Privacy policy

What wiit stores, and what it cannot see

Last updated: 30 July 2026

wiit has no accounts and asks for no personal data. This page describes exactly what the app does with your information, not a template.

The short version

  • There is no sign-up. No email, no name, no password, no profile.
  • Your wiits (photos, names, places, notes and tags) are stored on your device, and sync through your own iCloud if you have it enabled.
  • When you share something, it is encrypted on your device first. The server stores encrypted blocks and does not have the key.
  • No advertising, no third-party analytics, no tracking, no profiling.

Who is responsible

wiit is made by Álvaro Martín, an independent developer based in Tenerife, Spain. For anything on this page, write to hello@wiit.world.

What lives on your device

Everything you create: the photos, the names, the places, the notes, the tags and which spaces a wiit belongs to. It is stored in the app's own container on the phone. If you have iCloud enabled for wiit, the same data syncs to your other devices through your Apple account. That copy is between you and Apple: wiit has no access to it and no server of its own holding it.

Deleting the app deletes the local copy. Deleting the data from iCloud is done through your Apple account settings.

What happens when you share a link

Sharing is the only feature that sends anything to a server, and it is designed so that the server cannot read what it holds:

  • A six-character access code is generated on your iPhone. The encryption key is derived from it there.
  • The photos and the text are encrypted on the device before being uploaded. The server receives blocks it cannot open.
  • The code never reaches the server. When you send a normal link, the code travels in the part of the URL after the #, which browsers never send to the server. If you choose to send the code separately, it is not in the link at all.
  • Decryption happens in the browser of the person who opens the link.
  • You choose whether the note and the location travel at all. If you turn them off, those fields are simply left out before encryption: they are never uploaded.

Links expire, and you can revoke one at any time from My links in the app. Revoking deletes the stored blocks and the link stops working immediately.

What the server stores

For each shared link: the encrypted blocks, the moment it was created, when it expires, and a technical device identifier: Apple's Identifier for Vendor (IDFV). It stays the same for as long as at least one app from the same developer is installed on the device, and only changes once all of them have been deleted and one is installed again. It is used for one thing only: counting how many links a device has live, so the free and Pro limits can be enforced.

To stop the service being scripted or abused, the server also counts requests against the IP address they arrive from. The address is used as the key of a counter and nothing else: it is never attached to a link, a purchase or a device, and the counters expire on their own: within a day for creating links, within a minute for reading one. Cloudflare, which runs the service, also logs addresses as any host does.

If you buy wiit Pro, the server stores the identifier Apple gives that purchase, so your Pro links can be recognised as yours on any device signed in to the same Apple Account. It carries no name, no email and no payment detail.

Beyond that the server keeps no names, no emails, no postal addresses, no contact list, no advertising identifiers and no behavioural history. It cannot read the content it stores.

Location

Location is optional and never runs in the background. It comes from one of two places:

  • The GPS tag already inside the photo you picked, which is read on the device.
  • A single position request, and only when you explicitly ask for it by tapping "use my current location".

Turning the location switch off in a wiit removes it. Refusing the location permission entirely does not stop you using the app: you can always type the place yourself.

Camera and photo library

The camera is used to take photos for a wiit. Photos are chosen through Apple's own picker, which hands the app only the images you select. Nothing is uploaded anywhere unless you deliberately create a share link.

Purchases

wiit Pro is a one-time purchase handled entirely by Apple. wiit never sees your payment details. To confirm a purchase is genuine, the app checks it with Apple; no personal data is stored on our side as a result.

Who else is involved

Apple
The App Store, the purchase, and, if you enable it, the iCloud sync of your own data. Governed by Apple's privacy policy.
Cloudflare
Hosts the sharing service (Workers and R2 object storage) and this website. It stores the encrypted blocks and, like us, cannot read them. Servers are in the European Union where Cloudflare's network allows it.

There is nobody else. No analytics service, no crash reporter that phones home, no advertising network, no data broker.

How long things are kept

Encrypted share content is deleted when the link expires or when you revoke it. Nothing else is kept server-side, because nothing else is sent.

Your rights

Under the GDPR you have the right of access, rectification, erasure, restriction, objection and portability. Because wiit holds no personal data tied to an identity, most of these are exercised directly by you:

  • Access and portability: your data is on your device. wiit Pro can export it to Markdown and PDF.
  • Erasure: revoke your links in My links, and delete the app. That removes the local copy and the encrypted blocks. For the iCloud copy, use your Apple account settings.
  • Anything else: write to hello@wiit.world.

If you believe your rights have not been respected, you can complain to the Spanish data protection authority, the AEPD.

Children

wiit is not aimed at children and collects no data that could identify anyone, of any age.

Changes

If this policy changes, the date at the top changes with it. Changes that affect what is stored or sent will be announced in the app's release notes.