Privacy Policy
This privacy policy covers the Sievesmith app for iPhone, iPad and Mac and this website.
Controller
Angelo CuccatoGardeschützenweg 112
12203 Berlin
E-mail: sievesmith@cuccato.net
Summary
Sievesmith does not collect any data. There is no tracking and there are no analytics or advertising SDKs. The developer does not run any servers for the app and does not receive any of your data. In the App Store the app is labelled “Data Not Collected”.
Connections made by the app
The app connects directly from your device to:
- the mail servers you enter (ManageSieve, encrypted with TLS),
- optionally, a Git host of your choice for the Git mirror,
- optionally, the sign-in service of your mail provider, if you sign in with OAuth.
These connections are made only on your instruction. Which data these services process is governed by their providers.
Data stored on your devices and in iCloud
- Server accounts, settings and merge bases are synced via your private iCloud database (CloudKit). Only you have access to it.
- Passwords, tokens and SSH keys are stored only in the keychain (iCloud Keychain if enabled) or in the Secure Enclave of your device.
- Script cache, drafts, the upload queue and the protocol log stay on your device. The protocol log is off by default and never contains passwords or tokens.
- Backups (ZIP files) are created only by you, and only you decide whether to share them.
iCloud is provided by Apple; Apple’s privacy policy applies: https://www.apple.com/legal/privacy/.
Purchases and subscriptions
Purchases and subscriptions are handled entirely by Apple through the App Store (StoreKit). The developer only receives anonymous, aggregated sales reports from Apple.
Crash reports
Crash reports reach the developer only if you have enabled sharing with app developers in the settings of iOS, iPadOS or macOS. They are transmitted by Apple.
This website
When you visit this website, the web server records the following data in log files: IP address, date and time of the request, requested URL, HTTP status code, amount of data transferred, referrer URL and browser user agent. This data is processed to deliver the website and to ensure the security and stability of the server. The legal basis is Art. 6(1)(f) GDPR (legitimate interest). Log files are deleted after 15 days at the latest.
The website does not use cookies, tracking or analytics and does not load any external fonts, scripts or other third-party content.
Your rights
You have the right to access, rectification, erasure and restriction of processing of your personal data, the right to data portability and the right to object to its processing (Art. 15–18, 20, 21 GDPR). You also have the right to lodge a complaint with a data protection supervisory authority.