Privacy Policy

Last Updated: February 9, 2026

Bitfi, Inc. (“Bitfi”, “we”, “us”, or “our”) operates the ApeShift application for Android (the “App”). This Privacy Policy explains how we access, collect, use, store, protect, and disclose information when you use the App. By using the App, you acknowledge and agree to the practices described in this Privacy Policy.

Bitfi, Inc.
16192 Coastal Hwy, Lewes, DE 19958, USA
Support Contact: support@bitfi.com
Privacy Contact: privacy@bitfi.com

Core Design Principles

ApeShift is built around a zero-knowledge, end-to-end encrypted architecture:

Information Stored on Blockchain

When you create an alias:

These items are written to a decentralized blockchain smart contract. They are publicly accessible and immutable, and contain no private keys or messages. This allows peers to retrieve public keys directly without relying on a centralized directory.

Information Stored on Bitfi Servers

Bitfi servers store only:

Bitfi cannot decrypt this data, does not inspect its contents, and does not index message content. Data remains encrypted at rest and in transit.

Information Stored on Your Device

Message history is not persistently stored. Conversation data is retrieved from servers only when a chat is selected. User SALT and SECRET are never stored. Users must enter SALT and SECRET after each device boot or app restart. The application displays bitmap-rendered message content to minimize plaintext exposure in memory.

Deletion & Account Model

ApeShift does not use traditional user accounts. Users generate their own cryptographic identity and register a blockchain alias using their own keys. There is no centralized account database.

Aliases cannot be deleted because blockchain entries are permanent by design.

Personal Contacts

The App does not access, collect, or use phone contacts.

Encryption & Security

ApeShift employs modern cryptographic standards for all transmissions, including Elliptic Curve Diffie–Hellman (ECDH) and AES encryption, and secures all networking (HTTPS/WSS).

Data Sharing

Bitfi does not sell user data. Data is not shared with third parties except when legally required by a valid court order or other legal process. Even then, Bitfi cannot provide decrypted content.

International Users & GDPR Rights

Where applicable, users may request access to personal data or confirmation of processing. Requests may be submitted to privacy@bitfi.com. Because Bitfi does not possess decryption keys, Bitfi’s ability to fulfill content-level requests is limited.

Children

The App is not directed to children under the age of 13, and Bitfi does not knowingly collect data from children.

Updates

Bitfi may update this Privacy Policy periodically. Continued use of the App constitutes acceptance of the updated policy.