Foldvia Privacy Policy

Foldvia ("Foldvia", "the App", "we", "us") is a desktop application published by Laventis Strategic Ltd (元構策略有限公司) ("Laventis", the "Company"), a company registered in Taiwan (R.O.C.).

This Privacy Policy explains what data the App can access, what data (if any) leaves your device, how it is handled, and the choices you have. It covers the entire Foldvia desktop application, including its connections to third-party cloud storage providers, paid-plan licensing, and optional error reporting.

Foldvia does not host your files. The App connects to cloud storage accounts that you own — such as Google Drive, Microsoft OneDrive or Dropbox — and works on them from your desktop. Your file contents and metadata travel directly between your device and the provider you chose. Laventis does not operate storage for your files and does not receive, relay, or retain copies of them.

1. The core principle: Foldvia is local-first

By default, Foldvia runs entirely on your own device. It organizes, browses, and cleans files on your computer and on the cloud accounts you connect. In normal use there is no Foldvia server in the path of your files: there is nothing to sign up for, and the App does not phone home, show advertising, or collect usage analytics.

Data leaves your device in only the few, specific situations listed in Section 3 below — each one is either a direct connection you initiate to your own cloud provider, or an explicitly optional feature you turn on. If a data flow is not listed in Section 3, it does not exist in this version.

2. Data that stays on your device

Foldvia keeps the following on your computer only. None of it is automatically transmitted anywhere:

You can remove this data by deleting it within the App, or by deleting your ~/.filepal/ folder. Uninstalling the App does not remove it. On Windows, uninstalling leaves ~/.filepal/ and the credential files under your user profile in place — delete them yourself if you want them gone (Section 5 says where the credentials live).

3. When data leaves your device (the complete list)

3.1 Connecting your own cloud storage (direct, no Foldvia server)

When you connect a cloud account — for example Google Drive, Microsoft OneDrive, Amazon S3 or S3-compatible storage, Cloudflare R2, Backblaze B2, Wasabi, Google Cloud Storage, or Azure Blob Storage — the App communicates directly from your computer to that provider's API. Your files and file metadata flow between your device and that provider only. They do not pass through, and are not stored on, any Laventis or Foldvia server. The App uses this access only to provide the unified, browsable, on-device file experience across the clouds you connect.

3.2 Your subscription and its device seats (paid plans only)

If you buy a paid plan, three things reach Foldvia — each one from an action you take, and none of them involving your files:

We do not receive, through this path: your file contents, file names, file paths, folder structure, the operation journal, or usage statistics. If you never buy a paid plan, this path never runs.

3.3 Error reporting (optional; off by default)

Foldvia can send anonymized crash and error reports to help us fix defects, using the third-party service Sentry. This is opt-in and turned OFF by default. Nothing is sent unless you explicitly enable "error reporting" in Settings; the App explains exactly what is and is not sent on that screen, and the choice takes effect after a restart.

When (and only when) you enable it, a report may include the error message and a stack trace, with sensitive content scrubbed before sending: absolute file paths are reduced to a bare file name, and bearer tokens, secrets, and long base64 strings are masked. We do not send, through error reporting: behavioral telemetry, usage statistics, file contents, or full file paths.

3.4 In-app feedback (optional; only when you send it)

Foldvia has a "Send feedback" form (in Settings and About). Nothing is sent unless you fill it in and submit it. When you do, we receive only: the category you pick (bug, feature idea, or pricing), the message you type, an optional email address (leave it blank to send anonymously — we do not attach any hidden device or tracking identifier), and, if you turn on the optional "attach system info" toggle, a fixed short set of technical fields (app version, operating-system name and version, CPU architecture, interface language, and plan). The form shows you exactly those fields before you send them.

We do not collect, through feedback: your file contents, file names, file paths, account email addresses, or any information beyond the fields listed above. For abuse prevention, the service temporarily processes the connection IP address and stores only a one-way hashed rate-limit key derived from it, for up to 60 seconds; the raw IP address is not stored in your feedback record. We keep raw feedback for up to 90 days; a feedback item that becomes an active support case may be kept longer while it is open. De-identified, aggregated statistics (for example, how many people wrote in about pricing) may be kept longer, with no way to trace them back to you. To request deletion of a message you sent, contact support@foldvia.com with its reference id.

3.5 Links that open your browser

Choosing certain actions (for example an upgrade or "learn more" link) opens the link in your default web browser, which leaves the App. Your browser, not Foldvia, governs what happens next.

4. Google Drive — Limited Use disclosure (Google API Services User Data Policy)

If you connect Google Drive, Foldvia requests the drive.readonly scope (read-only access to your Drive files, including their contents). With your authorization, the App can read file/folder metadata (name, file ID, size, MIME type, parent relationships, and where available the md5Checksum), read your Drive storage quota, and download file contents when you choose to open, view, or transfer a specific file. The integration is read-only — Foldvia does not modify, delete, or upload to your Google Drive.

Foldvia's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Concretely:

5. How your credentials are stored

When you authorize a cloud account, the resulting access tokens, refresh tokens, or access keys are stored locally on your device using the operating system's secure credential facilities:

These credentials are never transmitted to Laventis and are used by the App only to authenticate the requests your device sends directly to each provider.

6. What we never do

7. Data retention and your choices

8. Children

Foldvia is not directed to children and is intended for users who are old enough to hold the relevant accounts.

9. Changes to this policy

We may update this Privacy Policy. Material changes will be posted at this URL with an updated revision date in the revision history at the end of this page; where required, we will request renewed authorization.

10. Contact

Laventis Strategic Ltd (元構策略有限公司)

Registered address: 4F., No. 398, Sec. 1, Keelung Rd., Xinyi Dist., Taipei City 110612, Taiwan (R.O.C.)
(中文:中華民國臺灣臺北市信義區基隆路一段398號4樓)

Business registration number (統一編號): 62063155

D-U-N-S Number: 776045203

Contact: support@foldvia.com

11. Language

The Traditional Chinese version of this Policy is the authoritative version. This English text is provided as a translation for convenience. In the event of any discrepancy between the two, the Traditional Chinese version prevails.

Revision history

Last revised: 2026-07-27 — removed descriptions of a first-party Foldvia Cloud hosted-storage service, which is not offered; clarified that Foldvia connects to cloud storage accounts you own and does not host files; consolidated the support contact address; added the missing disclosure of paid-plan licensing and device seats (§3.2); corrected the statement that uninstalling removes on-device data, which is not true on Windows (§2, §7). Traditional Chinese version published at /zh/privacy/, which is the authoritative text.