GrayCat PDF · Privacy
Privacy Policy
Overview
GrayCat PDF is a local-first PDF tool. Your PDF files, annotations, signatures, and form content stay on this Mac. The developer operates no server for processing your documents and does not receive, collect, or store document content or personal information through the app.
Translation
Apple system translation
On macOS 15 or later, translation runs on device through Apple's Translation framework. Text is not sent to the developer or a third-party AI provider. macOS may need to download language assets the first time a language is used.
AI model translation
Only when you explicitly translate, or select text with Instant Translation enabled, does the app send the text being translated—your selection, or the text of the pages you translate—plus page context used to improve the translation. It goes directly from your Mac to the provider and endpoint origin shown in the consent alert; the developer cannot access it.
Preset hosted providers use encrypted HTTPS. A local service such as Ollama, or a custom endpoint, uses the URL you configure. If that URL begins with http://, the connection is not encrypted; use HTTP only for a server you trust on this Mac or your local network. The app asks for explicit consent before the first request to each provider and endpoint origin.
Third-party protection, retention, deletion, and withdrawal
Hosted providers may associate requests with the provider account that owns your API key and may retain request text, responses, and security, abuse-prevention, or billing logs under their published terms. Retention periods and deletion procedures vary by provider. GrayCat requires preset hosted providers to handle transmitted content under published privacy and security terms that provide the same or equivalent protection required by this policy and Apple's App Review Guidelines. Use a custom third-party endpoint only after confirming that its operator provides equivalent protection; GrayCat cannot inspect or guarantee an arbitrary server's practices.
The operator of a hosted or custom endpoint controls its remote copies. To request deletion of remote data, use that provider's account privacy controls or contact the provider. GrayCat cannot view or delete data held by a provider. A local server you operate is under your control; delete its data using that server's own tools.
Withdrawing consent in Settings clears the app's saved permission and causes the app to ask again before a later AI translation. Withdrawal cannot recall a request already delivered to a provider or delete a copy the provider already holds.
API keys
API keys you enter are stored only in this Mac's system Keychain. When the app makes a request, the key is placed in the authentication header and sent only to the provider and endpoint you configured. The developer never receives or stores it.
Translation progress files
To support resuming, the app saves a progress file containing source and translated text next to the source file or in Application Support. It exists only on your Mac and can be deleted at any time in Settings → Privacy. For password-protected PDFs, the app never writes this plaintext file.
Data collection and tracking
The app contains no analytics, tracking, or advertising SDKs, collects no usage data, and has no GrayCat account system. For the App Store's conservative disclosure, text sent to a hosted AI provider is declared as Other User Content, may be linked to the provider account for App Functionality, and is not used for tracking.
Contact
For questions about this policy, email support@graycat.app. For general help, visit GrayCat PDF support.