Privacy Policy for HARP Mobile App Effective Date: July 29, 2026 Last Updated: July 29, 2026 Alango (“Alango,” “we,” “us,” or “our”) provides the HARP Mobile App (“HARP” or the “App”). This Privacy Policy explains how HARP accesses, processes, stores, and shares information when you use the App. 1. Overview HARP is designed to discover, connect to, configure, and communicate with compatible HARP devices using Bluetooth. The App can also perform hearing assessments, manage audiograms and hearing-related configurations, and read or write configuration files selected by the user. HARP does not currently provide user accounts or require users to sign in. 2. Information Processed by the App Bluetooth and connected-device information HARP uses Bluetooth and Bluetooth Low Energy to discover and communicate with compatible devices. The App may process: Bluetooth device names Bluetooth device addresses or identifiers Device connection and pairing status Device model, firmware, hardware, and service information Device capabilities and configuration Commands and responses exchanged with connected devices Diagnostic information related to Bluetooth communication This information is used to discover devices, establish and maintain connections, configure connected devices, and provide the App’s core functionality. Bluetooth and connected-device information is generally processed locally on the mobile device and exchanged directly with the connected HARP device. Hearing assessment and audiogram information HARP allows users to perform hearing assessments and create, view, edit, store, apply, import, or delete audiogram information. This may include: Hearing-test frequencies Hearing-level measurements Left- and right-ear hearing measurements Audiogram names and configuration values Hearing-personalization settings Assessment progress and results Hearing assessment and audiogram information may be considered health-related or sensitive information. This information is stored locally on the user’s device and may be transmitted directly to a compatible connected HARP device when the user chooses to apply a configuration. HARP does not use hearing assessment or audiogram information for advertising. Files and storage HARP may request access to device storage to allow users to work with supported configuration, audiogram, firmware, or binary files. The App may: Read files selected or configured by the user Store App configuration files Store audiogram files Access supported files in the Downloads directory Create, modify, import, export, or delete App-related files HARP does not intentionally access unrelated personal files. Storage access is used only to provide file-management and device-configuration functionality. Files stored in the App’s private storage are normally removed when the App’s data is cleared or the App is uninstalled. Files exported to shared storage or the Downloads directory may remain until the user deletes them. Device and diagnostic information HARP uses Firebase Crashlytics to identify crashes and improve the App’s stability. When a crash or technical failure occurs, Firebase Crashlytics may automatically process information such as: Device model and manufacturer Operating-system version App version Installation identifier Crash time Stack traces Application state at the time of the crash Technical and performance information associated with the failure We use this information only to diagnose technical problems, improve stability, and maintain the App. We do not intentionally include audiogram measurements or the contents of user files in crash reports. Notifications HARP may request permission to display notifications while maintaining an active connection with a compatible device. Notifications are used to inform users about connection or background-service status. Notification permission itself does not provide HARP with access to the contents of notifications from other applications. Location information HARP does not collect, store, or transmit the user’s precise or approximate physical location. On some Android versions, Bluetooth discovery may be associated with system-level Bluetooth or nearby-device permissions. HARP uses these permissions only to discover and communicate with compatible devices, not to determine the user’s location. 3. How We Use Information We use information processed by HARP to: Discover compatible HARP devices Pair and connect with devices Maintain Bluetooth connections Read and modify device configurations Perform hearing assessments Create and manage audiograms Apply hearing settings to connected devices Import, export, and manage supported files Provide foreground-service notifications Diagnose crashes and technical failures Improve the App’s reliability, security, and performance Respond to support requests Comply with applicable legal obligations We do not use information for unrelated purposes without providing appropriate notice or obtaining consent where required. 4. Information Sharing HARP does not sell personal information. We do not share personal information for advertising or cross-context behavioral advertising. Information may be disclosed in the following limited circumstances: Google Firebase Technical crash and diagnostic information may be processed by Google through Firebase Crashlytics on our behalf. Google acts as a service provider for crash reporting and may process information according to its applicable terms, security measures, and privacy documentation. Connected HARP devices Device configurations, commands, audiograms, or hearing-personalization settings may be transmitted directly to a compatible connected device when the user initiates or enables the relevant functionality. Legal requirements We may disclose information if reasonably necessary to: Comply with applicable law or a valid legal request Protect users, Alango, or the public Investigate fraud, abuse, security incidents, or technical problems Establish, exercise, or defend legal claims 5. Data Storage and Retention Audiograms, configuration data, application settings, and supported files are primarily stored locally on the user’s device. Users can delete audiograms and supported user-created files through the App where deletion functionality is available. Users may also remove locally stored App data by: Deleting individual information within HARP Clearing HARP’s storage through Android system settings Uninstalling the App Manually deleting exported files from shared storage Files exported to shared storage or the Downloads directory may not be automatically removed when HARP is uninstalled. Depending on the user’s Android and Google backup settings, some locally stored App information may be included in an operating-system backup or device transfer. Those backups are controlled by the user’s device and backup provider. Crash and diagnostic information is retained only for as long as reasonably necessary to diagnose issues, improve the App, meet security requirements, or comply with legal obligations. Information processed through Firebase Crashlytics is also subject to the applicable Firebase retention settings and terms. 6. Data Security We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, alteration, disclosure, loss, or misuse. These safeguards may include: Android application sandboxing Access controls Restricted access to diagnostic systems Secure communication with service providers Dependency and software updates Limiting information processing to the App’s required functionality Bluetooth communication security also depends on the connected device, pairing configuration, Bluetooth protocol, mobile device, and operating system. No storage or communication system can be guaranteed to be completely secure. 7. User Choices and Controls Users can control HARP’s access through Android system settings. Depending on the Android version, users may: Allow or deny Nearby devices or Bluetooth permissions Allow or deny notification permission Disable Bluetooth Disconnect or unpair a connected device Remove locally stored audiograms Delete supported files Clear the App’s storage Uninstall the App Denying required Bluetooth or storage permissions may prevent some features from working. 8. Data Deletion Requests HARP does not currently allow users to create an account, and it does not maintain an account-based user profile. Most information created through HARP is stored locally and can be removed through the App, Android system settings, or by uninstalling the App. To request information about deletion of diagnostic or support-related information associated with you, contact us at: Email: [privacy@alango.com] We may request information reasonably necessary to identify the relevant records. Some technical records may not be linkable to an identifiable user. We may retain limited information when required for security, fraud prevention, dispute resolution, or legal compliance. 9. Children’s Privacy HARP is not directed to children under the age of 13 or the minimum legal age applicable in their country. We do not knowingly collect personal information from children. If we learn that a child has provided personal information, we will take reasonable steps to delete it. 10. International Data Processing Crash and diagnostic information processed by our service providers may be stored or processed in countries other than the user’s country of residence. Where required by applicable law, we use appropriate safeguards for international transfers of personal information. 11. Third-Party Services HARP currently uses Firebase Crashlytics for crash reporting and application-stability monitoring. Third-party services may process limited technical information according to their own privacy documentation and contractual obligations. HARP does not currently use third-party advertising SDKs. 12. Changes to This Privacy Policy We may update this Privacy Policy when HARP’s functionality, data practices, third-party services, or legal obligations change. The updated Privacy Policy will be published at this location, and the “Last Updated” date will be revised. Where required, we will provide additional notice or obtain consent. 13. Contact Us For questions, requests, or concerns regarding this Privacy Policy, contact: Company: Alango [full legal company name] Application: HARP Mobile App Email: [privacy@alango.com] Support Email: [support@alango.com] Website: [https://www.alango.com] Postal Address: [company legal address]