Legal / Privacy
Privacy Policy
Effective and last updated: 13 August 2026
ServerSentinel has no developer-operated backend, analytics, advertising, crash reporting, or tracking. The developer does not receive or access your server configuration, credentials, or monitoring content.
1. Information we collect
The developer does not collect, sell, share, or track personal data. ServerSentinel does not require an account. It connects only after you save a server configuration, either directly to that SSH host or to an HTTPS Agent Relay you deploy and control.
2. Information stored on your device
| Data | Storage and retention |
|---|---|
| Server configuration | Names, addresses or aliases, ports, usernames, connection method, pinned host public keys, role notes, polling intervals, and optional Agent Relay configuration are stored in local app preferences until you delete the server or all local data. |
| Credentials | Passwords, SSH private keys, and Agent read tokens are stored in the device Keychain, are available only while the device is unlocked, and are marked as non-migrating. They are not written into configuration files or logs. |
| Terminal history | Approximately the most recent 200 lines per server may be stored locally to restore context after restarting the app. |
| Monitoring data | Latest snapshots, up to 30 days of trends, alerts, health checks, events, and local action audits are stored in the app's Application Support container. |
| Widget data | Node name, health, CPU summary, and critical alert count may be stored in the app's shared container solely for its Widget. |
| Imported key files | Key files manually placed in the app's imported-keys folder remain on the device until credentials or all local data are deleted. |
3. Network connections
DirectSSH connects to the host and port you enter and requires a pinned host public key. If you enable Agent Relay, ServerSentinel connects over HTTPS to the relay address you enter and operate. Local-network permission may be requested when connecting to a server on your local network.
The app does not contact a developer backend and does not send telemetry, advertising data, analytics, update checks, or remote-configuration requests.
4. Third-party components
ServerSentinel uses open-source libraries including Citadel, SwiftNIO, SwiftNIO SSH, swift-crypto, and BigInt to implement SSH and cryptography. These components run locally and do not transmit information to their authors. The app contains no advertising, analytics, or behavioural tracking SDK.
5. Your controls
- Delete one server from Settings to remove its configuration and associated Keychain credentials.
- Use Clear All Credentials to remove all ServerSentinel Keychain entries and manually imported private-key files while retaining server configuration.
- Use Delete All Local Data to remove server configuration, monitoring and terminal history, imported keys, Widget state, and ServerSentinel Keychain items.
Uninstalling removes the app container, but the operating system may retain Keychain items. Use Delete All Local Data before uninstalling if you want those items removed.
6. Children's privacy
ServerSentinel is intended for server administrators and is not directed to children under 13. It does not knowingly collect information from children or from any user.
7. Policy changes
Changes to this policy will update the date on this page and ship with an app update. Material changes to data handling will also be disclosed in the release notes.
8. Contact
Questions about this policy or ServerSentinel's data handling can be sent to aroluo@icloud.com.
中文摘要
ServerSentinel 没有开发者运营的后端、分析、广告、崩溃上报或追踪功能。服务器配置、凭据、终端与监控数据均保存在用户设备上;App 仅连接用户主动配置的 SSH 主机或自部署的 HTTPS Agent Relay。用户可在设置中删除单台服务器、清除凭据或彻底删除全部本地数据。如有疑问,请联系 aroluo@icloud.com。