DBmate

Privacy Policy

Last Updated: July 10, 2026

Welcome to DBmate. Your privacy is critical to us. This Privacy Policy describes how DBmate ("we", "us", or "our") collects, uses, and safeguards your information when you use our mobile application ("Application").

🔒 Security & Local-First Philosophy: DBmate is built as a developer tool with local privacy in mind. We do not store or transmit your database credentials to our servers. Your connection configs and database passwords are encrypted and saved strictly on your local device.

1. Information We Collect and Process

A. Database Credentials and Connections

All database credentials, connection parameters (e.g., hostnames, port numbers, usernames, passwords, SSH private keys), and session data are stored locally on your device. We use Android's EncryptedSharedPreferences and secure local databases to encrypt your credentials. This information is never sent to our servers.

B. Account and Sync Information

When you create an account or sign in using Google Sign-In or Firebase Authentication, we collect:

C. Billing and Subscription Metadata

We process in-app purchase tokens and billing events via the Google Play Billing Library. This subscription status metadata (tier, status, and expiration) is securely synchronized with our backend (Firebase Firestore) to gate premium features.

D. AI Assistant Usage

If you choose to use the AI Assistant feature:

2. How We Use Your Information

We use the collected information for the following purposes:

3. Third-Party Services

To enable authentication, subscriptions, and messaging, we integrate third-party services that process data under their own policies:

4. Data Security

We use industry-standard cryptographic practices on Android (including AES-256 encryption via Android Jetpack Security) to safeguard your passwords and private keys locally. While we implement strong precautions, please secure your mobile device with a passcode or biometric lock to prevent unauthorized physical access to your local databases.

5. Your Rights and Account Deletion

You can manage, edit, or delete your saved connection profiles and local SQL scripts at any time directly within the Application. You have full ownership and control over your account data:

6. California Consumer Privacy Act (CCPA / CPRA) Disclosures

This section applies exclusively to residents of California under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):

7. Trademarks and Legal Notice

PostgreSQL, MySQL, MariaDB, Redis, MongoDB, Oracle, Microsoft SQL Server, and Azure are registered trademarks or trademarks of their respective owners. DBmate is an independent database management tool and is not affiliated with, sponsored by, or endorsed by any of these entities. All product names, logos, and brands are used strictly for identification and compatibility purposes.

8. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date at the top of this policy.

Questions or Support?

If you have any questions or suggestions about this Privacy Policy or account deletion, please contact us at: