Who we are
“TermCue,” “we,” and “us” refer to the developer of the TermCue iOS app. For privacy questions, write to support@termcue.com.
What we do not collect
TermCue does not require an account, upload your server profiles or keys to our servers, proxy or log SSH sessions, use analytics or advertising SDKs, track you across other apps, or sell personal information.
What stays on your device
The app stores the following locally:
- Server profiles — host, port, username, groups, and preferences such as whether Containers is enabled
- Runbooks and saved commands — workflows and snippets you choose to keep
- SSH private keys and AI API keys — in the iOS Keychain, device-only accessibility
- Known host fingerprints — to verify servers on reconnect
- App preferences — such as the selected AI model
SSH passwords are not saved permanently. You enter them when connecting; they are cleared when the session ends. Keychain items use kSecAttrAccessibleWhenUnlockedThisDeviceOnly and are not recoverable from iCloud Keychain or unencrypted backups.
Face ID and Touch ID
TermCue uses app lock with Apple’s LocalAuthentication (Face ID, Touch ID, or device passcode). You can also require biometrics for a private key. Biometric data never leaves your device and is not accessible to TermCue.
Network
TermCue connects from your device to SSH servers you add (terminal, SFTP, dashboards, runbooks, optional containers), to Docker or Podman on those hosts when Containers is enabled, to AI endpoints you configure, and optionally to devices on your local network (for example Ollama). Traffic stays between your device and those hosts. We do not receive copies of sessions, files, metrics, or container data.
Optional AI
Copilots in terminal, dashboard, and Containers may send questions plus relevant context (output, metrics, container lists or log excerpts) to an endpoint you add in Settings. That data is governed by the provider’s policy, not this one. You can use TermCue without any external AI. If Apple Intelligence is available on a supported device and you have not set an endpoint, some requests may run on-device under Apple’s policies.
Containers
Containers is opt-in per server. The app talks to Docker or Podman over SSH. Metadata and logs are read live from your host; we do not keep a copy. Actions are start, stop, restart, and logs — not delete.
Children
TermCue is not directed at children under 13. We do not knowingly collect their personal information.
Deletion
Delete profiles, runbooks, and keys in the app, or uninstall TermCue. Uninstalling removes app documents and this app’s Keychain items.
Changes
We may update this policy. The date at the top will change when we do. Continued use after a change means you accept the update.