Privacy Policy

Last updated: 21 September 2026

In short: no accounts, no tracking, no advertising, no analytics tool. Your notes live on your device and in your own iCloud account, where we cannot reach them. Subscriptions go through Apple. What leaves your device: the line you type in smart add, the data you choose to share with the people you invite to a shared wall, and a handful of anonymous event counts (below).

Who is responsible

DailyWall is developed and published by Serkan Kaplan. For any privacy question, write to contact@dailywall.app.

Data that stays on your device

Your notes, drawings, lists, photos you attach to notes, stickers you cut out of your own photos, wall preferences and settings are held only in your device's own storage. We have no access to this data; it is not sent to us.

iCloud sync (Pro)

If iCloud is switched on and you subscribe to Pro, your walls sync to your other devices and are backed up through Apple's iCloud. That data sits in the private area of your own iCloud account. As the developer we cannot read, list or download it. If iCloud is off, the feature disables itself and the app carries on working.

This data is governed by Apple's own terms: apple.com/legal/privacy

Shared walls

A shared wall lives in Apple's CloudKit. The wall, its paper, any photos on it and the name, emoji and colour you choose for yourself are stored in the iCloud account of the person who created the wall and shared with the people they invite. Apple hosts that data; we cannot read, list or download it. The people on a wall can see what is on it and who hung each paper. Leaving a wall removes you from it; the owner can remove participants and delete the wall entirely.

Invitation links. To make invitations short, the app sends the iCloud sharing link to our own server (a Cloudflare Worker) and receives an eight-character code in return. The server stores only that link, under that code, for 180 days. No name, identifier, e-mail or device information is sent with it. The long link keeps working without our server.

Notifications. If you turn on notifications for a wall, Apple's push service wakes the app silently when the wall changes and the notification is composed on your device. We run no notification server and see no content.

Camera. If you choose "Scan QR code" to join a wall, the camera is used on your device to read the code. No image is stored or uploaded.

Event counter. So that we can tell whether shared walls are working at all, the app sends a single event name to our server (the same Cloudflare Worker) at a few moments: an invitation link was sent, an invitation was accepted, someone joined a wall you created, an invitation gift was unlocked, the in-app rating question was shown and how it was answered. Only the event name and the day are sent; no identifier, device, name, wall or person goes with it, and the events cannot be linked to each other or to you. Records delete themselves after 400 days. To limit abuse, the server keeps the requesting IP address in a rate counter for at most two days; it is not logged or stored anywhere else.

Subscriptions and payment

Subscriptions are sold by Apple through the App Store. We never see or store your card details, name or billing address.

To manage subscriptions across your devices the app uses RevenueCat, a subscription infrastructure service. RevenueCat receives an anonymous, randomly generated app user identifier, the identifier for vendor of your device, and the App Store receipt showing whether your subscription is active. It does not receive your name, e-mail or Apple Account. This data is used only to unlock Pro features and to give us aggregate subscription figures; it is not used for advertising. RevenueCat's privacy policy: revenuecat.com/privacy

Smart add (AI)

When you type a sentence like "dentist tomorrow at 2pm", the app turns it into a date, a time and items. This happens in one of two ways:

On the server path, these are the only things sent:

SentWhat for
The line you typed (max 500 characters)The text to be parsed
The current date and timeTo know which day "tomorrow" is
Your time zoneSame reason
Your device's language code (e.g. "en")So the answer comes back in the same language

Not sent: your name, e-mail, Apple Account, device identifier, advertising identifier, location, contacts, photos, your other notes, or any number that could identify you. The request is anonymous. Our server stores none of it; there is no database and the body is not logged. OpenAI acts as our sub-processor under their API terms: openai.com/policies/privacy-policy

If you would rather not use this at all, simply do not use smart add; when you write your notes yourself, nothing leaves your device.

Photos

DailyWall never writes to your photo library on its own, and never deletes anything. Only when you press "Save to Photos" does it add the wall image it generated to its own "DailyWall" album. It does not read your existing photos. When you pick a photo for a note, a wall, or a custom sticker, a copy is kept inside the app's own storage; on a shared wall, a photo attached to a note is stored with that wall in CloudKit as described above.

Lock Screen wallpaper

The wallpaper is rendered on your device and handed to the Shortcuts app. It does not pass through Photos or any server. If a photo on the wall contains a person, the face area is softened on your device before the wallpaper is produced, so that iOS does not reframe the picture; this detection runs entirely on your device.

Tracking, analytics and advertising

DailyWall contains no third-party analytics tool, no crash reporter, no ad network and no advertising SDK. We do not track you across apps or websites. The only measurement is the anonymous event counter described above: how many times an event happened on a given day, never by whom. In the app's App Privacy details this appears as "product interaction, not linked to you". The only data linked to you is your purchase history and a device identifier, both used solely to run subscriptions.

Notifications and reminders

Reminders for your notes are scheduled locally on your device. If you allow notifications, they are shown by iOS; we do not send or receive them.

Children

DailyWall is not directed at children under 13 and does not knowingly collect personal data from anyone. There is no account to create at any age.

Your rights

Because we hold no personal data about you, there is nothing for us to export, correct or delete on request; everything is under your control on your device and in your own iCloud account. Deleting the app deletes its local data. Under GDPR, KVKK and similar laws you may still write to us with any question or request at contact@dailywall.app, and we will answer within 30 days.

Changes to this policy

If anything here changes, the new version is published at this address with a new date. Material changes are also mentioned in the app's release notes.