Privacy
Last updated: 2026-08-06. Placeholder — replace before public alpha.
What stays on your Mac
- The list of installed apps, their versions, Team IDs, and paths.
- Cached Homebrew cask metadata and downloaded update artifacts.
- Run journal (JSONL) at
~/.local/state/mup/.
What we send off-device
- Sentry (crash + error reports): when an update fails, we send the error code, error class, source (homebrew / sparkle / macAppStore), and the affected app's bundle ID for grouping.
$HOME and $USER are scrubbed from all messages. Opt-out in Settings > Advanced.
- TelemetryDeck (aggregate analytics): counts only — outcome, source, error class, anonymized macOS version. No bundle IDs. No user identifier. No paths. Opt-out in Settings > Advanced.
- Update sources: HTTPS requests to
formulae.brew.sh (Homebrew cask index), Sparkle appcast URLs declared by each app, itunes.apple.com/lookup for App Store metadata, and the actual vendor download URLs when you click Update.
What we never send
- Your username, hostname, or Apple ID.
- Full file paths.
- Contents of any file you're updating.
- Any usage analytics tied to your identity.
Retention
- Sentry: 90 days.
- TelemetryDeck: 12 months aggregated.
- Local journal + backups: never rotated; you delete them.
Contact
privacy@macappupdate.com
← Home