KURSA LABS · LONECODE
Privacy Policy
Last updated: 21 July 2026
Overview
LONECODE is a native iOS app that connects to a self-hosted Hermes server (hermes-webui) that you or your organization controls. KURSA LABS does not operate a cloud account, chat backend, or user database for LONECODE. The app is a client for your server.
Data you provide
- Server URL and password — stored in the iOS Keychain on your device to authenticate with your Hermes server.
- Chat messages and attachments — sent over HTTPS to your Hermes server when you use the app. KURSA LABS does not receive or store this content on our servers.
- Photos and files — when you attach media, the app reads items you select and uploads them to your Hermes server.
Data stored on your device
- Local chat cache — SwiftData cache for faster loading and offline reading of previously synced conversations.
- App preferences — theme, notification toggle, and similar settings in UserDefaults.
- Share extension handoff — shared URLs, text, or files may be written to a shared App Group container until the main app opens.
- Push device token — if you enable notifications, a device token is registered with your Hermes server so it can send completion alerts via Apple Push Notification service (APNs).
What we do not do
- No advertising or cross-app tracking.
- No third-party analytics or advertising SDKs.
- No sale of personal data.
- No KURSA-operated cloud that stores your chats.
Notifications
If you allow notifications, LONECODE may show alerts when an agent reply finishes or a scheduled task completes. Alerts are triggered by your Hermes server (remote push) or, when remote push is unavailable, by local notifications on your device. You can disable notifications in the app or in iOS Settings.
Encryption
LONECODE uses standard HTTPS/TLS to communicate with your server and standard iOS Keychain encryption for credentials. The app does not implement additional non-exempt encryption beyond what is provided by Apple and the operating system.
Children
LONECODE is not directed at children under 13. We do not knowingly collect data from children.
Changes
We may update this policy. The “Last updated” date at the top will change when we do. Continued use of the app after changes constitutes acceptance of the updated policy.
Contact
Questions about this policy: founder@kursalabs.com