Privacy Policy
Effective August 8, 2026
Parlane is a native client for servers you choose. That architecture is the privacy policy: your content moves between your phone and your server, and we are not in the middle. This page spells out exactly what that means.
The short version
- No accounts, no sign-up.
- No analytics, no trackers, no advertising, no crash-reporting SDKs. The app does not send usage data to us.
- Your chats, dashboards, and attachments flow directly between your device and the server you connect to — never through our infrastructure. We cannot see them.
- Voice recognition runs on your device. Audio never leaves your phone.
- Your data lives on your device: connection tokens in the iOS Keychain, chat history in a local database you can erase in-app.
- Two narrow exceptions, both disclosed below and both only there to make paid features work: subscription management (RevenueCat and Apple) and, if you're a Pro subscriber who turns on push, our relay routing your notifications. Neither can read your content.
What we collect
Almost nothing, and never to track you. Parlane has no accounts and no sign-up. The app contains no analytics, no trackers, no advertising identifiers, and no crash-reporting SDKs, and it does not phone home with usage data. That is a product rule, not a temporary state of affairs.
There are two narrow exceptions, both needed to run paid features and both spelled out in full below:
- Purchase data, when you view the Pro paywall or subscribe — handled by our subscription provider and by Apple. SeeSubscriptions and purchases.
- Device identifiers, if you're a Pro subscriber and turn on push notifications — registered with our relay so it can route notifications to your phone. SeePush notifications and the relay.
In App Store privacy terms, that is Purchases andIdentifiers — both collected only to make the app function, neither linked to your identity (we have no accounts to link them to), and neither used to track you across other apps or services.
How your data flows
You connect Parlane to servers you choose — your own, or ones run by third parties. The app talks to those servers directly from your device. Chat messages, voice transcripts, dashboard data, and attachments travel between your phone and that server only. They do not pass through Parlane infrastructure, and we have no ability to read, store, or log them.
What stays on your device
- Connection tokens — stored only in the device Keychain, Apple's encrypted credential store.
- Chat history — stored locally on-device in a SQLite database. You can wipe it any time with Erase local data in the app. Deleting the app deletes it too.
None of this is synced to us. There is no "us" to sync it to.
Voice
Speech-to-text happens on your device using Apple's frameworks. Only the resulting text is sent — directly to the server you connected, like any other message. Audio never leaves your phone.
Subscriptions and purchases
Parlane Pro is an optional paid subscription. If you never open the paywall or subscribe, nothing in this section applies to you.
Apple handles the transaction. Purchases are processed through Apple's In-App Purchase system (StoreKit), so Apple's standard handling of purchase data applies under Apple's own privacy policy.
RevenueCat, a third-party subscription-management provider, keeps track of your entitlement — whether Pro is active on your device. When you view the paywall or subscribe, RevenueCat processes subscription and purchase data and an anonymous app-user identifier. That identifier is not linked to your real identity: because Parlane has no accounts, there is no name, email, or profile to link it to. RevenueCat uses this data to manage subscriptions — never for advertising or cross-app tracking. Its handling is described in RevenueCat's privacy policy.
Push notifications and the relay
Push notifications are a Pro feature, and direct connections need no relay at all. If you never turn on push, your app never contacts our relay and nothing in this section applies to you.
When a Pro subscriber enables push, the app registers two things with the Parlane relay: an Apple Push Notification service (APNs) device token and a device public key. The relay stores this routing and identifier data and uses it to deliver notifications to the right phone via Apple's APNs, like every iOS push notification.
The relay cannot read your notifications. Content is end-to-end encrypted between your server and your device (X25519 key agreement, XChaCha20-Poly1305 encryption); the relay only ever handles ciphertext plus the minimal metadata needed to route it. The relay is open source under AGPL-3.0 and self-hostable, so you can run your own instead of ours.
This website
This site is static. It sets no cookies and runs no analytics or tracking scripts. The one thing it stores in your browser is your light/dark theme choice, in local storage, which never leaves your browser. If we ever add measurement, it will be privacy-preserving and cookie-free, and we will update this policy first.
Servers you connect to
This policy describes the Parlane app as we ship it. The servers you connect to are controlled by their operators — you, or whoever runs them. What they do with the messages, voice transcripts, and data you send them is governed by those operators and their own policies, not by this one. Connect to servers you trust.
Children
Parlane is not directed at children under 13, and we do not knowingly collect personal information from anyone — under 13 or otherwise, because we do not collect personal information.
Changes to this policy
If we change this policy, we will update this page and the effective date at the top. If a change ever means we start collecting something we don't collect today, we will say so plainly, here, before it takes effect.
Contact
Questions about privacy: sean.carroll@mac.com.