Privacy policy
Last updated 21 August 2026
This policy describes what the Farmey mobile app collects and why. The full text is in English. Short summaries in Sinhala and Tamil are below when you switch language.
Farmey ඇප් එක ඔබගෙන් ගන්නේ මොනවද, ඒවා තියාගන්නේ කොහෙද කියලා මේ පිටුවේ තියෙනවා. සම්පූර්ණ ප්රතිපත්තිය ඉංග්රීසියෙන්. කෙටියෙන්: ගිණුමට ඊමේල් සහ Google Sign-In; කැමරාව රෝග ඡායාරූප, බිල්පත් සහ ප්රොෆයිල් එකට; ස්ථානය කාලගුණයට විතරයි, ඇප් එක අරින වෙලාවේ, අනිත් උපයෝගිතාකරුවන්ට දෙන්නේ නැහැ; ගොවිපොළේ සටහන් උපාංගයේම තියෙනවා; දෝෂ වාර්තා Sentry එකට යනවා. විමසීම්: support@farmey.lk.
Farmey செயலி என்ன தரவை எதற்காகச் சேகரிக்கிறது என்பது இந்தப் பக்கம். முழுக் கொள்கை ஆங்கிலத்தில். சுருக்கம்: கணக்குக்கு மின்னஞ்சல் மற்றும் Google Sign-In; கேமரா நோய் புகைப்படம், பில், சுயவிவரப் படம்; இருப்பிடம் வானிலைக்கு மட்டும், செயலி திறந்திருக்கும் போது, பிற பயனர்களுடன் பகிரப்படாது; பண்ணைப் பதிவுகள் சாதனத்திலேயே; பிழை அறிக்கைகள் Sentry-க்கு. கேள்விகள்: support@farmey.lk.
This privacy policy applies to the Farmey mobile application (“Farmey”, “the app”) operated by Weera Agri / Farmey (“we”, “us”). It covers information we collect when you install or use Farmey on iOS, Android or the web build of the app.
These public pages (Knowledge, Government Services, Experts, the terms of service, and this policy) are static. They do not require an account, do not set a login cookie, and do not collect farm records.
Contact: support@farmey.lk.
1. Who we are
Farmey is a Sri Lanka-focused farming app: market prices, weather for the field, crop advice, plant diagnosis, farm records, and reading on knowledge and government services. The legal operator is Weera Agri / Farmey. We process personal data in order to run the app you signed up for - not to sell a profile of you to other farmers or to advertisers.
2. Information we collect
Account
If you create an account we store:
- Email address and a password held by Firebase Authentication (we do not see your password in plaintext).
- Name, and optionally a phone number and a role you choose (farmer, buyer, or guest).
- If you use Google Sign-In, Google shares the account identifier, email, display name and profile photo URL that you already granted to Google. We use that to create or sign in to your Farmey account. We do not get your Google password.
You can use parts of the app without an account; farm records on the device still work. Some features (cloud profile, push token stored against a user, signed API calls) need a signed-in account.
Camera and photos
The app asks for the camera and the photo library for three jobs, matching the permission text on the App Store and Google Play:
- Plant disease photos - you point the camera at a leaf (Plant Doctor) or pick an image. That picture is sent to Farmey’s advisory service so we can return a possible diagnosis. A history of checks can be kept on your device.
- Bills - photos you attach to a farm money record (for example a fertiliser receipt).
- Profile photo - an image you choose for your account. Profile images are uploaded to Firebase Storage and linked to your user record.
iOS also includes a microphone usage string for possible video recording. The Android camera plugin is configured not to record audio. We do not use the microphone as a standing recording service.
Location
If you allow location, Farmey uses it while the app is open to show the weather forecast for the field you are standing in, instead of only a district town. That is the “when in use” permission on both platforms.
We do not share your location with other users. We do not use location to build an advertising graph. You can instead search for a town. Turning location off still lets you use the rest of the app.
Farm records (plots, tasks, cultivation)
My Farm - farms (plots of ground), cultivations (a crop grown once), money in and out, and tasks - is local-first. You type it; it is stored on the device (on-device storage). It is not synced to our servers as a cloud farm ledger in the current app. If you delete the app or clear that storage, those records go with it unless you have a backup of the phone.
Bills you photograph for a ledger entry live with those on-device records. They are not a public gallery.
Notifications
If you turn notifications on, the operating system asks you first. When you are signed in, Farmey may save this install’s Expo push token on your user document so a future server-side sender can reach this device. Turning the in-app toggle off removes that token from our user record. We cannot revoke the OS permission for you; that stays in system Settings.
Local reminders (for example a task you scheduled) can fire on the device without sending a token to us.
Crash reporting and diagnostics
Farmey uses Sentry (organisation: Weera Agri, project: farmey-app) to collect crash reports and related diagnostics when the app fails. That typically includes device type, OS version, app version, and a stack trace. It may include the account identifier if you were signed in at the time of the crash. We use this to fix bugs, not to profile farming behaviour.
Technical data from our APIs
When the app calls our backends it necessarily sends what the request needs (for example a crop and district for advice, a market query, or a plant photo for diagnosis) together with ordinary connection metadata (time, app version, and - when you are signed in - an auth token). We host:
- a Farmey backend (BFF) for app APIs,
- an advisory service (crop, pest and related advice, including Plant Doctor),
- a market-prices service.
These run on infrastructure we operate (currently Railway-hosted services). This policy does not list every URL; the set can change as we ship. We do not put farm-ledger plots into those APIs in the current app.
3. Firebase and other processors
We use Google Firebase for:
- Authentication (email and Google Sign-In),
- Cloud Firestore (your user profile and, when enabled, the push token),
- Cloud Storage (profile photos),
- and related Google/Firebase telemetry that ships with that SDK (our Firebase project includes an analytics measurement identifier).
Google acts as a processor for that stack. Sentry processes crash data. Expo is used to deliver the app binary and push tokens. Google is also the identity provider if you tap Google Sign-In.
Those companies store data in regions they operate. Using Farmey means that data may leave Sri Lanka. We choose vendors who publish their own security and privacy terms; we do not control their data centres.
4. How we use information
- To create and secure your account, and to show your name and photo in the app.
- To return weather for a point you chose, market prices, and advisory or Plant Doctor results you asked for.
- To keep farm records you entered on the device.
- To send notifications you opted into.
- To diagnose crashes and keep the app working.
- To answer email you send to support@farmey.lk.
We do not sell your personal information. We do not share your field location or farm ledger with other Farmey users.
5. Legal basis (where that language applies)
If a law asks for a “legal basis”, we rely on: performing the contract of providing the app you registered for; your consent where we ask for a permission (camera, photos, location, notifications); and our legitimate interest in keeping the app secure and fixing crashes. You can withdraw a permission in system Settings; that does not delete an account by itself.
6. How long we keep it
- Account and profile data last until you ask us to delete the account, or we close it for abuse.
- On-device farm records last until you delete them or remove the app.
- Plant Doctor requests exist for as long as needed to return a result and to operate the service (including abuse prevention). Device-side history lasts until you clear it.
- Crash reports are kept in Sentry for a limited diagnostic window, not as a permanent dossier.
- Support emails are kept as long as needed to resolve the thread and meet ordinary record-keeping.
7. What we do not do
- We do not require cookies to read Knowledge, Government Services, Experts, or this policy.
- We do not put a login wall in front of these pages.
- We do not share your location with other users.
- We do not use the camera when you are not taking a photo or picking one.
8. Children
Farmey is built for people who farm. It is not directed at children under 13 (or the equivalent age of digital consent where you live). If you believe we have collected personal data from a child, write to support@farmey.lk and we will delete it.
9. Your choices
- Change or delete farm records in the app.
- Change camera, photo, location and notification permissions in iOS or Android Settings.
- Sign out, reset a password, or request account deletion by emailing weeraagriculture@gmail.com from the address on the account.
- Ask for a copy of the profile data we hold in Firebase about you, via the same address.
Deleting the app removes on-device farm records. It does not by itself delete the cloud account. Say so in the email if you want both gone.
10. Security
We use HTTPS for app traffic, Firebase Authentication for signed-in calls, and access rules on Firestore and Storage aimed at each user seeing their own profile. No method of transmission or storage is perfect. Do not photograph documents you would not want stored on a phone that can be lost.
11. These websites
farmey-superapp.netlify.app is a static site hosted on Netlify so the app’s WebViews have real pages to load. The host will see ordinary web logs (IP address, user agent, URL) as any HTTPS host does. We do not run a Farmey login on that host. Language preference, if you tap EN / සිං / தமிழ், is stored in your browser or WebView as localStorage on this origin only.
The terms of service for the Farmey app are at https://farmey-superapp.netlify.app/terms. How to delete an account is at https://farmey-superapp.netlify.app/delete-account. This privacy policy is the one for the Farmey app and for this public URL: https://farmey-superapp.netlify.app/privacy-policy.
12. Changes
We will change the “Last updated” date when this policy changes. If the change is material (a new kind of data, or a new use that is not obvious from a feature you turned on), we will also describe it in an app release note or an in-app notice where we can reach you.
13. Contact
Weera Agri / Farmey
Email: support@farmey.lk
If you have a privacy complaint, write to that address first. You may also have the right to complain to a data-protection authority in your country.