Legal
Effective date: July 4, 2026
UNdrift is a private, local-first iOS app that helps you stay close to the people who matter to you. This policy explains what information the app handles, where it lives, and the choices you have. The short version: your relationship data stays on your iPhone, we run no accounts, no ads, no trackers, and no analytics, and the only data that ever leaves your device is what you explicitly choose to send when you use the optional AI Assist feature or make an App Store purchase.
Everything you enter in UNdrift is stored locally on your device in the app's private database:
UNdrift does not sync this data to any server, does not create user accounts, and cannot read it after you delete it. If you use Apple's contact picker to add someone, UNdrift receives only the single contact you select — it never scans or uploads your address book.
UNdrift Pro includes an optional AI Assist feature that can draft a short message starter or a relationship brief. AI Assist is off until you explicitly consent the first time you use it, and you can withdraw consent at any time in Settings → Privacy.
When you request an AI draft, the app sends only the minimum context needed for that one request — the person's name, their relationship status in the app (for example "due" or "drifting"), your cadence, recent note summaries, and your requested tone — over an encrypted connection to the UNdrift backend, which forwards it to OpenAI's API to generate the draft. We instruct OpenAI not to store the request (store: false), and per OpenAI's API policy this data is not used to train their models. The UNdrift backend does not keep a database of your requests; it proxies them and returns the result. AI requests are rate-limited per subscription.
UNdrift Pro is sold through Apple's App Store as an auto-renewable subscription. Apple processes the payment; UNdrift never sees your payment details. To unlock AI Assist on our backend, the app sends Apple's signed transaction proof (a token that contains your subscription's product, expiry, and anonymous transaction identifiers — not your name or Apple ID) with each AI request so the server can verify an active subscription. This proof is used only for entitlement verification and rate limiting.
If you allow notifications, UNdrift schedules a single local daily reminder on your device. Notification scheduling happens entirely on your iPhone; no push notification servers are involved.
You can erase everything UNdrift stores at any time from Settings → Reset App Data (or by deleting the app). Because data is stored only on your device, deletion is immediate and permanent — there is no server copy to purge.
Local data stays on your device until you delete it. AI requests are processed transiently by the UNdrift backend and OpenAI as described above and are not retained by UNdrift.
UNdrift is not directed at children and does not knowingly collect information from children. The app handles only data you enter yourself, on your own device.
Local data is protected by iOS's built-in app sandboxing and device encryption. Network requests (AI Assist and subscription verification) use HTTPS/TLS. The UNdrift backend holds no user database and no API keys ever ship inside the app.
Because UNdrift keeps your data on your device and holds no account for you, access, correction, and deletion are all in your hands inside the app. If you have privacy questions or requests under GDPR, CCPA, or similar laws, contact us and we will help.
If we change how UNdrift handles data — for example, if an optional sync feature ships in a future version — we will update this policy and its effective date before the change takes effect.
UNdrift is built by an independent developer. For any privacy question or request, email samer@thaka2.ai.