Effective 8 October 2026
Privacy Policy
This is the privacy policy for the PrivatePOS app and this website. It is written for shop owners and for the Google Play listing. Agentic AI Labs Ltd makes PrivatePOS. We do not run a cloud for your sales, stock, or customers.
Play data-safety summary
- The developer does not collect your shop data.
- The developer does not sell data and does not use ads or analytics.
- Sales, stock, customers, and staff PINs stay in an encrypted database on the device.
- You can delete that data by deleting the shop, uninstalling the app, and deleting backup files you saved.
- The network is used only for jobs you start: local device pairing, an app-update check, or an optional AI assistant that uses your own provider key.
Who we are
PrivatePOS is published by Agentic AI Labs Ltd. The Android application id is ai.agenticai-labs.privatepos. Questions about this policy go through https://agenticai-labs.ai/.
What stays on the device
Products, sales, customers, suppliers, staff, and the rest of the shop are stored in an encrypted SQLite database (SQLCipher) on the phone, tablet, or computer. The database key is a random key kept in the device keystore. It is not sent to us.
The owner PIN is 4 digits. Only an Argon2id hash of that PIN is stored. The PIN is not stored in plain text, and we never see it.
What we do not do
- ✕No account is required to run the till.
- ✕No analytics on your sales, stock, or customers.
- ✕No advertising SDK and no sale of personal data.
- ✕No PrivatePOS server that keeps a copy of your database.
- ✕No crash pipeline that uploads your books.
App permissions
- Camera. Used when you scan a barcode. The camera is not used in the background and images are not uploaded by us.
- Internet and network state. Used only for the optional jobs below. The till works with no connection.
Backups
A backup is an encrypted file (.pposbak) written to a folder you choose on the device, for example Documents/PrivatePOS/Backups. The app does not upload that file. If you copy it to your own cloud drive, that copy is under your account with that provider, not under a PrivatePOS account.
Wi-Fi pairing
A second till pairs on your own Wi-Fi or hotspot. The host shows a QR code with its local address and a short-lived pairing token. The devices sync with each other. There is no central sync server.
Optional AI assistant
If you turn on the shop assistant, you supply your own API key for a provider you choose. Requests go from the device to that provider. They do not go through a PrivatePOS server. That provider’s privacy policy covers what they receive. Leave the assistant off and those requests are not sent.
Payments
PrivatePOS does not process payments and does not store card numbers. Checkout only records the tender you choose, such as cash, card, credit, or a local wallet for the shop’s country. The card terminal or wallet app handles the money.
This website
This marketing site is static. It does not ask you to create an account, and it does not set analytics cookies. The blog and policy pages are public documents.
Children
PrivatePOS is a business tool for shop owners and staff. It is not directed at children under 13, and we do not knowingly collect personal information from children.
Deleting your data
Because we do not hold your shop, there is no cloud account for us to erase. Delete the shop in the app, uninstall PrivatePOS, and delete any .pposbak files you saved. If you sent prompts to an AI provider, use that provider’s tools to delete them.
Changes
If this policy changes, the new text will be posted on this page with a new effective date. The copy in the Play Console should point at https://privatepos.agenticai-labs.ai/privacy.