Privacy Policy
Privacy Policy – Pelican Mobile
Last updated: October 5, 2026
Pelican Mobile ("the app") is a client for self-hosted Pelican Panel installations. This policy explains which data the app handles. Short version: the developer does not collect, receive or sell any data.
Data the app stores on your device
- Panel URLs and API keys you enter. API keys are encrypted with a key held in the Android Keystore (AES-256-GCM) and can't be read by other apps. They are excluded from backups and device transfers.
- App settings (theme, language, favorites, monitoring options).
- Monitoring state (last known server status, used to detect changes).
- An in-memory request log for the diagnostics screen (method, path, status, duration). It never contains API keys, headers or response bodies and is cleared when the app closes.
Data sent over the network
The app talks only to the Pelican Panel and Wings servers you configure, over HTTPS. This includes your API key (to authenticate) and the actions you take (power commands, file contents you edit or upload, etc.). These servers are operated by you or your hosting provider; their privacy practices apply to that data.
The app contains no analytics, crash reporting, advertising or tracking SDKs and makes no other network connections.
Permissions
- Internet: to reach your panel.
- Notifications: optional, for monitoring alerts.
- Biometrics / device credential: optional, for the app lock and confirming dangerous actions. Biometric data never leaves the system; the app only receives "success" or "failure".
Deleting your data
Remove a panel in Settings to delete its stored key, or uninstall the app to remove everything.
Children
The app is not directed at children under 13.
Contact
Questions: [email protected]
Datenschutzerklärung – Pelican Mobile
Stand: 5. Oktober 2026
Pelican Mobile („die App“) ist ein Client für selbst betriebene Pelican-Panel-Installationen. Kurz gesagt: Der Entwickler erhebt, empfängt oder verkauft keine Daten.
Auf deinem Gerät gespeicherte Daten
- Panel-URLs und API-Keys, die du eingibst. API-Keys werden mit einem Schlüssel im Android Keystore verschlüsselt (AES-256-GCM) und sind von Backups und Geräteübertragungen ausgeschlossen.
- App-Einstellungen (Design, Sprache, Favoriten, Überwachung).
- Überwachungsstatus (letzter bekannter Serverzustand, um Änderungen zu erkennen).
- Ein Anfrageprotokoll im Arbeitsspeicher für die Diagnose (Methode, Pfad, Status, Dauer), ohne API-Keys, Header oder Inhalte. Es wird beim Schließen der App gelöscht.
Über das Netzwerk gesendete Daten
Die App kommuniziert ausschließlich mit den von dir eingerichteten Pelican-Panel- und Wings-Servern über HTTPS, einschließlich deines API-Keys zur Anmeldung und deiner Aktionen. Diese Server betreibst du selbst oder dein Hoster.
Die App enthält keine Analyse-, Absturzberichts-, Werbe- oder Tracking-SDKs.
Berechtigungen
- Internet: Verbindung zu deinem Panel.
- Benachrichtigungen: optional, für Überwachungswarnungen.
- Biometrie / Gerätesperre: optional, für App-Sperre und Bestätigung gefährlicher Aktionen. Biometrische Daten verlassen nie das System.
Daten löschen
Entferne ein Panel in den Einstellungen, um seinen Key zu löschen, oder deinstalliere die App.
Kontakt
Fragen: [email protected]