This policy describes what the Breaksheet iOS app actually does. It is written from the shipping source, not from a template. Breaksheet does not run its own account servers. There is no Breaksheet analytics backend.
On-device store
Casts, specimens, breaks, plants, letterhead, technician name, glove mode, the audit trail, and the local company cache live in SwiftData on this iPhone or iPad. The store is named breaksheet. CloudKit is not attached to that SwiftData container. Demo seed and solo-backup rows stay on the device and are never enqueued for sync.
Photos and location
Camera and photo-library access are used only when you attach a cylinder-set photo. Location is used only when you pin a pour. Coordinates can be reverse-geocoded by Apple to a place name and address. Those values are saved on the set on this device.
If you have not joined a company, photos and GPS stay on the device.
If you have joined a company and you save a live (non-demo) set, the snapshot includes latitude, longitude, place name, and address when present. A JPEG may also upload as a CloudKit CompanyDocumentAsset named cylinder-photo-{uuid} in the company zone. Photo upload is best-effort and does not block saving the set on the phone.
Opening a map from a field card hands the pin to Apple Maps. That happens only when you tap.
Company sync (Apple iCloud / CloudKit)
Company share uses Apple iCloud and the CloudKit container iCloud.com.airdoseqc.app only. There is no second Breaksheet container.
Join looks up a public InviteIndex record for the company code, then accepts the company CKShare when a share URL is present. Live cylinders, breaks, plants, and mixes ride in a CompanySnapshot in the shared company zone. Apple — not Breaksheet — hosts that iCloud data. People in the same company share who can already open that share (for example Entraine on the plant side) can read and write the same snapshot.
The public invite lookup uses the join code you type. It does not publish your lab letterhead or demo data.
PDFs, mail, and sharing
Client PDFs, QR label images, and Mail compose run only when you tap Share, Mail, or an equivalent control. Breaksheet does not email reports in the background. If Mail is not configured, the app offers the system share sheet instead.
What we do not use
The app binary links Apple frameworks only (SwiftUI, SwiftData, CloudKit, Core Location, MapKit, Photos, MessageUI, PDFKit, and the system share sheet). There are no third-party analytics, advertising, crash, or tracking SDKs. There is no ATT tracking prompt. This privacy site has no JavaScript, no cookies, and no third-party fonts or scripts.
Children
Breaksheet is a construction-materials testing tool for adult lab and field technicians. It is not directed at children under 13. We do not knowingly collect personal information from children.
Deletion
- Delete the app from the iPhone or iPad. That removes the on-device SwiftData store, including photos, GPS, audit rows, and letterhead on that device.
- Leave company in Settings. That wipes that company’s snapshot rows on this phone. Demo seed and solo-backup stay. It does not delete the company snapshot from iCloud.
- iCloud / company share. Shared company records live in the CloudKit share owned by the company. A company admin, or the iCloud account that owns the share, stops sharing or deletes those records in iCloud. Breaksheet cannot remotely wipe another person’s iCloud.
Changes
If this policy changes, we will update this page and the effective date. Material changes will also be noted in the app’s Settings About card when we ship a build that depends on them.
Contact
Privacy questions: privacy@thistledew.app. Product support: support@thistledew.app.