1. About iterate Remote
iterate Remote is a companion app for iterate Desktop. It lets you pair an Apple device with a Mac you control, view AI task status and requests that need your attention, send responses, and receive task notifications.
In plain language: iterate does not sell personal information, display advertising, or use information to track you across other companies’ apps or websites.
2. Information handled by the app
Information stored on your Apple device
The app may store the following information locally on your iPhone, iPad, or Apple Watch:
- pairing and authentication credentials, stored using Apple security facilities such as Keychain;
- the address and connection settings for the Mac you paired;
- app preferences, notification choices, prompt ordering, and voice-input settings;
- recently displayed task information needed to provide the app experience.
You can remove this information by unpairing the device where that option is available or by deleting the app. Deleting the app does not automatically delete records held by your Mac or operational records held by the relay service.
Information stored on your Mac
iterate Desktop may store paired-device records, notification tokens, task history, prompts, replies, images, settings, and related operational data on the Mac you control. This information is governed by your control of that Mac and the configuration of iterate Desktop.
APNs device tokens stored by iterate Desktop are removed after approximately 30 days of inactivity. Live Activity push tokens are removed after approximately 36 hours of inactivity.
Information processed by the iterate relay service
When you use the remote relay connection, the service may retain:
- a relay device identifier for the paired Mac;
- a mobile device identifier and device name;
- hashed authentication credentials, credential scopes, and creation, expiration, use, and revocation timestamps;
- connection and security audit events, such as pairing, connection, disconnection, message-forwarding success or failure, and associated timestamps;
- app version, workspace identifier, and limited connection-status or diagnostic information sent by the paired Mac.
Short-lived relay pairing tokens expire after approximately 10 minutes. Mobile relay credentials may remain valid for up to 365 days unless they expire earlier, are revoked, or the service state is reset.
Production audit records are retained for up to 30 days.
Task content, replies, images, and speech-derived text
The relay forwards task content, replies, selected images, and speech-derived text between your Apple device and your paired Mac in real time. Production audit logs do not persist the body of this content after delivery. Connection and delivery metadata may still be retained as described above.
3. Microphone, speech recognition, photos, notifications, and local network
iterate Remote asks for access only when a related feature needs it:
- Microphone and speech recognition: used to convert your spoken response into text. When on-device speech recognition is available, the app prefers on-device recognition. Otherwise, Apple may process audio through its speech-recognition service. iterate does not intentionally retain the audio recording as a server-side recording.
- Photos: used when you choose an image to include in a response or save an image. The app does not scan your entire photo library for advertising or analytics.
- Notifications and Live Activities: used for task updates and requests that need attention. Apple processes notification delivery. Push tokens are used only to deliver these features.
- Local network: used to discover, pair with, or connect directly to a Mac you control on the same network.
You can change these permissions at any time in Apple Settings. Some features will not work after a required permission is disabled.
4. How we use information
We use information only to:
- pair your Apple device with the Mac you choose;
- authenticate the device and prevent unauthorized access;
- deliver task status, requests, replies, notifications, and Live Activities;
- maintain connection reliability and show online or offline state;
- detect failures, prevent abuse, investigate security incidents, and operate the service;
- respond to support, privacy, or deletion requests.
We do not use this information for advertising, data-broker activity, or tracking you across apps or websites owned by other companies.
5. Service providers and disclosure
Information may be processed by service providers only as needed to operate the features described above:
- Apple: for App Store distribution, notifications, Live Activities, and speech recognition where Apple processing is used;
- Cloudflare: for network delivery, protection, and routing of iterate web and relay endpoints;
- RackNerd LLC: for hosting the production relay service.
These providers may receive network information such as IP addresses and request metadata as part of providing their services, subject to their own privacy terms and applicable agreements.
We may disclose information if required by law, to protect users or the service, or as part of a business transfer where legally permitted. We do not sell personal information.
6. Retention and deletion
We keep information only for as long as needed for the purposes described in this policy:
- task content relayed in real time is not intended to be retained by the relay after delivery;
- short-lived pairing tokens expire after approximately 10 minutes;
- mobile relay credentials may remain valid for up to 365 days unless revoked or otherwise removed;
- connection and security audit records are kept for up to 30 days;
- data stored on your Mac remains under your control until you delete it or remove the related iterate Desktop data;
- Apple-device app data remains until you clear it, unpair, or delete the app, subject to normal device backups.
To request deletion of relay identifiers or audit records associated with your device, contact ymx94yyds@gmail.com. We may ask for limited information needed to locate the relevant device record without requesting your authentication token or private task content.
Never post authentication tokens, pairing QR codes, private task content, or sensitive personal information in a public GitHub issue.
7. Security
We use measures designed to protect information, including short-lived pairing tokens, scoped mobile credentials, token hashing on the relay, encrypted HTTPS/WSS connections for public relay traffic, Keychain storage on Apple devices, allowlisted remote actions, and device revocation controls.
No method of transmission or storage is completely secure. You are responsible for securing the Mac, Apple devices, networks, and third-party AI tools you connect to iterate.
8. Your choices and rights
Depending on where you live, you may have rights to request access to, correction of, or deletion of personal information, or to object to or restrict certain processing.
You can also:
- decline optional permissions;
- disable notifications or microphone, speech-recognition, photo, and local-network access in Apple Settings;
- revoke a paired device from iterate Desktop where that control is available;
- delete the app from your Apple device;
- contact us at ymx94yyds@gmail.com for a privacy request.
We will respond in accordance with applicable law. Some operational or security records may be retained where required for legal, fraud-prevention, or security purposes.
9. Children
iterate Remote is a productivity and developer-workflow companion and is not directed to children. We do not knowingly use personal information from children for advertising or tracking. If you believe a child has provided information through the service, contact ymx94yyds@gmail.com.
10. International processing
If you use iterate Remote from a country or region different from where the relay or its service providers operate, information may be processed across national borders. We use service providers and safeguards appropriate to the operation of the service and applicable law.
11. Changes to this policy
We may update this policy when the app, relay, legal requirements, or data practices change. We will update the date at the top of this page and provide any additional notice required by law.