Trace Privacy Policy

Effective: 31 August 2026
中文

Trace keeps your recordings, text records, location tracks and transcripts on your own device and in your own private iCloud database. Trace operates no developer-run server that receives this content.

1. Who handles your data

Trace is developed and provided by qqfly. Contact: trace@qqfly.net.

Trace has no backend server. The app does not send your data to any facility controlled by the developer — because no such facility exists.

There is no account system. Trace requires no sign-up and does not automatically obtain your name, email address, phone number or Apple Account credentials. iCloud sync uses the Apple Account already signed in on your device. If you choose to send a support email, the developer receives the sender address and content you choose to send (see section 5).

2. What data Trace produces, and where it lives

DataHow it is producedWhere it is stored
Recorded audioCaptured by the iPhone or Apple Watch microphone when you start a recordingLocal files on the device; and, if you enable iCloud backup, your private iCloud database
Text recordsParagraphs you enter, together with the time and location saved for each paragraphAs above
Location trackSampled during a recording, so you can review it later on the timeline and mapAs above
MarkersMoments you deliberately mark during a recordingAs above
Titles and place namesTitles you type; place names resolved by the system (see section 4)As above
TranscriptsProduced by on-device speech recognition when you request it or enable automatic generation in settingsAs above
Technical metadataApp-generated internal record and device identifiers, times, states, file sizes and checksums used to organise, sync and recover recordsAs above
Diagnostic logThe app's own runtime events (phase names, states, counts, byte sizes, identifiers)On the device only, unless you export it yourself (see section 5)

3. iCloud backup: where the data goes, and who can see it

With iCloud backup enabled, the data above syncs to a CloudKit private database. This means:

4. When data leaves one device

Trace does not send your record content to a developer-operated service. The following features use Apple's system services, your paired devices, or a destination that you choose:

4.1 Place-name lookup — coordinates are sent to Apple

To turn a pair of coordinates into a readable place name, Trace calls the iOS geocoding service (CLGeocoder). This is a network service: your coordinates are sent to Apple's servers in exchange for a place name.

4.2 Map display

Trace uses Apple MapKit to display tracks and places. When a map is displayed, the visible map region, device and network information, and location information you allow the system to use may be sent to Apple or its map-service partners. Trace does not include recordings, titles or transcript text in map requests.

4.3 iCloud sync

See section 3. This happens only if you enable iCloud backup.

4.4 Speech transcription — on-device, but the model is downloaded

Transcription uses Apple's on-device speech recognition. Your audio does not leave the device in order to be transcribed. The first time you use a given language, however, the system may download that language's recognition model from Apple — what is downloaded is the model, not your audio.

4.5 iPhone and Apple Watch coordination

When you use Watch coordination, audio chunks, location, markers, recording state and Trace Core entitlement state are transferred between your paired iPhone and Apple Watch through Apple's WatchConnectivity. This transfer does not send the data to a developer-operated server.

4.6 App Store purchase and trial status

Trace uses Apple StoreKit to load products, process purchases, and verify Trace Core access and the start of the 14-day trial. Apple handles your Apple Account, payment and transaction. Trace does not see your account credentials or payment-card details. The app receives only the product, verified transaction result, purchase date and related entitlement information, and shares the necessary access state with your paired Apple Watch.

4.7 Exports and shares that you initiate

When you export a record or diagnostic bundle and choose a destination in the system share sheet, the selected data is sent to the app, device, cloud drive or service you choose. That recipient's own privacy policy applies. Trace never sends it in the background on your behalf.

5. Feedback reports (diagnostic bundles)

If you export a diagnostic bundle from the settings screen and send it to the developer, the bundle contains:

The bundle contains no recorded audio, no transcript text, no location coordinates, and no recording titles or place names.

The action is entirely yours: you open the settings screen, tap a button, and press send yourself in the system's mail or share sheet. The app has no ability to send anything to the developer on its own.

If you choose email, the developer and both parties' email providers receive your sender address, message and any diagnostic bundle you attach. The developer uses this information only to reply and troubleshoot. You may ask the developer at the same address to delete the corresponding support email.

6. What we do not do

7. Your controls

What you want to doHow
Delete one recordingSwipe left on the timeline; the recycle bin allows recovery within 7 days, or immediate permanent deletion
Delete everythingRemoving Trace from one device clears local data on that device. If Trace remains installed on a paired Apple Watch, remove it there separately. iCloud copies are not automatically deleted when you turn sync off or remove the app from one device; remove them under Settings → Apple Account → iCloud → Manage Account Storage
Stop location samplingTurn Trace off under Settings → Privacy & Security → Location Services; recording is unaffected
Stop microphone captureTurn Trace off under Settings → Privacy & Security → Microphone
Stop iCloud backupTurn it off in Trace's settings; copies already synced to iCloud remain until you remove them in system settings
Export your dataTrace can export a recording as an archive containing the original audio, the GPS track (GPX) and metadata

The developer does not hold your day-to-day record data, so you control access, correction and deletion of that data directly in the app and system settings. For a support email that you chose to send, contact the developer at the address in section 10.

8. Children

Trace is not designed for children below the minimum age applicable in their region and does not knowingly collect personal information from them.

9. Changes

Any material change to this policy will be described in the app's release notes, and the effective date on this page will be updated.

10. Contact

Questions about this policy: trace@qqfly.net.