01 What data Tenny stores
Tenny stores the subscription information you enter:
- Subscription names
- Prices and billing cycles
- Start and renewal dates
- Categories and statuses
- Icons fetched from brand services or chosen by you
Tenny does not include behavioral analytics, ad tracking, or behavior profiling. Community pricing is off by default and only contributes prices when you enable it.
02 Where your data lives
Tenny stores subscription data using Apple’s SwiftData framework. On iPhone and iPad, Apple Data Protection protects app data when the device is locked. On Mac, FileVault protects app data when full-disk encryption is enabled. Tenny relies on Apple’s platform-level protections rather than custom encryption.
03 iCloud sync
When iCloud is available for your Apple ID, Tenny syncs subscription data through your private Apple CloudKit database. Apple encrypts data in transit and at rest and controls access through your signed-in Apple ID. Tenny works offline and resumes syncing when iCloud becomes available.
04 Community pricing
Community pricing is off until you enable it in Settings. When enabled, Tenny can contribute selected details from eligible subscriptions to an Apple CloudKit public database:
- Canonical service and plan identifiers
- Price in integer minor currency units
- Currency and original billing interval
- Country code
- Purchase channel, price type, and verification category when known
- Observation and last-confirmed timestamps
Community records do not contain your name, email, username, notes, renewal dates, payment details, transaction descriptions, IP address, device identifiers, or complete subscription collection. A one-way, pricing-group-specific record name helps enforce one active contribution per Apple account and pricing group. CloudKit creator metadata can associate a public contribution with your Apple account, so contributions are not anonymous.
Tenny never exposes individual reports. It shows an aggregate only after enough recent contributors agree, keeps markets and billing intervals separate, reduces stale reports, and excludes suspicious outliers. Community prices are estimates, not guaranteed official retail prices.
05 On-device AI
Local AI Smart Add and pasted receipt imports use Apple’s on-device Foundation Models on supported iPhone and iPad devices. Entered text is processed on your device, not sent to a Tenny server or a cloud model. Pasted source text is discarded when its import review closes.
06 Icon fetching
When you ask Tenny to suggest or search for an icon, it may contact Brandfetch or Logo.dev using the subscription name or a curated brand domain derived from that name. Raw website URLs you type are not forwarded. Prices, renewal dates, notes, and your subscription collection are not included. Like other web services, the provider receives normal network connection information.
07 Exchange rates
Tenny requests exchange rates from Frankfurter at api.frankfurter.dev. The request includes only the EUR base currency, with no subscription data or device identifier. The service receives normal network connection information, such as your IP address.
08 Purchases
Apple processes Tenny Pro purchases through the App Store. Tenny receives the StoreKit entitlement needed to unlock features but does not receive or store your payment-card details.
09 Tracking and third-party sharing
Tenny does not use analytics or crash-reporting SDKs, advertising frameworks, or cross-app tracking. It does not sell personal data or share personal subscription records. Personal records stay on your device and in your private iCloud database. Minimal community price observations use Apple CloudKit. Optional icon lookups and exchange-rate requests use the services described above.
10 Export and deletion
You can export subscription data as a CSV file at any time. You can delete individual subscriptions or reset all data inside Tenny. Deleted personal data is removed from the device and synced private database, and deleting a subscription deactivates its related community-price observation. Turning community pricing off also deactivates related contributions from this device.
11 Contact
For questions about this policy or your data, use the Tenny support page.
