kvndh
English

Codematic

Privacy Policy

Effective

SummaryCodematic collects no personal data. There is no account and no sign-in. The codes you add and your hand-out record, including any recipient names you type, are kept on your device and in your own iCloud account. An App Store Connect API key is stored only in the Keychain of the device you add it on, and requests signed with it go directly to Apple.

kvndh (the developer) handles the personal data of users of the Codematic app (the app) as described below.

01Purposes of processing

The app has no sign-up or login, and the developer does not process personal information about its users. The app uses the codes you add and the recipient names you type to count the codes left, to show your hand-out record, and to keep rolls and codes the same on devices signed in to the same Apple Account. An App Store Connect API key is used only if you add one, to send requests to your own App Store Connect.

02Personal information processed

The developer collects no personal information. The app works with the data below, kept in the app's storage on your device. When the device is signed in to iCloud, rolls and codes are also kept in your own iCloud account (the CloudKit private database). The developer does not receive any of it.

  • Rolls (name, type, copy setting, App Store ID, expiration date, when it was created, when it was moved to the Trash, and for a roll issued or imported in the app, the identifier of its App Store Connect batch): used to list rolls and count the codes left
  • Codes (the code, whether it was handed out, and when): used to give the next code and show the Handed out list
  • Recipient names: optional text you type when you hand out a code, which may be another person's name or nickname. Shown in the Handed out list, on the card after a hand-out, in images you save and in the CSV you export. Kept with rolls and codes on your device and in your own iCloud account
  • App Store Connect API key (Key ID, private key, and the Issuer ID for a team key): used only if you add one, to read and create apps' products, offers and codes in your App Store Connect. Stored only in the Keychain of the device you add it on and not synced through iCloud
  • App icon cache (the icon and name of the app for a roll's App Store ID): shown on rolls and in saved images. Kept in the device's cache folder and fetched again after 7 days

03Retention period

The developer holds no personal data. Rolls, codes and recipient names stay until you delete them. A roll moved to the Trash is removed for good, with its codes, when the app opens after 30 days, and you can also delete it from the Trash right away. Deleting on one device also deletes the copy in iCloud and on your other devices. Deleting the app removes what it kept on that device, but the copy in iCloud stays in your iCloud account. An App Store Connect API key stays in that device's Keychain until you delete it under App Store Connect key on the Info screen.

04Provision to third parties

Personal information is not provided to third parties.

05Outsourcing of processing

No processing is outsourced. Storing rolls and codes and syncing them between devices runs on Apple's iCloud (CloudKit). That data belongs to your Apple Account and is covered by Apple's privacy policy. The developer can't see it and doesn't receive it. When a roll has an App Store ID, the app gets that app's icon and name from Apple's public App Store information (itunes.apple.com) and from the icon image address given in that response. It sends the App Store ID and a region code, and as with any web request Apple receives your device's IP address. No cookies or sign-in details are sent. If the public information has no entry for the app and an App Store Connect API key is added, the icon and name come from App Store Connect instead. If you add an App Store Connect API key, the app sends requests signed with that key directly to Apple's App Store Connect API (api.appstoreconnect.apple.com) to read and create apps' products, offers and codes. These requests don't go through any developer server.

06Destruction of personal information

The developer holds no personal data, so there is nothing to destroy. Deleting a roll from the Trash for good removes its codes and recipient names with it, and undoing a handed-out code clears the recipient name typed for it. Deleting the app removes everything it kept on this device. Delete an App Store Connect API key with Delete key, under App Store Connect key on the Info screen, before you delete the app. To delete the copy in iCloud, go to Settings > your name > iCloud > Manage Storage > Codematic.

07Rights of users and legal representatives

Because the developer holds no personal information about you, there is nothing to access, correct or delete. If you have questions, email us at the address below.

08Security measures

What the app uses sits in the app's storage on your device. The developer runs no server. iCloud storage uses the private database (CloudKit) in your own iCloud account. The app has no switch to turn it off, and on a device not signed in to iCloud the data is stored on that device only. An App Store Connect API key is checked with Apple once when you add it, then stored only in that device's Keychain, readable only while the device is not locked, and not synced through iCloud Keychain. On another device you add it separately. When a .p8 file is passed to the app from Files or AirDrop, the app's copy of the file is deleted once it has been read. Photos are only added, with add-only permission, when you tap Save as image, and the app does not read your photo library. The app puts a code or link on the clipboard when you hand out or copy a code, and reads the clipboard only when you tap the paste button. If you back up your device (for example with iCloud Backup), the data in the app's storage is included like any other app's, and Apple handles that backup.

09Cookies and other automatic collection

The app uses no cookies, no advertising identifier and no analytics tools.

10Privacy officer

If you have questions about personal information, email us at the address below.

Officer
kvndh
Email
kvndh36@naver.com

11Remedies

If you need advice about a privacy concern or help settling a dispute, you can contact the Korean bodies listed below. If you live outside Korea, you can also contact the data protection authority in your country.

  • Personal Information Dispute Mediation Committee: 1833-6972 in Korea (www.kopico.go.kr)
  • Personal Information Infringement Report Center: 118 in Korea (privacy.kisa.or.kr)
  • Supreme Prosecutors' Office: 1301 in Korea (www.spo.go.kr)
  • National Police Agency: 182 in Korea (ecrm.police.go.kr)
  • European Union and EEA: the data protection authority of your country (edpb.europa.eu)
  • United Kingdom: Information Commissioner's Office (ico.org.uk)
  • United States: Federal Trade Commission (reportfraud.ftc.gov)
  • Other countries: the data protection or consumer protection authority where you live

12Changes to this policy

If this policy changes, this page will show the new text and its new effective date.

This policy applies from 2026-10-07.