Privacy Policy — AgentPager
Effective date:
Published by Cosmovex
Cosmovex built AgentPager (formerly MDPilot), an Android app that lets you follow and control AI coding agents — such as Claude Code, Codex, Gemini CLI and OpenCode — running on your own computer, and that includes a markdown toolkit. This Privacy Policy explains what information AgentPager processes, how it is used, and the choices you have.
AgentPager is account-free. There is no sign-up and no login. Your documents are stored on your device, and your coding sessions stay on your computer.
Information We Process
- Agent remote (end-to-end encrypted): when you pair a computer, your phone and that computer exchange encryption keys through the QR code. Everything they send each other — session titles, messages, approval requests, replies — is encrypted on one device and only decrypted on the other. It travels through Google Firebase Realtime Database, which stores only encrypted data that neither Google nor we can read, and each message is deleted once it is delivered. Firebase necessarily sees technical metadata such as a random channel identifier, timestamps, message sizes and IP addresses. Your keys are kept in Android's secure storage on your phone and in your user folder on your computer.
- Project folders: so you can start a session from your phone, your computer sends it a list of folder names— never file contents — encrypted in the same way. Your computer only offers folders inside your home folder, the folder you started AgentPager in, or beside a project you already have a session in, and never hidden folders. We never see any of it.
- Recent activity, kept on your phone: so the app can still show what happened when your computer is off, it keeps the last few sessions and their recent lines in its own private storage on the phone. It is never uploaded, it is not readable by other apps, pending approvals are never kept, and removing a computer (or uninstalling) deletes it.
- Notifications: if you allow notifications, your phone's Firebase Cloud Messaging token is sent (encrypted) to your own paired computer. When an agent needs you or finishes, your computer sends an encrypted notification through our small relay service (hosted on Vercel) to Google Firebase Cloud Messaging. The relay passes the token and the encrypted payload on and does not store them; your phone decrypts the text.
- Camera: used only to scan the pairing QR code. The camera image is processed on your device and is not stored or sent anywhere.
- Microphone and voice: used only when you tap the microphone or use hands-free mode. Speech is turned into text by your phone's speech recognition service (provided by Google or your device maker), which may process the audio on its own servers under its own privacy policy. We never receive your audio. Spoken replies use your phone's text-to-speech engine.
- Your documents: the markdown you write is stored on your device. If you choose a folder, files are saved there via Android's document picker. Document contents are never uploaded automatically.
- AI features (optional): when you use an AI action (for example, generating or linting an agent-config file), the text you submit for that action is sent to the AI provider (Google's Gemini API) to produce a response. If you connect your own API key, the request goes directly using your key. AI is only invoked when you tap an AI action.
- LAN Vault Server (Pro): when you start it, your documents are served only to devices on your own Wi-Fi network. Nothing is sent to us or to the internet.
- Usage analytics: we use Google Firebase Analytics to understand which features are used and where people get stuck (for example: paired a computer, opened a session, approved a request, which agent type). We do not collect the content of your documents, messages, code, commands or file paths.
- Crash reports: Google Firebase Crashlytics collects diagnostic data if the app crashes, to help us fix bugs.
- Advertising: the free version shows ads via Google AdMob, which may use an advertising identifier. AgentPager Pro removes ads.
Information We Do Not Collect
We do not require an account. We do not collect your name, email, or contacts. We cannot read your coding sessions or messages, and we do not upload your documents to our servers.
Third-Party Services
- Google Firebase (Analytics, Crashlytics, Remote Config, Realtime Database as an encrypted relay, Cloud Messaging for notifications)
- Vercel (hosts the notification relay; stores nothing)
- Your device's speech recognition and text-to-speech services
- Google AdMob (advertising)
- Google Gemini API (only when you use AI features)
- Google Play Billing (for AgentPager Pro subscriptions and one-time purchases — we never receive your payment details)
These services have their own privacy policies governing the data they process.
Children
AgentPager is intended for users aged 13 and older and is not directed at children.
Your Choices
You can use the toolkit fully offline. You can unpair a computer at any time in the app (and on the computer with agentpager unpair), which deletes its keys. You can turn notifications, the camera and the microphone off in Android settings. You can cancel a Pro subscription in Google Play. You can reset your advertising identifier in Android settings. Uninstalling the app deletes everything it stored on your phone.
Contact
Questions about this policy? Email trionapps@gmail.com.