Privacy Policy
The short version. Docora collects nothing. Your documents stay where you keep them, and the app ships sandboxed with no network entitlement, so it is technically incapable of making a network connection at all.
This Privacy Policy explains how Flowlab Apps (“we”, “us”) handles information in Docora (the “app”). It is written to be read, not to be survived.
1. What we collect
Nothing. There is no sign-up, no login, no email address collected, no advertising identifier, no usage analytics and no crash reporting. No SDK in the app reports your behaviour to anyone.
Flowlab Apps operates no server that holds your Docora data, because no such data ever reaches us. That is not a policy decision we could quietly reverse in an update — there is no backend to send it to.
2. What the app stores, and where
Everything Docora saves is stored on the device you are using it on.
| What | Where | Why |
|---|---|---|
| Documents you open, edit and save | Wherever you choose to keep them | They are your files; Docora reads and writes only the ones you pick |
| A recovery copy of each document with unsaved changes, password-protected if the document is | The app's sandbox container, readable only by you | So a crash or power cut does not cost you your work. It is deleted when you save, close, or undo back to the saved version |
| A bookmark to the original file of a document with a recovery copy | The same recovery record | So a restored document can be saved back where it came from |
| Signatures you create: typed, drawn or scanned | Images in the app's sandbox container, readable only by you | So you can place them again without recreating them |
| Recently opened files | macOS's recent-documents list for the app | To fill File → Open Recent |
| Preferences (annotation colours, line widths and fonts) | macOS user defaults on this Mac | To remember how you like your tools |
3. Permissions
Docora asks for the following, and nothing else. Every permission marked optional can be declined, and the app keeps working without it.
- Files you choose yourself — Docora runs in the macOS App Sandbox with four entitlements: app sandbox, user-selected file read/write, app-scope bookmarks (to reopen a document after a crash) and printing. It can open and save only files you pick in an Open or Save dialog, drag onto it, or open with it from Finder.
- The PDF engine — PDFs are read and written by LocalPDFEngine, a service inside the app whose only entitlement is App Sandbox. It has no file access of its own (Docora hands it each document you open) and no network access.
4. Network activity
None, and this is enforced rather than promised: neither Docora nor its PDF engine has the network entitlement, so macOS blocks any outgoing or incoming connection whether or not the code attempts one. There is no account, no sync and no server for a document to go to.
5. Third parties
No SDKs, advertising libraries, trackers, analytics or crash reporters. Docora is built on Apple's frameworks and on open-source PDF libraries compiled into the app (PDFium for reading and rendering, qpdf for saving and encryption, and the libraries they use), none of which makes a network connection. Their licences are listed under Docora → Acknowledgements.
We do not sell, rent, share or disclose your personal information, because we do not hold any of it.
6. What we declare to the app stores
Apple requires a privacy declaration alongside the app listing. These are the answers we give for Docora, reproduced here so you can check them against the rest of this policy.
| Store declaration | Our answer |
|---|---|
| Apple App Store — App Privacy | Data Not Collected. Nothing is collected from this app, by us or by anyone else, so no data type is linked to you and none is used to track you. |
| Account deletion | Not applicable — the app has no account. See Data & Account Deletion. |
7. Children
Docora is not directed at children under 13, and it collects no personal information from anyone of any age. Because nothing is collected, nothing is collected from children.
8. Additional notes
Text recognition uses Apple's on-device Vision framework; scanned pages are never sent anywhere. If you share crash data with app developers in System Settings, Apple may pass on reports about Docora crashes; they describe the state of the app, not your documents. Like other app data, Docora's container, including saved signatures, is part of your Time Machine backups. Docora does not request access to your camera, microphone, location, contacts, calendars or photo library.
9. Your rights and your choices
Privacy laws including the GDPR and the CCPA give you rights to access, correct, export and delete personal data a company holds about you. Flowlab Apps holds no personal data about Docora users, so there is nothing for us to produce, correct or erase on request.
You remain in full control of the data on your own device:
- Delete individual items from inside the app.
- On a Mac, moving the app to the Trash leaves its data behind. Delete saved signatures in Tools → Signatures…, and forget recent files with File → Open Recent → Clear Menu. Recovery copies go by themselves when you save or close a document, or when you choose Discard after a crash. To clear everything at once, quit Docora and delete its containers,
~/andLibrary/ Containers/ com. flowlabapps. Docora ~/, which hold your signatures, any recovery copies and your preferences. Documents you saved yourself are your own files and are untouched.Library/ Containers/ com. flowlabapps. Docora. Engine - Revoke any permission at any time from your device's system settings.
We do not sell personal information and never have. We do not share personal information for cross-context behavioural advertising.
10. Security
Because your data stays on your device, its security rests on your device's own protections — your passcode, your biometric lock and your operating system's storage encryption. Keep your device updated and locked.
11. Changes to this policy
If this policy changes, the revised version will be published at this address with a new date at the top. If a future version of Docora ever begins collecting data, this policy will be updated before that version is released, and the app will ask for your consent in-app.
12. Contact
Questions about this policy, or about privacy in any Flowlab Apps app:
- Email: dev@flowlabapps.com
- Support: flowlabapps.
com/ apps/ docora/ support/
We aim to answer within a few business days.