Privacy Policy
How Winglet Kloud Monitor handles your data — on your Mac, direct to Apple's CloudKit servers, and nowhere near ours.
Plain-language summary
Winglet Kloud Monitor collects no personal data on Winglet LLC's servers. The app connects directly from your Mac to Apple's CloudKit Web Services API using your own API token, which is stored in the macOS Keychain. Winglet LLC operates no backend for this app and never sees your token, your containers, or any records you browse. There are no analytics, advertising, or crash-reporting SDKs.
1. Who We Are
Winglet LLC is an independent software company based in Blue Bell, Pennsylvania, United States.
This privacy policy applies to the Winglet Kloud Monitor macOS application
(bundle ID: co.winglet-space.kloudmonitor), available on the Mac App Store.
Questions or requests regarding this policy can be directed to contact@winglet-space.co.
2. Data We Do Not Collect
Winglet Kloud Monitor does not collect, transmit, or store any of the following on Winglet LLC's servers:
- Your name, email address, or any contact information
- Your CloudKit Web Services API token
- Any record, field, or schema data from your CloudKit containers
- Device identifiers or any usage analytics
- Crash reports or diagnostic data sent to third parties
The app contains no third-party SDKs of any kind — no analytics, advertising, or crash-reporting libraries are included. Winglet LLC operates no backend server for Winglet Kloud Monitor.
3. Your CloudKit Data & API Token
Winglet Kloud Monitor requires you to supply your own CloudKit Web Services API token, tied to your own Apple Developer account and your own CloudKit containers. This token is stored locally in the macOS Keychain, encrypted by macOS, and is never transmitted to Winglet LLC or any third party.
Every action the app performs — browsing schema, listing and editing records, running queries, and exporting or importing schema files — sends requests directly from your Mac to Apple's CloudKit Web Services endpoints over HTTPS, using your token. Winglet LLC has no server component in this data path and no visibility into your containers, your records, or your token.
Schema export and import (via Apple's cktool) and the built-in script runner behave the
same way: requests and responses stay between your Mac and Apple. Nothing passes through Winglet LLC.
4. Local Storage
Container IDs, environment selections (Development/Production), and app preferences (theme, refresh interval, default container) are stored in Apple's UserDefaults on your device. Cached schema and record data used to render the app's views is also stored locally only. None of this leaves your Mac or is accessible to Winglet LLC.
The optional developer log and "view raw API response" tools in Settings › Advanced are local debugging aids only — their output is displayed on-screen and is never transmitted anywhere.
5. Production Environment Safeguards
The app shows a confirmation warning before you apply changes, imports, or schema updates to a Production environment. This is a safety measure inside the app only — it does not change what data is transmitted or to whom; all traffic still goes directly between your Mac and Apple regardless of environment.
6. No Third-Party Services
Beyond Apple's own CloudKit Web Services API (which the app exists to talk to, using your token), Winglet Kloud Monitor does not integrate with or transmit data to any third-party service, including:
- Analytics platforms (e.g. Firebase, Mixpanel, Amplitude)
- Advertising networks
- Attribution services (e.g. AppsFlyer, Adjust)
- Crash reporting services (e.g. Crashlytics, Sentry)
- Social media SDKs
7. Apple Platform Data
Apple may collect certain diagnostic and usage data as part of macOS and the Mac App Store, subject to your device privacy settings and your agreement to Apple's terms. This is governed by Apple's Privacy Policy and is outside Winglet LLC's control or access. Likewise, any CloudKit container you connect to is governed by Apple's own terms for CloudKit and your Apple Developer account.
If you have enabled "Share with App Developers" in your Mac's Privacy & Security settings, Apple may forward aggregated, anonymized crash reports to us via Xcode Organizer. These reports do not include any personal information and cannot be used to identify you.
8. Children's Privacy
Winglet Kloud Monitor is a professional developer tool and is not directed at or marketed to children. It does not knowingly collect any data from children under the age of 13 (or applicable local age threshold). The app is rated 4+ on the App Store as it contains no objectionable content.
9. Your Rights
Because Winglet Kloud Monitor collects no personal data on Winglet LLC's servers, there is generally no data held by Winglet LLC for you to access, correct, or delete. Your CloudKit API token and container data remain entirely under your control via your Apple Developer account and macOS Keychain. You also have the right to:
- Ask whether any data about you is held by Winglet LLC — and receive a response within 30 days
- Request deletion of any data you believe Winglet LLC may hold
- Revoke or rotate your CloudKit Web Services API token at any time via your Apple Developer account
To exercise any of these rights, email contact@winglet-space.co.
10. California Residents (CCPA)
Under the California Consumer Privacy Act, California residents have the right to know what personal information is collected, the right to delete it, and the right to opt out of its sale. Winglet LLC does not collect, sell, or share any personal information through Winglet Kloud Monitor. No action is required to opt out, as there is nothing to opt out of.
11. EU / UK Residents (GDPR / UK GDPR)
The General Data Protection Regulation and UK GDPR grant individuals specific rights regarding personal data. Winglet LLC processes no personal data through Winglet Kloud Monitor. Any personal data you choose to store in your own CloudKit containers is processed by Apple, under your own Apple Developer account and Apple's own privacy terms — not by Winglet LLC. If you have questions, contact us at contact@winglet-space.co.
12. Data Breaches
Because Winglet LLC holds no user data, API tokens, or CloudKit records on any server, there is no data at risk of being compromised in a breach on our end. Your token lives in your Mac's Keychain and your data lives in your own CloudKit containers, protected by Apple's own security model.
13. Changes to This Policy
If we make material changes to this policy — for example, if a future version of the app introduces features that handle data differently — we will update the effective date at the top of this page and note the change in the App Store release notes.
14. Contact
For any privacy-related questions or requests:
Winglet LLC
325 Sentry Parkway E, STE 301 PMB 1036
Blue Bell, PA 19422, United States
contact@winglet-space.co
For general app support, visit the Winglet Kloud Monitor support page.