Skip to content
Linkalyst
Privacy PolicyTerms of ServiceSupport
English
  • English
  • 简体中文
  • 日本語
  • Français
  • Deutsch
  • Italiano
Contents
1Controller and scope2Summary3Overview of processing4Data processed on your device5Network connections you initiate6IP address information7Crash reports and usage statistics8Advertising9In-app purchases10Device permissions11Export and sharing of reports12Recipients of personal data13International transfers14Retention periods15Your rights16Additional disclosures for residents of the United States17Children18Changes to this Policy19Contact details
Legal document

Privacy Policy

Version 1.0 · Effective 16 September 2026 · Entromoonic Ltd

Contents
1Controller and scope2Summary3Overview of processing4Data processed on your device5Network connections you initiate6IP address information7Crash reports and usage statistics8Advertising9In-app purchases10Device permissions11Export and sharing of reports12Recipients of personal data13International transfers14Retention periods15Your rights16Additional disclosures for residents of the United States17Children18Changes to this Policy19Contact details

1Controller and scope

This Privacy Policy describes how Entromoonic Ltd processes personal data in connection with the Linkalyst application for iOS and iPadOS.

The controller responsible for that processing is:

Entromoonic Ltd
131 Continental Dr, Suite 305
Newark, DE 19713
United States
contact@entromoonic.com

In this Policy, "the App" means Linkalyst; "we", "us" and "our" mean Entromoonic Ltd; "you" means the user of the App; and "personal data" has the meaning given to it in Regulation (EU) 2016/679 (the "GDPR") and, where applicable, the equivalent term under other data protection laws.

This Policy applies to the App only. It does not apply to the hosts, servers, networks or websites that you select as measurement targets within the App; traffic directed at those destinations is governed by the policies of the parties operating them.

2Summary

This section is provided for convenience. It does not replace the sections that follow.

  • The App does not operate an account system and does not require registration or sign-in. Test reports are not transmitted to us and are not accessible to us.
  • Reports, saved targets, tool presets and preferences are stored in the App's own container on your device.
  • Personal data is disclosed to parties other than the measurement target you select in three circumstances only: crash reports and usage statistics (enabled by default; a single setting disables them), IP address information (disabled by default), and advertising (not displayed during the first three days after the App is first obtained, and not displayed at all following purchase of the "Remove Ads" item).
  • Running a measurement necessarily transmits traffic to the host you specify. That traffic is received by that host and is not received or logged by us.
  • Report files that you export or share are not redacted and may contain identifying information.

3Overview of processing

ProcessingPersonal data concernedPurposeLegal basis (EEA and UK)RecipientDefault state
Storage of reports and settingsTarget addresses and host names, measurement results, timestamps, device model, OS version, and optionally Wi-Fi identifiersProvision of the App's core functionArticle 6(1)(b) GDPR (performance of a contract)None; remains on the deviceOn
Measurement trafficAddresses, host names, URLs and DNS query names that you enter; your public IP address as seen by the destinationExecution of the measurement you requestArticle 6(1)(b) GDPRThe destination you selectInitiated by you
IP address informationIP addresses displayed in results; the public IP address of the requesting connectionDisplay of country, region, city, network organisation and ASNArticle 6(1)(a) GDPR (consent)FreeIPAPIOff
Crash, hang and forced-termination reportsStack trace, device model, OS and App version, and device state at the timeDetection and correction of defectsArticle 6(1)(f) GDPR (legitimate interests)SentryOn
Usage statisticsFour fixed event codes and the SDK's own session events; device model, OS and App version, language, region, time zone, screen and accessibility settings, session and retention counts; a salted hash of the vendor identifierMeasurement of aggregate feature usageArticle 6(1)(f) GDPR (legitimate interests)TelemetryDeckOn
AdvertisingAdvertising identifier (where permitted), IP address, coarse location derived from it, device and App information, ad interactionsDisplay and measurement of advertisingArticle 6(1)(a) GDPR for personalised advertising; Article 6(1)(f) GDPR for non-personalised advertisingGoogleOn after three days, unless "Remove Ads" is purchased
In-app purchasePurchase entitlement statusVerification of the "Remove Ads" entitlementArticle 6(1)(b) GDPRAppleInitiated by you

Our legitimate interests in the processing identified above are the maintenance of the App's stability and the assessment of which features are used. You may object to that processing at any time by means described in section 7.4.

4Data processed on your device

The following data is written to the App's container on your device. It is not transmitted to us, and we have no means of accessing it.

CategoryContentsLocation
Test reports (JSON, with a paired CSV of per-packet samples)Target addresses and host names; protocol, ports and parameters; per-packet and aggregate results; event log codes; timestamps; the report name and any note you enter; device model identifier; operating system version; a compact network environment marker (for example status=satisfied;interfaces=wifi;ipv4=1;ipv6=0;lowData=0;expensive=0); the names and types of the active network interfaces and the gateway addresses configured at the start; the battery level, Low Power Mode and thermal state at the start and whenever they change; for website checks, the device's own local address and port for each request, whether the connection was cellular or proxied, the negotiated TLS version and cipher, and the server certificate's subject, issuer, names, fingerprint and validity dates; for route traces with hop look-up enabled, the host names of hops; and, where "Record Wi-Fi Details" is enabled, the Wi-Fi network name (SSID) and access point identifier (BSSID)App Documents/Reports, or the App's iCloud Drive container where iCloud sync is enabled (item 3 below)
Saved targets, tool presets and report annotationsThe values you enterApp container; the latency targets and the resolver-comparison server addresses are also kept in UserDefaults
PreferencesSetting states, a flag recording that advertising has been removed, and the names of any reports awaiting copy from iCloudUserDefaults
Date the App was first obtainedUsed only for the advertising-free period in section 8.1; the earlier of the first launch on this device and the App Store's record of when your Apple Account first obtained the AppKeychain, which survives deletion of the App
Temporary share filesCopies generated when the share sheet is openedApp cache folder

The following matters are relevant to that data:

  1. 1.Saved reports contain identifying information. IP addresses, host names, the URL tested (from which any username, password, query string and fragment are removed before the report is written), the DNS server, port, transport and response code, and Bonjour service names, hosts, ports and TXT records are retained in the report file.
  2. 2.The App contains no backup service operated by us and no facility for transmitting reports to us. The only synchronisation of reports is through Apple's iCloud Drive, as described in item 3; it is disabled by default.
  3. 3.Where you enable "Sync Reports" under Settings → iCloud, report files are moved into the App's iCloud Drive container and are thereafter uploaded to, stored on and downloaded from Apple's iCloud servers, so that every device signed in to the same Apple Account with iCloud Drive enabled holds the same reports. Deleting a report on one such device deletes it on all of them. The transfer is performed by the operating system under Apple's iCloud terms; we do not receive the files and have no access to the container. Stars, tags, saved targets, tool presets and preferences are not synchronised. Where iCloud is unavailable on the device, the setting has no effect and reports are stored on the device. Disabling the setting copies the reports to the device and ends synchronisation; the copies already in iCloud Drive remain there until you delete them, from the App on a synchronising device or from the Files app.
  4. 4.Reports stored on the device are kept in the App's Documents folder and are not marked as excluded from backup. Where you have enabled device backup they are included in it, whether that backup is written to iCloud or to a computer; where backup is disabled, or where the App is excluded individually under the iOS iCloud backup settings, they are not. Reports in the iCloud Drive container are not part of device backup and are held as described in item 3. Reports in either location are accessible to you through the Files app. Backup storage and iCloud Drive are provided by Apple under Apple's terms, and we have no access to either.
  5. 5.Individual reports may be deleted, and temporary share files cleared, under Settings → Manage. Deleting the App removes all data listed in this section from your device, except the date the App was first obtained, which remains in the keychain; reports in iCloud Drive are not removed by deleting the App.
  6. 6.Some of this data is visible on your device to anyone who can see its screen. While a measurement runs, the Live Activity shows in the Dynamic Island and on the Lock Screen the tool, the record name, the elapsed time and progress, the current and typical latency, the number of timeouts, a curve of recent latencies, the target host or endpoint and, during a route trace, the address of the current hop; on iOS 26 the system's own background progress display shows the same title and figures. The background reminder and "stopped" notifications show the record name; the "finished" notification shows the record name with a summary of the result. The App writes to the clipboard when you copy an address or a calculation result; it never reads the clipboard.
  7. 7.Certain values are deliberately not retained. The username, password, query string and fragment of a tested URL are removed before a report is written. The access code used by the self-hosted UDP echo peer is held in memory only and is never written to a report. IP address lookups are sent through an ephemeral session that retains no cache or cookies between launches.

5Network connections you initiate

The App is a network measurement tool and transmits traffic when a measurement is run. In each case the destination is one that you specify:

  1. 1.Latency, TCP, throughput and route measurements connect to the address, host name or test endpoint that you enter.
  2. 2.DNS queries use the system resolver by default. Where you select a specific DNS server, the query name is transmitted in clear text to that server over the UDP or TCP port you select. The App does not modify your system DNS configuration. The resolver comparison sends its queries on port 53. Where "Look up hop hostnames" is enabled for a route trace, the address of each hop is submitted to the system resolver for a reverse look-up.
  3. 3.HTTP and HTTPS download measurements request the URL you enter, applying the operating system's standard TLS validation. The response body is measured and is not retained.
  4. 4.Bonjour queries local network services of the types you select following your instruction to discover them, and resolves an individual service only following your instruction to resolve it. It does not scan ports, connect to discovered services, or open web pages.
  5. 5.CIDR calculation and report comparison operate offline and generate no network traffic.

Each destination receives the information that a network request ordinarily discloses to it, including your public IP address. That traffic is not received, intercepted or logged by us.

Where iCloud sync is enabled, the operating system additionally transfers report files to and from Apple's iCloud servers, as described in section 4. That transfer is not a measurement and is not tied to any test.

The App ships with sample targets, which are shown as examples and are not contacted unless you enable one and start a measurement. One of them is the public resolver at 1.1.1.1, operated by Cloudflare. The resolver comparison is pre-filled with 1.1.1.1 and with 8.8.8.8, operated by Google; the DNS look-up and the website check are pre-filled with www.apple.com, and the DNS records tool with example.com. You may edit or delete any of them.

6IP address information

Where you enable Settings → Privacy → "IP Lookup", the App transmits IP addresses to FreeIPAPI in order to obtain the country, region, city, network organisation and ASN displayed alongside a result. The setting is disabled by default, and no such transmission occurs until you enable it.

The following limitations apply:

  1. 1.Only numeric, globally routable addresses are transmitted. Private, loopback, link-local and other non-public addresses are not transmitted under any circumstances.
  2. 2.Where your own public egress address is queried, FreeIPAPI additionally receives the public IP address of the connection making the request.
  3. 3.Results are held in memory for up to 24 hours while the App runs and are not kept between launches; a snapshot is written into any report that displays them.
  4. 4.Queries are suspended for the duration of a measurement and while the App is in the background.
  5. 5.Disabling the setting ends all such queries. Snapshots already written into reports remain in those reports.

The lookup results are reference information about the address, not a statement about your location. The region shown is the IP database's reference attribution rather than the precise location of a device or server, and the network organisation is the owner of the ASN, which may differ from the access provider.

FreeIPAPI is operated by an independent third party: https://freeipapi.com/

The results incorporate data from DB-IP (https://db-ip.com/), made available under the Creative Commons Attribution 4.0 International licence (https://creativecommons.org/licenses/by/4.0/). The same attribution appears in the App under About Linkalyst → Data Sources and in the detail view of any report containing a lookup result.

7Crash reports and usage statistics

The setting at Settings → Privacy → "Share Analytics" governs both forms of processing described in this section. It is enabled by default. Where it is disabled, both software development kits are shut down and cease transmitting. Usage events already queued on the device at that moment are not transmitted while the setting remains disabled; they are transmitted if the setting is later re-enabled.

7.1 Crash reports

Where the App crashes, stops responding for several seconds, or is terminated by the operating system's watchdog, a diagnostic report is transmitted to Sentry. That report consists of the stack trace, the device model, the operating system version, the App version and build number, and the device state recorded at the time, such as free memory and storage, orientation, locale and time zone.

The App's configuration of Sentry excludes the collection of user identifiers, personally identifiable information, screenshots, view hierarchies, session recordings, records of preceding in-app events, session tracking, performance and user-interface tracing, and any interception of the App's own network requests. The service is further configured so that it does not derive the IP address of the transmitting device. Accordingly, no measurement target, address, result, report content or Wi-Fi identifier forms part of a crash report.

Crash reports are transmitted to and stored in Sentry's European Union data region.

7.2 Usage statistics

The App itself transmits four event codes to TelemetryDeck, and no others:

EventParameters
Test.endedThe tool used, and whether the measurement completed or was stopped
Report.shareOpenedThe number of files prepared by the share sheet; this does not indicate that a file was shared
Purchase.removeAdsNone
Purchase.restoredNone

These events do not carry measurement targets, addresses, URLs, results, report contents, Wi-Fi information, or any value entered by you.

The TelemetryDeck software development kit additionally transmits two events of its own: a session-start event at each launch and at each return to the foreground after five minutes, and a new-install event on first run carrying the date of that first session. It attaches its standard parameters to every event: the device model, CPU architecture, screen resolution, screen scale and orientation; the operating system and App version, and the name and version of the software development kit; the language, locale, region and time zone; the date, day of the week and hour at which the event is generated; the colour scheme, layout direction and accessibility settings; whether the build is a debug, simulator, TestFlight or App Store build; and session and retention counts, being the first session date, the number of sessions, the days used in total and in the preceding month, and the average and previous session length. Each event also carries a session identifier generated at random for each session. It distinguishes devices by means of the Apple vendor identifier (IDFV) hashed with SHA-256 and a salt contained in the App. That identifier is pseudonymous rather than anonymous: it cannot be reversed by us to identify you, but it permits statistics to be grouped by device.

7.3 Suspension during measurements

Usage events generated while a measurement is in progress are retained locally, to a maximum of 50, and transmitted after the measurement ends; Sentry's application-hang detection is suspended for the same period. Both software development kits transmit through a gate that cancels requests before they commence while a measurement is running or while the setting is disabled. Data not transmitted is retried subsequently.

7.4 Withdrawal and objection

Disabling the setting referred to above takes effect immediately and constitutes both a withdrawal of consent, where consent is the applicable basis, and an objection to processing carried out on the basis of our legitimate interests.

Provider policies: Sentry, https://sentry.io/privacy/ ; TelemetryDeck, https://telemetrydeck.com/privacy/

8Advertising

The App is supplied free of charge and displays a single banner advertisement at the foot of its three principal pages. Advertising is supplied by Google AdMob.

8.1 Conditions of display

  1. 1.No advertising is displayed during the first three days after the App is first obtained. That date is kept in the keychain and checked against the App Store's record for your Apple Account, so deleting and reinstalling the App does not restart the period.
  2. 2.No advertising is displayed following purchase of the "Remove Ads" item, and the advertising software development kit is not initialised.
  3. 3.No advertising is displayed while a measurement is in progress. The banner is removed from the interface for the duration of the measurement, and no advertisement is requested or refreshed during that period.

8.2 Consent

On activation, from the first use of the App and including the period described in section 8.1(1), the App requests your consent status through Google's User Messaging Platform, so that your choices are recorded before advertising begins. The advertising software development kit is not initialised during that period. Where the applicable law of your region so requires, including in the European Economic Area and the United Kingdom, a consent form is presented before any advertisement is requested. Where your region requires that the choice remain alterable, the option Settings → Privacy → "Ad Privacy Choices" reopens that form. It is not shown after "Remove Ads" is purchased, since no consent is requested and no advertisement is shown in that state.

8.3 App Tracking Transparency

Where consent permits advertisements to be requested and you have not yet responded to the App Tracking Transparency prompt, that prompt is presented before the advertising software development kit is initialised, so that the first advertising request reflects your response. The prompt may therefore appear during the period described in section 8.1(1). Permission granted allows Google to use the advertising identifier (IDFA) for the personalisation of advertising. Permission refused does not prevent the display of advertising; advertising is then non-personalised. Your response may be changed at any time under iOS Settings → Privacy & Security → Tracking.

8.4 Google's role

In respect of data collected through the advertising software development kit, Google acts as an independent controller. That data may include the advertising identifier, the IP address, coarse location derived from the IP address, device and application information, and interactions with advertisements. The App additionally includes Apple's SKAdNetwork identifiers, which permit Apple to report campaign performance to advertisers without identifying you.

Google's practices are described at https://business.safety.google/privacy/ and https://policies.google.com/technologies/partner-sites

9In-app purchases

"Remove Ads" is a one-time, non-consumable purchase administered by Apple through StoreKit and the App Store, with Family Sharing support. Apple processes the payment. We do not receive your payment method, card details or Apple Account credentials.

The App verifies the entitlement with Apple, records a flag on the device indicating that advertising has been removed, and transmits only the aggregate purchase events identified in section 7.2. Refunds, receipts and billing are administered by Apple: https://support.apple.com/billing

10Device permissions

PermissionPurposeLimitations
Local NetworkConnecting to targets on your network, reading the gateway, and discovering Bonjour services of the types you selectNo broadcast scanning is performed and no connection is made to a discovered device without your instruction
Location (While Using the App, Precise)Obtaining the Wi-Fi network name (SSID) and access point identifier (BSSID), which iOS discloses only where this permission is granted, for the purpose of diagnosing roaming. Requested only when you select "Read Wi-Fi Name"Your latitude and longitude are not requested, read or stored. Location data is not used for any other purpose
NotificationsReminding you to return to the App before the system background time limit expires, and notifying you when a measurement completes or stops in the background. Requested when a measurement first starts, where the corresponding option is enabledNo marketing or promotional notifications are sent
TrackingPersonalisation of advertising, as described in section 8.3Refusal does not restrict any function of the App

The Wi-Fi network name and access point identifier are written to reports only where Settings → Privacy → "Record Wi-Fi Details" is enabled.

11Export and sharing of reports

From the Records page or a report's detail view, the full report in JSON form or a CSV of per-packet samples may be shared.

Shared files are not redacted. They retain the entire contents of the saved report, which may include IP addresses, host names, URLs, the service names, host names and TXT records of devices discovered on your local network — which may identify equipment belonging to other people — and, where the corresponding setting is enabled, Wi-Fi identifiers. A notice to that effect is displayed before sharing; the original report is not altered; and no file is transmitted automatically. The destination and the recipients of such files are determined by you, and any disclosure that results is outside our control.

12Recipients of personal data

RecipientData receivedRole
Sentry (Functional Software, Inc.)Crash reportsProcessor acting on our instructions
TelemetryDeckUsage events and standard SDK parametersProcessor acting on our instructions
Google (Google Ireland Limited / Google LLC)Advertising data, as set out in section 8.4Independent controller
FreeIPAPIIP addresses, where section 6 is enabledIndependent controller
Apple Inc.Purchase and entitlement data; SKAdNetwork attribution; report files, where iCloud sync is enabled (section 4)Independent controller

We do not disclose personal data to any other recipient, except where disclosure is required by law or is necessary to establish, exercise or defend legal claims.

13International transfers

We are established in the United States. The recipients identified in section 12 operate in the United States and in the European Union. Our Sentry organisation is configured to use Sentry's European Union data region.

Where personal data is transferred outside the European Economic Area or the United Kingdom, those transfers are made subject to the safeguards described in the recipients' own policies, including the standard contractual clauses adopted by the European Commission.

Where iCloud sync is enabled, report files are stored by Apple in iCloud Drive at locations Apple determines. For Apple Accounts whose country or region is mainland China, iCloud is operated by AIPO Cloud (Guizhou) Technology Co., Ltd. under Apple's iCloud terms.

14Retention periods

DataRetention period
Reports and settings on your deviceUntil deleted by you, or until the App is deleted
Reports in iCloud DriveUntil deleted by you from a synchronising device or from the Files app; neither turning sync off nor deleting the App removes them
IP address lookup cacheUp to 24 hours, in memory, and no longer than the App runs. Snapshots written into a report are retained for the life of that report
Date the App was first obtainedIn the keychain until the device is erased; not removed by deleting the App
Crash reportsThe retention period applicable to our Sentry plan, currently 30 days
Usage eventsThe retention period applied by TelemetryDeck to aggregate usage signals
Advertising and purchase dataRetained by Google and by Apple under their respective policies

15Your rights

Subject to the law applicable to you, you may have the right to obtain access to your personal data, to have it rectified or erased, to obtain restriction of processing, to object to processing, to data portability, and to lodge a complaint with a supervisory authority.

Because the majority of the data described in this Policy is not transmitted from your device, those rights are exercised directly: reports may be deleted under Settings → Manage, and deleting the App removes all such data. In respect of data that is transmitted, consent may be withdrawn, and processing objected to, by means of the settings identified in sections 6, 7 and 8, and through the iOS system settings identified in sections 8.3 and 10.

Crash reports and usage events are pseudonymous and carry no identifier by which we are able to associate them with an identified person. We are therefore ordinarily unable to locate the records of a particular individual in order to respond to a request for access or erasure. Where you provide us with information sufficient to do so, we will act on the request to the extent reasonably possible.

Requests may be addressed to contact@entromoonic.com.

16Additional disclosures for residents of the United States

We do not sell personal information in exchange for monetary consideration.

Personalised advertising may constitute "sharing" for the purposes of cross-context behavioural advertising under the California Consumer Privacy Act as amended, or "targeted advertising" under comparable laws of other states. You may opt out by refusing the App Tracking Transparency prompt, by disabling "Allow Apps to Request to Track" under iOS Settings → Privacy & Security → Tracking, and, where your region makes it available, through Settings → Privacy → "Ad Privacy Choices".

Residents of certain states have the right to know, to delete, to correct, to opt out, and to limit the use of sensitive personal information, and the right not to be discriminated against for exercising those rights. The extent to which those rights can be exercised against us is limited by the following facts: the App operates no account system; we do not collect names, email addresses, telephone numbers or ages; and we construct no user profile. The crash reports and usage events we receive are pseudonymous, as described in section 7, and carry no identifier by which we are able to associate them with an identified person. Accordingly:

  1. 1.The right to know can be exercised. This Policy states the categories of personal information collected, their sources, the purposes of collection and the recipients. An individual response may be requested at the address below.
  2. 2.The right to delete is limited in effect. Applicable law requires us to verify the identity of a requester before giving effect to a deletion request, and we hold no identifier against which such verification can be performed. We are not required to reidentify or link information that we do not maintain in an identifiable form in the ordinary course of business. Where we are unable to verify a requester's identity, we will decline the deletion request and inform the requester of the reason. In respect of data stored on your device, deletion is performed by you, as described in section 4, and is complete.
  3. 3.The right to correct ordinarily has no subject matter in the App. We maintain no account record or user profile, and therefore hold no record of personal information capable of correction.
  4. 4.The right to opt out can be exercised in full, and without recourse to us, by the means described in the second paragraph of this section.

In respect of data held by Google, Apple or FreeIPAPI as independent controllers, requests should be addressed to those parties; see section 12.

Requests may be addressed to contact@entromoonic.com.

17Children

The App is a technical tool directed at a general audience. It is not directed at children, is not distributed in the App Store Kids Category, operates no account system, and does not collect names, email addresses, telephone numbers or ages. We do not knowingly collect personal data from children under the age of 13, or under the age of 16 where local law establishes that age.

The following limitation of the App's design should be noted. The data we receive, being crash reports and usage events, is pseudonymous and contains no identifier by which any individual can be identified. We are therefore unable to isolate records belonging to a particular child, whether or not we are notified that such records exist.

A parent or guardian may remove the data concerned, and bring the processing to an end, by the following means, which are complete remedies within the architecture of the App:

  1. 1.Test reports are stored on the device and are never transmitted to us. Deleting reports under Settings → Manage, or deleting the App, removes that data entirely.
  2. 2.Disabling Settings → Privacy → "Share Analytics" ends all further transmission to Sentry and TelemetryDeck.
  3. 3.Purchase records held by Apple and advertising data held by Google are subject to requests made to those parties respectively. The advertising identifier may be reset in the iOS system settings.

If you believe that a child has provided us with personal data, please contact us at the address in section 1. Where you provide information sufficient to locate a particular record, we will delete it so far as is technically possible and, where necessary, bring further collection to an end.

18Changes to this Policy

This Policy will be amended where the App's processing of personal data changes. The version number and effective date stated at the head of this Policy identify the current text. Material changes will be notified within the App or in the App Store release notes before they take effect.

19Contact details

Entromoonic Ltd
131 Continental Dr, Suite 305
Newark, DE 19713
United States
contact@entromoonic.com

Questions about this Policy, or a request under section 15?

contact@entromoonic.com
© 2026 Entromoonic Ltd · linkalyst.entromoonic.com
Terms of ServiceSupportTest peer