SimpleFT8 is designed with privacy as a core principle. Radio operation and the local logbook work without an account. External community and logbook services are separate, clearly labelled opt-ins. Apple services may be contacted for UTC clock sync and to check App Store product and purchase status.
Microphone — required to receive FT8 audio from your radio. Audio is processed locally to decode FT8 messages. Captured audio is never recorded, stored, or transmitted.
System Audio Capture (macOS only) — optional. Lets you decode FT8 audio played by another app (SDR software, WebSDR in a browser) without a virtual audio cable. Uses Apple's ScreenCaptureKit; granting Screen Recording is required by Apple for any app that captures system audio.
Location (one-shot) — optional. The "Use GPS" button in Settings reads your location once to fill in your Maidenhead grid locator. Triggered only when you tap the button.
File Access (User-Selected) — used for ADIF import/export and native logbook backup/restore through Apple's system file picker. The app only reads or writes the file you select.
Your QSO log is stored in the app's local container on your device. Logbook records leave the device only when you explicitly export a file or opt into QRZ Logbook transfer or private iCloud sync.
The community services below are off by default. The app also uses SNTP queries to time.apple.com for accurate UTC, and Apple may be contacted to load or verify App Store purchases.
In Settings → Community there are two independent opt-in toggles:
Share decodes with PSK Reporter opt-in
When on, decoded callsigns + grids + signal reports are forwarded to PSK Reporter (a long-running ham-community reception-report database) via our proxy at simpleft8.strangeloop.nl. We proxy rather than letting the app hit PSK Reporter directly so we can rate-limit a misconfigured client and stop it from flooding the upstream. When on, we also fetch reception reports for your callsign every five minutes so the map can show who heard you.
Show me on the SimpleFT8 online map opt-in
When on, the app posts your callsign + Maidenhead grid to our backend every 2–4 minutes so other SimpleFT8 users can see you on the "online now" layer of the map. We store nothing beyond callsign, grid, last-seen timestamp, and a per-install device identifier (used internally for rate limiting). Entries that haven't pinged in 15 minutes drop off the map.
Each toggle gates its own periodic task. You can have either on without the other.
QRZ Logbook direct transfer Pro · opt-in
When you save a QRZ Logbook API key, it is stored in Apple's Keychain. A manual upload, or automatic upload if you enable it, sends the QSO as an ADIF record together with that API key directly to https://logbook.qrz.com/api. This traffic does not pass through the SimpleFT8 backend.
Private iCloud log sync Pro · opt-in
When enabled, QSO records, modification timestamps, and deletion markers are synchronized through Apple's CloudKit private database for container iCloud.nl.strangeloop.SimpleFT8. Apple associates this private data with your iCloud account. The SimpleFT8 backend cannot see it.
ADIF import/export and native backup/restore remain local, manual features and do not require Pro.
On iOS, opting into a community feature starts an Apple App Attest handshake with our backend. App Attest provides hardware-backed verification of the app installation. The macOS app uses an application credential instead; it does not use App Attest.
For attested installations, we store the public key, a per-install device identifier, and a request counter used to reject replays. These authentication records do not include your Apple Account identity or payment information.
Our backend keeps a per-request log (path, status code, IP, device identifier, app version, platform, timing) so we can spot a misbehaving client or service abuse. These logs are not exposed via the API, are not shared with third parties, and contain no message content — just request metadata. Used for anomaly detection only.
SimpleFT8 is not directed at children. It has no advertising, analytics, or social account. All community and logbook integrations are off by default.
time.apple.com) — used for UTC clock sync. No data sent beyond the SNTP packet itself.Email simpleft8@strangeloop.nl to:
Questions about this privacy policy: simpleft8@strangeloop.nl
Any changes to this policy will be reflected in app updates with an updated "Last updated" date.