Swadhin Bangla AI Security
A product of Fred Intelligence Limited, Dhaka, Bangladesh
Effective Date: 20 August 2026 · Last Updated: 17 September 2026 (Revision 3 — adds Section 14, "How to Delete Your Account and Data," for Google Play Data Safety compliance)
Fred Intelligence Limited (“Fred Intelligence,” “we,” “us,” or “our”), a company based in Dhaka, Bangladesh, develops and operates Swadhin Bangla AI Security (the “App”), together with the website at fredbd.com (the “Website,” and together with the App, the “Services”). This Privacy Policy explains what information we collect, how we use and share it, and the choices available to you. It applies to your use of the App, your visits to the Website, and any account you create with us.
Fred Intelligence Limited is the data controller responsible for the personal information described in this Policy. Contact details are provided in Section 19.
This Policy covers information collected through the App on Android devices, the Website, and account registration and management. It does not cover the practices of third parties we do not control, including other apps, websites, or services you may reach through links in the App or on the Website.
Depending on which features you use, we may collect or access:
The App does not inspect or process the content of your financial transactions within banking or mobile-financial-service apps, and does not collect payment card numbers, banking PINs, or passwords.
This section describes, in plain language, the sensitive device permissions and special access the App may request, why each is needed, and — just as importantly — what each one does not do.
With your permission, the App inspects notifications from your device’s default messaging apps (such as Google Messages or Samsung Messages) for the sole purpose of detecting phishing (“smishing”) links. On your device, the App searches the notification text for a URL; if one is found, only that URL — never the surrounding message text — is sent to our threat-intelligence backend for a reputation check. The original notification or message content is never stored, logged, or transmitted off your device.
The App may request Accessibility Service permission to power up to three optional, narrowly-scoped protection features. Each is off by default, is explained to you in the App before you are asked to enable it, and can be turned off at any time from your device’s Accessibility settings.
Used solely to determine which application is currently in the foreground, so that the App’s local, on-device VPN filter can apply protections on a per-application basis. No browsing history, screen content, or other usage data is read or transmitted.
Used to detect malicious, cloned, or sideloaded applications and to let you choose which installed apps to protect with App Lock. We compare installed package names and signing certificates against known-malware and known-good lists on our servers; the list of installed application names is not sold or shared with third parties for advertising purposes.
The App does not use GPS or network-based location and does not track your whereabouts. This permission is required only because, since Android 9, reading the name (SSID) and address (BSSID) of the Wi-Fi network you are connected to requires this permission to be granted — a requirement of the Android platform, not a feature of the App. We use this information solely to detect connections to insecure or spoofed Wi-Fi networks as part of our Wi-Fi security scanning feature. We never read or store your GPS coordinates, location history, or any geofencing data.
The App’s on-device VPN filters outgoing DNS queries against a threat-intelligence blocklist to block known phishing and malware domains in real time. Your traffic is not routed through, or visible to, any remote VPN server operated by us or anyone else — the VPN interface runs locally, on your device, for this filtering purpose only.
We use the information described above to provide and improve the Services, detect and block security threats, manage your account, respond to support requests, and comply with legal obligations. We do not sell your personal or sensitive user data.
The App uses machine-learning models and threat-intelligence feeds to classify files, URLs, and other indicators as safe or malicious. Automated security analysis can produce false positives or false negatives; you can report suspected misclassifications through the App or by contacting us.
Where applicable law requires a legal basis, we process your information based on: your consent (for example, when you enable an optional feature); our legitimate interest in detecting and preventing fraud, malware, and other security threats; performance of our agreement with you to provide the Services; and compliance with legal obligations.
We may share information with: cloud-infrastructure providers who host our backend; threat-intelligence, reputation, and malware-analysis providers, to check hashes and URLs you or the App submit (only the hash or URL is shared, never the underlying file or message content); payment processors, to handle billing for paid features; and government or regulatory authorities, where required by law.
If you choose to supply your own third-party API key for an optional feature (for example, a personal VirusTotal API key), any data sent using that key is governed by that third party’s own privacy practices, not this Policy. We do not share your personal or sensitive data with third parties for their own advertising purposes.
Our infrastructure and service providers may process information outside Bangladesh. Where we transfer information internationally, we take reasonable steps to ensure it continues to receive an appropriate level of protection consistent with this Policy and applicable law.
We use encryption, access controls, and incident-response procedures designed to protect the information we hold. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
We retain information only for as long as reasonably necessary: account information for the life of your account plus a limited period afterward; operational logs for a limited operational period; and malware/threat-hash data for longer periods, since it has continuing value for protecting all users. Upon a valid deletion request, we will delete or de-identify your information, except where retention is required by law.
You may request access to, correction of, or deletion of your information, and may withdraw consent for optional features at any time. You can disable individual features — including Accessibility Services and Notification access — from the App or your device settings, or uninstall the App entirely. To exercise these rights, contact us using the details in Section 19, or use the account-deletion process described in Section 14 below.
You may request deletion of your account and the personal data associated with it at any time, whether or not you continue to use the App.
Send an email to support@fredbd.com with the subject line “Delete My Account”, sent from your registered email address.
Please include: (1) the email address registered with your account, and (2) your device or license ID, if you have it, to help us verify and locate your account.
After your account is deleted, we may retain anonymized threat-intelligence data (such as malware hash detections) that contains no personal identifiers, for security, fraud-prevention, and legal-compliance purposes, consistent with Section 12 (Retention and Deletion) above.
Private Vault contents and other locally stored App data never leave your device and are not held on our servers. You can remove this data immediately, without contacting us, by clearing the App’s storage in your device’s Settings or by uninstalling the App.
We process verified deletion requests within 7 business days and will confirm by email once your account and associated data have been deleted.
Our Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13 without appropriate parental or guardian authorization. If you believe a child has provided us with personal information, please contact us so we can take appropriate action.
The App and Website may reference or link to third-party services we do not control. This Policy does not cover the privacy practices of those third parties; we encourage you to review their own privacy policies.
We may update this Policy from time to time. Material changes will be reflected by an updated “Last Updated” date above, and, where required by law, we will provide additional notice.
This Policy is intended to comply with Bangladesh’s Personal Data Protection Ordinance, 2025, and Cyber Security Act, 2026, and is governed by the laws of Bangladesh.
Fred Intelligence Limited
Plot Kha-56, Amena Tower, Level 4, Shahjadpur, Gulshan, Dhaka-1212, Bangladesh
Email: support@fredbd.com
Phone: +880 1977-031444