The short version. I do not sell your data, I do not run ad networks, and I do not build advertising profiles. Most of what these apps store stays on your device. Where an app offers an optional account or cloud sync, only the data needed for that feature leaves your device. Where an app uses AI features, it uses your own API key and talks to the AI provider directly — I never see your key or your prompts.
These apps are published by Manuel Rinaldi, an independent developer ("I", "me"). For the purposes of the EU/UK General Data Protection Regulation, I am the data controller for any personal data described in this policy.
Contact: manuelrinaldi86@gmail.com
This policy applies to the apps I distribute through the Apple App Store and to this website. It does not cover Apple's own handling of your data (see Apple's Privacy Policy), nor any third-party service you choose to connect to an app using your own credentials.
Not every section below applies to every app. Each app's App Store listing carries an App Privacy label describing exactly what that app collects; where the label and this policy appear to differ, the label for that specific app is authoritative.
The content you create in these apps — notes, documents, settings, libraries, history, preferences — is stored locally on your device by default. I have no access to it. It is included in your encrypted iCloud or local device backup if you have backups enabled, which is governed by Apple's privacy policy, not mine.
Deleting the app removes its local data from that device. Data already synced to a cloud account (section 4) or written to your own iCloud Drive is not removed by deleting the app.
Some apps offer an optional account so your data can sync across devices. These features are opt-in. If you never create an account, no personal data is transmitted to me.
| Data | Why | Legal basis (GDPR) |
|---|---|---|
| Email address | To create and secure your account, reset access, and send essential service notices | Performance of a contract |
| Authentication identifier | To sign you in. If you use Sign in with Apple and choose "Hide My Email", I receive only a relay address and never your real one | Performance of a contract |
| Synced app content | To make your data available on your other devices | Performance of a contract |
| Basic technical data (timestamps, device type, app version) | To operate the sync service and detect abuse | Legitimate interests |
Synced content is transmitted over TLS and stored with encryption at rest. I do not read your synced content, and I do not use it to train machine learning models.
You can delete your account and all associated server-side data from within the app, or by emailing manuelrinaldi86@gmail.com. Deletion is permanent.
Where an app includes AI features, it operates on a "bring your own key" basis:
Practical advice: because your content leaves your device when you use these features, avoid submitting confidential, medical, financial, or other sensitive information unless you have satisfied yourself that your provider's terms are appropriate for it.
All purchases and subscriptions are processed by Apple. I never receive or store your payment card details, billing address, or full name. Apple provides me with anonymised, aggregated sales and subscription reporting, and a receipt token used solely to verify that a purchase is valid and to restore it on your devices.
If you have opted in to sharing analytics with app developers in Settings › Privacy & Security › Analytics & Improvements, Apple may share aggregated crash and performance data with me. This data is provided by Apple in a form that does not identify you.
Where an app includes its own crash reporting, it collects only the technical information needed to diagnose a fault — device model, OS version, app version, and the stack trace at the point of failure. It does not collect your app content.
If you email me for support, I receive your email address and whatever you choose to include in your message. I use it solely to answer you. Support email is retained for up to 24 months so I can follow up on recurring issues, then deleted.
I do not sell, rent, or trade personal data. I do not share it with advertisers or data brokers. I do not use third-party advertising SDKs, and these apps do not request App Tracking Transparency permission because they do not track you across other companies' apps and websites.
Data may be processed by the following categories of provider strictly to deliver the features described above: Apple (app distribution, payments, iCloud), the cloud hosting provider used for optional account sync, and any AI provider whose key you supply. I may also disclose data where legally compelled to do so.
Depending on where you live, you may have the right to access, correct, delete, restrict, or object to the processing of your personal data, to receive a portable copy of it, and to withdraw consent at any time. Under the GDPR you may also lodge a complaint with your national supervisory authority.
If you are a California resident, you have the right to know what personal information is collected, to request its deletion or correction, and not to be discriminated against for exercising those rights. I do not sell or share personal information as those terms are defined by the CCPA/CPRA.
To exercise any of these rights, email manuelrinaldi86@gmail.com. I will respond within 30 days. There is no charge, and I will not ask you for more identifying information than is necessary to locate your record.
Note that for data held only on your device, or sent under your own API key to a third-party AI provider, I am not in a position to act on your behalf — you control the former directly, and should contact the provider for the latter.
These apps are not directed to children under 13 (or under 16 where local law sets a higher age), and I do not knowingly collect personal data from them. If you believe a child has provided personal data, contact me and I will delete it.
Data in transit is protected with TLS. Server-stored data is encrypted at rest. API keys and credentials are held in the device Keychain. Access to production systems is limited to me and protected by multi-factor authentication.
No system is perfectly secure. If a breach affecting your personal data occurs, I will notify affected users and the relevant supervisory authority as required by law, without undue delay and within 72 hours of becoming aware of it where the GDPR applies.
I am based in Italy. Where personal data is transferred outside the European Economic Area — for example to a hosting or AI provider in the United States — that transfer is made under an adequacy decision or the European Commission's Standard Contractual Clauses.
I may update this policy as the apps change. The "last updated" date at the top will always reflect the current version. Material changes affecting how your data is used will be announced in the app or by email before they take effect. Continued use after that date constitutes acceptance.
Questions, requests, or complaints about privacy:
manuelrinaldi86@gmail.com
Manuel Rinaldi · Italy