PRIVACY / GLOBAL

Privacy Policy

AI Limits Tracker · JoCoding, Inc. · Effective August 14, 2026

1. Operator and Privacy contact

Operator/Data Controller: JoCoding, Inc., a Delaware corporation. Registered address: 1111B S Governors Ave, STE 80543, Dover, DE 19904, United States. Telephone: +1 (231) 450-5622. Privacy contact and access-request desk: mu07010@jocoding.net. Website: jocoding.io.

2. Service and local-first model

AI Limits Tracker helps a user view normalized usage windows, reset timing, local history, widgets, and local alerts for compatible experimental AI providers. The app does not require a JoCoding account. When a compatible connection is available and the user chooses it, the device communicates directly with the selected provider.

3. Information processed by the app

InformationPurposeLocation and disclosure
Provider access/refresh credentials and expiryAuthenticate user-requested provider accessDevice secure storage. Not stored in SQLite, widgets, diagnostics, or JoCoding servers.
Provider/account identifier, local alias, internal account IDIdentify and organize connected accountsStored locally. A full email-shaped alias is redacted from widget and diagnostic output.
Normalized usage percentage, window/reset time, retrieval timeDashboard, history, widgets, pace estimate, and local alertsStored locally and not transmitted to JoCoding.
Preferences, alert rules, retry/recovery state, onboarding version, entitlement feature stateRemember local settings and protect feature behaviorStored locally. No receipt, raw transaction ID, or purchase token is stored by this release.
Redacted diagnostic categoriesExplain errors on the deviceDisplayed locally. There is no automatic crash or support upload SDK.

The app does not intentionally request name, phone number, address, contacts, location, photos, camera, microphone, advertising identifier, health information, biometric template, political/religious information, government identifiers, or payment information. Device authentication for App Lock is performed by iOS; the app does not receive biometric data.

4. Collection method and purpose

Information is entered by the user, created locally during app use, or returned directly to the device by a provider chosen by the user. It is processed to display usage, manage connections, preserve local history, schedule local notifications, publish credential-free widgets, provide export through the system share sheet, and delete local state safely.

5. Providers, third parties, and international transfer

JoCoding does not receive or sell provider credentials or usage values and does not disclose them to independent advertisers or data brokers. Direct provider authentication and usage requests are governed by the selected provider’s privacy terms and may be processed in the provider’s countries. Apple provides App Store distribution, iOS secure storage, device authentication, widgets, background scheduling, local notifications, and the system share sheet under Apple’s terms. Cloudflare serves this policy website; ordinary web request metadata may be processed in Cloudflare’s network. The site has no analytics script or form database.

6. Retention and deletion

  • Credentials and account metadata remain until disconnect or Delete all local data succeeds.
  • Normalized history is retained locally for 7 days in the free or unverified state and up to 90 days for an active/grace Pro feature state; the latest snapshot remains until the account is deleted.
  • Rules, retry state, local onboarding, widget snapshots, and scheduled local notifications are removed by the applicable disconnect or full local deletion flow.
  • Temporary export files are created only after an explicit user action and are removed after a failed share request; the user controls destinations offered by the iOS share sheet.
  • Deleting local app data does not delete data held by a selected provider or Apple account history.

7. Destruction procedure

The app removes secure-storage credentials before removing related local database records, widget files, and scheduled alerts. If secure storage cannot be cleared, it does not report full deletion as complete. Electronic local records are removed through the app and operating-system storage interfaces.

8. Your rights and requests

You can disconnect an account or delete all local data in Settings. You may also request access, correction, deletion, restriction, objection, consent withdrawal, or portability where applicable by emailing the Privacy contact. We may request limited information needed to verify the request. We respond within the period required by applicable law and explain any lawful limitation.

9. Security safeguards

Safeguards include iOS secure storage, PKCE and state checks for experimental browser authentication, HTTPS, response-size/time/redirect limits, environment separation, credential-free widget schemas, Android backup exclusion, and shared redaction of authorization headers, tokens, cookies, OAuth code/state, and full email addresses. No system is perfectly secure; protect the device passcode and provider account.

10. Children and automated decisions

The service is intended for users aged 16 and older and is not directed to children under 16. It does not use personal data to make a solely automated decision that determines legal rights, eligibility, price, credit, employment, insurance, or access.

11. Changes, access requests, and remedies

Material changes are posted here with a new effective date. Privacy access requests and complaints are handled at the contact above. Korean users may also contact the Personal Information Dispute Mediation Committee (1833-6972, kopico.go.kr), KISA Privacy Infringement Report Center (118, privacy.kisa.or.kr), Prosecution Service (1301), or National Police (182). EU/EEA users should read the dedicated GDPR notice.

Privacy contact and request desk
JoCoding, Inc. · mu07010@jocoding.net · +1 (231) 450-5622