Privacy Policy

Effective: June 28, 2026 · Applies to CoreDM v1.0+

At a Glance

CoreDM is a free, ad-supported download manager for Android. We collect the minimum data needed to serve ads, verify rewarded ad completions, detect tampering, and fix crashes. We never sell your data. We never collect your files, browsing history, identity, or location.

1. Who We Are

CoreDM is developed and operated as an independent Android application. For privacy inquiries, contact coredmdev@gmail.com.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the CoreDM mobile application (the “App”). By using the App, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Information Collected Automatically

Data Element Purpose Shared With
Advertising ID
Resettable, non-permanent identifier provided by Google Play Services
Serve ads (banner, interstitial, rewarded video) Google AdMob (advertising network)
Android ID
Device-level identifier (Settings.Secure.ANDROID_ID)
Verify rewarded ad completions via server-side verification (SSV); detect persistent ad-blocking Cloudflare Workers (serverless function); Firebase Firestore (cloud database)
Device Fingerprint (Hashed)
SHA-256 hash of device hardware characteristics
Detect tampered or cracked app installations PostHog (product analytics, security events only)
Crash Reports
Stack traces, device model, OS version, app version
Diagnose and fix crashes (opt-in only) Firebase Crashlytics (Google)
Ad Load Failure Metrics
Count of consecutive ad load failures, error codes
Detect ad-blocker usage to protect ad revenue Firebase Firestore (cloud database)

2.2 Information Collected by Third Parties

Google AdMob (advertising) and Firebase Crashlytics (crash reporting) are Google services that may collect additional data according to their own privacy policies. This may include:

These data elements are collected and processed by Google, not by us directly. Refer to Google’s Privacy Policy for full details.

2.3 Information We Do NOT Collect

3. How We Use Your Information

Purpose Data Used Legal Basis (GDPR)
Display advertisements to fund the free App Advertising ID, IP (via AdMob) Legitimate Interest (Article 6(1)(f))
Verify rewarded ad completions for ad-free credit Android ID (SSV callback) Legitimate Interest (Article 6(1)(f))
Detect ad-blockers to protect revenue (the App is ad-only) Ad failure count (error codes) Legitimate Interest (Article 6(1)(f))
Diagnose and fix application crashes Crash stack traces (opt-in) Consent (Article 6(1)(a))
Detect tampered/cracked app installs Hashed device fingerprint Legitimate Interest (Article 6(1)(f))

Under GDPR Article 6(1)(f), “Legitimate Interest” means the processing is necessary for our legitimate business interests (operating a free ad-funded service, preventing fraud) and does not override your fundamental rights and freedoms.

4. Data Sharing & Disclosure

4.1 Service Providers

We share data with the following service providers who process data on our behalf. Each provider is contractually obligated to protect your data and use it only for the purposes we specify:

Provider Service Location Privacy Policy
Google LLC AdMob (advertising) United States Link
Google LLC Firebase Crashlytics United States Link
Google LLC Firebase Firestore United States Link
PostHog, Inc. Security telemetry United States / EU Link
Cloudflare, Inc. Serverless functions (SSV, integrity) Global edge network Link

4.2 We Do NOT Sell Your Data

CoreDM does not sell, rent, trade, or lease personal information to any third party for monetary or other valuable consideration. We do not share data with data brokers, advertisers beyond AdMob’s standard ad serving, or any other commercial entities.

5. Your Controls Within the App

Crash Reporting

OFF by default. Toggle in Settings → Advanced → Crash Reports. When off, no crash data is sent to Firebase Crashlytics.

Ad-Free Credit

Watch a rewarded ad to earn 3 hours of ad-free time. While credit is active, all ad loading is suppressed. No ad-related data is collected during this period.

Reset Advertising ID

Android provides a system-level control to reset your advertising ID:
Settings → Google → Ads → Reset advertising ID
This replaces your identifier with a new, random one, unlinking future ad activity from past activity.

6. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

You are advised to review this Privacy Policy periodically. Continued use of the App after changes are posted constitutes acceptance of the updated policy.

7. Contact Us

Email: coredmdev@gmail.com


This Privacy Policy was last updated on June 28, 2026 and applies to CoreDM version 1.0 and all subsequent versions until superseded by a newer policy.