Privacy Policy

Last updated: 2026-08-26 · Effective: 2026-08-26

Summary

QuipKey is a keyboard, so we will state the boundary first: what you type every day does not leave your device. Pinyin candidates, 9-key input and handwriting recognition all run locally, with no network access. Text is only sent somewhere when you deliberately summon the in-keyboard assistant and send it a message — and where it goes depends on the inference backend you chose.

1. Keyboard input

The QuipKey keyboard requires "Allow Full Access" to reach the network and stay in sync with the main app. This is iOS's blanket mechanism for third-party keyboards: enabling it means the keyboard is technically capable of reading what you type. QuipKey does not use that capability for routine uploads:

  • Characters, candidates and handwriting strokes are not uploaded, and are not used to train any model
  • Your Pinyin user dictionary is stored locally (in the container shared with the keyboard) and is not synced to our servers
  • When you have not summoned the assistant, the keyboard sends no typed content to any server

2. The assistant

When you summon the assistant and send a message, the text of that message, the current conversation context, and anything produced by tools the assistant runs to answer you are sent to the backend you selected under Settings → Inference backend:

  • Platform models — relayed through our servers to a model provider. We record the time, the model and the credits consumed for billing. We do not retain the body of your conversations in readable form
  • Your own key (Anthropic / OpenAI / Doubao / Gemini) — sent from your device directly to that provider, never through our servers. Your relationship with that provider is governed by their privacy policy
  • Self-hosted Ollama — sent to the server you configured; it never touches ours

Conversations and any files the assistant produces are stored on your device, in the container shared between the main app and the keyboard. Settings → Clear all conversations deletes all of them at once. That cannot be undone.

3. Account

An account is only required for Platform models. When you sign in with Apple we receive and store:

  • A server-issued user identifier
  • The email address you chose to share (if you chose "Hide My Email", we receive Apple's relay address)
  • The name you chose to share

This is used to identify the account and settle credit usage. You can delete your account under Settings → Account → Delete account; once marked deleted, the associated email, name and other personal details are cleared.

4. System permissions

All of the following are optional, take effect only after you grant them, and can be turned off individually under Capabilities or revoked in system settings:

  • Calendar — read and manage events, to answer schedule questions and make the changes you ask for
  • Reminders — read and manage reminders, likewise
  • Location (while in use) — read only when you ask a question about where you are

This data is used only while handling that request. We do not store your calendar, reminders or location on our servers.

5. Clipboard

When "Pasted-message replies" is enabled, QuipKey reads the clipboard at the moment you trigger the paste action, in order to draft reply suggestions. It does not read otherwise, and what it reads is not uploaded.

6. Analytics and crash reports

We may collect anonymous crash reports and basic usage statistics to improve quality. These contain neither what you type nor the body of your conversations.

7. Children

QuipKey is not directed at children under 13, and we do not knowingly collect their personal information.

8. Changes

If this policy changes materially we will update the effective date on this page and notify you in the app.

9. Contact

If you have questions about this privacy policy, email [email protected].