Privacy Policy
Last updated: 27 August 2026
Rootless is developed and published by Edoardo Balducci. This policy states what the app does with data on your device, what it does not do, and what the feedback board does with the data you give it. It applies to Rootless on iOS, iPadOS and macOS, and to the feedback board at feedback.rootless.info.
1. Data collected by the app
The app collects no data. It has no accounts, no sign-in and no server. It does not transmit your scripts, your files, your settings or any identifier to the developer or to any third party. No usage statistics, diagnostics or crash reports are gathered.
2. Where your data is stored
Scripts are stored as plain .js files in a
folder on your device, which you can open in the Files app.
If you enable iCloud Drive in the app's settings, that
folder is iCloud Drive/Rootless and Apple synchronises it
between the devices signed in to your Apple Account.
Synchronisation is carried out by Apple and is governed by
Apple's privacy policy. The developer has no access to that
folder, in transit or at rest.
Settings, editor themes and the values scripts keep through the Storage, Cache and Keychain APIs are held in the app's own container on the device. Each script is given a separate namespace, so one script cannot read another's stored values.
3. Device permissions
Rootless requests a permission only when a script calls the API that requires it. iOS asks for your consent the first time, and you may withdraw it at any point in the system Settings.
- Location, for scripts that read your position.
- Motion and fitness, for step count and walking distance.
- Calendar, to read and create events.
- Reminders, to read and create reminders.
- Photos, to read your library.
- Contacts, to read names, birthdays and details.
Data obtained through these permissions is passed to the script that asked for it. Rootless does not retain it, aggregate it or transmit it.
4. Scripts and network requests
Rootless makes no network requests of its own. Every request originates from a script that you wrote, imported or chose to run. A script is able to transmit any data it can read to any server it can reach, outside the developer's control and outside the scope of this policy. Treat a script written by someone else as you would treat any other code before running it. Data sent to a third-party service is governed by that service's own privacy policy.
5. In-app purchases
The app offers optional tips through the App Store. The transaction is handled entirely by Apple. Rootless receives confirmation that a purchase completed and nothing further: no name, no payment details, no billing address. The total shown on the tip screen is calculated on your device from purchases made in that installation and is not transmitted.
6. The feedback board
The feedback board at feedback.rootless.info is a separate website. It is not part of the app, and the app sends nothing to it. It runs on Fider's hosted service. What an account holds and how it is kept is Fider's design, not mine; what is mine is running a board for Rootless and the settings it runs under. Fider's own privacy policy covers what it collects, and its terms bring a data processing agreement with them.
Signing in records your name, your email address and your avatar as the provider you sign in with supplies them. What you post, comment on and vote for is recorded with it. The purpose is to collect and prioritise feedback on Rootless, on the basis of a legitimate interest in developing the app.
Your display name and everything you post, comment on or vote for are public on the board. Your email address is not shown to other users: it signs you in and notifies you about your own posts.
Deleting your account is something you do yourself, under Settings on the board. Fider erases the personal information permanently and leaves what you have published in place, anonymised. The step cannot be undone. Posts, comments and votes are kept for as long as the board exists.
You can also write to the address in section 10. As the board's administrator I can see who has signed in, export what the board holds, and remove posts and comments. Anything beyond that is Fider's to answer, at contact@fider.io.
7. Third-party services
Rootless integrates no analytics, advertising, attribution or crash-reporting service, and contains no third-party tracking SDK. The only external party involved in the normal operation of the app is Apple, as platform and payment provider.
8. Retention and deletion
As no data is collected, there is nothing held on your behalf to retain or delete. Removing the app deletes its container and everything stored inside it. Scripts kept in iCloud Drive remain there until you delete them, and can be removed from the Files app.
9. Changes to this policy
If this policy changes, the date at the top of this page is updated, and the revised policy is published in the app and on this site at the same time.
10. Contact
Questions about this policy can be sent to edoardo@rootless.info.