Last updated September 16, 2026
Privacy Policy
The Stoïque app has no account, no sign-up, no analytics and no advertising, and it never asks you for personal information. It is not, however, an app that never talks to a server: it checks whether a correction to its texts exists, it validates subscriptions, and it verifies that a copy asking for a correction is a genuine copy of the app. This page describes precisely what leaves your iPhone, to whom, and why. This website, for its part, counts its visits without cookies: see the section “This website”.
Data we collect
Nothing that identifies you, and no profile of any kind. The app embeds no analytics framework, no advertising framework and no tracking of any sort, and it asks you for no personal information at any point.
Three parties receive technical data, each for a single purpose. Our own server, which checks through Apple App Attest that a copy of the app is genuine before it issues the ticket allowing a corrected corpus file to be downloaded. RevenueCat, which validates and restores subscriptions on our behalf. And Apple, which handles the purchase itself. Each is described below. None of them ever receives your name, your email address or your payment details.
Data stored on your device
The app stores your preferences and your reading state locally on your iPhone, in the app’s own storage shared with its widgets: the passages you keep as favorites, your chosen language, your chosen theme, whether the daily notification is enabled and at what time, and whether you have seen the introduction screen.
This information never leaves your device, and deleting the app deletes it. It is the only data described on this page that disappears that way: the anonymous subscription identifier held by RevenueCat and your purchase history at Apple live on their servers, and are covered under Subscription and Your rights below. If you use iCloud or an encrypted local backup, that backup may include the on-device data; those backups are governed by Apple’s terms, not ours.
Network requests
The app ships with its full corpus embedded: the daily passage, favorites, widgets and notifications all work with no network at all. It makes four kinds of request, and only these. First, an anonymous read of a small version file published on this website, to see whether a correction to the texts exists. Second, if one does, an exchange with our server using Apple App Attest — your iPhone produces a cryptographic attestation that this is a genuine, unmodified copy of the app, and our server returns a short-lived ticket that allows the corrected corpus file to be downloaded. Third, the subscription calls described under Subscription, which happen at launch and around a purchase or a restore, and which also fetch the layout of the subscription screen. Fourth, that screen’s fonts and icons, loaded from RevenueCat’s asset domains (fonts.pawwalls.com, icons.pawwalls.com).
The version check and the font and icon downloads carry no account, no identifier, no advertising ID and no cookie. The App Attest exchange carries a key identifier and an attestation generated by your device for this app: it identifies an installation, never you, and our server keeps no database — nothing from that exchange is stored. Like any HTTPS request, all four kinds necessarily expose your IP address to the host receiving them, which may keep it briefly in standard access logs. We do not use those logs to identify or profile anyone, and we do not join them to anything else.
Subscription
Stoic+ is an auto-renewing subscription sold through Apple’s App Store. Apple handles the payment, the billing and the renewal; we never see or receive your payment details. Apple provides us with aggregated, anonymous sales reports.
To validate a purchase and to restore your access from one device to another, the app uses RevenueCat, a subscription service operated by RevenueCat, Inc. in the United States. It acts as our processor: it handles this data on our instructions, for that purpose and for no purpose of its own.
At each launch and at each purchase, the RevenueCat component embedded in the app sends to its servers: a random, anonymous identifier it generates for your installation, your App Store purchase receipt and transaction history, the app version, the iOS version, the device model and the locale. It never sends your name, your email address or your payment details — Apple keeps those. As with any HTTPS request, your IP address is exposed in transit.
This data is hosted in the United States. The identifier is random, generated on your device and joined to nothing else: it names a subscription, not a person. RevenueCat’s own privacy policy: https://www.revenuecat.com/privacy
Notifications
The daily notification is scheduled locally by your iPhone, and its content is computed on the device from the embedded corpus. There is no push server, so no notification data passes through us.
Children
The app is not directed at children, and it asks no one for personal information — children no more than anyone else.
This website
The public pages of this site are static. They set no cookie, load no font or image from a third-party domain, and offer no contact form. The site counts its visits with three tools, none of which writes to or reads from your browser. The first is Vercel Web Analytics, the measurement tool of its hosting provider: no cookie, no identifier stored, no tracking across sites — only aggregate page views with the referrer, an approximate location (country, city), device type, browser and operating system, and a hash of the request that is discarded within twenty-four hours. Vercel Inc. acts as our processor: it handles this data on our instructions, for that purpose and for no purpose of its own; these statistics are hosted in the United States under the EU–US Data Privacy Framework. The second is Google Analytics, whose script is the only one this site loads from a third-party domain (googletagmanager.com), and which runs in its cookieless mode: every consent signal is declared to it as refused, so it sets no cookie, reads nothing from your browser and keeps no identifier — it only sends Google each page view with the referrer, an approximate location derived from your IP address (which Google Analytics does not store), device type, browser and operating system. Google Ireland Limited acts as our processor for that measurement, on the same terms; these statistics are hosted in the United States under the EU–US Data Privacy Framework. The third is PostHog, whose script is served from this site and which runs in its cookieless mode: it sends PostHog each page view with the referrer, device type, browser and operating system, and PostHog’s servers count visitors with a hash of your IP address, your browser and a salt that changes every day and is then deleted; the hash cannot be reversed, and the IP address itself is discarded on arrival. PostHog Inc. acts as our processor under its data processing agreement; these statistics are hosted in the United States. All three measurements rest on our legitimate interest in knowing how the site is used. No consent is requested because nothing is written to or read from your browser; since none of these tools keeps an identifier there is nothing to erase, but you can write to us with any question. The site also hosts the few endpoints the app uses for App Attest and for corpus corrections, described under Network requests; they hold no database and store nothing. The hosting provider may keep standard access logs.
Your rights
Because we hold no personal data about you, there is next to nothing for us to export, correct or erase. The one identifier that exists is the random one generated for your installation by our subscription provider: it names no person, and we can have it erased on request, along with the purchase history attached to it. Erasing it does not cancel a subscription, which lives with Apple. Write to us and we will look into it.
Changes to this policy
If the app ever changes what it does with data, this page changes first, with a new date at the top. Substantive changes will also be described in the app’s release notes.
Contact
Questions about privacy: stoiqueapp+emmanuel@captaindev.io