PDF Editor Offline · com.nanosolutions.pdfreader
Effective 5 September 2026 · Last updated 5 September 2026
This policy explains what happens to your information when you use PDF Editor Offline ("the app"), an Android application published by Nano Solutions ("we", "us"). It covers this app specifically, not any other app we publish.
The short version.
This is the part most people care about, so it comes first.
The app contains no networking code of its own for handling documents. There is no HTTP client, no socket and no embedded browser anywhere in it. It is not capable of uploading your files, and it does not do so.
Every operation runs locally on your device:
The app uses Android's Storage Access Framework. You choose a folder, and the app can read and write only inside the folder you chose. It has no storage permission and cannot see the rest of your device. You can withdraw that access at any time in Android Settings.
Files the app creates are written into a folder named PDF Reader inside the location you granted, with names based on the source document. These files belong to you: the app never deletes them, and they remain after you uninstall it.
The app keeps a small amount of information locally, in its private storage. None of it is transmitted to us.
| What | Contains | Kept for |
|---|---|---|
| Recent documents | File name and location of documents you opened | Most recent 50 |
| Favourites | File name and location of documents you starred | Until you remove them |
| Bookmarks | Which page numbers you bookmarked. Never any document text. | Until you remove them |
| Last page read | Where you stopped in a document | Most recent 200 documents |
| Preferences | Sort order, viewer settings, chosen app language | Until changed |
The first four record the names and locations of documents you open. That is information about you, which is why we list it. It is protected by Android's app sandbox and your device's encryption; the app adds no encryption of its own. Deleting a document in the app removes it from all four lists. Clearing the app's storage, or uninstalling, removes all of it.
These lists are excluded from Android's automatic backup and from device-to-device transfer, so they are not copied to your Google account and are not carried to a new phone.
For many operations the app writes a working copy of your document into its own private cache and deletes it when the operation finishes.
One case deserves to be called out. When you open a password-protected PDF, Android's page renderer cannot accept a password, so the app writes a temporary decrypted copy into its private cache in order to display the pages. It is deleted when you close the document. If the app is force-stopped mid-operation, that copy can remain in the app's private cache until the next launch, which clears it. It is never readable by other apps, but if you work with highly sensitive documents you should know this happens.
The app includes Google Analytics for Firebase and Firebase Crashlytics. This is the one place where information about your use of the app is sent to us. We use it to see which features people actually use, and to find and fix crashes. It is stored in a Google Firebase project that we control.
We do not attach your documents, their contents, their file names, or anything extracted from them to a usage event or a crash report. A crash report describes what the code was doing, not what you were reading.
Google Analytics can collect your device's advertising ID. We have switched this off and removed the permission that would allow it, because the app shows no ads and has no use for it.
Because there is no account, the simplest way to remove everything associated with your installation is to clear the app's storage or uninstall the app, which discards the identifier. You can also write to us at the address in §11 and ask us to delete data associated with your installation.
Beyond the analytics described above, the app includes Google's ML Kit libraries and uses Google Play services. These perform their own network activity for Google's own purposes. We do not control it, cannot disable it, and receive none of the resulting data — but we are responsible for telling you about it.
ML Kit reports its own usage to Google — which ML Kit feature ran and how long it took — along with a device description: SDK version, device model, hardware, manufacturer, operating-system build and fingerprint, application build, language and country, mobile network operator code, time-zone offset and network connection type. These reports are queued on the device and can be uploaded by a background task even when you are not using the app.
ML Kit creates its own pseudonymous installation identifier and registers it with Google, separate from the one in §4. We never see or use it. It is reset when you clear the app's storage.
ML Kit fetches its own configuration from Google. That request tells Google this app's package name and its signing certificate fingerprint.
These are executed by Google Play services, not by our code. When you scan a page or run text recognition, the image is handed to Google Play services, which processes it and returns the result. Google states this processing happens on the device; because it is Google's software and not ours, we describe it accurately rather than guaranteeing it. It is governed by Google's privacy policy. The app itself holds no camera permission — scanning opens Play services' own scanner and the app receives only the finished pages.
Translating into a language for the first time downloads that language's model — roughly 30 MB — from Google's servers. The request identifies only the language and the model version. No part of your document is included. The app asks before starting a download and you can decline. The model is then stored on your device and used offline.
On each launch, a standard Android system component checks with Google Play services for an up-to-date emoji font. This tells Play services the app's package name and signing signature. None of your content is involved.
If you choose to rate the app, the Google Play Store app handles it and any review is published under your Google Play account. We receive no personal information from this.
This app contains no advertising. There is no advertising SDK in it, and it does not access your device's advertising identifier. If we introduce advertising in a future version, we will update this policy and the Data safety information on Google Play before that version is released.
The app is intended for users aged 13 and over and is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will delete it.
The data controller is Nano Solutions, reachable at the address in §11. You have the right to access, rectify, erase, restrict and object to the processing of your personal data, the right to data portability, and the right to lodge a complaint with your local supervisory authority.
Our legal bases are performance of the service you requested for anything the app does with your documents on your device, and legitimate interests for the usage statistics and crash reports in §4 and the Google SDK diagnostics in §5 — specifically our interest in keeping the app working and knowing which parts of it matter. You may object to that processing at any time using the contact address below.
Recipients: Google (Google LLC and Google Ireland Limited) is the only third party, acting as our processor for Firebase and on its own behalf for the components in §5. Data may be transferred outside the EEA under Google's own safeguards. Firebase Analytics data is retained for 14 months by default and crash reports for 90 days; we do not extend these.
In the past 12 months the categories collected were identifiers (per-installation app identifiers), internet or other electronic network activity (app usage and diagnostic information) and geolocation data (approximate, country-level, derived from IP by Google). We do not sell your personal information and do not share it for cross-context behavioural advertising. You have the right to know, delete, correct and opt out, and the right not to be discriminated against for exercising those rights.
Nano Solutions
nextzstudio2@gmail.com
Use this address for privacy questions, data deletion requests, or anything else about this policy. We aim to respond within 30 days.
If we change this policy we will update the "Last updated" date above. For any change that materially affects how your information is handled — introducing advertising, for example — we will update this page and the Google Play Data safety section before the change reaches you in a release.
This app includes Apache PDFBox and Bouncy Castle, both distributed under the Apache License 2.0, and components from AndroidX, Google Play services and Firebase. Copies of the applicable licences are available on request from the address above.