Privacy
pocketty has no accounts, and the App has no analytics. Your terminal goes straight to your computers. Notifications are optional, and sealed so we can't read them.
Last updated October 7, 2026
The short version
- The App collects no personal data. There is no account, no sign-up and no analytics SDK.
- The website counts visits without cookies. It keeps no IP address and no User-Agent.
- Your terminal never reaches us. The App connects to your computers over SSH, directly.
- Notifications are optional. If you turn them on, each one is sealed on your computer so that only your phone can open it. Our relay forwards the sealed bytes and stores nothing.
What stays on your phone
Your list of computers, your settings, your SSH keys and the pinned host keys stay on your phone. Keys are kept in the Keychain or made in the Secure Enclave. They are not synced anywhere by pocketty.
Your connections
The App opens SSH connections from your phone to the computers you add. That traffic is encrypted by SSH and does not pass through any pocketty server. If you use Tailscale, it travels through your tailnet under Tailscale's own terms.
Notifications
If you allow notifications, this is what happens:
- Apple gives the App a push token. The App sends it to our relay, which signs it into a grant and sends the grant back. The relay keeps no copy.
- The App gives the grant and a public key to the pocketty daemon on your own computer, over SSH. The private key never leaves your phone.
- When an agent needs you, the daemon writes a short note (agent, state, computer name, workspace and tab name) and seals it with HPKE for your phone. It never includes text from your terminal.
- Our relay checks the grant, applies a rate limit, and hands the sealed bytes to Apple's push service with the placeholder text “pocketty: Agent update”. Your phone opens the seal and shows the real text.
To do this, the relay briefly handles your push token, your IP address (for rate limits), the size of the sealed note and the time. It runs on Cloudflare Workers with logging turned off, and it has no database. Apple handles delivery under its own privacy policy.
The pocketty daemon
The daemon runs on your computer as your user. It keeps its paired phones in ~/.local/state/pocketty, and it adds your phone's public key to ~/.ssh/authorized_keys only after you approve it there. It sends nothing to us except sealed notifications.
This website
pocketty.app and its docs are static pages served by Cloudflare. We set no cookies. Cloudflare processes requests to deliver and protect the site.
We count visits to learn which pages and links bring people to pocketty. We keep no IP address and no User-Agent. This is what we keep:
- A visitor ID for the day. Our server hashes your IP address and User-Agent with a random value that changes each day (UTC). We delete each day's random value after two days. After that, the ID can no longer be linked to your IP address. The same browser gets a new ID each day.
- Each page view and each click on “get pocketty”. With it we keep that day's visitor ID, the page, your country as Cloudflare reports it, and your type of device: phone, tablet or computer.
- Where a visit came from. The
utm_tags of the link, the domain of the site that sent you, or which ad network an ad click came from. We never keep the click ID. We keep this with each view and click, and for two days on its own, so that a later click on “get pocketty” counts for the same source.
We keep views and clicks for three months. We do not share them, and we do not combine them with other data. We do not count bots. When you click “get pocketty”, we may add the name of the campaign that brought you to the App Store link, so that Apple's own reports count it. Apple gets only that name.
To block bots, Cloudflare may set one cookie of its own, __cf_bm, on pocketty.app and dl.pocketty.app. It is not our cookie, and it is not used to track you: it holds an encrypted bot score, is separate for each site, and is not tied to any ID. It expires after 30 minutes without activity. See Cloudflare's cookie list.
Downloads
When you download the pocketty daemon from dl.pocketty.app, with the install script, Homebrew or mise, we count the download. A count holds the day, the version, the platform, the tool that downloaded it (curl, Homebrew, mise or other) and the country that Cloudflare reports. We keep no IP address and nothing else about the request.
Purchases
The 14-day free trial and the unlock are both in-app purchases through Apple. Apple handles payment and shares no personal details with us beyond what Apple's sales reports contain. The App reads your purchases from Apple on your phone, to know whether your trial is still running.
Changes and contact
If this policy changes, we will update this page and its date. Questions go to hello@pocketty.app.