ZEV Icon
ZEV
zevapp.com
Back to ZEV Home
Official Privacy Policy • Revision 2.4zevapp.com/privacy

ZEV Privacy & Data Protection Policy

At ZEV (zevapp.com), user data sovereignty is our central design pillar. This document details how your personal information is encrypted, managed, and safeguarded across all client applications and cloud subsystems.

1. Information We Collect

We strictly gather essential operational metadata: profile identifiers (username, bio, avatar), contact info (verified email), user-generated media (photos, reels, comments), and standard device telemetry (hardware model, OS build, locale preferences). We never access location or hardware peripherals without explicit, granular runtime consent.

2. Shared Database Architecture with Safi Academy

ZEV and Safi Academy operate over an enterprise-grade unified cloud database cluster (Supabase Enterprise with AES-256 at-rest encryption). This enables single sign-on across the Safi Ecosystem. Student records and SafiPay balance tokens remain strictly isolated from public social feeds.

3. Bank-Grade Encryption & Data Storage

All transport channels utilize TLS 1.3 with rigorous forward secrecy. User credentials and authorization hashes are stored using salted cryptographic one-way hashing algorithms (Argon2 / Bcrypt). Plaintext credentials never exist on our persistence tiers.

4. On-Device Biometrics & Local PIN

Biometric verification (Face ID / Fingerprint sensor) and App-Lock PIN codes reside entirely within your local device Secure Enclave. Biometric tokens are never transmitted to ZEV servers or stored remotely.

5. Zero Data Brokering & No Third-Party Sales

ZEV will never sell, lease, or broker your personal behavioral telemetry or communication records to third-party ad networks or marketing intermediaries. Privacy is our foundational architectural promise.

6. Complete Account & Data Deletion Rights

In compliance with GDPR and modern privacy standards, users possess the absolute right to request irreversible account and media deletion via in-app preferences or by contacting our data protection officer. Residual cached backups are purged within 7 business days.