EADly

EADly Privacy Policy

Effective date: August 11, 2026

EADly (“the app”) is operated by Ethos Systems, LLC (“we”, “us”, “our”). Ethos Systems, LLC is a limited liability company formed in Wyoming, United States. It operates the Service and is the controller for the personal data described here.

This policy explains what information the app handles, where it is stored, and the choices you have. EADly is local-first and privacy-first. Your immigration data belongs on your device, not on our servers.

In this policy, “we,” “us,” and “our” mean Ethos Systems, LLC. Ethos operates the app and its backend. It also uses the service providers listed in Section 6.

This Privacy Policy works together with our Terms of Use.

The short version

  • Your timeline, employment, travel, and document data is stored on your device. By default, we never receive it.
  • USCIS considers receipt numbers Personally Identifiable Information (PII). The current public app stores saved receipts locally and opens the official USCIS Case Status website when you choose to check one. If API-based tracking becomes available after USCIS approval, EADly will send the receipt over TLS through our authenticated backend to USCIS. We do not use receipts for advertising, analytics, or profiling.
  • You can move your data between iOS and Android with a password-protected .eadlybackup manual backup file. The file is encrypted and decrypted on your device and is separate from optional cloud backup.
  • Cloud backup is optional, and every new automatic backup is end-to-end encrypted on your device before it is stored in the iCloud Drive or Google Drive account you select. iCloud recovery uses an app-generated encryption key synchronized through iCloud Keychain; Google Drive recovery uses a passphrase and one-time recovery code. We never receive those credentials or the backup contents.
  • You may create or access an EADly account with email OTP, Sign in with Apple, or Sign in with Google. There is no EADly password.
  • If you use EADly Plus, Apple or Google processes the payment and RevenueCat helps EADly verify the subscription entitlement. They do not receive your immigration records, documents, employers, receipt numbers, or exact immigration dates from EADly.
  • Analytics is off by default and anonymous if you turn it on.
  • We do not sell your data, show ads, or use third-party advertising trackers.

1. Information stored only on your device

The following stays in local storage on your phone and is never transmitted to us unless you turn on cloud backup (Section 2) or use an online feature described in Section 3:

Reminders and notifications are generated locally on your device. We do not operate a push-notification server.

If you delete the app, this on-device data is deleted with it (subject to your device’s operating-system behavior).

Manual encrypted backup files and cross-platform transfer

You can create a password-protected .eadlybackup file and restore it on a supported iOS or Android device, including when moving from iOS to Android or from Android to iOS. This manual file feature is separate from the account-based, end-to-end encrypted cloud-backup service described in Section 2 and does not require an EADly account.

The app encrypts each new manual backup file on your device using AES-256-GCM. The encryption key is derived from the file password you select using PBKDF2-SHA-256 with 210,000 iterations. The password and derived key are not sent to Ethos. We cannot recover the password or decrypt the file without it. If you forget the file password, the encrypted manual backup is unrecoverable.

A manual backup may contain core profile and immigration-status information, I-94/admission and extension records, immigration timeline data, settings, employment and travel records, saved documents and attachments, planner and GrowthV2 data, and completed tasks. It does not contain your cloud-account login session, OTP credentials, automatic-backup encryption keys or recovery credentials, app PIN, biometric configuration, or operating-system notification permission.

When you create a manual backup, storage depends on your platform. On iOS, if iCloud Drive is available, the app saves an encrypted recovery copy in EADly’s app-owned iCloud Drive folder and also opens the system export picker. On Android 10 or later, the app saves the encrypted file in Downloads/EADly. Browser and fallback flows offer a system share or download action. These actions occur only after you choose to create a backup and set its password.

EADly and Ethos do not receive, upload to our systems, host, or retain the manual file. Apple, Google, or another destination provider may store it under that provider’s terms and privacy practices.

When you tap Get Started, the native app may check its managed recovery location for an actual .eadlybackup file. It validates the encrypted file before offering restore. It does not treat an earlier installation or a second tap as proof that a backup exists. On iOS, EADly cannot scan arbitrary Files locations; you must choose any file outside its app-owned iCloud Drive folder with the system document picker.

When you import, the operating system’s document picker gives the app access only to the file you select. The feature does not require broad access to your photo or file library. The app validates and size-limits the file, decrypts it locally, and shows a preview.

The app applies the restore only after your clear confirmation. A confirmed restore replaces the app data on that device. The app creates a rescue snapshot and tries to roll back if the restore fails. Keep a separate copy until you verify the restored data.

If you are already signed in, choosing the separate “Use file and update cloud” action may send the restored data into your existing end-to-end encrypted cloud backup. Revision-aware conflict protection pauses the update instead of silently overwriting a newer cloud version. No manual-file data is sent to our cloud service merely because you select, preview, or restore the file locally.

For compatibility, the app may import a legacy plaintext JSON backup after warning you that it is unencrypted. New manual exports use the encrypted .eadlybackup format. Treat any legacy plaintext backup as sensitive and delete or secure unnecessary copies.

2. Information we process if you create an account

Creating an account is optional and is only needed for automatic backup, in-app feedback, and API-based USCIS case-status tracking if that feature becomes available after USCIS approval. Saving a receipt locally and opening the official USCIS Case Status website do not require an account.

Automatic backups. Automatic backup is off until you enable it and choose iCloud Drive or Google Drive. The app then writes encrypted backup snapshots to an EADly-specific location in the storage account you authorize. Every new snapshot is end-to-end encrypted on your device before upload. Ethos and Supabase do not receive or host the snapshot contents.

A random data key encrypts each backup with AES-256-GCM. The recovery method depends on the destination:

If iCloud Keychain is unavailable, disabled, or no longer accessible through the same Apple Account, the iCloud backup may be unrecoverable. If you lose both the Google Drive passphrase and recovery code, the Google Drive backup is unrecoverable. Your on-device data is not affected. You may also create a password-protected manual backup file from Settings.

Backup routing metadata. To find the right provider backup after you sign in on another device, Supabase stores only your EADly user ID, selected provider, a random backup-set identifier, protocol version, connection state, and timestamps. It does not store your provider access token, provider file ID, iCloud encryption key, Google Drive passphrase or recovery code, wrapped key, or backup contents.

EADly Plus and purchase status. If you open the EADly Plus screen, make or restore a purchase, or use a Plus feature, the Apple App Store or Google Play and RevenueCat process purchase and entitlement information. This may include the selected product, store, transaction and subscription status, trial or offer status, purchase and expiration dates, and a RevenueCat App User ID.

When you are signed in, EADly may link that identifier to your non-email Supabase user UUID so a verified entitlement can follow your EADly account. EADly does not send RevenueCat your email, name, employer, school, immigration category, receipt number, document metadata, or exact immigration dates. Apple or Google processes your payment credentials. Ethos and RevenueCat do not receive your full payment-card number.

Session data. Standard authentication tokens with automatic expiry, used to keep you signed in securely.

Database access is restricted by row-level security so an account can only ever access its own records.

Your choices, and the trade-offs of sharing

Sharing any data with our backend is optional and within your control:

3. USCIS case status checks

USCIS considers receipt numbers Personally Identifiable Information (PII). EADly treats a receipt number as personal information.

Current public app. You may save a receipt number in local app data. When you select Check on USCIS.gov, EADly opens the official USCIS Case Status website with that receipt. The receipt is sent directly from the website view to USCIS. It does not pass through EADly’s backend. EADly does not retrieve, monitor, or store the result.

API-based tracking if available after USCIS approval. EADly may later offer optional in-app case-status tracking after USCIS grants production access. If that feature is activated, it will require a signed-in account. EADly will use the receipt only to request matching status information from the USCIS Case Status API. The app will send it over a TLS-encrypted HTTPS connection to our authenticated backend. The backend will make the corresponding TLS-encrypted request to USCIS and return the response to your device. We will not use the receipt for advertising, analytics, profiling, or any unrelated purpose.

4. Feedback

In-app feedback requires a signed-in account. If you submit feedback, we deliver the message you write to our support mailbox through our email delivery provider so we can respond. We include it with the email address associated with your account (and a separate reply email if you provide one), a reference to your account, and which app screen you were on. Please do not include sensitive information you do not want to share.

5. Analytics (opt-in)

Analytics is disabled by default. If you opt in:

You can turn analytics off at any time in Settings, with immediate effect.

6. Service providers

Ethos engages the following service providers to deliver specific functions. They process data for Ethos under their own security and privacy commitments and, where applicable, only on Ethos’s instructions:

Our service providers and what they handle
Provider Role Purpose What they handle
Supabase Service provider Authentication, minimal backup routing, backend functions Account email/provider identity, backup destination and random backup-set ID, session tokens, rate-limit counters; if API-based USCIS tracking is activated, receipt numbers transiently in the authenticated case-status function
Apple Independent storage/identity provider selected by the user Sign in with Apple; iCloud Drive backup storage; iCloud Keychain recovery-key synchronization Apple identity token during sign-in; encrypted backup packages and provider metadata when iCloud Drive is selected; end-to-end encrypted app Keychain item
Google Independent storage/identity provider selected by the user Sign in with Google; Google Drive app-data backup storage Google identity token during sign-in; encrypted backup packages and provider metadata when Google Drive is selected
RevenueCat Service provider Subscription purchase coordination and entitlement verification App User ID, product and store identifiers, purchase, trial, renewal, expiration, refund, and entitlement status; no immigration records or payment-card details from EADly
Resend Service provider Transactional email delivery Sign-in codes; feedback emails
PostHog Service provider Opt-in product analytics Anonymous events only (if you opt in)
Netlify Service provider Website hosting and waitlist form storage Website server logs (IP addresses); waitlist email address (only if you join the waitlist)
USCIS (U.S. government) Recipient Case-status lookups Receipt number (only when you use the feature)

Our service providers are contractually bound to protect your data and handle it consistently with this Privacy Policy. They may use data only to provide the service we hired them to provide. They may not sell it or use it for their own advertising or marketing. Apple and Google act as independent identity or storage providers under their own terms when you select them. USCIS handles receipt numbers under applicable law and its own terms when you request a case-status lookup.

Limits on third-party use and disclosure

We do not permit a third party to use or disclose user information for its own purpose without the user’s active consent. This rule includes information described as de-identified, anonymized, or pseudonymized. We do not share such information for advertising, marketing, research, sale, or any other independent use.

PostHog receives anonymous product events only after you actively turn on analytics. Supabase, RevenueCat, Resend, and Netlify may process only the information needed for the services listed above. They must follow contractual protections that are consistent with this policy. A third party may disclose information when the law requires it, but it may not use that information for another purpose.

We may disclose information when the law, legal process, or a valid government request requires it. We may also disclose limited information to protect users or others, investigate abuse, or enforce our Terms. We disclose only what we believe is necessary. Where the law permits, we will try to notify the affected user.

7. International data transfers

EADly is operated from the United States by Ethos Systems, LLC. Our service providers, and Apple or Google when you select them, may process information in the United States and other countries where they operate. If you use optional online features, your account identity, purchase status, or encrypted backup package may therefore be processed outside your country of residence. If API-based USCIS tracking is activated and you use it, your receipt may also be processed in those locations. Where required by law, Ethos uses appropriate safeguards for transfers for which it is responsible.

8. What we do NOT do

Your information concerns only you. The service providers identified as such in Section 6 act on our behalf. Apple and Google act under their own terms when you select their identity or storage service. The U.S. government’s USCIS Case Status service receives only a receipt number you choose to check.

EADly does not ask for genetic information, family history, biometric identifiers, financial details, payment-card details, or medical records. Do not place medical or health information in notes or uploaded documents. If you choose to include it anyway, it stays on your device unless you enable cloud backup. A cloud copy is end-to-end encrypted and cannot be read by us.

EADly does not ask you to type payment-card details into the app. Apple or Google presents and processes the native purchase sheet. RevenueCat receives purchase and entitlement information needed to operate EADly Plus, but it does not receive your full payment-card details or your immigration records from EADly.

How sharing could affect other people. EADly does not ask for data about anyone other than you, and it never asks for genetic information or family medical history. Your notes and uploaded documents can still mention someone else, such as a dependent, a family member, or an employer contact. If you share a backup file or a document that includes their details, you could expose that person’s private information without their consent. That exposure could affect their immigration, insurance, or job interests. Please get a person’s permission before you include their information, or remove it before sharing.

9. Data retention and deletion

Business transfer, change of operator, or closure

We will notify you of a material ownership or operator change. Where reasonably possible, we will give in-app notice before the change takes effect.

Backend data includes your account email, minimal provider-routing metadata, and operational records. It will be securely transferred to a successor that must protect it, or it will be securely deleted. Provider-owned automatic-backup snapshots are not part of EADly’s backend data. Any transfer remains subject to applicable law.

A successor must follow a privacy policy that is materially consistent with this one. If it will not, we will notify you and let you export or delete your data before the change.

Because every cloud backup is end-to-end encrypted with a key unavailable to Ethos, no successor operator or backend provider can read your cloud backup contents. Access to the USCIS Case Status service is granted specifically to the current operator and is not transferable. A successor operator must obtain its own access before that feature can resume, which may take time.

You can also export your own data as an encrypted backup file and import it again at any time (Settings → Export / Import backup file). That lets you keep an independent copy, or move it to another operator of the app.

10. Security

Security measures include:

No system is perfectly secure. A breach of our servers could expose account and minimal routing information. Provider-owned backup snapshots are not stored on our servers, and every backup package is end-to-end encrypted with keys we do not have.

Vulnerability reports

If you believe you have found a security vulnerability, email support@eadly.app with enough detail for us to investigate. Please do not access another person’s data, disrupt the Service, or publicly disclose an unresolved vulnerability before giving us a reasonable opportunity to investigate and address it.

Data-breach notification

If we learn of a personal-data breach that affects you, we will notify you without undue delay. We will also meet any deadline set by law. We will use your account email or an in-app notice.

The notice will explain what happened and what information was involved, as far as we know. It will explain what we are doing and what steps you can take. Cloud backups are end-to-end encrypted with keys unavailable to us. Our servers do not hold the provider backup ciphertext.

11. Your rights

Depending on where you live, you may have rights over your personal data. Because almost all data lives on your device, and cloud backups are end-to-end encrypted with keys unavailable to us, many of these rights are exercisable directly in the app (export, reset, delete account, analytics toggle, and backup controls).

United States (state privacy laws, including the California Consumer Privacy Act)

You may have rights to know, access, delete, and correct your personal information. You may also have the right to act without discrimination. We do not “sell” or “share” personal information as those terms are defined by U.S. state privacy laws. Where the California Consumer Privacy Act (CCPA), as amended by the CPRA, applies, we honor its requirements. Use the app or contact us to exercise your rights. We will not discriminate against you for doing so.

EU / UK (GDPR)

You have the rights of access, rectification, erasure, restriction, objection, and data portability, and the right to withdraw consent at any time. Our legal bases are: performing our agreement with you (providing the app’s online features), our legitimate interests (security and abuse-prevention), and your consent (optional analytics and optional cloud backup). You may lodge a complaint with your local supervisory authority (in the UK, the ICO).

To exercise any right not available directly in the app, contact us (see the Contact section below). We will verify your request as needed and respond within the period required by applicable law.

12. Children

EADly is intended for people age 16 or older organizing personal immigration records. It is not directed at children under 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us personal information, contact us and we will delete it.

13. Our website (eadly.app)

The eadly.app website is hosted for us by Netlify (United States). Like most website hosts, Netlify keeps standard server logs, which include visitor IP addresses, for security and to deliver the site. The website itself sets no analytics or advertising cookies.

If you join the launch waitlist, Netlify Forms stores the email address for us. We use it only to tell you about EADly’s launch and availability. We do not use waitlist emails for other marketing. We share them only with Netlify, which stores them on our behalf.

You can ask us to delete your waitlist email at any time. Write to admin@eadly.app.

14. Important note on immigration information

EADly provides informational tools only. It does not provide legal advice, and nothing in the app creates an attorney-client relationship. Immigration rules change and individual circumstances differ. Always verify deadlines and requirements with official USCIS sources, your Designated School Official (DSO), and a qualified immigration attorney before acting.

EADly is a private service and is not affiliated with, endorsed by, or connected to USCIS, DHS, ICE, SEVP, the U.S. Department of State, any other government agency, any university or school, any DSO, or any employer. References to these organizations and to government data are for identification and informational purposes only.

15. Governing law

This Privacy Policy is governed by the laws of the State of Wyoming, United States, and applicable U.S. federal law, without regard to conflict-of-laws rules, except where mandatory data-protection or consumer-protection law in your country or state of residence applies.

16. Changes to this policy

We will post any changes on this page with an updated effective date. For minor or clarifying changes, posting the update is enough.

For a material change, we will notify you in the app before it takes effect. We will show a plain-language summary of the change. We will ask for your active consent through an explicit “I agree” action.

The new policy will not apply to you until you agree. You must agree before you continue using optional online features, including the account, cloud backup, in-app feedback, and API-based USCIS tracking if it becomes available. If you do not agree, you may keep using on-device features and official external links under the prior terms. You may also export your data or delete your account.

17. Contact

For privacy questions, requests, or grievances, contact the operator and data controller:

Ethos Systems, LLC
A Wyoming limited liability company
Sheridan, Wyoming, United States
Email: admin@eadly.app
Website: https://eadly.app

See also our Terms of Use.