VeloTract
← Back to Loft

Loft Privacy Policy

Effective date: July 20, 2026  |  Shanghai VeloTract Information Technology Co., Ltd.  |  contact@velotract.com

This Privacy Policy applies to the Loft app for iPhone, provided by Shanghai VeloTract Information Technology Co., Ltd. (上海轻引信息技术有限公司) ("we," "our," or "us"), the data controller. If you have any questions, contact us at contact@velotract.com.

1. On-Device Processing

Loft is a local-first reader. The Markdown text you paste and the files you open are processed entirely on your device. Our servers never receive your document content.

2. Information We Collect

Analytics and diagnostics in Loft are off by default and are only enabled with your explicit consent. The app is fully functional without them.

If you consent, the app collects:

  • Product interaction events associated with this app installation, such as content rendered, reading progress, and session duration
  • Performance timings
  • Controlled diagnostic results, such as a predefined render-failure category (never raw error text or document content)
  • Crash diagnostics, such as the exception type, signal, module/function symbols, and binary image names; exception messages are replaced with "[redacted]" and absolute file paths are stripped before upload
  • Coarse location (such as country or region) derived from the IP address of analytics requests — the app never uses Location Services or GPS
  • The request IP address used for coarse-location enrichment
  • Technical app, operating-system, device, locale, time-zone, network-type, screen-size, SDK-version, and random session metadata

Product-interaction, performance, controlled diagnostic, and crash events use predefined metadata only — a short-lived render UUID, template name, text length as a character count, durations, scroll percentage, a predefined render-failure category, redacted exception summaries, and the technical metadata listed above. These events never include Markdown content, raw error text, file names, paths, URIs, content hashes, or share targets.

This information is pseudonymous and processed on our behalf by a third-party analytics and diagnostics provider.

3. Installation Identifier

If analytics are enabled, events are associated with an app-generated random UUID that persists on this installation and links its analytics events together. It is not the IDFA or IDFV and is not linked to an account — Loft has no accounts. Withdrawing consent deletes this identifier from your device; if you consent again later, a new identifier is generated that is not linked to the previous one.

4. Processing & Retention

Analytics and diagnostic data is processed on infrastructure in the United States. We keep event metadata, the installation identifier, and request IP addresses only as long as they are needed for product improvement, and we delete them upon verified request (see Section 6).

5. No Tracking

Your data is never used for advertising, never sold, and never shared with data brokers. We do not engage in cross-company tracking.

6. Withdrawing Consent

You can withdraw your consent at any time in Settings. Withdrawal immediately prevents new analytics and diagnostic events from being recorded, and the app deletes its unsent on-device analytics data — the queued events, caches, and the installation identifier are removed from this device. Only requests that were already sent before withdrawal and cannot be aborted may finish; nothing unsent is kept for a restart or a later re-consent. Withdrawal does not automatically delete data already sent. To request deletion of previously sent data, contact us at contact@velotract.com; because Loft has no accounts, we may ask for approximate event timing or installation details needed to locate the records.

7. Contact & Effective Date

If you have questions about this Privacy Policy or wish to request deletion of previously sent analytics data, please contact us:

Shanghai VeloTract Information Technology Co., Ltd.
Email: contact@velotract.com
Effective date: July 20, 2026