires verification. You are responsible for keeping your code and device secure. The Service is licensed for use on one active device at a time unless we agree otherwise. You must provide accurate information, including using the email address associated with your app-store account so that we can deliver the Service to you.
All three are available to you in the app, under Help → Your account. You do not need to ask us and you do not need to give a reason.
Paused. Monitoring stops and your devices stop reporting. Nothing is deleted. If you paused it, you can resume it yourself from the same screen. If we paused it — which we would only do for the reasons in Section 17 — the app says so, your analyst can tell you why, and that one is ours to lift rather than yours.
Ended. The relationship finishes. Your devices lose access, the app clears what it holds locally, your monitored-asset list is deleted immediately, and your record is kept for the retention window described in the Privacy Policy before erasure. This is not reversible from the app.
Erased. Your record is destroyed: your application and the notes made about you, every device and its history, your reports, cases and written findings. We retain only a record that consent existed and an administrative audit trail, both with your identity replaced by a reference that cannot be traced back to you, and we can give you written confirmation of what was destroyed.
When you ask us to erase your record, it happens 48 hours later. The app shows you the exact date and time before you confirm. The window exists for one reason: so that an accidental tap can be undone. Three things follow, and we would rather state them here than leave them to be discovered.
We stop collecting immediately. Not in 48 hours — the moment you ask. Your monitored-asset list is deleted at once and is not restored if you cancel.
Only you can cancel it, and only from your own device. We do not send you an email with a link. An email saying you are a SireShield subscriber is a document we would rather not put in anyone's inbox, and links in email are followed automatically by scanners and security filters, which would let a machine undo a deletion you meant.
No one at SireShield can stop it. Not your analyst, not an administrator, not us. That capability does not exist in our systems. Once the window closes the erasure runs on your authority alone, and our internal requirement for two administrators to approve a destruction does not apply — that requirement exists to protect you from us, not to give us a say in your own deletion.
If you no longer have the device, use sireshield.io/delete or write to privacy@codesire.net. Because such a request carries no proof of who sent it, we will verify your identity through the channel you already know us through before anything is destroyed.
If you are detained, your device is seized, or you signal duress, we can immediately cut the device's access and instruct the app to destroy everything it holds locally. In this state the app displays nothing identifying you as a subscriber. Your server-side history is not deleted, so this can be reversed with a new activation code. You can arrange a duress signal with your analyst in advance.
Reporting a concern is always free and unlimited. A real analyst reads every report, on every plan. It is never counted against any allowance.
An investigation is a deeper piece of work your analyst opens, with you, when a concern warrants it, and which ends in a written finding. This is the metered unit of the Service:
Your current allowance is shown in the app and served by our systems rather than estimated by the app. Reports and alerts never consume an investigation; only your analyst opening one does.
On the Managed plan you may nominate email addresses, phone numbers, or Twitter/X handles to be watched for exposure in breach corpora and credential leaks. You choose what to add and may remove any of it at any time.
You must not, and must not attempt to:
The Service may be offered under different plans, some of which are paid and some of which may be provided at reduced or no cost to eligible civil-society users at our discretion. Where fees apply, they will be communicated to you before you subscribe. We may change our plans and fees on reasonable notice; the price recorded when you subscribed continues to apply until we tell you otherwise.
There are two ways to pay for the Service, and your rights differ between them.
Paying us directly. Where we take payment ourselves — through our payment gateway, against a payment link we send you — we are the seller. Prices are inclusive of GST and we issue a tax invoice for every payment. Unless required by law or stated otherwise, those fees are non-refundable.
Purchasing through the Apple App Store. Where you buy a subscription inside our iOS app, Apple is the seller of record. Apple takes the payment, sets and collects any applicable tax, and issues the receipt or invoice for it. We do not issue a separate tax invoice for those purchases, because the transaction is not ours to invoice.
App Store purchases are refunded by Apple, under Apple’s own policy in force at the time. Refund requests for those purchases must be made to Apple; we cannot process them, and nothing in these Terms limits or overrides whatever Apple’s policy allows you. Where Apple grants a refund, that decision stands. We may then contact you about the future of your subscription — we do not cut off protection automatically on a billing event, because someone under active surveillance should not lose cover without a person having looked at it first.
An App Store subscription renews automatically until you cancel it, and you cancel it in your Apple ID account settings rather than with us. Cancelling stops the next renewal; it does not shorten the period you have already paid for, and your access continues to the end of that period.
Where you paid us directly, ending your subscription is covered by section 6.
None of the above affects rights you have under applicable consumer law that cannot be excluded by agreement.
The Service, including its software, design, content, trademarks, and the name "SireShield", is owned by CodeSire Private Limited or its licensors and is protected by law. We grant you a limited, personal, non-exclusive, non-transferable, revocable licence to use the Service in accordance with these Terms. No other rights are granted.
The app is distributed through third-party app stores (such as Google Play and the Apple App Store) and relies on third-party infrastructure. Your use of those platforms is subject to their own terms, and where you purchase through a store, that store — not us — is the seller of record for the purchase (see section 11). We are not responsible for third-party services we do not control.
Threat-intelligence data used by the Service is drawn from a combination of open-source, reputable public and community, and commercial sources, and is provided on an “as available” basis. The particular sources we rely on change as the field does; we add and retire them without notice, and no specific source forms part of what we promise you.
To the maximum extent permitted by applicable law, the Service is provided "as is" and "as available", without warranties of any kind, whether express or implied, including any implied warranties of merchantability, fitness for a particular purpose, non-infringement, or that the Service will be uninterrupted, error-free, or that it will detect or prevent all threats. Some jurisdictions do not allow certain exclusions, so some of these may not apply to you.
To the maximum extent permitted by applicable law, CodeSire Private Limited and its directors, employees, and partners will not be liable for any indirect, incidental, special, consequential, or punitive damages, or for any loss of data, profits, or goodwill, arising out of or relating to your use of, or inability to use, the Service — including any failure to detect or prevent spyware or surveillance. To the extent liability cannot be excluded, our total aggregate liability arising out of or relating to the Service is limited to the amount you paid us for the Service in the twelve (12) months before the event giving rise to the claim, or, if you paid nothing, ₹1,000. Nothing in these Terms excludes or limits liability that cannot be excluded or limited under applicable law.
You agree to indemnify and hold harmless CodeSire Private Limited from any claims, losses, or expenses (including reasonable legal fees) arising out of your misuse of the Service or your breach of these Terms or of applicable law.
Section 6 covers ending the relationship at your initiative. Separately, we may suspend or terminate your access where these Terms are breached, where the law requires it, or where it is necessary to protect the Service or other subscribers. A suspension we apply is shown in the app as ours, and only we can lift it.
On termination, your right to use the Service ends; sections that by their nature should survive (including Sections 3, 12, 14, 15, 16, and 18) will survive. We handle your personal data on termination as described in our Privacy Policy.
These Terms are governed by the laws of India. Subject to any applicable law, the courts at Bangalore (Bengaluru), Karnataka, India will have exclusive jurisdiction over any dispute arising out of or relating to these Terms or the Service.
We may update these Terms from time to time. Each version carries a date, and that date is what your app records when you accept it — so it is always possible to establish which version you agreed to. When we make material changes we will publish the new version here and ask you to accept it in the app.
For any question, complaint, or grievance regarding the Service or these Terms, contact:
Director
CodeSire Private Limited
Email: privacy@codesire.net
Address: #44/1, MS Ramaiah Layout, Raja Reddy Layout, Hesaraghatta Road, Bangalore, Karnataka, India – 560073
To delete your data, see sireshield.io/delete. See also our Privacy Policy and our Trust & Transparency page.