Privacy Policy for Keycap
Effective Date: August 29, 2026 Last Updated: August 29, 2026
Keycap is a typing trainer for macOS, built by Lucky Ali Khan ("we," "our," or "us"). This policy explains what Keycap does with your information.
The short version: Keycap collects nothing and sends nothing. It has no accounts, no servers, no analytics, and no third-party code of any kind. Everything it records stays in its own folder on your Mac. The sections below say exactly what that means, and how you can check it for yourself.
1. Information We Collect
None.
We operate no servers and receive no data from your use of Keycap. There is nothing for us to collect, because nothing is transmitted to us.
This is enforced, not just promised
Keycap runs inside Apple's App Sandbox and holds exactly two entitlements: the sandbox itself, and
com.apple.security.network.client. The second one exists for a single reason — StoreKit needs it
to reach the App Store when you buy or restore the app. Keycap makes no network requests of its
own: no analytics endpoint, no crash reporter, no content server, no third-party SDK that could
open a connection behind one.
You do not have to take our word for either half of that. You can list every permission the app holds:
codesign -d --entitlements - /Applications/Keycap.app
and you can watch what it actually does with them — Little Snitch, LuLu, or macOS's own firewall will show you that nothing leaves this Mac except a purchase.
Information We Do NOT Collect
- We do not collect personal information.
- We do not require or offer an account.
- We do not use analytics, telemetry, crash reporting, or advertising.
- We do not use cookies, advertising identifiers, or any device identifier.
- We do not track you across other apps or websites.
- We do not include third-party SDKs. Keycap depends on no code but Apple's own frameworks and its own.
2. What Keycap Stores On Your Mac
Keycap keeps a record of your typing so it can teach you. All of it lives in the app's sandbox container on your Mac. None of it is transmitted, backed up to us, or shared.
What is stored
- Run results. For each completed typing run: the date, which track and level it belonged to, what kind of material it used, and the resulting speed, accuracy, consistency, duration and character count.
- Per-key and per-pair statistics. Aggregate counts of how often each key and each two-key sequence was typed correctly or incorrectly. These are what let the app aim later drills at the keys you keep missing.
- Generated practice passages. Prose written on your Mac by Apple Intelligence, kept so a later run does not have to wait for it.
- Your settings. Sound on or off, which key switch, volume, whether the on-screen keyboard is shown, your level, the most recent practice subject you named, and which level introductions you have read.
What is deliberately NOT stored
- Not the keystrokes you type. The record of individual keypresses exists only in memory while a run is in progress and is discarded when it finishes. Nothing kept on disk can reconstruct what you typed.
- Not the text of your practice passages, once used. A run's history records the kind of
material it drew on. A run about a subject you named is filed as
"Topic"— the subject itself is never written into that history.
This is enforced by the shape of the stored data rather than by policy: the fields required to reconstruct your typing do not exist in it.
Deleting it
Everything Keycap stores is inside its sandbox container. Deleting the app removes it. You may also delete the container directly:
~/Library/Containers/com.papyrus.keycap/
There is no account to close and no request to send us, because we hold nothing.
3. Apple Intelligence
Keycap uses Apple's Foundation Models framework to write practice prose. When you name a subject to type about, that subject is passed to the on-device language model built into macOS.
- The subject you name and the prose that comes back are processed on your Mac.
- Neither is sent to us. As described in Section 1, the app's only network use is StoreKit's, and no writing you do or subject you name is ever part of it.
- The subject you most recently used is saved as a preference so the app can offer it again. Your run history stores only that the material was a topic, never which one.
- If Apple Intelligence is unavailable — unsupported Mac, switched off, or still downloading — Keycap says so and falls back to its bundled word list. It never falls back to a cloud model or any other service; there is no remote writer to fall back to.
Apple's own handling of on-device model features is governed by Apple's Privacy Policy.
4. Sharing a Result
Keycap can produce a shareable image summarising a run — your speed, accuracy, consistency, and a keyboard coloured by which keys you hit. This happens only when you press Share.
The image is generated in memory and handed to the standard macOS share sheet. You choose where it goes. Once you send it to another app or service, that destination's own privacy policy governs what happens to it. Keycap is not involved and keeps no copy.
The image contains no personal information beyond the run statistics visible on its face.
5. How We Use Your Information
We do not use your information, because we do not receive any.
The data stored on your Mac is used locally, by the app, to:
- Show your results and progress over time
- Decide which keys and pairs your next drill should aim at
- Decide which level you are on and whether its requirements are met
- Remember your settings between launches
We do not sell, rent, or trade data. We do not build advertising profiles. We do not share data with third parties, because there are no third parties.
6. Diagnostics Sent To Apple
Keycap contains no crash-reporting code of its own. However, macOS itself may send crash and usage reports to Apple, and may share them with developers, if you have chosen to allow that in System Settings › Privacy & Security › Analytics & Improvements.
That mechanism belongs to Apple, not to us. If you have enabled it, we may see aggregate crash reports containing technical information about the crash — never the content of your typing. You can turn it off at any time in that same System Settings pane.
7. Data Security
The data Keycap stores never leaves your Mac, so it is protected by the security of your Mac itself:
- It lives inside the App Sandbox container, which macOS isolates from other applications.
- If you have FileVault enabled, it is encrypted at rest along with the rest of your disk.
- There is no transmission to secure, no server to breach, and no credential to steal — we run no service and the app has no account. The only connection it ever opens is StoreKit's to the App Store, which carries a purchase and nothing about your typing.
8. Your Rights
Privacy laws including the GDPR, the CCPA and India's DPDP Act grant you rights over personal data that a company holds about you — to access it, correct it, delete it, port it, or object to its processing.
We hold no data about you, so there is nothing for us to disclose, correct, export or erase. The data described in Section 2 is on your own Mac, under your own control, and you can inspect or delete it at any time without asking us.
The paragraphs below identify us formally for each regime, as those laws require.
For European Union and UK residents (GDPR)
- Data controller: Lucky Ali Khan, support@getkeycap.app
- Personal data processed: None. We are not a controller or processor of any personal data arising from your use of Keycap, because none is transmitted to us.
- Lawful basis: Not applicable — no processing takes place.
- International transfers: None occur.
- Your rights: Access, rectification, erasure, restriction, portability and objection are available in principle; in practice there is no data held to which they could apply. You retain the right to lodge a complaint with your national supervisory authority.
For California residents (CCPA/CPRA)
- Categories of personal information collected: None.
- Sale or sharing: We have never sold or shared personal information, and we do not. No "Do Not Sell or Share My Personal Information" link is required, as there is nothing to opt out of.
- Right to know and delete: We hold no personal information about you to disclose or delete.
- Non-discrimination: We do not discriminate against anyone for exercising these rights.
For residents of India (DPDP Act)
- Data fiduciary: Lucky Ali Khan, support@getkeycap.app
- Personal data processed: None. No consent is sought because no personal data is collected.
- Data principal rights: Access, correction, erasure, nomination and grievance redressal are available in principle; there is no data held to which they could apply.
- Grievances: Contact us at support@getkeycap.app.
9. Children's Privacy
Keycap is a general-audience app. It is not directed to children under 13.
It collects no personal information from anyone, of any age, so no information can be collected from a child. There is nothing for a parent or guardian to review, delete, or refuse — no data about any user reaches us. If you have questions, contact us at support@getkeycap.app.
10. Changes to This Privacy Policy
We may update this policy — most likely if Keycap ever gains a capability it does not have today, such as cloud sync or a network feature of its own. If that happens we will:
- Update the "Last Updated" date above
- Publish the revised policy at https://getkeycap.app
- Describe the change in the app's release notes
Continued use of Keycap after a change is posted constitutes acceptance of the updated policy.
11. Contact Us
Questions about this policy or about Keycap's data practices:
- Email: support@getkeycap.app
- Developer: Lucky Ali Khan
- Website: https://getkeycap.app
Keycap