Privacy Policy

Last updated: March 26, 2026

PingKit ("we", "our", or "the app") is committed to protecting your privacy. This Privacy Policy explains how we handle information when you use PingKit for iOS and PingKit Agent for macOS.

Summary: PingKit does not collect personal data. All 19 diagnostic tools run entirely on your device — no accounts, no tracking, no analytics. AI features (Guardian subscribers only) send anonymous network data to our AI service at ai.pingkit.app for analysis — never personal information, browsing history, or account details. If you subscribe to PingKit Guardian, monitoring data syncs between your devices via your personal iCloud account — we never see it.

Information We Do Not Collect

PingKit does not collect:

We do not operate any servers that receive data from the app. There is no account system, no sign-up, and no login.

Local Data Storage

Both the iOS app and macOS Agent store data locally on your device using Apple's SwiftData framework:

You can delete all local data at any time by uninstalling the app.

iCloud Sync (PingKit Guardian)

If you subscribe to PingKit Guardian, PingKit Agent for macOS syncs monitoring data to PingKit on your iPhone via Apple's CloudKit framework. This data is stored in your private iCloud database — only devices signed into your Apple Account can access it.

Data synced via iCloud includes:

This data is encrypted in transit and at rest by Apple. It never passes through any server we operate. We cannot see, access, or retrieve your iCloud data. For details on how Apple handles CloudKit data, see Apple's Privacy Policy.

Push Notifications

PingKit Guardian uses Apple Push Notification service (APNs) to deliver alerts to your iPhone when the macOS Agent detects network events. These notifications are triggered by CloudKit subscriptions — when the Agent writes an alert to your private iCloud database, Apple's infrastructure delivers the notification. No notification data passes through our servers.

External Services Used by Diagnostic Tools

When you use certain diagnostic tools, the app connects directly to third-party services to perform the requested operation. These connections are made from your device, not through our servers:

Speed Test

Speed tests use Cloudflare's public speed test infrastructure (speed.cloudflare.com). Only bandwidth measurement data is exchanged — no personal information is sent.

IP Geolocation

When you use the IP Geolocation or "Locate My IP" feature, the app queries ipapi.co or ipwho.is to retrieve geographic and ISP information for the specified IP address. These services receive the IP address you are looking up.

DNS Lookup and Security Scan

DNS lookups may query Google Public DNS (dns.google) or Cloudflare DNS (cloudflare-dns.com) to resolve domain names and check DNS security. The domain name being queried is sent to these services.

Whois Lookup

Domain and IP ownership lookups query public RDAP servers operated by domain registries (such as Verisign, Public Interest Registry, and others). The domain or IP being queried is sent to these services.

Security Scan

The optional vulnerability check queries Shodan's InternetDB (internetdb.shodan.io), a public and free API that returns known open ports and vulnerabilities for a given IP address. Your public IP address is sent to this service during this check. The security scan also connects to captive.apple.com (Apple's captive portal detection endpoint) and may inspect TLS certificates on google.com to detect MITM interception.

AI Features (Guardian)

PingKit Guardian includes AI-powered features such as the chat assistant, security explanations, remediation guides, scan summaries, and device classification. When you use these features, PingKit sends the relevant network data (such as security findings, device information, or your question) to our AI service hosted on Cloudflare Workers AI.

What is stored:

What is NOT stored: Your chat messages, security scan results, network configuration, personal information, browsing history, or any data that could identify you personally. No personal information (name, email, or account details) is sent to our AI service. Your preferred device language is sent so responses can be provided in your language.

All Other Tools

Ping, traceroute, MTR, port scanning, LAN discovery, Bonjour browsing, SSL inspection, HTTP analysis, and Wake-on-LAN operate entirely on your local network or connect directly to hosts you specify. No third-party services are involved.

Location Permission

PingKit may request "When In Use" location permission on iOS. This is required by Apple to access Wi-Fi network information (such as your network's SSID and signal strength). PingKit does not read, store, or transmit your geographic location. The permission is solely used to retrieve Wi-Fi metadata via Apple's networking APIs.

Third-Party Services

In-App Purchases

Subscriptions are processed entirely by Apple through StoreKit. We do not have access to your payment information. See Apple's Privacy Policy for details.

Crash Reporting

PingKit uses only Apple's built-in crash reporting (available through Xcode). Crash reports contain technical diagnostic data (stack traces, device model, OS version) and are collected by Apple for App Store builds. No personal information or network diagnostic results are included. We do not use any third-party crash reporting services.

Children's Privacy

PingKit is not directed at children under 13. We do not knowingly collect information from children.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.

Contact Us

If you have any questions about this Privacy Policy, please contact us at:

[email protected]