Privacy Policy
The short version, in five points. The full policy follows. For the illustrated version, see how privacy works.
- Your clipboard history lives on your Mac, in a database in your Library folder. Turn sync off and it never leaves the machine.
- Sync uses your own private iCloud database, attached to your Apple Account. We cannot read it. There is no Copybar server holding your clips, because there is no Copybar server.
- Some things are never stored at all. Keys, tokens, passwords and credential-bearing connection strings are recognized and refused before they reach the database. Apps you exclude are never watched.
- The AI server can only read. It is off by default, bound to your own machine, and has no tool that writes, edits or deletes.
- Copybar sends anonymous usage counts, never content. One switch in Settings → Privacy turns them off. Exactly what is counted →
Last updated 16 September 2026.
Who we are
Copybar is made by Jaymin Rajgor, an independent developer. For anything in this policy, write to support@getcopybar.app.
What Copybar stores, and where
On your device
Everything you copy while capture is on: text, code, links, images, PDFs and references to files. It is stored in an SQLite database inside Copybar's own container on your Mac, alongside a search index and image thumbnails. Nothing in that database is sent anywhere unless you turn on iCloud sync.
In your iCloud
If you turn on sync, your clips are written to the private database of Copybar's iCloud container. That private database belongs to your Apple Account. Apple's terms and encryption govern it, we have no access to it, and no employee or contractor of Copybar can read it. Your iPhone and iPad read the same private database, which is how the same history appears on each device.
What is never stored
Sensitive-content blocking inspects copied text before it is written and refuses anything that looks like a credential: API key prefixes from common providers, personal access tokens, private keys, authorization headers and connection strings containing a password. Refused content is not written to disk, not synced and not visible to any AI tool, because it never existed in the database. You can also exclude any app entirely.
Usage statistics
Copybar sends anonymous, aggregated counts so we can tell which features are used, which errors people hit, and whether a release made things worse. They go to the public database of Copybar's own iCloud container. There is no third-party analytics SDK and no advertising network.
What is sent
- App lifecycle: installs, launches, version changes, session length as a coarse bucket.
- Onboarding steps viewed and completed, and whether Accessibility permission was granted.
- Capture counts by type (text, image, PDF, file) and a coarse category for the source app, such as "browser" or "editor".
- Feature use: panel opened, searches performed, items pasted, pins and pinboards created, settings changed.
- Sync error codes, crash and hang counts, and timing buckets.
- Purchase events: trial started, trial expired, paywall shown, purchase completed, cancelled or failed with a reason.
What is never sent
- Clipboard content, previews, or any part of what you copied.
- The names or bundle identifiers of the apps you copy from.
- File names, file paths or search terms.
- Your name, email address, Apple Account or iCloud user record.
- Any identifier that links your devices to each other, or that survives reinstalling the app.
- Your IP address is not used to identify you or stored against your events.
Your controls
Settings → Privacy has three controls. Usage Statistics turns sending off entirely. Reset Identifier discards the random identifier and generates a new one, breaking any link to earlier events. Export Diagnostics writes a file containing exactly what would be sent, so you can read it yourself before deciding.
AI access
Copybar can run a local server that lets AI tools on your Mac read your clipboard history. It is off until you turn it on. It listens only on 127.0.0.1, so nothing on your network or the internet can reach it. Requests must carry a token held in your Keychain, and Revoke rotates that token and disconnects every connected tool at once. The server exposes five tools, all of them read-only: list pinboards, read a pinboard, search history, list recent items, and fetch one item. Deleted items are not returned, and content that sensitive-content blocking refused was never stored, so it cannot be read.
Purchases
Payment is handled entirely by Apple. We never see your card details, billing address or Apple Account. We receive only the signed receipt that tells the app whether a purchase exists.
Data sharing
We do not sell, rent or share your data. There are no advertising partners, no data brokers and no third-party trackers in the apps or on this website. Apple acts as a processor for App Store purchases and for iCloud storage under its own terms.
Retention
Clipboard history stays until you delete it, until your own auto-delete or history-size settings remove it, or until you delete the app. Anonymous usage events are kept in aggregate and are not tied to a person, so there is nothing individual to retain or retrieve.
Your rights
Because Copybar holds no account and no personal data on any server we run, there is no profile for us to export, correct or delete. Your clipboard data is in your own hands: clear it in Settings → Privacy → Clear History, or delete the app to remove the local database. If you have a question about this, write to support@getcopybar.app.
Children
Copybar is a general-purpose utility and is not directed at children under 13. We do not knowingly collect personal information from children.
Changes
If this policy changes in a way that affects what is collected, the app will say so before the change takes effect, and the date at the top of this page will be updated.