Privacy Policy
1. Operator and Privacy contact
Operator/Data Controller: JoCoding, Inc., a Delaware corporation. Registered address: 1111B S Governors Ave, STE 80543, Dover, DE 19904, United States. Telephone: +1 (231) 450-5622. Privacy contact and access-request desk: mu07010@jocoding.net. Website: jocoding.io.
2. Service and local-first model
AI Limits Tracker helps a user view normalized usage windows, reset timing, local history, widgets, and local alerts for compatible experimental AI providers. The app does not require a JoCoding account. When a compatible connection is available and the user chooses it, the device communicates directly with the selected provider.
3. Information processed by the app
| Information | Purpose | Location and disclosure |
|---|---|---|
| Provider access/refresh credentials and expiry | Authenticate user-requested provider access | Device secure storage. Not stored in SQLite, widgets, diagnostics, or JoCoding servers. |
| Provider/account identifier, local alias, internal account ID | Identify and organize connected accounts | Stored locally. A full email-shaped alias is redacted from widget and diagnostic output. |
| Normalized usage percentage, window/reset time, retrieval time | Dashboard, history, widgets, pace estimate, and local alerts | Stored locally and not transmitted to JoCoding. |
| Preferences, alert rules, retry/recovery state, onboarding version, entitlement feature state | Remember local settings and protect feature behavior | Stored locally. No receipt, raw transaction ID, or purchase token is stored by this release. |
| Redacted diagnostic categories | Explain errors on the device | Displayed locally. There is no automatic crash or support upload SDK. |
The app does not intentionally request name, phone number, address, contacts, location, photos, camera, microphone, advertising identifier, health information, biometric template, political/religious information, government identifiers, or payment information. Device authentication for App Lock is performed by iOS; the app does not receive biometric data.
4. Collection method and purpose
Information is entered by the user, created locally during app use, or returned directly to the device by a provider chosen by the user. It is processed to display usage, manage connections, preserve local history, schedule local notifications, publish credential-free widgets, provide export through the system share sheet, and delete local state safely.
5. Providers, third parties, and international transfer
JoCoding does not receive or sell provider credentials or usage values and does not disclose them to independent advertisers or data brokers. Direct provider authentication and usage requests are governed by the selected provider’s privacy terms and may be processed in the provider’s countries. Apple provides App Store distribution, iOS secure storage, device authentication, widgets, background scheduling, local notifications, and the system share sheet under Apple’s terms. Cloudflare serves this policy website; ordinary web request metadata may be processed in Cloudflare’s network. The site has no analytics script or form database.
6. Retention and deletion
- Credentials and account metadata remain until disconnect or Delete all local data succeeds.
- Normalized history is retained locally for 7 days in the free or unverified state and up to 90 days for an active/grace Pro feature state; the latest snapshot remains until the account is deleted.
- Rules, retry state, local onboarding, widget snapshots, and scheduled local notifications are removed by the applicable disconnect or full local deletion flow.
- Temporary export files are created only after an explicit user action and are removed after a failed share request; the user controls destinations offered by the iOS share sheet.
- Deleting local app data does not delete data held by a selected provider or Apple account history.
7. Destruction procedure
The app removes secure-storage credentials before removing related local database records, widget files, and scheduled alerts. If secure storage cannot be cleared, it does not report full deletion as complete. Electronic local records are removed through the app and operating-system storage interfaces.
8. Your rights and requests
You can disconnect an account or delete all local data in Settings. You may also request access, correction, deletion, restriction, objection, consent withdrawal, or portability where applicable by emailing the Privacy contact. We may request limited information needed to verify the request. We respond within the period required by applicable law and explain any lawful limitation.
9. Security safeguards
Safeguards include iOS secure storage, PKCE and state checks for experimental browser authentication, HTTPS, response-size/time/redirect limits, environment separation, credential-free widget schemas, Android backup exclusion, and shared redaction of authorization headers, tokens, cookies, OAuth code/state, and full email addresses. No system is perfectly secure; protect the device passcode and provider account.
10. Children and automated decisions
The service is intended for users aged 16 and older and is not directed to children under 16. It does not use personal data to make a solely automated decision that determines legal rights, eligibility, price, credit, employment, insurance, or access.
11. Changes, access requests, and remedies
Material changes are posted here with a new effective date. Privacy access requests and complaints are handled at the contact above. Korean users may also contact the Personal Information Dispute Mediation Committee (1833-6972, kopico.go.kr), KISA Privacy Infringement Report Center (118, privacy.kisa.or.kr), Prosecution Service (1301), or National Police (182). EU/EEA users should read the dedicated GDPR notice.
JoCoding, Inc. · mu07010@jocoding.net · +1 (231) 450-5622