Deskferry App Privacy Policy
Your content stays on your Mac, not with us.
Nothing about you is collected. Content leaves a Mac only when you send it to one you approved.
Nothing about you is collected
Your clipboard content, your files, your history, what you do inside the app — none of it is uploaded to the developer or to a third party. There is no usage analytics in the app, no advertising identifier and no profiling. You are never asked to create a Deskferry account, because there is none to create.
No developer server in the path
Local history and Mac-to-Mac sync both run with no Deskferry server, no cloud storage and no cloud relay anywhere in the path. History works on a Mac that has never been online. Syncing asks for one thing beyond that: a local network on which the two Macs can reach each other.
Shared only with Macs you have authorized
With sync on, the content types you enabled go straight to authorized, connected Macs in your current group. Joining a group hands over the copies you allow — not your history library. Other members cannot browse it, search it, or pull records back out of your Mac.
Stored on your Mac, managed by you
Collecting nothing and storing nothing are different claims, and only the first one is being made. History can be kept on this Mac so you can go back to an earlier copy, and those records never travel to the developer. Bodies and retained attachments are encrypted locally, with the keys held in the macOS Keychain. Index information such as time and status also stays on the Mac, stored separately from the encrypted content.
All of it is yours to change: stop new recording, adjust retention and capacity, delete single records or the entire library. Out of the box it holds up to 10 GB with no expiry date on entries. Two things worth separating — stopping recording leaves existing records exactly where they are, and sharing is its own switch, so pause or turn off sync to stop that. Manage local history.
You decide what is shared, and when it stops
No device joins a group quietly, because pairing waits for your approval. Before you copy anything private, three things are worth a glance: which group is current, which members are connected, and which content types that Mac is allowed to send. Authorize only Macs you trust. Sensitive-content detection covers supported formats and is no substitute for that judgment.
Whatever a Mac receives, it keeps. Leaving a group, revoking a device or clearing your own history does not reach across and remove what somebody else already saved or pasted. Read about device authorization and security.
FAQ
Questions, answered
Can the developer see or restore my history?
No to both. There is no cloud copy for us to look at, which also means there is nothing on our side to restore from. Once a record is deleted or cleaned up, your routes back are the original document or page, or a backup you made yourself.
Why does an app with no servers need local network access?
Because that permission is how it finds and connects to the Macs you authorized. It moves content between those devices and uploads nothing anywhere. If you only use local history on one Mac, no second device and no network are involved at all.
Is everything stored on my Mac shared automatically?
No. What syncs is the current content you enabled, not the history library behind it. To send an older record you copy it again, deliberately — and it is worth checking the current group and your sync settings before you do.
Are downloads, purchases and restoring a purchase also offline?
No, and they are not ours. App Store downloads, purchases and purchase restoration are Apple services, and they may need an internet connection and an Apple Account. They run separately from syncing and give the developer no access to your clipboard or your local history.