Gridinsoft

GRIDINSOFT · ANDROID

Trojan Scanner Privacy Policy

Updated September 27, 2026

Gridinsoft LLC provides Trojan Scanner for Android (com.gridinsoft.trojanscanner). This page explains data handling in the scanner, its optional Gridinsoft account and support features.

Scanning and technical information

The app scans installed applications for threats. During scans it sends technical information to Gridinsoft: application package names, installation paths and times, file hashes and certificate fingerprints, permissions and application components; detected threats, scan events and actions; Android and scanner versions, device model, Android device identifier and country information. These reports help us analyze threats, maintain detection and understand scanner operation. They are sent to Gridinsoft collection and reporting services, including ac.antivirus-lab.com and bind.trojan-killer.com. This collection is separate from the optional member account.

Optional account and registration

You can scan without creating an account or buying a subscription. If you choose to register, our member website processes your email and password and sends a confirmation email. Passwords are stored as hashes; the Android app does not receive your password. The app receives your account identifier, profile name and email after you approve connection.

To remember your connected installation, the account service stores a random installation identifier, device name, connection timestamps and session credentials in hashed form. Android stores its credentials using Android Keystore encryption, excluded from Android backups. We do not add scan history, results or installed-app inventories to the member account payload. Signing out revokes the installation credentials; it does not delete the shared Gridinsoft account.

Support requests

If you contact support through the app, we collect the name, email and message you submit, plus the scanner version, Android version and device model. We use these details to investigate and answer your request. Do not include passwords or other information that is unnecessary for your request.

Analytics and crash reports

The app uses Google Firebase Analytics and Crashlytics. These services process app usage and session events, crash reports and diagnostic information, device and app details, installation identifiers and, where available, the Android advertising identifier. Analytics derives approximate location from IP addresses. Gridinsoft uses these services to understand app usage and diagnose reliability problems.

Application updates

Versions distributed through Google Play use Google's update service to check availability. Google's Play update library processes device metadata, the app version and installed modules and asset packs to determine whether an update is available and its size. This processing is subject to Google's privacy policy.

Versions downloaded directly from the Gridinsoft website can check a release-information file on gridinsoft.com over HTTPS. This request does not include account credentials, scan results or an installed-app inventory. Our hosting and content delivery providers can process the IP address and standard request metadata to deliver and secure this service. If you choose to update, the app opens the Gridinsoft download page in your browser; it does not install an APK automatically.

Recipients and security

Gridinsoft and service providers operating our hosting, email, support and Google Firebase services process data for these functions. Information is transmitted over HTTPS. We may also disclose information when required by law. See Google's Privacy Policy and the Gridinsoft Privacy Policy for additional information about these services and your rights.

Retention and your choices

Account and installation records are retained to provide and secure your account until removed through a verified deletion request or applicable retention procedures. Confirmation links expire after 30 minutes. Support correspondence and technical reports are retained for support, threat analysis and reliability investigations; they are not limited to processing in memory during a single request. Records required for legal, billing or fraud-prevention obligations may be kept for those purposes. Deleting the app removes its local data but does not itself request deletion of server records.

You can use the scanner without an account, disconnect an installation, or request deletion of your account or Scanner data. Deletion requests must be verified before action. Specify whether you want Scanner data removed or your entire shared Gridinsoft account deleted, because other Gridinsoft products may use that account.

We acknowledge deletion requests within 3 business days of receipt. Once ownership and scope are verified, we delete eligible data from our live systems within 30 calendar days and confirm the outcome, including any applicable retention exceptions.

Contact

Gridinsoft LLC · Ukraine.
support@gridinsoft.com