Hardware Keystore Encryption
OAuth tokens stored in Android Keystore
100% On Device Processing
Zero middleware logging & no external server relays
Google Limited Use Compliant
Strict adherence to Google API Services User Data Policy
Overview & Scope
NotifyHub (Package / Application ID: com.emailsense.email_notifier) is a realtime email notification radar and priority alert utility developed and maintained by Pramuda Kulathunga. NotifyHub allows users to connect their personal email accounts (via Google OAuth 2.0 or direct IMAP configuration) to monitor incoming messages for specific keywords, senders, and high priority subjects. The application notifies you instantly through your device notification shade while keeping all authentication and message data strictly on your local device.
Information We Process & Store
NotifyHub is engineered with a strict client only architecture. The application processes only the minimum data essential for inbox monitoring and notification dispatch, stored locally on your physical smartphone:
OAuth Tokens & Credentials
Google OAuth 2.0 authorization tokens and IMAP account credentials are encrypted using the native Android Keystore via flutter_secure_storage. Credentials are only used to communicate directly with authorized mail servers and are never sent anywhere else.
Keyword Rules & Filter Scopes
Target keyword strings, match scopes (Subject, Body, Sender, or All), priority ratings (High, Medium, Low), and notification alert sound/vibration preferences are stored in local device app preferences.
Local Detection History
When an incoming message triggers a rule match, a short preview snippet, subject, sender address, and timestamp are cached locally in device storage for your review in the history screen. Messages that do not match your rules are discarded immediately.
Productivity Utilities
Local birthday reminders and To-Do task checklist items are stored on device. When sending birthday wishes, the app opens your installed WhatsApp application via deep linking; no contact data is transmitted to external servers.
Google API Services User Data Policy & Limited Use Disclosure
NotifyHub's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically regarding Google User Data and the restricted https://www.googleapis.com/auth/gmail.readonly scope:
- Strict Purpose Limitation: Email data is accessed solely to perform automated local keyword and sender pattern matching configured explicitly by you.
- Zero Human Reading: No human being, including the developer, ever reads or has access to your emails or messages.
- No Data Transfers: Information received from Google APIs is never transferred or sold to third parties, data brokers, or external advertising networks.
- No AI/ML Model Training: Google user data is never used to train, retrain, or improve generalized artificial intelligence, machine learning, or large language models.
- No Advertising: User data received through Google APIs is never used for serving advertisements, retargeting, or promotional profiling.
Purpose of Data Processing
- Executing automated background scans (via native Android WorkManager) to check for incoming emails that match your custom priority rules.
- Delivering instant, actionable local notifications with priority alert channels, custom vibration patterns, and direct deep links to launch the official Gmail message.
- Presenting an offline history log of past detections so you can verify when alerts were triggered and which rules fired.
- Providing an in app interactive rule simulator so you can safely test your keyword patterns before deploying them live.
Security & Storage Architecture
All communications between NotifyHub and official email provider endpoints (Google APIs and IMAP servers) enforce 256-bit TLS/SSL encryption. Sensitive OAuth tokens are protected by native hardware encryption via Android Keystore and iOS Keychain. Because NotifyHub operates entirely without an intermediary backend server, your emails, passwords, and credentials never pass through any developer-owned computer, server, or cloud storage.
Third-Party Infrastructure & Policies
NotifyHub integrates with trusted services for account authentication and message retrieval. You can review each provider's respective privacy terms here:
User Control & Data Erasure
You retain complete, autonomous control over all your data at all times. You can disconnect connected Gmail and IMAP accounts with a single tap, delete keyword filtering rules, and clear past detection history directly within the app settings. You can also revoke NotifyHub's access at any moment from your Google Account Permissions Page. Because no data is stored on remote servers, clearing app data or uninstalling NotifyHub immediately and permanently purges all tokens, credentials, and logs from your device.
Developer Contact Details
Pramuda Kulathunga
Computer Engineering Undergraduate, University of Jaffna
pramudakulathunga@gmail.com