Privacy policy
How the Apporo aiot app handles your data.
Effective 15 September 2026. This policy covers the Apporo aiot mobile app for Android and iOS, published by Apporo Union Inc.
The short version
Apporo aiot is a window onto a smart home server that you or your installer runs. Your home data — your devices, their state, your automations, your history — lives on your server, not on ours. The app talks directly to it.
We do not operate a cloud account for you, and we do not hold a copy of your home data.
What the app sends to your own server
Everything below goes to the server address you entered, and nowhere else:
- Your username and password at sign-in, in exchange for an access token.
- Readings from the sensors you switch on — see Sensors. Every sensor is off until you enable it.
- The device name and model, so the server can tell your devices apart.
- Commands you issue: pressing a button, running a scene, speaking to the assistant.
The only third parties involved
- Apple and Google push services. To deliver a notification while the app is closed, your device registers a push token with Apple (APNs) or Google (FCM). The notification passes through them. On your home network the app can receive notifications over the local connection instead — see Local push.
- ipify.org. Used only if you switch on the Public IP sensor, which has to ask an outside service what your public address is. Leave that sensor off and no request is made.
- Your app store. Apple and Google tell us aggregate install and crash counts for the app. We cannot identify you from them.
What we collect
Nothing. The app contains no analytics SDK, no advertising SDK, no crash-reporting SDK, and no cross-app or cross-site tracking. We do not build a profile of you, and we do not sell data to anyone.
If the app crashes, the diagnostic log stays on your device. Nothing is sent to us automatically. You can export it yourself from Settings → Troubleshooting if you choose to send it with a support request.
Otherwise we receive personal data only when you choose to send it — when you write to support. See Contact support for what that typically contains.
Why the app asks for permissions
- Location — to report your position to your own home for automations, and to tell whether you are on your home Wi-Fi. Android only reveals the Wi-Fi name to apps holding location permission. Optional; the app works without it.
- Notifications — to show what your home sends you.
- Camera — only to scan a QR code when you start a scan yourself.
- Microphone — only while you hold the assist button. Audio goes to your own server for interpretation.
- Bluetooth — only if you enable the Bluetooth or beacon sensors.
- Health data — only if you enable the Health Connect or watch health sensors. It goes to your own server and nowhere else.
What is stored on your device
Your server address, your access token, and your app settings are stored on the device using the operating system's protected storage. Signing out or uninstalling the app removes them.
Children
The app is not directed at children under 13 and we do not knowingly collect their data.
Your rights
Because your home data is on your own server, you control it directly: you can inspect, export or delete it there without asking us. For anything you have sent us — a support email, for example — write to [email protected] and we will tell you what we hold, correct it, or delete it.
Changes to this policy
If this policy changes materially we will update the date at the top and note the change in the app's release notes.
Contact
Apporo Union Inc.
Email: [email protected]
Phone: +886 4 2380 6837