Back to hbenali.ovh

Overview

Livebox Monitor is an unofficial, community-built companion app for Orange Livebox routers. It is not affiliated with, endorsed by, or officially provided by Orange S.A. or Orange France. Livebox is a registered trademark of Orange Brand Services Limited.

The app is a pure client: it talks directly from your phone to your own Livebox router on your local network (or to a remote address you configure yourself). There is no backend server operated by the developer and no user accounts. The only third parties involved are Google Play's own services, covered below.

Livebox credentials

Your Livebox address, username, and password (if you choose "Remember password") are stored only on your device, encrypted using Android's EncryptedSharedPreferences (AES-256). They are never transmitted anywhere except directly to your own Livebox for authentication.

If you choose to save your password with your device's password manager (Google Password Manager or Samsung Pass), that copy is handled entirely by the password manager itself, under its own privacy policy - the app never sees or stores it.

You can erase all stored credentials at any time from Settings → "Forget credentials", or by uninstalling the app.

Biometric unlock

If you enable fingerprint sign-in, authentication is handled entirely by Android's own BiometricPrompt API and your device's secure hardware. The app never receives, stores, or transmits any biometric data.

WAN location lookup

The Livebox Info screen can show the approximate geographic location and ISP of your router's public IP address. To do this, the app sends that public IP address (nothing else) to two third-party services when you view that screen:

  • ip-api.com - for geolocation and ISP/organization data
  • OpenStreetMap's tile server - to display an approximate map image

A reverse-DNS (PTR) lookup for the same IP is also performed, using your device's normal DNS resolver - the same kind of lookup any app or browser can trigger, and not something the app sends to any third party itself.

No other data is included in these requests, and they only happen when you open that specific screen.

New-device notifications

If you enable "New device alerts" in Settings, the app periodically connects directly to your own Livebox in the background (using your locally stored, encrypted credentials) to check for unrecognized devices on your network, and shows a local notification if one appears. This check never leaves your phone and your Livebox - no third party is involved.

Crash reporting

The app uses Firebase Crashlytics (a Google service) to automatically send a report when it crashes, so bugs can be found and fixed. These reports contain only technical details - a stack trace, device model, Android version, and app version - and aren't intentionally linked to your identity or your Livebox.

Google Play services

A couple of optional features rely on Google Play's own infrastructure on your device: checking for and installing app updates, and - once the app has proven useful a few times - a native, Play-provided prompt to rate it, which Play itself decides whether to actually show. Both are handled entirely by Google Play; the app doesn't see or control what data Play associates with them.

App preferences

Your theme, language, and device-icon choices are stored locally on your device only, and are never transmitted anywhere.

Children's privacy

Livebox Monitor is a network administration tool and is not directed at children. It does not knowingly collect any information from children.

Changes to this policy

If this policy changes, the "Last updated" date above will be revised. Continued use of the app after a change constitutes acceptance of the updated policy.

Contact

Questions about this policy or the app can be sent to contact@hbenali.ovh.