Security

Data Security Requirements

This page describes LifeSync's general data security approach for the website and app features found in the current codebase.

Last updated: May 25, 2026

Security posture

LifeSync uses Firebase Authentication and Firestore for account-based cloud sync, plus local storage for settings, device IDs, OAuth credentials, and cached health/screen-time data. Because the app processes health, calendar, task, app usage, and productivity data, security controls should treat this information as sensitive.

Security controls

User responsibilities

Users should download LifeSync only from official LifeSync links, keep their operating system updated, review optional permissions before enabling them, and protect device access with a strong password, PIN, biometric lock, or equivalent control.

Security notices

If a future feature creates a risk of unauthorized access to personal data, LifeSync should investigate, mitigate, document the event, and provide any legally required notices.

Official references

No method of electronic storage or transmission can be guaranteed to be completely secure.