Privacy Policy
Last updated: July 13, 2026
This privacy policy applies to both apps that make up the XR Phone Mirror system: XR Phone Viewer (the Android XR headset app) and XR Phone Server (the Android phone app). The two apps work together to mirror and control your phone from an Android XR headset. Because they operate as a single connected experience, one policy covers both.
The short version: We do not collect, store, transmit, or sell any personal data. There are no accounts, no analytics, no ads, and no cloud servers. All mirroring happens directly between your two devices over your own local network.
1. Who we are
XR Phone Mirror is an independent software project. For any privacy questions, contact us at nik.anand.1998@gmail.com.
2. Data we collect
None. Neither app collects or transmits personal information to us or to any third party. We operate no backend servers, analytics pipelines, advertising SDKs, or user accounts. We have no ability to see your screen, hear your audio, or observe your usage.
3. How the apps use device permissions
Both apps request permissions solely to perform on-device mirroring between your headset and your phone. Data accessed through these permissions is used in real time on your devices and over your local network — it is never uploaded to us.
XR Phone Server (phone)
- Screen capture (MediaProjection): captures your phone's display so it can be streamed to the paired headset. You must explicitly approve this each session. We never claim to forward DRM-protected content or apps that opt out of capture.
- Audio (RECORD_AUDIO / playback capture): Android labels playback capture as "audio recording," but the app captures only media/game playback audio for streaming. It never opens the microphone, and does not capture calls, alarms, or notifications.
- Accessibility service: receives remote touch, scroll, navigation, and text input from the paired headset and replays it on your phone. It does not read, log, or transmit your screen content anywhere.
- Foreground service / notifications: keeps the capture session running and visible while active.
XR Phone Viewer (headset)
- Camera & scene understanding: used only to scan the pairing QR code and to place the mirrored window in your space. Camera frames are processed on-device and are not recorded or transmitted.
Both apps
- Network access: used to establish the direct, encrypted connection between the two devices on your local Wi-Fi network. No data is sent to the internet or to us.
4. How your data is handled
The mirrored screen, playback audio, and remote-control input are transmitted directly between your phone and your headset over a connection that is:
- TLS-encrypted end to end between the two devices;
- Pinned using a one-time token exchanged via the pairing QR code;
- Single-client — the phone server accepts only one authenticated headset at a time.
This data is streamed in real time and is not persisted by the apps after a session ends.
5. Data sharing
We do not share, sell, or disclose any data, because we do not collect any. No third-party services, advertisers, or analytics providers receive information from these apps.
6. Data retention
Because no personal data is collected or stored on our side, there is nothing for us to retain or delete. Pairing keys are generated and stored locally on your devices and can be removed by uninstalling the apps.
7. Children's privacy
These apps are not directed at children under 13 and do not knowingly collect any information from anyone.
8. Security
Connections use TLS with certificate pinning and a one-time pairing token. Because the system is local-only with no cloud component, your mirrored content never traverses the public internet.
9. Changes to this policy
If this policy changes, we will update the date at the top of this page and post the revised version here.
10. Contact
Questions about this policy? Email nik.anand.1998@gmail.com.