Legal / Privacy

Privacy Policy

Effective and last updated: 13 August 2026

ServerSentinel has no developer-operated backend, analytics, advertising, crash reporting, or tracking. The developer does not receive or access your server configuration, credentials, or monitoring content.

1. Information we collect

The developer does not collect, sell, share, or track personal data. ServerSentinel does not require an account. It connects only after you save a server configuration, either directly to that SSH host or to an HTTPS Agent Relay you deploy and control.

2. Information stored on your device

DataStorage and retention
Server configurationNames, addresses or aliases, ports, usernames, connection method, pinned host public keys, role notes, polling intervals, and optional Agent Relay configuration are stored in local app preferences until you delete the server or all local data.
CredentialsPasswords, SSH private keys, and Agent read tokens are stored in the device Keychain, are available only while the device is unlocked, and are marked as non-migrating. They are not written into configuration files or logs.
Terminal historyApproximately the most recent 200 lines per server may be stored locally to restore context after restarting the app.
Monitoring dataLatest snapshots, up to 30 days of trends, alerts, health checks, events, and local action audits are stored in the app's Application Support container.
Widget dataNode name, health, CPU summary, and critical alert count may be stored in the app's shared container solely for its Widget.
Imported key filesKey files manually placed in the app's imported-keys folder remain on the device until credentials or all local data are deleted.

3. Network connections

DirectSSH connects to the host and port you enter and requires a pinned host public key. If you enable Agent Relay, ServerSentinel connects over HTTPS to the relay address you enter and operate. Local-network permission may be requested when connecting to a server on your local network.

The app does not contact a developer backend and does not send telemetry, advertising data, analytics, update checks, or remote-configuration requests.

4. Third-party components

ServerSentinel uses open-source libraries including Citadel, SwiftNIO, SwiftNIO SSH, swift-crypto, and BigInt to implement SSH and cryptography. These components run locally and do not transmit information to their authors. The app contains no advertising, analytics, or behavioural tracking SDK.

5. Your controls

Uninstalling removes the app container, but the operating system may retain Keychain items. Use Delete All Local Data before uninstalling if you want those items removed.

6. Children's privacy

ServerSentinel is intended for server administrators and is not directed to children under 13. It does not knowingly collect information from children or from any user.

7. Policy changes

Changes to this policy will update the date on this page and ship with an app update. Material changes to data handling will also be disclosed in the release notes.

8. Contact

Questions about this policy or ServerSentinel's data handling can be sent to aroluo@icloud.com.

中文摘要

ServerSentinel 没有开发者运营的后端、分析、广告、崩溃上报或追踪功能。服务器配置、凭据、终端与监控数据均保存在用户设备上;App 仅连接用户主动配置的 SSH 主机或自部署的 HTTPS Agent Relay。用户可在设置中删除单台服务器、清除凭据或彻底删除全部本地数据。如有疑问,请联系 aroluo@icloud.com