Privacy Policy

Effective: 7 October 2026

This policy explains what Appservices stores about you when you use our website, your account, our APIs, our Telegram bot, our browser extensions and our desktop products; why; how long we keep it; who processes it for us; and what you can ask us to do with it.

1.Who we are

This service is operated by Appservices, which is responsible for the data described here.

Privacy and legal requests: appservices@appservices.dev. You can also write to us through the support chat of your account or through the Contact Admin link on www.appservices.dev.

2.What this policy covers

3.What we store about your account

4.What we measure

To run the service we count how it is used. We do this on our own server, without analytics cookies and without third-party analytics:

Daily totals built from these figures contain no personal data and are kept.

5.Records about other people

When you use the remote-selfie service, we store a transaction for each link you create: the name and email you give for your customer, the network address, browser (user agent) and device identifier of the device that opens the link, the page it runs on, and the result returned by the liveness provider. These transactions are kept 180 days after their last update. Your customers are not our users: you are responsible for informing them that their data is processed this way and for having a lawful reason to do so.

6.What we never store

We never store card numbers, wallet private keys or seed phrases, or your password in readable form. We do not store your customers' face images: the liveness check runs between their device and the liveness provider.

7.Who processes data for us

We do not sell data, share it with data brokers, or use it for advertising. We may disclose information if the law requires it.

8.How long we keep it

DataKept
Your account and profileUntil the account is erased (section 11)
Security events180 days
Account sessionsWhile they last, then 30 days after they end
Notification events30 days after they are sent
Delivery records of our emails and Telegram messages180 days
Delivery records of our news, release notes, announcements and offers (the channel, when it was sent, whether it arrived) 180 days after the item ends (its end date, or the day we took it down); while an item without an end date stays published, its records are kept
Your choices to receive or stop them (the category, the channel, when, and where you chose: your account, the bot, an email link or our email provider) For the life of the account
Download records (linked to your account)400 days
Audit log of administrative actions. It keeps copies of the account rows an action changed, including the email address and sign-up network address 730 days
Remote-selfie transactions180 days after their last update
Support chat messages For the life of the account; deleted 30 days after the account is erased
Chat images365 days after they were sent
Payment evidence (screenshots and references) 365 days after the account's last purchase request closes
Purchase recordsKept, as records of the sale
Email-suppression list (addresses that bounced, complained or unsubscribed) Kept, so that we never write to them again
Desktop licence validation sessions7 days after they expire

Backups. Our server keeps the daily copies of the last 14 days and one weekly copy for 8 weeks of the database, with a copy of the cache's snapshot beside each daily copy, and a mirror of uploaded files in which a deleted file stays 14 days. So data we prune or erase can survive in these copies for up to about 8 weeks, until they rotate. Copies may also be kept in our hosting provider's server backups. Should we add a copy kept elsewhere, this section will name its provider first.

9.Messages we send and how to stop them

10.Cookies and browser storage

We use only the essential cookies above and no analytics or advertising cookies, so we show no cookie banner.

11.Your rights, age and changes

You can see and correct most of your data in your account. You can ask us for a copy of your data, for a correction, or for erasure of your account through support or the contact above; we answer within 30 days. Self-service deletion and export will follow later.

Erasure signs out every session, revokes your API keys, unlinks Telegram, and removes your email address, network addresses and two-step verification at once; your username stays reserved. What erasure keeps: purchase records, payment evidence until its date (section 8), copies in the audit log until it is pruned, and backups until they rotate. Your support chat is deleted 30 days after the erasure.

Our services are for professionals and are not directed to anyone under 18; they should not use them.

We may update this policy. The effective date above changes with each version, and for a material change we show a notice on the website or in your account first.

Translations of this policy may be offered for convenience; the English text governs.

The Appservices Admin browser extension

This section applies only to the browser extension published in the Chrome Web Store as Appservices Admin (Appservices Liveness); the sections above govern account, payment and retention data.

1.What the extension is

Appservices Liveness is an operator console. An authorized agent uses it to start a liveness-verification session for an end user (the "consumer"). The end user then completes a genuine liveness check on their own device using the third-party liveness SDK. When the consumer's own check succeeds, the extension records the resulting session reference against the appointment form the agent is working on.

The extension does not capture, store, or transmit the consumer's face, camera feed, or any biometric data. That verification happens entirely between the consumer's device and the liveness provider's SDK. The extension only ever receives a session code / result reference, never the biometric itself.

2.Information we handle

DataWhyWhere it goesStored
Agent's Appservices API keySign the agent in, verify the subscription and authorize each requestSent to appservices.dev with each request (never to the appointment site)On the device, in the extension's own storage, which web pages and the extension's page scripts cannot read; our backend keeps a keyed hash of each key and an encrypted copy of it, so that you can show the key again in your account after confirming your password (a key created before this was available is shown once only)
Agent's account name, plan and remaining creditsShow them in the popupReceived from appservices.devOn the device
Device identifier (one-way hardware fingerprint hash)Bind a subscription to a device; prevent credential sharingSent to appservices.devOn the device and in our backend account record
Saved consumer namesLabel/route a session ("Select consumer")Optionally sent as a session label when chosenOn the device only, unless attached to a session
Public IP address of the agent's browser on the appointment pageRecorded on the verification session as its network address. The consumer's app reads it back for that same session, so the consumer's check runs with network details consistent with the agent's appointment sessionLooked up from the appointment page through api.ipify.org (a public IP-lookup service), then sent to appservices.devIn our backend, with the session record (not stored on the device)
Verification session details (the liveness user and transaction IDs the appointment page issues, which supported site the session runs on, the session code, status and result token, and whether the agent's form submission succeeded)Create a session, track progress, record the result on the form, and confirm the outcomeExchanged with appservices.devOn the device; session records retained in our backend

We do not collect: passwords, payment details, browsing history, page content beyond the specific appointment-page identifiers and form fields required to run and record a verification, precise location (such as GPS), or any biometric/health data. The public IP address above is the only location-related information the extension handles.

3.How we use the information

We do not sell data, share it with data brokers, or use it for advertising or any purpose unrelated to the single function above. This is consistent with the Chrome Web Store Limited Use requirements.

4.Permissions — why each is requested

5.Data sharing

Information is sent only to appservices.dev, our own backend, for the purposes in Section 3, with two narrow exceptions:

We use no third-party analytics, advertising, or tracking SDKs. We may disclose information if required by law.

6.Retention

7.Security

Data in transit is protected with HTTPS/TLS. The API key is sent only by the extension's background process, never from the appointment page or the extension's page scripts. Device-binding limits a device-limited plan to authorized hardware. We restrict internal access to account and session records. If an API key may have been exposed, ask us for a new one: the old key then stops working.

8.Children

The extension is a professional tool and is not directed to children under 13, who should not use it.

9.Changes

We may update this policy; the "Last updated" date will change and, for material changes, we will surface a notice in the extension or on our website.

10.Contact

Questions or data requests: appservices@appservices.dev  ·  https://www.appservices.dev