Tower — Privacy Policy

Last updated: August 1, 2026

Tower talks directly to a server you own. There is no service in the middle: no backend of mine, no account system, no analytics, and nothing of yours on anybody else’s computer. I (the developer) never see your data, because none of it is ever sent to me. This app-specific policy supplements my general privacy policy and takes precedence for Tower where they differ.

What the App Stores

  • Your server address and API key — the two things you enter to connect. Both are kept in the iOS keychain on your device and are never transmitted anywhere except to the server you pointed them at.
  • Local preferences, such as your light/dark appearance override.

What the App Reads

Everything Tower displays is read live from your own server over your own network: array and disk status, system metrics, Docker containers, virtual machines, user shares, server notifications, and system log files. It is fetched to be drawn on screen. Tower keeps no history of it, builds no profile from it, and uploads none of it.

Where Your Data Lives

On your device and on your server — nowhere else. Tower has no cloud component of any kind: no iCloud sync, no remote database, no crash reporting, no telemetry. If your server is not reachable from your device, Tower shows you nothing, because there is no copy anywhere else to fall back on.

Notifications

The notifications Tower shows are the ones your server has raised, read from its API and displayed inside the app. Tower does not use Apple’s push notification service, so nothing about your server passes through Apple’s (or my) infrastructure to reach you.

Third-Party Services

None. Tower integrates no analytics, advertising, attribution, or data-collection service. Its only third-party code is Apollo iOS, an open-source GraphQL client that runs entirely on your device and only ever contacts the server address you configured.

Demo Mode

Tower includes a demo mode that runs the whole app against built-in sample data so you can try it before connecting anything. Demo mode makes no network requests at all.

Deleting Your Data

Disconnecting the server in Settings clears the stored address and API key from the keychain. Deleting the app removes everything Tower has kept, since all of it lives in the app’s own storage. Nothing survives elsewhere for you to request the deletion of — the data on your server is, and always was, yours.

Children’s Privacy

Tower does not knowingly collect any information from anyone, including children under the age of 13.

Changes to This Policy

If this policy changes in the future, the updated version will be posted at this URL with a revised “last updated” date.

Contact

If you have any questions about this privacy policy, you can reach me at cunderw.dev/contact.