Privacy Policy
Privacy at a glance
SwiftServer connects your iPhone, iPad, and Mac directly to your own servers. That design decides everything in this policy:
- We do not collect your personal data. There is no SwiftServer account, no analytics, no ad or tracking SDK, and no crash reporting service in the app.
- Your server addresses, usernames, passwords, SSH keys, and everything you see or type in a session stay on your devices and your servers. They are never sent to us.
- Two optional features send data somewhere other than your servers, and both are under your control: an IP information lookup that your own server makes to ipinfo.io, and iCloud sync inside your own Apple account. Neither is visible to us.
- The most effective way to protect your data is to never hold it in the first place. That is how SwiftServer is built.
The sections below spell out the details.
Who we are
SwiftServer is made by GitSwift LLC, 30 North Gould Street, Suite R, Sheridan, WY 82801, United States. For anything in this policy, write to [email protected].
Because SwiftServer is designed so that we never receive your data, we generally do not process personal data about you at all. Where any law still gives you rights over personal data, contact us and we will honor them.
Data we do not collect
To be explicit, SwiftServer has:
- No user accounts, sign-ups, or profiles.
- No collection of server hostnames, IP addresses, usernames, passwords, SSH keys, passphrases, certificates, or proxy credentials.
- No collection of terminal input or output, command history, file contents, SFTP transfers, or Docker data.
- No collection of monitoring metrics from your servers.
- No analytics, advertising, fingerprinting, or tracking SDKs.
- No crash reporting service. If the app misbehaves, we only know when you tell us.
When you email support, we receive whatever you choose to write and your email address, and we use them only to help you.
What stays on your device
Everything SwiftServer needs lives locally:
- Connection settings. Servers, groups, tags, identities, port forwarding rules, snippets, and session history records are stored in a local database on the device.
- Secrets. Passwords, SSH private keys, key passphrases, and proxy credentials are stored in the device Keychain, protected by the system. You can additionally require Face ID, Touch ID, or your passcode before a saved secret is shown, changed, or exported.
- Terminal sessions are not recorded. SwiftServer does not save transcripts of your terminal sessions. Snippet runs store their output with the snippet's execution history on your device so you can review results later; you can delete that history at any time.
- Diagnostic logs. The app keeps a short, local log of connection events (for example "connection established" or an error message) so you can troubleshoot. These logs stay on the device, you can view and clear them in Settings, and they are never transmitted automatically. The feedback email the app composes includes only the app version and system version, never your logs, unless you paste them in yourself.
Files you download with SFTP, keys you export, and anything you copy to the clipboard are under the control of the system and you, like in any other app.
Connections to your servers
When you connect, your device talks directly to your server over SSH (or Mosh over UDP after an SSH bootstrap). Traffic is encrypted end to end between your device and your server using those protocols. We are not in the path; there is no relay, proxy, or cloud service of ours in between.
Monitoring works the same way: SwiftServer runs ordinary read-only commands on your server over the SSH connection you configured and shows you the results. Nothing is installed on your server and no agent runs there. If you add home screen widgets, the app may briefly open the same kind of SSH connection in the background to refresh their data.
The optional IP information lookup
To show where a server is and who operates its network, SwiftServer can look up the server's public IP address:
- While monitoring for a server is active, SwiftServer runs a small command on that server that requests
https://ipinfo.io. The request goes from your server to ipinfo.io, not from your device, and not through us. - Because it is a normal web request, ipinfo.io necessarily receives your server's public IP address (which is the very thing being looked up) together with standard request metadata. Their handling of it is governed by the IPinfo Privacy Policy and Terms of Service, not by this policy.
- The response (IP, city, region, country, coordinates, organization, postal code, time zone) is shown in the app and kept in memory. Only the server's country code is saved locally so widgets can show a flag. We never receive, store, or forward any of it.
- Everyone can see the country and the IP itself; the detailed city, region, organization, and map view are part of Premium. When you open the map, Apple Maps renders it, which loads map tiles from Apple.
- If you prefer that a server never contacts ipinfo.io, turn off "Show Status in Dashboard" for that server; the lookup only runs as part of monitoring. There is also a display setting to redact IP addresses from the dashboard.
Optional iCloud sync
Premium users can turn on "Sync to iCloud" in Settings. It is off by default. When enabled:
- Your configuration (servers, identities, public keys, trusted host keys, groups, tags, proxy profiles, port forwarding rules, snippets and their execution history, session history) syncs through the private CloudKit database of your own iCloud account.
- Your secrets (passwords, private keys, passphrases, proxy credentials) sync exclusively through iCloud Keychain, which Apple end-to-end encrypts. They are never stored in CloudKit records.
- Apple transmits and stores this data on your behalf under the iCloud Terms and the Apple Privacy Policy. We cannot access, read, or receive any of it; it belongs to your Apple account, not to us.
- Turn the toggle off to stop syncing. You can manage or remove iCloud data for SwiftServer in your device's iCloud settings, and deleting the app's data from iCloud is done there as well.
Purchases
Premium is bought inside the app through Apple's App Store. Apple processes the payment; we never see your name, address, or payment details. To recognize your purchase across launches, the app validates receipts through RevenueCat using a random, anonymous identifier; no account or personal details are attached to it. RevenueCat's handling is described in the RevenueCat Privacy Policy. During occasional lifetime promotions, the app fetches a small price table from our website to display regional original prices; this is an ordinary web request and no personal data is included beyond what any web request carries.
Our website
swiftserver.app is served from our own infrastructure. Like almost every web server, it keeps short-lived standard access logs (IP address, requested page, browser user agent) for security and operations. The website currently uses Google Analytics to count visits in aggregate; see the Google Privacy Policy for how Google processes that data. The website works fine with content blockers enabled.
Children
SwiftServer is a professional tool for people who run servers and is not directed at children. We do not knowingly collect personal information from anyone, including children.
Your rights
Privacy laws such as the GDPR and the CCPA give you rights over personal data that companies hold about you. Our answer is simple: apart from support email you send us, we do not hold personal data about you, so there is usually nothing for us to access, export, correct, or delete. We do not sell or share personal information. If you believe we do hold something about you, or you want to exercise any right under the law that applies to you, email [email protected] and we will respond.
Changes to this policy
If SwiftServer's data practices ever change, we will update this policy, change the effective date at the top, and describe the change plainly. Meaningful changes will be called out in the app's release notes.
Contact
GitSwift LLC · 30 North Gould Street, Suite R, Sheridan, WY 82801, USA [email protected]