Privacy Policy

Last updated: March 2026

1. Data Access

Bract accesses your calendar and reminder data locally via Apple's EventKit framework. This data stays on your device and is never uploaded to external servers except as described below.

2. AI Features & Data Sent to Third Parties

When you use AI features (natural language scheduling, weekly review), Bract sends only event titles and times to the Claude API (operated by Anthropic) or OpenAI's API, depending on your configuration. No event notes, attendees, locations, or attachments are ever sent.

All AI requests use your personal API key, which you provide and manage. Bract does not have its own API key and does not proxy your requests.

3. Data Storage

Your API key is stored in the device's secure Keychain, protected by biometric authentication (Face ID, Touch ID, or device passcode). All other app data is stored locally using Apple's SwiftData framework on encrypted storage.

4. No Tracking or Analytics

Bract does not track you across apps or websites. Bract does not collect analytics, crash reports, or usage data. Bract does not use advertising identifiers.

5. No Data Selling

Bract does not sell, share, or transfer your data to third parties for advertising or marketing purposes.

6. Your Control

You can delete your API key at any time in Settings. You can revoke calendar access in iOS/macOS Settings. All locally stored data can be removed by deleting the app.

7. Contact

For questions about this privacy policy, contact the developer through the App Store listing.

← bract.app