Privacy Policy
Last updated: May 25, 2026Who runs Desktap
Desktap is built and operated by Mikhail Zhukov, an individual software developer based in Cyprus. You can reach me at support@desktap.app. For the purposes of the EU General Data Protection Regulation, I am the data controller.
The short version
Desktap is designed to keep your data on your own devices. There is no Desktap server. The iOS app and the Mac agent talk to each other directly over your local Wi-Fi network. I do not collect analytics, telemetry, crash reports, or any personal data from the apps themselves.
What stays on your devices
- Button configurations, scripts, and pages live on your iPhone, iPad, and Mac. They are never sent to me.
- Logs written by the Desktap Mac agent are stored locally on your Mac and are not transmitted anywhere. You can delete them at any time.
- The authentication token the agent generates (
~/.desktap-mcp-token) stays on your Mac with file permissions0600. It is never uploaded anywhere.
Local network and discovery
To pair your iPhone or iPad with your Mac, the apps broadcast their presence on your local network using Bonjour (mDNS), an Apple system service. This advertises the device's hostname to other devices on the same Wi-Fi network. I do not see this traffic — it stays on your LAN.
iCloud sync
If you enable iCloud sync, your button configurations are stored in your personal iCloud account through Apple's iCloud Drive. This data is governed by Apple's privacy policy. I do not have access to your iCloud data.
In-app purchases
Subscriptions and the lifetime purchase are processed entirely by Apple through the App Store. I never see your payment details, billing address, or card information. Apple shares only anonymous, aggregated sales statistics with me — no personally identifiable information.
AI assistants and MCP
Desktap supports the Model Context Protocol (MCP) so that AI assistants — for example, Claude Desktop — can create and update buttons for you. A few things to know:
- The MCP bridge runs locally on your Mac. The AI assistant talks to the Desktap agent through a local connection on your machine.
- However, the messages you send to the AI assistant — your prompts and any configuration data it reads or writes on your behalf — are sent to that assistant's servers as part of how it normally works. That is governed by the AI assistant's own privacy policy, not mine.
- If you don't want this, simply don't enable MCP in the agent — Desktap works fully without it.
If you contact me
When you email support@desktap.app, your message and email address are processed by my email provider as part of normal email delivery. Depending on the provider, this may involve processing on servers located outside the European Economic Area; in such cases, Standard Contractual Clauses or other safeguards permitted by the GDPR apply to the transfer.
I keep support correspondence for up to 24 months after our last exchange — long enough to recognise repeat issues and reference prior bug reports — and delete it afterwards. You can ask me to delete your messages sooner at any time by writing to the same address.
Children
Desktap is not directed at children under 13. I do not knowingly collect any data from children.
Legal basis for processing
Where I process your personal data, I rely on the following legal bases under the GDPR:
- Performance of a contract (Art. 6(1)(b)) — for delivering Desktap to you. App Store purchases are processed by Apple, who is the seller of record.
- Legitimate interests (Art. 6(1)(f)) — for handling your support emails and keeping a minimal record of bugs and feature requests, so I can improve the app and recognise repeat issues. You can object to this at any time by emailing me.
- Compliance with legal obligations (Art. 6(1)(c)) — for retaining records required by tax or accounting law, where applicable.
If I ever add a feature that would require your consent (Art. 6(1)(a)) — for example, opt-in analytics — I will ask for it in the app before collecting any data.
Your rights
Because I don't collect personal data through the apps, there is generally nothing to access, correct, or delete on my side. If you've contacted me by email and want me to remove that correspondence, just write to support@desktap.app.
If you are in the EU, you have the rights set out in articles 15–22 of the GDPR — access, rectification, erasure, restriction, portability, and objection — and you can exercise any of them by emailing the same address. I will respond within one month, as required by Article 12(3).
You also have the right to lodge a complaint with a data-protection supervisory authority. My supervisory authority is the Office of the Commissioner for Personal Data Protection of the Republic of Cyprus (dataprotection.gov.cy). You may also complain to the supervisory authority in your country of residence.
Third-party services
Desktap does not include any third-party analytics, advertising, tracking SDKs, or crash-reporting services. The only third parties involved are Apple (App Store, CloudKit, iCloud) and — only if you choose to connect one — your AI assistant.
About this website
This website (desktap.app) is hosted on GitHub Pages with Cloudflare in front of it. Those providers may keep standard server access logs (IP address, user-agent, requested URL, timestamp) for short periods to deliver the site and protect against abuse. I do not run any analytics, cookies, or tracking on this site, and I do not have access to those infrastructure logs.
Changes
If this policy changes, I will update the date at the top of this page and post the new version here. If a change materially affects how I handle your data, I will note it in the next app release.
Contact
Questions, requests, or anything else — support@desktap.app.