XEZOMDEVELOPER PORTAL

Developer privacy

The private developer portal stores your name, email, verified account identity, invitations, access expiration, credential fingerprints, usage counts, and feedback you submit. Firebase provides account authentication and stores the server-managed records.

Passwords are managed by Firebase Authentication. Invitation registration passes your password to Firebase over HTTPS without storing it in the portal database. Raw XA credentials are shown once; the server stores a fingerprint rather than the credential. Account sessions are kept for the current browser session.

Downloading XA does not upload any project information. Captures, source, and reports stay on your computer unless you explicitly approve an XA upload. Feedback forms accept text only; exclude credentials, customer data, source, and screenshots.

Hosted reviews use the approved evidence and source through XA’s Firebase service and OpenAI. Bounded service records include request status, timing and token usage. The portal does not give other testers access to your feedback, credentials or account.

If you add a passkey, Xezom stores its public key, the name you give it, and registration and usage times. Your device or password manager keeps the private key. Xezom does not receive your device password, PIN, or biometric data. Removing a passkey ends portal sessions that used it. Passkey sessions expire after 24 hours; administrator actions require verification within 30 minutes.

Firebase App Check uses Google reCAPTCHA Enterprise to assess browser requests for abuse without asking you to solve a puzzle. Google processes browser and device signals for this security check. See Google’s Privacy Policy and Terms of Service. App verification does not replace your account or invitation checks.

Access can be suspended, revoked or allowed to expire. Revocation prevents further authenticated downloads and hosted requests; it cannot remove files already downloaded. Ask support@xezom.com for account assistance, deletion of portal records, or an approved private route for diagnostic evidence.

Read Xezom’s privacy policy