Privacy
Last updated 16 August 2026
This website
The site sets no cookies, runs no analytics scripts, and the pages load nothing from third parties. The one thing it collects is the email address you type into the download form, which is used to send you the download link and kept as a record that you asked for one. The download link mailed to you contains your email address, signed, so that the link works only for the address that asked. Mail delivery is handled by Amazon SES, and a signup also sends a short notification to us through Telegram's API so we know somebody asked.
Like almost every web server, ours keeps ordinary access logs: the requesting IP address, the path, and the time. They exist for operations and abuse handling, are read by nobody else, are not fed to any analytics service, and are deleted as they age out over a period of weeks.
The Mac app
PR Radar runs reviews on your Mac. There is no telemetry, analytics, or automatic crash reporting to us; the free app needs no account. Your GitHub and provider tokens live in the macOS Keychain and leave your machine only as credentials to the services you configured them for. Reviews run either through your own Claude Code or Kimi credentials or against a local model, and what they read goes to that provider under that provider's terms, which you chose. Everything the reviewer produces - transcripts, findings, its searchable history - is stored on your Macs. With Pro cross-Mac sync enabled, signed-in sibling Macs exchange that history and encrypted transcript replicas directly over end-to-end encrypted links. Pro also uploads end-to-end encrypted history and transcript objects to the account archive for offline recovery. We store that ciphertext and its object name, size, checksum, generation, writer device and update time; we do not receive the recovery key and cannot read the contents. A sibling Mac may also retain a local replica after the source Mac goes offline.
The app checks an update feed roughly every ten minutes. That request carries no identifier beyond what any HTTP request carries.
Your account
The free Mac app needs no account. One exists only when you start a free trial or subscribe, and it holds: your email address, your subscription status, the devices you enrol (their public keys, the name and model they report, app version, and when each last checked in), and an audit trail of account actions - sign-ins, enrolments, billing events - with the IP address each came from. station.prradar.app sets a session cookie to keep you signed in; there are no tracking cookies anywhere.
Payments are processed by Stripe. Your card details go to Stripe and never to us; we store Stripe's identifiers for your customer and subscription, and the status they report. Stripe keeps its own records under its own privacy policy, as payment processors are required to.
To keep the free trial to one per person we also keep fairness records: a hashed form of the email address a trial was granted to, the IP address that asked, and a salted hash of the Mac's hardware identifier - never the identifier itself, and never your email in readable form in that table. These exist to be compared when somebody asks for a trial, not to profile anyone, and they are not shared with or sold to anybody.
Push notifications are delivered by Apple's push service. Their content is sealed on your Mac before it reaches us: we store your device's push token and the sealed bytes until Apple accepts them, and we cannot read what they say.
The iPhone app
The iPhone app is a remote control for the PR Radar on your own Mac. It has no sign-in screen: it identifies itself with keys created on your phone, and it is paired with your Mac in person, by comparing a code on both screens. The subscription that switches it on lives with the account described above. Everything it shows you travels between your phone and your Mac, sealed end to end with keys that exist only on those two devices. The relay that carries this traffic between them forwards ciphertext; it can see that the two machines are talking, and how much, but not what they say.
The camera is used only to scan the pairing code your Mac displays; nothing it sees is stored or sent anywhere. Push notifications are sealed on your Mac and opened on your phone - Apple delivers them but cannot read them. If your iPhone supports Apple Intelligence, review summaries are generated on the device and never leave it. The "sample data" preview on the welcome screen is built into the app and makes no network requests at all.
Deletion
Email support@prradar.app from the address in question and we delete your account: the email address is removed, devices are revoked, and sessions end. What we keep afterwards is the minimum with a reason attached: billing records that tax law requires (held by Stripe either way), the audit trail of the deletion itself, and the hashed trial-fairness records above - because deleting those on request would make the free trial infinite. The server's access logs delete themselves as they age out. Everything the apps hold lives on your own devices, where deleting it is yours to do: remove the Mac app and its data folder, or delete the iPhone app, and it is gone.