Privacy policy
Draft, last updated 31 July 2026
Draft, not yet finalised. This describes the data handling already built into the app's architecture. Sections marked TODO need a lawyer's review before launch, particularly the legal entity name, governing jurisdiction, and any region-specific rights (GDPR/CCPA).
Contents
Statesis is built to keep your research data on your device. We collect the minimum needed to run the app's subscription and support features:
The datasets you import, the analyses you run, and the output you generate are processed locally by the app's built-in statistics engine. We do not upload your datasets to a server, and we do not have access to your research data. iCloud sync of your saved projects (Pro) uses Apple's iCloud infrastructure and your own iCloud account, not a Statesis-operated server.
Each of these processes only the data described above, needed to provide that specific feature.
To unlock the Student price, you enter your .edu email address. We send a one-time passcode to confirm it's a real institutional address, then store a verification token in your device's Keychain (synced via your own iCloud Keychain, not a Statesis server) for 12 months. We do not retain your email address beyond what's needed to send that one-time passcode.
TODO: this section needs jurisdiction-specific language (GDPR for EU/UK users, CCPA for California users, etc.) added before launch, covering access, deletion, and portability requests.
If this policy changes in a way that materially affects how your data is handled, we'll update the date at the top of this page and, where required, notify you in the app.
Questions about this policy can be sent via our contact page. TODO: add a registered legal entity name and business address here before launch.