// Privacy

Privacy Policy

PocketAdmin · Last updated October 9, 2026

PocketAdmin ("the app") is a network and IT administration toolkit. We built it to keep your data on your device, and under your own iCloud account when you choose to share it. The one server we run is the PocketAdmin relay, used only if you connect an AI app (see Connected AI apps below). It passes messages between that app and your device and keeps no copy of them.

Information we collect

We do not sell or share personal information, we do not use analytics or advertising SDKs, and we do not operate accounts for the app. Three things reach us: the anonymous team count described below, which is not linked to you; what you post on the Feature Board, which is stored with an identifier iCloud assigns you for this app (see Feature Board below); and, if you connect an AI app, the small set of records the relay needs to reach your device (see Connected AI apps below). Nothing is used to track you.

Data stored on your device

Teams (iCloud sharing)

If you create or join a team, the sites you file under it are synced through Apple's iCloud (CloudKit), using the iCloud accounts of the team's owner and members. They are shared only with the people the owner invites. Passwords and other secrets are stored in CloudKit's encrypted fields, which are end-to-end encrypted by Apple. We have no access to team data. Logins you mark as personal never leave your device.

To decide how to price teams, the app records an anonymous count for each team it owns: a random team identifier, the largest number of members the team has had, which plan pays for it (none, trial, monthly or yearly), and when it was first and last seen. It holds no names, Apple IDs, email addresses, or anything about the team's contents, and is not linked to you.

Subscriptions

Team subscriptions are sold and billed by Apple through the App Store. We do not receive your payment details. The app checks your subscription status with Apple on your device.

Feature Board

Ideas, replies, and votes you post on the Feature Board are saved in the app's public iCloud (CloudKit) database. Each one is stored with the user ID that iCloud assigns you for this app. That ID is not your name or your Apple ID email address, and it is specific to this app. The app uses it to show you your own posts and to limit how many you can post in a day. Ideas and replies are shown publicly to other users of the app, with a name only if you choose to type one. Don't include anything you would not want published.

Connected AI apps (the relay)

If you turn on Connected Apps and connect an AI app such as Claude or ChatGPT, that app reaches PocketAdmin on your device through the PocketAdmin relay, a server we run on Cloudflare. The relay carries the AI app's requests to your device and your device's answers back to the app. It does not keep the requests or the answers.

To do that, the relay keeps, for each device that turns Connected Apps on:

Removing an app on your device deletes its record from the relay. A relay address that no device has used for 180 days is deleted with everything it held. To protect the relay from abuse it counts requests per IP address over short windows of up to an hour; those counts are not kept longer than that or linked to you.

The relay never receives your passwords, SSH keys, or other secrets: your devices' logins stay in your Keychain and are used on your device. Each new AI app must be approved on your device first, and every change an AI app asks for waits for your Face ID or Touch ID on your device.

An AI app you connect receives what it asks for and you allow, such as device names and addresses, command output, and the records you let it read, and handles it under its own privacy policy (for example Anthropic's for Claude, OpenAI's for ChatGPT).

AI Agent in the app

If you use the AI Agent with a model you set up, what it reads to answer you (such as device names, command output, and records you allow) is sent to that model's provider, for example Anthropic, OpenAI, OpenRouter, or a server of your own, under the provider's privacy policy. The app asks before it first sends anything to each provider, and you can withdraw that permission in AI settings. On-device models and Apple's on-device model keep everything on your device. We do not receive any of it.

Network activity

The app's tools connect to the hosts and servers you choose, such as a host you ping, an SSH server you open, or a hypervisor you add. These connections go directly from your device to those hosts and do not pass through us; only a connected AI app's requests pass through the relay, as described above.

Some tools also ask a public service on your behalf when you use them: your public IP address and its location (ipapi.co, ipwho.is, ifconfig.co, Cloudflare), a hardware maker from a MAC address (macvendors.com), certificate history for a domain (crt.sh), and download speed (Cloudflare). Those services see the request and your IP address, under their own privacy policies. The app also downloads a public vulnerability list from iCloud, which sends nothing about your devices.

Permissions

Local Network (to reach your devices), Location (to read the Wi-Fi network name), Camera and Microphone (for photos, clips, the LiDAR coverage scan, and the sound meter), Photos (to save pictures you take), Bluetooth (for the Bluetooth scanner), notifications (for the alerts you turn on), and Face ID (to unlock the app and reveal passwords) are used only for those features and only when you use them.

Children

The app is not directed to children under 13.

Contact

Questions about this policy? Email social@gdwentertainment.com.

Changes

We may update this policy from time to time. The "Last updated" date above will change accordingly.