InfraCrate /

PRIVACY & DATA

Privacy, explained.

How InfraCrate and this website handle information, and what you control.

Last updated: September 29, 2026

1. Scope and development status

Orion Lattice provides InfraCrate and this website at orion-lattice.systems. This policy describes the current development version of InfraCrate and this informational website. InfraCrate is not yet a public production release. We will update this policy as the app’s behavior changes.

Local-first does not mean that every component is verified to make zero network requests. External email, browser, file-provider, and printing actions can use the network. Physical-device verification remains a release requirement.

2. Your inventory

InfraCrate stores devices, notes, locations, racks, connections, settings, and attachment names in the app’s private storage on your device. The current app has no InfraCrate account, inventory server, or active cloud synchronization. It does not automatically upload your inventory to Orion Lattice.

The native Android and iOS inventory database uses SQLCipher with a random key held in operating-system secure storage. Imported attachment contents and password-protected backups have separate encryption. Migration from an older plaintext development database removes the original only after an integrity-checked encrypted copy. Native encryption and migration acceptance remains a release requirement; losing device keys can make local data inaccessible.

3. Photos, documents, exports, and backups

The app imports only photos and documents you select. Imported attachment contents use AES-256-GCM encryption with a device-protected key. Full backups are encrypted using a password you enter; the app does not save that password.

Recovery Pack PDF, CSV, JSON and ZIP exports, QR labels, and individually exported documents are not encrypted by InfraCrate. Selected attachments in a Recovery Pack are readable to anyone with that export. Database-only encrypted backups omit attachment content and references; a full backup includes attachments. The system file picker may offer local storage or third-party cloud providers. If you select an external provider or share an exported file, that provider’s terms, privacy policy, and settings apply. Original files remain in their original location.

Importing a file can create a temporary unencrypted copy. The app attempts cleanup after import and at startup, but cannot control all operating-system or provider caches. Keep backups and their passwords safe; losing the device key and backup password can make attachment contents unrecoverable.

4. Camera, QR labels, and notifications

Camera permission is used for barcode and QR scanning. The current development app uses local ZXing decoding; it no longer uses the previous Google ML Kit scanner. There is no app analytics or diagnostic upload integration. Scanned URLs are not opened automatically. Final signed builds still require device and network verification.

Asset QR codes contain an opaque asset identifier, not your serial numbers, notes, or locations. Optional printed label text is visible to anyone who sees it. Printing is explicitly requested and may use a network printer.

Optional reminders are scheduled locally and are off by default. They require device permission. Generic notification text is the default; choosing detailed text can reveal asset names or reminder titles on your lock screen. The operating system stores scheduled notification content outside the encrypted inventory. There is no remote push service.

5. This website and email correspondence

This static website does not include analytics scripts, advertising trackers, account registration, contact forms, or browser-storage features. It does not receive your app inventory. Opening a link from the app loads the website in your browser.

This website is hosted on Cloudflare Pages. Cloudflare processes ordinary web-request information, such as IP addresses, requested URLs, and browser information, to deliver and protect the site. See Cloudflare’s privacy policy for its processing practices.

If you email support or our privacy address, your email address, message, and any attachments are processed to respond to your request. We use Proton Mail to receive and respond to support and privacy correspondence. Proton and the email services involved in delivery process that correspondence under their own policies; see Proton Mail’s privacy policy. Opening an email link does not send a message or attach your inventory automatically. You choose what to send. Please avoid sending sensitive inventory or credentials. Correspondence may be retained while needed to handle the request, maintain relevant support records, or satisfy legal obligations. Contact us to ask about or request deletion of correspondence.

6. Retention and your choices

You can edit and delete inventory and attachments in the app, manage camera permission through your device settings, and choose whether to import, export, or share files. Old encrypted attachment files may remain until startup cleanup. Deletion does not guarantee forensic erasure.

Exported copies, backups, original files, and copies held by providers must be managed separately. App storage is configured to be excluded from operating-system backup, but real-device verification remains outstanding. Make and verify an explicit password-protected backup before uninstalling the app or moving devices.

We cannot retrieve inventory stored only on your device. Depending on applicable law, you may have rights concerning personal information you send us, including access, correction, or deletion. Contact the privacy address to make a request; we may need enough information to verify and respond to it.

7. Changes and contact

Changes will be posted on this page with an updated date. A production release will need an updated policy reflecting its final behavior and services.

Privacy questions and requests: privacy@orion-lattice.systems
Product support: support@orion-lattice.systems