This site is a work in progress. Content and download links are not final yet.
DEK Plus

Privacy policy

Last updated: 8 September 2026

Fields to be completed before publication are shown in square brackets: company name, address, registry number and effective date.

This policy explains which data is processed when you use the DEK Plus applications for Android, Windows and Android TV, and this website. The data controller is [COMPANY NAME], [ADDRESS], registry no. [REGISTRY NO]. Contact: destek@dekplus.io.

Short summary

An account is optional

You can install and use the application without creating an account. Acting as a camera, watching a camera, sending files to a phone next to you, and using the toolbox and the Vault do not require an e-mail address.

An account is required only for the following: pairing a computer or a television, backup, accessing your files from outside your home network, and clipboard sharing.

What is requested at sign-up

No phone number, username, date of birth or profile photo is requested. There is no social media sign-in and no SMS verification.

Device identifier

Each device generates its own identifier on first launch (for example DEK-6V46T7). This identifier is independent of your account, is created without asking for an e-mail address, and is kept in the device's encrypted storage. Application data is not included in device backups; when you move to a new phone the identifier is not carried over, and the new device receives a new identifier. You can reset the identifier at any time from the profile screen.

Encryption

Where the keys are

When you pair your devices, a QR code appears on the screen of your computer or television, and you scan it with your phone. That QR code carries the encryption key shared between your devices. The key passes from one screen to the other; it does not go out to the internet, does not pass through our servers, and is not stored on our servers. The key is kept in the operating system's secure storage on your phone, and protected by Windows' own encryption mechanism on your computer.

The practical consequence of this is: because we do not hold the key, we cannot decrypt your encrypted content either. This is also why you have to pair again when you move to a new device.

What is transferred and stored in encrypted form

Camera stream

Live video and audio are encrypted with DTLS-SRTP. The encryption key is generated for each session between the camera and the viewer device and exists only in the memory of those two devices. When on the same network, the devices talk directly; encryption applies on the local network in exactly the same way. When on different networks, a direct connection is attempted; if the network does not allow it, the stream flows through a relay server. The relay only forwards the encrypted packets; it cannot decrypt their content and does not record them.

The phone acting as a camera does not broadcast unencrypted video, photos or the PIN onto the local network. Photos taken remotely and commands such as flash and zoom also pass through the same encrypted channel. The viewing PIN is sent to the camera only on the first connection, over the encrypted connection; the camera verifies it, and the server does not store it. The only information exposed on the local network is the camera's name and identifier. The same encrypted stream is used when watching from a television.

What is not encrypted

To be honest, not everything is encrypted. The following is readable on our servers, because it is necessary for the system to work:

There are also things that remain unencrypted on your devices: video recordings made by the camera are written unencrypted to the phone's gallery, and motion recordings on the computer are written unencrypted to the computer's disk. These stay on your device, under your control.

Data that reaches our servers

Data that never leaves your device

If you use the domain name lookup tool, the domain name you type is sent to the public server of the relevant registry so that the lookup can be performed.

Permissions requested

No SMS, call log or calendar permission is requested. You can revoke permissions at any time from the device settings; only the related feature stops working, and the rest of the application continues to work.

Service providers

Usage statistics

Counts of which screens of the application are used, and crash reports, are collected. The following are not included in these records: your contacts, your file names, your file contents, your folder paths, your location, your installed applications, your e-mail address, your device identifier and your IP address. Your user identifier is never reported to the statistics service.

No advertisements are shown, and advertising identifier collection is turned off. The current version of the application does not have a setting to turn off the collection of statistics and crash reports.

About your rights

You have the right to access your data, to have it corrected, to request its deletion, to restrict its processing, and to receive your data in a portable format. You can delete your account yourself from the profile screen in the application; deletion removes your account and the records linked to it. You can also clear your backups in the cloud with the "delete my files in the cloud" option. For other requests, you can write to destek@dekplus.io.

If you consider the response to your request insufficient, you can lodge a complaint with the data protection authority of the country you are in. In Türkiye, this authority is the Personal Data Protection Authority (Kişisel Verileri Koruma Kurumu).

Children

DEK Plus is not directed at users under the age of 13, and we do not knowingly collect data from this age group.

Changes

When we update this policy, we change the date at the top of the page. If there is a significant change, we will notify you within the application or by e-mail.