What we collect
- Account details. Your email address and, if you use a password, a salted hash of it (never the password itself). If you sign in with Google or Apple, we receive your email address and an account identifier from them. With Apple, that may be a private relay address.
- Billing records. Your balance and a ledger of top-ups and AI requests: the amount, time, model used and token counts. Apple provides signed transaction identifiers for in-app purchases, bound to a random account token. Stripe provides a customer ID for web payments. Payment card details never reach us.
- API keys. A hash and short prefix of each key, when it was made and when it was last used.
- App waitlist. If you join the mobile app waitlist, your email address and the time you joined, so we can tell you when the app is available.
- Session cookie. One cookie that keeps you signed in, plus a short-lived cookie during Google or Apple sign-in, and one that remembers you joined the app waitlist so we stop showing the banner. We use no advertising or analytics cookies.
- Request logs. Like most websites, our hosting provider records technical details such as IP address, browser, and the time and path of each request, for security and debugging.
- Product activity. We use first-party activity records, such as account creation, shortcut installation and whether an action succeeded, to understand and improve the service. These records may be linked to your account. They do not include your AI input or output and are not used for advertising or cross-app tracking.
- AI privacy preferences. We record the disclosure version and time of your account-wide AI-sharing approval. The app also stores permission locally for the current sign-in; signing out clears that local permission. We do not use it for cross-app tracking.
- Apple revocation token. If you sign in with Apple, we store an encrypted refresh or access token so we can revoke that connection when you delete your account. The encryption key is held separately as a server secret.
What you send to the AI
When a Shortcut calls our API, it sends the text, image or audio you chose to our servers, which pass it to an AI model and return the result. We do not store the content of your requests or the AI's replies in our database. We keep billing and product-activity records as described above. Our providers may retain request data under their policies, as described below.
Allow AI data sharing explicitly in Account → AI Privacy before running AI actions or installing shortcuts. You may decline and still browse. Turning sharing off blocks future inference calls from your account, including downloaded shortcuts; it cannot recall a request already sent. Apple Shortcuts also manages local permissions. Revoke a specific shortcut's key to stop only that shortcut. Only share content you have permission to send, including other people's messages, documents or recordings.
Who we share it with
We share data only with the companies that run the service for us:
- Cloudflare hosts the site and database and runs most AI models (Workers AI) and the AI Gateway that routes image requests. See Cloudflare's privacy policy.
- OpenAI generates images for the Make an Image block. OpenAI says it does not train on API data by default and may keep it for up to 30 days to monitor abuse. See OpenAI's privacy policy.
- Stripe processes payments. See Stripe's privacy policy.
- Google and Apple for sign-in if you choose them, and Apple for in-app purchases and refunds. See Apple's privacy policy.
We may also disclose data when the law requires it, to protect people or the service from harm, or as part of a sale or merger of the service (in which case this policy keeps applying).
How we use it
To run your account, answer your requests, charge the right amount, prevent fraud and abuse, keep the service secure, and reply when you contact us. We do not sell your personal information, share it for advertising, or use your requests to train AI models.
How long we keep it
We keep account and billing records while your account is open. After you delete your account, we remove your account details, keys and sessions, but may keep payment records for as long as tax and accounting law requires. Sessions expire on their own, and our hosting provider's logs are kept for a limited time.
We permanently retain previously issued numeric account IDs to prevent delayed payments or requests from reaching a different account. This ID registry does not contain email addresses, credentials or request content. We also retain unlinked Apple transaction identifiers to prevent purchase replay.
Your choices and rights
You can see your balance, history and API keys on your account page, revoke keys, change AI-sharing permission and delete your account there. Account deletion is also available directly in the iPhone app's Account tab. To get a copy of your data or correct it, email support@iphoneadvanced.com. Depending on where you live, you may have further rights, such as to object to processing or complain to a data protection authority. We will not treat you differently for using them.
Security
Traffic is encrypted with HTTPS, passwords and keys are stored only as hashes, and access to production systems is limited. No system is perfectly secure, so please use a strong, unique password.
Children
The service is not meant for children under 13, and we do not knowingly collect their data. If you think a child has given us data, email support@iphoneadvanced.com and we will delete it.
International users
We and our providers may process data in the United States and other countries, which may have different data protection laws from yours.
Changes
If we change this policy in a meaningful way, we will update the date above and say so on the site.
Contact
Privacy questions or requests: support@iphoneadvanced.com. See also our Terms of Service.