Privacy Policy
The short version
- There is no account. We don't ask for your name, email address or phone number.
- The app doesn't request any device permissions: no camera, microphone, location, photos, contacts or calendar.
- Your monitors, saved API requests, favorites and browser data stay on your iPhone.
- Your monitor list is uploaded only when you use Cloud Sync, and you can delete it from the app.
- We use Google Firebase for crash reports and app usage statistics that aren't linked to your identity.
- There are no ads, no cross-app tracking, and we never sell your data.
- Who we are
- Data stored on your device
- Connections the app makes for you
- Optional Cloud Sync
- Diagnostics and analytics
- Device permissions
- What we don't do
- Retention and deletion
- Security
- Children
- Your rights
- Changes and contact
1. Who we are
YouPIP is an iPhone app published by upstudio.ovh ("we", "us"). It contains a developer web browser with a start page and favorites, an uptime monitor, a REST API client and offline developer tools. This policy explains what data the app and this website handle and why.
If you have a question about this policy, email support@upstudio.ovh.
2. Data stored only on your device
The following data is created by you and saved in the app's private storage on your iPhone. It is not sent to us.
| Data | What it contains |
|---|---|
| Monitors | Name, URL, HTTP method and check interval of each website you monitor, plus the result of the last check (time, response time, status code). |
| Saved API requests | The requests you choose to save: name, method, URL, query parameters, headers and body. These can include tokens or passwords you typed, so keep your device protected. |
| Favorites | Name, URL and tile color of your favorite sites, and their icons cached on the device. |
| Browser settings | The User-Agent you selected, if you changed it. |
| Website data | Cookies, cache and local storage that the websites you visit save through Apple's WebKit, just like in any browser. YouPIP doesn't read this data or send it to us. |
| Sync identifier | A random identifier stored in the iOS Keychain. It is used only to find your Cloud Sync backup (see section 4) and isn't linked to your name, email or Apple ID. |
YouPIP doesn't keep a browsing history. Text you paste into the Dev Toolbox (JSON, JWT, Base64, URL, timestamp, UUID and hash tools) is processed on the device only and is not saved.
3. Connections the app makes for you
Some features need the network. In each case your iPhone connects directly to the server involved. These connections don't pass through our servers, and we don't see them.
- Browser: pages load directly from the websites you open. Like any browser, those websites receive your IP address, User-Agent and their own cookies. They handle this data under their own privacy policies.
- Google search: when you type something that isn't a web address, it is sent to Google as a search query.
- Uptime monitor: each check sends a request from your device to the URL you added.
- API client: requests, including the headers and body you enter, go from your device to the server you specify.
- Site icons: to show an icon for a favorite, the app downloads
/apple-touch-icon.png,/favicon.icoor the icon declared by the page from that same website. These requests are sent without cookies.
4. Optional Cloud Sync
The Monitor tab has a Cloud Sync menu (Auto Sync, Upload to Cloud, Download from Cloud, Delete Cloud Data). Nothing is uploaded until you use it. When you do, the app stores the following in Google Cloud Firestore, a Firebase service, under the random sync identifier described above:
- your monitor list: for each monitor, its name, URL, HTTP method, check interval, last check time, response time and status code;
- the time of the last sync.
Saved API requests, favorites, browser settings and website data are never synced. We use this data only to back up and restore your monitor list.
5. Diagnostics and analytics
The app includes these Google Firebase services. They help us keep YouPIP stable and understand which features are used:
| Service | Data collected | Purpose |
|---|---|---|
| Firebase Crashlytics | Crash reports: stack trace, app version, iOS version, device model and the time of the crash, plus a random installation identifier. | Finding and fixing bugs |
| Google Analytics for Firebase | App usage events (for example app opens and screens viewed), app version, iOS version, device model, language, approximate country, and a random app-instance identifier. | Understanding usage to improve the app |
| Firebase In-App Messaging | A random Firebase installation identifier and the analytics events above, used to decide whether to show an in-app message. | Showing occasional in-app announcements |
This data isn't linked to your name, email or Apple ID, and it isn't used for advertising. It is processed by Google LLC on our behalf under the Firebase privacy and security terms and the Google Privacy Policy. Google may process it on servers outside your country.
6. Device permissions
YouPIP doesn't request access to your camera, microphone, location, photo library, contacts, calendar, Bluetooth or motion data, and it doesn't ask to track you (App Tracking Transparency). If a website you open in the browser asks for one of these features, the request is refused.
You can still upload a file or photo to a website with the standard iOS picker. Only the item you pick is shared, and only with that website.
7. What we don't do
- We don't sell, rent or share your personal data for advertising.
- We don't show ads, use the advertising identifier (IDFA), or track you across other apps and websites.
- We don't record your browsing history, and we can't read the cookies or website data stored on your device.
- We don't upload your saved API requests, favorites or anything you paste into the Dev Toolbox.
8. Retention and deletion
- On-device data stays until you delete it. Delete monitors and favorites in the app, clear your saved API requests in Request History, and use Clear Data in the browser menu to remove cookies, cache and website data. Deleting the app removes everything stored in its sandbox. Like other Keychain items, the sync identifier may remain on the device after the app is deleted.
- Cloud Sync data stays until you delete it with Monitor › Cloud Sync › Delete Cloud Data. Because there is no account, we can't link a backup to you by name or email, so please use this option before you delete the app.
- Diagnostics data is kept by Google under Firebase's retention periods. For example, Crashlytics keeps crash reports for 90 days.
9. Security
Connections to Firebase use HTTPS. Data on your iPhone is protected by iOS sandboxing and, when you use a passcode, by iOS data protection. No method of storage or transmission is completely secure. If you store credentials in saved API requests, protect your device with a passcode.
10. Children
YouPIP is a tool for developers and isn't directed to children under 13. Because it includes unrestricted web access, it carries an age rating for older users on the App Store. We don't knowingly collect personal information from children.
11. Your rights
Depending on where you live (for example under the GDPR or the CCPA), you may have the right to access, correct, delete or port your personal data, and to object to or restrict its processing. Most of the data described here is on your device and under your control. For anything else, email us at support@upstudio.ovh. We aim to reply within 30 days. You can also complain to your local data protection authority.
12. Changes and contact
If the app starts collecting new data or uses data in a new way, we'll update this policy and the "Last updated" date before releasing that version.
This website is a static site. It doesn't use cookies or analytics. Its icon font is loaded from cdnjs (Cloudflare), which receives your IP address as part of the request.