Privacy Policy
Last updated: June 25, 2026
This policy describes how Octodoge (“the app”), developed by Ilias Karim, handles information when you use the iOS app.
Summary
- Octodoge has no backend servers operated by the developer.
- The app communicates directly with GitHub using the official GitHub API.
- Your GitHub access token is stored only on your device in the iOS Keychain.
- Octodoge does not include analytics, advertising, or user tracking SDKs.
Information the app accesses
When you sign in with GitHub, Octodoge receives an OAuth access token and uses it to request data your account can access on GitHub. Depending on how you use the app, this may include:
- Your GitHub profile (for example login, avatar, follower counts, and repository counts)
- Public and private repositories you can access
- Commits, files, directory listings, branches, and forks
- Events and activity feeds
- Search results for users and repositories
- Star and follow status when you use those features
Octodoge requests GitHub OAuth scopes repo and user so it can show
private repositories and support starring and following. GitHub’s own privacy practices apply
to data held by GitHub. See
GitHub’s Privacy Statement.
Information stored on your device
- Access token: Stored in the iOS Keychain while you remain signed in. It is removed when you sign out.
- Cached images: Avatar and other images may be cached on your device to improve performance.
- In-memory state: Repository, user, and activity data is held in app memory while you browse and is not uploaded to developer-operated servers.
Information we do not collect
The developer does not operate servers that receive or store:
- Your GitHub credentials or OAuth tokens
- Repository contents
- Usage analytics or crash reports tied to your identity
- Contact lists, location data, or device identifiers for advertising
Third parties
The app sends network requests only to GitHub (github.com and
related GitHub API hosts) as needed to provide its features. OAuth authorization and token
exchange also occur with GitHub.
If you open linked websites (for example a user’s blog or homepage from a profile), those sites are governed by their own policies.
Children
Octodoge is not directed at children under 13, and we do not knowingly collect personal information from children.
Data retention and deletion
- Sign out in the app to delete your stored access token from the Keychain.
- Deleting the app removes locally stored app data, including the access token.
- Data stored by GitHub remains subject to GitHub’s policies and your GitHub account settings.
Security
Access tokens are stored using iOS Keychain services. All GitHub API communication uses HTTPS. No security method is perfect; you should protect your device and GitHub account as you would for any signed-in service.
Changes to this policy
This policy may be updated from time to time. The “Last updated” date at the top will change when it does. Continued use of the app after changes means you accept the revised policy.
Contact
Questions about this privacy policy? Email ilias.karim@icloud.com or visit the support page.