Privacy policy
Last updated 14 September 2026
This notice covers the locally installed SpecDeck plugin, the companion iPhone app, this website and information you deliberately send as support or feedback.
Who is responsible
SpecDeck is operated by Nicholas Runcie, the individual data controller for the support, feedback and website processing described in this notice. “We” and “us” refer to Nicholas Runcie.
Contact: support@specdeck.org.
Using the local plugin
SpecDeck is installed and run in your chosen agent environment. Ordinary use of the plugin does not send your files or generated content to us. We do not operate a service that collects or stores your file library.
The plugin reads and writes files in the environment where you run it, including working files, generated documents and saved comments. Your chosen agent may send file content, images or tool results to its model provider or other connected services. Those services handle information under their own terms, settings and privacy notices. A locally installed plugin does not mean that your entire agent workflow stays on your device.
You control the files, agent environment, exports and backups. Sending a result to another device or service does not send it to us unless you deliberately choose us as the recipient.
The iPhone app
The companion app stores imported packages, associated content and metadata, collections, recently viewed items, preferences and saved comments locally. It requires no SpecDeck account and does not automatically upload your library to us or provide developer-operated cloud sync. It has no advertising, tracking SDKs or independent analytics service.
Importing stores a local copy; your chosen file provider may download the original from cloud storage. Sharing creates a temporary export and opens the system share sheet, where you choose the destination. Package exports contain their content and metadata, not only what is visible on screen. Separately saved comments are exported separately, with their associated context.
Removing an imported item may leave separately saved comments, original files and exports. Temporary exports may remain until cleared by the system or removal of the app. Deleting the app removes its local data; offloading preserves it. Backups are managed separately through device and provider settings, and restoring a backup may restore app data. We cannot remotely retrieve or delete files held only in your environment, or copies you have shared with others.
Support and feedback you send us
We receive your message, contact details and attachments when you explicitly send them to us. We use them to respond to enquiries, reproduce problems, test fixes and improve SpecDeck. Only material deliberately submitted to us is used in this feedback workflow; it does not give us access to other files you use with the plugin or keep in the iPhone app.
We retain the minimum technical material needed for debugging, testing and improvement, removing unnecessary personal information. Contact details and correspondence are used where needed to respond and follow up. We do not publish submitted feedback or files.
Please send only the information needed to explain the issue, and only files you are entitled to share for these purposes. Remove unnecessary personal details and confidential information before sending.
Email and support tools
Support email is received through IONOS Mail Basic and forwarded to the developer’s University-managed email account for handling support enquiries. The developer handles support personally; email services also process and store messages as part of providing that service.
We may use OpenAI’s Codex service through the developer’s personal ChatGPT account to review submitted files and technical material for troubleshooting, testing and improvement. This does not include records supplied to us through TestFlight. Content made available to Codex may be processed by OpenAI. The account’s model-training setting is disabled. This does not mean that OpenAI never processes or retains that content. See OpenAI’s Codex data controls and OpenAI’s privacy policy.
OpenAI processes information in the United States and other countries outside the UK. Its privacy policy describes reliance on adequacy decisions and, for other destinations, standard contractual clauses with the UK transfer addendum. You can request information about those safeguards from OpenAI at privacy@openai.com, or contact us with questions about our use of the service.
Why we use personal information
We rely on our legitimate interests in responding to enquiries, investigating faults and testing and improving SpecDeck for the necessary personal information in support and beta feedback. We also have a legitimate interest in delivering and securing this website. We do not need unrelated personal information for technical testing. Providing feedback and attachments is voluntary; without enough information about a problem, we may be unable to investigate it.
How long we keep submitted information
We keep submitted technical material while it is needed for debugging, testing and improving SpecDeck. Personal information is retained only for as long as necessary for the stated purposes, then deleted or anonymised. Retention depends on the issue, any necessary follow-up and the continued need for the material as a test example.
These retention criteria also apply to any diagnostic records we keep for fault investigation. When personal information is no longer needed, we delete or anonymise the copies we control in email, local files and support tools. Providers may retain other copies under their own service, backup, security and legal retention arrangements.
Apple services and beta testing
Apple handles App Store and TestFlight distribution separately. Apple may provide developers with diagnostics and usage information under its terms and applicable settings. For TestFlight, Apple automatically collects crash logs and usage information and shares beta-testing information with developers. These records can include tester details, device and app information, installations, sessions and crashes.
Feedback you submit through TestFlight may include your email, comments and screenshots, including content visible in the app. We use beta information to support testers and investigate faults. Apple’s TestFlight rules prohibit developers from sharing TestFlight-provided information with third parties; it is not included in our Codex support workflow. Apple states that it retains beta feedback for one year and may retain crash and usage data until bugs are resolved. See TestFlight & Privacy.
This website
The authored website has no analytics scripts, advertising, forms or cookies. Our hosting service processes connection information to deliver pages and maintain website security and stability, such as your IP address and requested pages.
Your rights
You can request access to, correction or deletion of personal information we hold, or restriction of its use, subject to applicable legal conditions. Contact support@specdeck.org to make a request.
Right to object: You can object to our use of your personal information based on legitimate interests.
You can raise a concern with the UK Information Commissioner’s Office or another competent data-protection authority.
Changes
We update this policy when our information-handling practices change. The date above shows when it was last revised.