Legal · laytr.app
Privacy policy
Laytr keeps what you save on your phone. There is no Laytr account and no Laytr server, so nothing about what you save is ever uploaded to us.
In effect 23 September 2026 ·Applies to Laytr for iPhone and iPad, version 1.0.7, and Laytr for Mac, version 1.0 ·And to this website
The short version
- Your saved content never reaches us. The only copy that leaves your phone is Laytr’s backup in your own iCloud, which is described below and can be switched off.
- There is no account, no sign-in, and no profile of you.
- Laytr shows no advertising and does no tracking of any kind. It never asks for App Tracking Transparency permission, because it has nothing to track you with.
- Two diagnostics switches exist in the app. Both are on by default and can be turned off at any time in Now → Settings → Privacy, and neither can ever carry your content.
- Payment is Apple’s. The purchase step itself is run for us by RevenueCat, a processor that sees the purchase — a random identifier and what was bought — and never what you saved. There is no switch for it, because it is what performs the purchase.
- This website sets no cookies, runs no analytics, and embeds nothing from anyone else.
Who is responsible
Laytr is published by Waitery Inc, the data controller for the small amount of data described below. You can reach a human at support@laytr.app, normally answered within 3 business days.
What Laytr stores, and where
Everything you save — links, articles, videos, places, products, PDFs, images, screenshots, your notes, tags, cases, favourites, return times and search history — is stored in Laytr’s own storage on your device. If you leave iCloud backup or sync on, a copy is also kept in your own iCloud, which we cannot read. None of it is sent to us.
Text that Laytr reads out of your screenshots is produced on your device by Apple’s Vision framework. The images are not sent anywhere for processing, and neither is the text.
If you back up your iPhone to iCloud or a computer, your Laytr data is included in that backup, under Apple’s terms and your own settings. That backup is yours; we have no access to it.
Laytr’s own iCloud backup
Laytr also keeps a copy of your archive in your own iCloud, so your saves survive losing the app or the phone. It writes the same export ZIP you can produce yourself, into Laytr’s container in your iCloud account, and keeps the newest two copies.
It goes to your iCloud, not to us. There is no account of ours involved, no server of ours in the path, and nothing we could read: we have no more access to your iCloud than to your phone. Apple’s privacy terms govern what is stored there.
It is on by default and switched off in Settings → Storage. Turning it off stops further copies; copies already in your iCloud are yours to delete, from Laytr or from Apple’s own storage settings. Restoring from it is additive and never paywalled.
Network requests Laytr makes
Laytr contacts the internet in exactly three situations:
- To fetch a page you saved. When you save a link, Laytr requests that page from its own website to get the title, a preview image, and — where the page allows it — the article text and pictures to store offline. That request goes to the site you saved, and nowhere else. Those sites see a request the same way any browser visit would, and their own privacy policies apply to it.
- To complete a purchase. Purchases go through Apple’s App Store using StoreKit. Laytr never sees or handles your payment details, and there is no Laytr receipt-validation server. The purchase step is run on our behalf by RevenueCat, a purchases processor, which is described under Purchases below. It is not optional: it is the thing that performs the purchase, so it is used exactly when you buy something and never otherwise.
- Diagnostics, unless you switch them off. Described in the next section.
Laytr never contacts login-walled platforms at all, never downloads video from any platform, and never attempts to get past a paywall, a meter, or a consent gate.
Optional diagnostics
Laytr has two switches under Now → Settings → Privacy. Both are on by default, and you can turn either one off at any time. Off means dropped, not queued for later — and turning a switch back on never delivers anything that happened while it was off.
Turning off Share anonymous usage also deletes the random identifier it was using, so the link between what was sent before and anything sent later is broken rather than merely paused.
- Share anonymous usage
- Sends a fixed, published list of typed events — things like “an item was saved”, “a search returned results in the 1–10 band”, “the paywall was shown”. Values are categories and buckets, never precise counts and never text you typed. Processed by PostHog on our behalf, on their European Union servers.
- Share crash reports
- Sends the technical details of a crash or a freeze: the stack trace, the app version, the iOS version and the device family. Every report passes through a filter that removes URLs, file paths, filenames and e-mail addresses before it is sent. Processed by Sentry on our behalf, on their United States servers.
When usage sharing is on, a random identifier is created so two events can be recognised as coming from the same installation. It is generated from nothing — not your device, not your Apple Account, not an advertising identifier — and it is deleted the moment you switch the toggle off, so turning it back on starts a new, unlinked one. Reinstalling the app also produces a new one.
Also while usage sharing is on, once per installation, the app asks Apple whether one of our own App Store ads brought you here. It reads Apple’s AdServices attribution token and sends it to Apple, and Apple answers with the numbers of our campaign, ad group and keyword if an ad was involved — rows of our own advertising account, the same for everyone who arrived through that ad, and nothing about you. Whether an ad was involved, and from version 1.0.10 which of our campaigns, ad groups and keywords it was, is counted alongside the events above. This is not the advertising identifier (IDFA): Laytr never reads it, and never shows the App Tracking Transparency prompt, because there is nothing to track you with. With usage sharing off, the token is not read and nothing is sent.
What is never collected
None of the following is ever sent off your device by Laytr, on any setting:
- The addresses, titles or text of anything you saved
- Your notes, tags, collection names or favourites
- Article text, screenshots, images, PDFs, or text read out of them
- Anything you typed into search
- Reminder times or notification text
- Filenames, or anything you exported
- Your location, contacts, photos library, calendar, health or camera
- Advertising identifiers, device fingerprints, or any cross-app identifier
This is enforced in Laytr’s own automated tests, which fail the build if a diagnostic event so much as carries a field that looks like user content — not by policy alone.
Advertising and tracking
There is none. Laytr contains no advertising SDK, sells nothing to data brokers, and does not track you across apps or websites. Because nothing is used for tracking, Laytr never presents the App Tracking Transparency prompt.
Permissions Laytr asks for
- Notifications
- Asked for only after you schedule something that needs one, and explained first. Declining never breaks anything — the item still returns to the top of Now at the time you chose.
- Photos and Files
- Reached only through the system share sheet and document picker, one item at a time, when you choose to save something. Laytr never browses or indexes your photo library.
Laytr requests no location, contacts, camera, microphone or health access.
Purchases
Payment is handled entirely by Apple. Laytr receives from StoreKit only whether an active entitlement exists; it never receives your name, card, billing address or Apple Account. Refunds, renewals and cancellations are managed in your Apple Account settings, not by us.
The purchase step itself is run for us by RevenueCat (RevenueCat, Inc.), a purchases processor acting on our behalf. When you buy a plan, RevenueCat receives a random identifier its software makes up for your installation — not your name, not your Apple Account, not an advertising identifier — together with the purchase history attached to it: which plan, when, and whether a subscription is still active. It never receives your name, card, billing address or Apple Account, and it never receives anything you saved. It does not use any of this for tracking or advertising, and it is not linked to you as a person. What the app unlocks is still decided by Apple’s own verified record on your device, not by RevenueCat.
There is no switch for this, and it would be misleading to offer one: RevenueCat is what performs the purchase, so it is involved exactly when you buy something and at no other time. Nothing is sent to it while you save, read, search or export.
This website
laytr.app sets no cookies, runs no analytics, loads no third-party fonts, scripts, embeds or trackers, and asks you for nothing. There is no contact form; the only way to write to us is the e-mail address above, from your own mail app.
The site is served by our hosting provider, which processes standard server request data (IP address, requested page, user agent, timestamp) to deliver pages and defend against abuse. We do not use that data to identify or profile visitors, and we do not combine it with anything else.
Retention
Your saved content is kept on your device until you delete it. Deleted items go to Recently Deleted and are recoverable for 30 days before being removed permanently. Deleting the Laytr app removes all of it from the device. Optional diagnostics data is retained by our processors for no longer than 12 months, and is deleted sooner on request. The purchase record RevenueCat holds for a random identifier is kept for as long as that purchase can still affect what the app unlocks, and is deleted on request; Apple’s own purchase record is Apple’s.
Your rights
Depending on where you live — including under the UK and EU GDPR and the California Consumer Privacy Act — you have rights to access, correct, delete, and port your personal data, and to object to or restrict its processing. Laytr is an unusual case for a good reason:
- Access and portability are built in. Your entire archive exports from the app as one ZIP of readable Markdown, HTML and your original files, free, at any time, on any plan or none. We could not provide it to you because we never had it.
- Deletion is in your hands. Delete an item, or delete the app, and it is gone. There is no copy with us to request the deletion of.
- For diagnostics data, switching the toggle off deletes the random identifier immediately and severs the link between past and future events. To have already-received diagnostics deleted, write to support@laytr.app.
- For the purchase record held by RevenueCat, write to support@laytr.app and we will have it deleted. Because the identifier is random, tell us roughly when you bought and on which plan so it can be found.
We do not sell or share personal information as those terms are defined under U.S. state privacy laws, and we have no “Do Not Sell” obligation to honour because there is no sale to opt out of. You also have the right to complain to your local data protection authority.
Children
Laytr is not directed at children and collects nothing that would identify anyone, of any age. It has no accounts, no social features, no messaging, and no user-generated content from anyone but you.
International transfers
Your saved content does not travel, because it does not leave your device. Optional diagnostics, if you enable them, are processed by our providers on infrastructure that may be outside your country, under the transfer safeguards in their own agreements with us. The purchase record described under Purchases is processed by RevenueCat on infrastructure in the United States, under the transfer safeguards in its agreement with us. This website is served from a global content network, so the page you are reading may have been delivered from a server near you.
Changes to this policy
If this policy changes in a way that affects what leaves your device, the change ships with an app release and the App Store privacy label is updated at the same time. The effective date at the top of this page always reflects the current version.
Contact
support@laytr.app
Waitery Inc