for OrbitSSH
Last updated: 21 September 2026
Polski · English
This document is a translation. The Polish and English versions are intended to make this policy understandable. A difference in interpretation cannot limit mandatory rights or the right to receive information in a language required by applicable law.
OrbitSSH does not require an account and does not use analytics, tracking or advertising. Your server details, credentials and session history stay on your device, and the app connects to your servers directly, without a publisher proxy. The optional “Other Apps” catalogue makes a limited HTTPS connection described in section 3c.
The data controller for the limited processing described below is ADAKS MEDIA DANIEL DOBROWOLSKI, Mściszów 112B, 59-800 Lubań, Poland (VAT ID PL6152062671), reachable at adaks.media@gmail.com.
The publisher's processing is limited to handling voluntary support email and the technical operation of the optional “Other Apps” catalogue, as described below.
We have not appointed a Data Protection Officer. The contact address above covers all data-protection matters.
The data listed below is stored on your device only. It is not transmitted to the publisher or synchronised to iCloud. The exception is the language code sent only when you open the optional “Other Apps” catalogue, as described in section 3c; it is not an account profile or server setting.
| What | Where | Why |
|---|---|---|
| Server entries: label, hostname, port, username, group, starting directory, startup command, tmux preference | App database on device | So you do not retype them |
| Passwords, private keys and key passphrases | iOS Keychain, marked non-synchronisable | To authenticate to your servers |
| Server host-key fingerprints | iOS Keychain, marked non-synchronisable | To warn you if a server's identity changes, which can indicate interception |
| Connection history: host, port, username, start and end time, duration | App database on device | To show your recent sessions |
| Snippets: name and command text | App database on device | Saved commands you created |
| Settings: theme, font, keyboard layout, dictation rules, language, accent colour | App preferences on device | Your preferences |
Credentials are stored in the protected iOS Keychain and retrieved into the app's memory only as needed to authenticate to a server. They are written with iCloud Keychain synchronisation explicitly disabled, so they exist on the one device you entered them on and nowhere else. Exporting your server list does not include passwords or keys.
The app can make the connections below. Which ones occur depends on the features you deliberately use.
When you connect, OrbitSSH opens a direct, encrypted SSH or SFTP connection from your device to the address you entered. We operate no proxy, relay or intermediary. We do not see your credentials, your commands, your files or your session output, and we could not: there is nothing of ours in the path.
What happens on those servers is governed by whoever runs them — which, in the intended use of this app, is you or your employer.
At launch, OrbitSSH asks Apple's public app-lookup endpoint whether a newer version of OrbitSSH exists. The request contains the app's bundle identifier and your App Store country. It contains no personal data, no identifier of you or your device, and nothing about your servers. If the request fails, the app carries on in silence. Optional dictation is provided by the Apple system service configured on your device. OrbitSSH neither downloads nor manages speech models and does not start network speech recognition for this feature.
When you open the optional “Other Apps” catalogue, OrbitSSH may connect to dobrysoftware.com over HTTPS to download the catalogue and app icons. The catalogue request includes the language code selected in the app so that descriptions can be returned in that language. Handling the connection requires processing the IP address and technical request data. The catalogue request does not include your server details, credentials, commands, session history or transcripts. Technical data from these requests is used only to handle them in real time and is not retained after handling is complete.
| Permission | What it is used for |
|---|---|
| Microphone | Dictation into the terminal. Speech recognition runs entirely on your device. Audio is never uploaded anywhere — not to us, not to Apple, not to any third party. |
| Speech Recognition | Optional Apple Dictation. The app asks for system authorisation only when you start this feature and requires on-device recognition. |
| Local network | Reaching SSH servers on your own network — a home server, a NAS, a Raspberry Pi. The app does not scan or enumerate your network; it connects to addresses you type. |
| Face ID / Touch ID | Optional app lock. Biometric matching is performed by iOS. OrbitSSH is told only whether it succeeded and never receives biometric data. |
| Notifications | Optional alert when a running command goes quiet. Notifications are generated locally on the device. There are no push servers and no device tokens. |
Apple Dictation transcribes dictated speech on your device. If you enable smart formatting and your hardware supports Apple Intelligence, the transcript may additionally be rewritten by Apple's on-device language model. These features do not send the text to us.
Server data, credentials, commands, session output and transcripts are normally stored and processed on your device. The app does not send them to the publisher.
If you contact the publisher directly, for example by email for support, the publisher processes your email address and message content only to handle the correspondence. Apple may process technical connection data for its own services and apply its own privacy policy.
You control microphone, Speech Recognition and notification permission in iOS Settings. You can withdraw system permission at any time.
The safeguards below follow from how the app is built, not from a promise:
No technical measure is absolute. The safety of your data also depends on the device itself — its passcode, an up-to-date system, and who has physical access to it.
App data remains locally on your device, so you remain in control of it:
For data you voluntarily provide in an email, you may exercise your GDPR rights by contacting us at the address in section 1.
If you believe your data-protection rights have been infringed, you may lodge a complaint with your supervisory authority (the President of the Personal Data Protection Office (UODO), ul. Stanisława Moniuszki 1A, 00-014 Warsaw, Poland — uodo.gov.pl).
We do not retain app data or technical catalogue-request data on publisher servers after handling a request. Data on your device remains until you delete it individually or through “Reset App”. Email sent voluntarily remains in the mailbox for as long as needed to handle the correspondence and, where necessary, to establish, exercise or defend legal claims.
OrbitSSH is a system-administration tool for a technical audience. It is not directed at children and we do not knowingly collect app data from anyone, including children.
OrbitSSH does not transmit your server details, credentials, session history or transcripts to the publisher. SSH/SFTP connections you initiate go directly to servers you choose. If you voluntarily contact us by email, that correspondence is processed under the terms of the email service used.
The app is distributed through the App Store. Any payment, invoice and refund is handled entirely by Apple — we have no access to your payment data and store none of it. Downloading and updating the app is subject to Apple's privacy policy. Apple gives us no data that identifies you.
If the app starts doing something this policy does not describe, this policy will be updated before that version ships, and the date at the top will change.
The Polish and English versions are intended to make this policy understandable. A difference in interpretation cannot limit mandatory rights or the right to receive information in a language required by applicable law.
Questions about this policy: adaks.media@gmail.com.
OrbitSSH · Privacy Policy · ADAKS MEDIA DANIEL DOBROWOLSKI