Privacy policy

Privacy Policy

Effective: September 2, 2026 ยท Applies to the Astronomical macOS application.

The short version

Astronomical runs language, vision, and image models entirely on your Mac. Your prompts, conversations, documents, and images are processed on your device and are never sent to us โ€” we operate no servers that receive them. The app has no accounts, no sign-in, no advertising, and no in-app analytics.

What never leaves your Mac

  • Every inference request: prompts, model outputs, images, and documents you work with.
  • Your configuration, including the memory ceiling you set.
  • Prompt caches and model caches stored on your disk.

Network requests the app makes

The app makes a small number of network requests, none of which involve your content:

  • Model downloads. When you choose to install a model, the app downloads model files from public model repositories, such as Hugging Face. The repository sees a standard request for publicly published files. Downloading a model is always an action you initiate.
  • Update checks. Builds distributed outside the Mac App Store check a signed update feed to tell you when a new version exists. The feed operator sees standard web requests for the update description. App Store builds receive updates exclusively through the App Store and make no such request.
  • Local API. The app serves a local interface on this Mac only, at a loopback address. Requests to it never leave your machine.

Diagnostics and crash reports

The app itself contains no crash reporting and no usage analytics.

  • Mac App Store builds. If you have opted in (in System Settings) to sharing diagnostics and analytics with developers, Apple collects crash reports and aggregated usage statistics through Apple's own systems and shares them with us under Apple's privacy protections. We never receive your content, and individual identification is prevented by Apple's aggregation.
  • Direct-distribution builds. Crash reports stay on your machine in the system crash reporter. They are sent nowhere unless you choose to attach one yourself when contacting support.

What we do not do

  • We do not collect, sell, or share personal data. There is no data to sell: no accounts exist.
  • We do not use advertising identifiers, device fingerprinting, or cross-app tracking.
  • We do not read files outside the locations the app uses for models, caches, logs, and your saved outputs.

Data stored on your Mac

The app stores downloaded model files, caches, logs, and your configuration on your disk in its designated application-support locations. You can remove everything by deleting the app's data locations or uninstalling the app; nothing is retained remotely.

Third-party components

Astronomical is open source. Direct-distribution builds embed the open-source Sparkle update framework, described above. App Store builds use Apple's built-in update mechanism. The full component list ships inside the application under Third-Party Notices.

Changes to this policy

If Astronomical's data practices ever change โ€” for example, if an opt-in analytics feature ships โ€” this page will be updated first, and the App Store privacy label will be updated in the same release.

Contact

Questions about this policy: Support.

Privacy policy for the Astronomical macOS application, distributed on the Mac App Store and directly. Last updated: September 2, 2026.