Privacy Policy

Last Updated: September 6, 2026

NoFap Helper — also published as NoPorn — helps you block harmful content and rebuild healthy digital habits. Doing that well means handling some of the most personal information a person can share with an app, and we treat that as a responsibility rather than a formality. This policy sets out exactly what we collect, why we collect it, how it is protected, who else ever touches it, and the control you keep over it. It is written to be read.

Our Commitments to You

These are the promises the rest of this document explains in detail.

  • We do not sell your personal information, and we never share it with advertisers, data brokers or marketing networks.
  • The App carries no advertising, no ad networks and no advertising identifier. We deliberately remove the Android advertising ID permission from the App.
  • Every image and every screen analysed for adult content is analysed on your device, by models that run on your device. Those images and screenshots are never uploaded.
  • Everything we do store is encrypted in transit and encrypted at rest.
  • You can delete your account, and the data attached to it, from inside the App at any time, without asking us.

2.Who This Policy Covers

This policy applies to the NoFap Helper Android application, to our backend services, and to our website at nofaphelper.martai.in. In this document, we, us and our mean the operators of NoFap Helper, and the App means the mobile application and the services it connects to.

3.Information You Give Us

When you create an account, we receive and store:

  • Your name and email address, and your Google account identifier if you sign in with Google
  • A profile photo, if you choose to upload one
  • Content you write yourself: community and support messages, feedback, relapse notes and triggers, and the display name shown to other members

We never receive your Google password. Sign-in is handled by Google, and we only ever see the account details Google returns to us after you approve the sign-in.

4.Information Created As You Use the App

To make progress tracking, challenges and the community work at all, some information has to live on our servers rather than only on your phone:

  • Streaks: start times, current and best runs, and check-ins
  • Relapse entries: the date and time you record, the trigger you select, and any note you write
  • Achievements, challenges, season standings and leaderboard positions
  • Community activity: messages, reactions, replies, reports you file, and any moderation action taken on your account
  • Links shared in the community room, and whether members opened them
  • Accountability partner connections you create and accept
  • Your subscription status, and the interactions that led to a purchase

Your relapse notes and triggers are private to your account. They are never shown to other members, never used for advertising, and never published in any leaderboard, ranking or aggregate that could identify you.

5.Protection Activity

The App records that a block happened so that protection can be measured, tuned and improved. For each block, we store:

  • The app or browser in which the block occurred
  • The kind of detection that fired, and how confident it was
  • The time it happened, and how many times it happened in that period
  • Which protections were switched on at that moment
  • A short sample of the word or web address that triggered the match, kept so we can correct false positives

We do not build a browsing history from this, and we make no attempt to reconstruct one. These records exist to answer whether a protection is working, not to catalogue what you looked at. They are covered by the deletion right in Section 16: removing your account removes them.

6.Device and Diagnostic Information

So the App can stay reliable across thousands of different handsets, we collect:

  • Device manufacturer, model, brand, Android version, app version, language and time zone
  • A random identifier generated on your device to distinguish one installation from another
  • Whether the accessibility service and each protection are currently running, and whether the service has been stopped by the system
  • Crash reports, including the technical stack trace and the device details above
  • Your Android push notification token, so we can deliver notifications you have asked for
  • Your IP address and the approximate city or region derived from it, recorded when you sign up or sign in

The installation identifier is not your advertising ID and is not shared with anyone. The approximate location is derived from your IP address only. The App never requests GPS or precise location permission, and never asks for your contacts, camera or microphone.

7.What Stays on Your Device

Some of the most sensitive processing in the App never leaves your phone at all:

  • Screen content read by the accessibility service is analysed in memory, in real time, and is discarded immediately
  • Images are classified for nudity by machine learning models that run entirely on your device
  • Screenshots taken for AI Shield analysis are processed on the device and deleted
  • Your custom blocked websites, blocked keywords, app schedules, sleep windows and every other blocking rule you set up
  • Your app usage statistics and the detailed on-device blocking log

The one exception is deliberate and under your control: if you tap the report button on a block screen to tell us a block was wrong, that single screenshot is uploaded so we can correct the model. Nothing is sent unless you tap it.

8.Why We Collect Each Kind of Information

We collect information only for these purposes:

  • To create your account, sign you in, and keep your session secure
  • To sync your progress so it survives a reinstall or a new phone
  • To operate the community, challenges and accountability features you choose to use
  • To deliver the notifications and reminders you have enabled
  • To confirm and restore your premium subscription
  • To keep the community safe, and to act on reports of abuse
  • To diagnose crashes, measure whether protection is working, and improve detection accuracy
  • To understand, in aggregate, which features people use, so we build the right things

Where the law requires a legal basis, we rely on the performance of our contract with you for account, subscription and community features; on your consent for notifications and optional reports; and on our legitimate interests in keeping the service secure, reliable and accurate.

9.How Your Information Is Protected

  • All traffic between the App and our servers is encrypted with TLS. There are no unencrypted endpoints.
  • All data stored on our servers is held on managed cloud infrastructure with encryption at rest enabled.
  • Access to production systems is restricted to the small number of people who operate the service, and every access is authenticated.
  • Sign-in uses short-lived tokens; we never store your Google password, and we do not store payment card details of any kind.
  • We keep the amount of information we collect deliberately small, because the safest data is the data that was never collected.

No system can promise perfect security, and we will not pretend otherwise. What we can promise is that we do not collect what we do not need, we encrypt what we hold, and we will tell you promptly if information about you is ever exposed.

10.Community Chat Is a Shared Space

The community room is a group conversation. Anything you post there — your message, your display name and your profile photo — is visible to every other member, and we are not able to make it private after the fact. Messages are encrypted in transit and at rest, but they are not end to end encrypted, because we have to be able to moderate them to keep the room safe.

Please do not share your full name, address, phone number, workplace or any other identifying detail in the community room. You can edit or delete your own messages, and you can report anyone else’s.

11.Service Providers We Rely On

We do not sell or rent your information. A small number of infrastructure providers process it strictly on our instructions, only to make the service work:

  • Google Firebase: sign-in, push notifications, crash reporting and aggregate usage measurement
  • Google Play: subscription purchase, validation and renewal
  • Our cloud hosting and managed database provider: storage of the account and community data described above
  • Object storage providers: hosting of profile photos and in-app media
  • An IP geolocation provider: turning an IP address into an approximate country and city

Each of these is a processor acting for us under contract. None of them is permitted to use your information for their own purposes, and none of them receives your relapse notes, your blocking rules or your on-device activity.

12.What We Never Do

  • We never sell, rent or trade your personal information.
  • We never share your information with advertisers, ad networks or data brokers.
  • We never upload the images or screenshots the App analyses, unless you personally report a mistaken block.
  • We never store your browsing history, your bookmarks, your passwords or the contents of anything you type outside the App.
  • We never use an advertising identifier, a tracking pixel or a cross-app tracker.
  • We never disclose to anyone that you personally use this App, except where a valid legal order compels us.

13.Guest Accounts

If you continue as a guest, we create an anonymous account so your settings and progress survive a restart. A guest account carries no name and no email address, and is linked only to a device identifier. If you later sign in with Google, that same account is upgraded in place, so nothing you have built up is lost. Everything in this policy applies equally to guest accounts.

14.How Long We Keep Information

  • Account information is kept for as long as your account exists.
  • Community messages are kept while the room retains them, and are removed on the schedule described in the App.
  • Protection activity, crash reports and diagnostic records are kept only as long as they are useful for improving the service, and are then deleted or aggregated so they no longer identify anyone.
  • When you delete your account, the data attached to it is deleted as described in Section 16.
  • Anonymous aggregate counts, which cannot be traced back to any person, may be retained indefinitely.

15.Your Rights and Choices

Wherever you live, you can:

  • See the information held about you, through your profile and settings in the App
  • Correct your name, photo and profile details at any time
  • Delete individual items, including your own community messages and relapse entries
  • Turn notifications off, in the App or in Android settings
  • Withdraw a permission at any time in Android settings, accepting that the related protection will stop working
  • Delete your account entirely, and everything attached to it

If you are in the European Economic Area or the United Kingdom, you additionally have the rights of access, rectification, erasure, restriction, portability and objection under the GDPR, and the right to complain to your local data protection authority. If you are in California, we confirm that we do not sell or share personal information as those terms are defined by the CCPA and CPRA, and you will never be treated differently for exercising a privacy right.

To exercise any right that is not already a button in the App, contact us using Section 21. We aim to respond within thirty days.

16.Deleting Your Account

You can delete your account from Settings, in Account Management, inside the App. Deletion is permanent and cannot be undone.

When you delete your account:

  • Your name, email address, profile photo and account identifier are removed from our servers
  • Your streaks, relapse entries, achievements, challenge and season records are deleted
  • Your protection activity and diagnostic records are deleted or permanently anonymised
  • Your community messages are removed from public view
  • Everything stored on your device is removed when you uninstall the App

Google Play keeps its own record of any purchase you made, which we cannot delete on your behalf. We may also retain the minimum information needed to comply with a legal or tax obligation, or to prevent someone who was removed for abuse from immediately returning.

17.Permissions the App Requests

Each permission exists for one job, and is used for nothing else:

  • Accessibility Service: to read the current screen so harmful content can be detected and blocked in real time. It is never used to capture, log or transmit what you read, type or browse.
  • Display Over Other Apps: to show the blocking screen over the app that was blocked.
  • Usage Access: to see which app is in the foreground so schedules and app blocking can apply. This stays on your device.
  • Query All Packages: to list the apps installed on your device so you can choose which ones to block. The list stays on your device.
  • Notifications: to send reminders, streak updates and community notifications you have enabled.
  • Storage: to save the App’s own files, and to let you pick a profile photo.
  • Device Administrator, Battery Optimisation Exemption and Boot Completed: to keep protection running, and to stop the App being uninstalled while a lock you set is active.
  • Internet: for sign-in, sync, community, subscriptions and updates.

We do not request location, contacts, camera, microphone, call log or SMS permissions.

18.Children’s Privacy

The App is intended for users aged 18 and over, and is not directed at children. We do not knowingly collect information from anyone under 13, or under the minimum age of consent where you live. If you believe a child has created an account, contact us and we will delete it.

19.International Transfers

Our servers and our providers operate in several countries, so your information may be stored and processed outside the country where you live. Wherever it is processed, it is protected by this policy and by contractual safeguards with each provider, including Standard Contractual Clauses where required for transfers out of the European Economic Area or the United Kingdom.

20.Changes to This Policy

We may update this policy as the App changes. When we do, we will revise the date at the top and publish the new version in the App and on our website. If a change materially affects how we handle your information, we will tell you in the App before it takes effect. Continuing to use the App after a change means you accept the updated policy.

21.Contact Us

If you have a question, a concern or a request about your privacy, contact us through Help and Support inside the App, or through our website at nofaphelper.martai.in. We aim to reply within 48 hours, and to resolve formal data requests within thirty days.

This policy is governed by the laws of India. We collect the least we can, we protect what we hold, and we tell you the truth about both.

This policy applies to the NoPorn / NoFap Helper Android app and our website.

Read the Terms of Service →