Summary: Phantom is designed with privacy as its foundation. We don't collect your personal data, we can't read your messages, and we don't track you.
1. Who We Are
Phantom is a secure messenger that provides end-to-end encrypted messages, voice calls, and files. Your privacy is not a feature — it's our core principle.
2. Data We Don't Collect
Unlike most apps, here's what we don't collect:
- Phone numbers or email addresses
- Names or personal identifiers
- Message content (we can't read it — it's end-to-end encrypted)
- Call recordings or metadata
- Contact lists
- Location history
- Usage analytics or behavioral data
3. Data That Exists
For the app to function, some minimal data is processed:
- Session identifiers — random cryptographic keys used to route encrypted messages between users. These are not linked to your identity.
- IP address — temporarily processed when connecting to our servers. Not stored or logged.
- Push notification tokens — used solely to deliver call and message notifications. Not linked to any personal data.
- Approximate location — if you grant permission, used only to connect you to the nearest server for better call quality. Not stored on our servers.
4. End-to-End Encryption
All messages, voice calls, and files in Phantom are protected with end-to-end encryption. This means:
- Only you and the person you're communicating with can read messages or hear calls
- We cannot decrypt your communications — we don't have the keys
- No one else can access your content, including us, governments, or hackers
5. Data Storage
Your contacts are stored only on your device, in its secure storage (iOS Keychain / Android Keystore). By default, messages live only in the app's memory and are gone when you close it. You can optionally enable encrypted on-device chat storage per contact — it is protected by your PIN, encrypted at rest, and never leaves your device. You can also set messages to auto-delete after a period you choose.
We don't store readable message content on our servers. When your contact is offline, the encrypted — and to us unreadable — message or file is held briefly until it's delivered, then deleted. Our servers can never read it.
6. Third-Party Services
Phantom uses platform push services to wake the app for calls and messages: Apple Push Notification service (APNs) on iOS, Firebase Cloud Messaging (FCM) on Android, and Huawei Push Kit (HMS) on Huawei devices. Push notifications carry no message content.
We do not use any analytics, advertising, or tracking services.
7. Data Sharing
We do not sell, rent, or share any user data with third parties. Period.
Since we don't collect personal data, we have nothing to share even if requested by authorities.
8. Your Rights
You have complete control over your data:
- Access — all your data is on your device, you can see it anytime
- Deletion — delete the app to erase all data, or use auto-delete feature for messages
9. Children's Privacy
Phantom does not knowingly collect any information from children under 13. The app is designed for general audience use with no age-restricted content.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Significant changes will be communicated through the app. Continued use of Phantom after changes constitutes acceptance of the updated policy.
11. Contact Us
Questions about this Privacy Policy? Contact us:
Email: cypherplace@proton.me