Privacy Policy
Summary
Uglify is a screen time intervention app. Your screen time data never leaves your iPhone. We use exactly two third-party services: PostHog (anonymous product analytics, EU servers, no personal data, switchable off in Settings) and RevenueCat (subscription management for Uglify Pro, anonymous). We do not use advertising SDKs, we do not collect the IDFA, and we do not track you across apps or websites. You can delete all on-device data at any time. Full details below.
Who we are
Uglify (“we,” “us,” “our”) is developed and operated by Maksim Horbikau, a sole proprietor registered in Poland.
Data controller contact:
- Name: Maksim Horbikau
- Email: hello@uglify.app
- Address: Zeromskiego 1, 01-887 Warsaw, Poland
We maintain data processing agreements (DPAs) with all third-party service providers that process data on our behalf, in compliance with GDPR Article 28.
Our privacy philosophy
Uglify is built on a simple principle: your usage data stays on your device. We do not operate servers that collect or store your screen time data. We have no interest in knowing which apps you use, how long you scroll, or when you open your phone. That information belongs to you and never leaves your iPhone.
Where we do use third-party services — anonymous product analytics and subscription management — we choose privacy-respecting providers, minimize data collection, and disclose exactly what each service receives.
Apple Screen Time APIs
Uglify uses Apple’s restricted Screen Time APIs — FamilyControls, DeviceActivity, and ManagedSettings — under an entitlement granted by Apple. These APIs allow Uglify to:
- Monitor when your selected apps are opened and for how long
- Display shield screens that interrupt app usage when tier thresholds are reached (shields are always dismissible)
Apple’s privacy architecture ensures that app identity data is represented as opaque tokens. Uglify never receives the bundle identifiers or the content of your apps — only anonymous tokens that represent your selection. Where a monitored app matches our fixed public catalog of well-known apps, that catalog name is the only identifier used, including in analytics (see below); everything else is “other.”
What data stays on your device (never transmitted)
The following data is generated and stored exclusively on your iPhone. We cannot access, retrieve, or view any of it.
App usage data. Session records (start/end timestamps, tier level, break status), cumulative daily screen time, and per-tier time breakdowns. Generated by Apple’s DeviceActivity framework and our App Intents, stored in a shared App Group container. Apple’s DeviceActivity framework returns opaque application tokens — not app names or bundle identifiers — meaning even the raw monitoring data is privacy-preserving by design. Archived session data is automatically purged after 90 days.
Your configuration. Which apps you monitor (stored as opaque FamilyControls tokens), your free time allowance, tier thresholds, daily reset hour, and pause/break state. Stored locally in the App Group container.
Your personalization answer. During onboarding, you may share why you want to use Uglify. This free-text answer is stored locally on your device and is never transmitted.
Onboarding state. Whether you have completed setup, which shortcuts and automations are configured. Stored locally.
What data is processed by third parties
Uglify contains exactly two third-party SDKs: PostHog and RevenueCat. Nothing else.
Anonymous product analytics (PostHog)
We use PostHog (PostHog, Inc.) in its EU region (eu.i.posthog.com) to understand which parts of Uglify work and where people get stuck. PostHog receives anonymous product events — for example “a tier was reached,” “an onboarding step was completed,” “a setting was changed” — keyed to a randomly generated identifier created when you install the app.
It does not receive your name, email address, contact details, precise location, advertising identifier, device fingerprint, or any free text you typed into the app. App names are sent only when the monitored app matches a fixed public catalog of well-known apps (Instagram, TikTok, YouTube and similar); anything outside that catalog is recorded as “other,” so we never learn the identity of the other apps on your phone. Raw bundle identifiers are never transmitted.
You can turn this off. Settings → Usage analytics. Analytics does not constitute tracking under Apple’s App Tracking Transparency framework.
Subscription management (RevenueCat)
This applies only if you purchase Uglify Pro. Payment processing is handled by Apple through the App Store. We use RevenueCat (RevenueCat, Inc.) as our subscription infrastructure provider. RevenueCat receives an anonymous app user ID, entitlement and subscription status, and transaction receipts from Apple. RevenueCat does not receive your name, email address, phone number, Apple ID, or any usage data. If you never purchase Pro, no subscription data is created.
No advertising, no tracking
Uglify contains no advertising SDKs. We do not collect the IDFA, we do not run an ATT prompt, and we do not track you across apps or websites. The app’s privacy manifest declares NSPrivacyTracking = false. We do not sell or share personal data with anyone, for any purpose.
Apple (App Store & StoreKit)
All payment transactions are processed by Apple.
What data we collect directly
We collect no personal data by default. You do not need to create an account. If you contact us at hello@uglify.app, we will have your email and message content, deleted within 90 days. If you join our mailing list, your email is stored for product updates.
Your rights under GDPR
Right of access, rectification, erasure, restriction, portability, objection, withdrawal of consent, and right to lodge a complaint with UODO (Polish supervisory authority).
To exercise rights, email hello@uglify.app. Response within 30 days. Because analytics events are keyed to a random identifier that is not linked to your identity and contain no personal data, we cannot look up “your” records — but you can stop analytics entirely at any time in Settings → Usage analytics, and uninstalling the app removes everything held on device.
How Uglify modifies your device
Uglify modifies Color Filters, Classic Invert, Reduce White Point, and system volume. Volume remains muted after leaving monitored app (intentional design). Emergency exit via triple-click side button.
What happens when you uninstall
Uninstalling removes all on-device data. Third-party data retention: RevenueCat retains subscription records for Pro purchasers, and PostHog retains anonymous product-analytics events. Neither is linked to your identity. Contact hello@uglify.app for third-party deletion.
Children’s privacy
Not directed at children under 13. We do not knowingly collect data from children.
International data transfers
PostHog: processed in the EU region. RevenueCat: may transfer to the US under Standard Contractual Clauses.
Security
On-device data protected by iOS sandboxing. No server-side attack surface.
Changes to this policy
We will notify of material changes at uglify.app/privacy and via in-app notification.
Contact
Email: hello@uglify.app
Address: Zeromskiego 1, 01-887 Warsaw, Poland