Aroido

Mongle Picture Diary

Privacy policy

Your photos and diary stay on your iPhone. Only if you choose to share anonymous usage information, Mongle sends limited product interaction events to TelemetryDeck.

Effective July 28, 2026

Summary

Local by design

Mongle has no account, Aroido backend, advertising, tracking, or third-party analytics SDK. Diary content is processed on your device. Optional anonymous product events are sent directly to TelemetryDeck only after your consent.

Processed on your iPhone

Photos and diary content

With your permission, Mongle reads selected Photos assets, capture dates, screenshot classification, and optional embedded locations. It also processes your diary text, weather, theme, writing schedule, and selected photo references.

Never sent in analytics

Your diary content and identity stay out

Mongle never sends diary text, photos, thumbnails, locations, filenames, exact writing or reminder times, free-form text, error messages, or user, device, and installation identifiers. The app does not use an Aroido backend.

Optional anonymous analytics

You decide whether product events are shared

Aroido uses these aggregate events only to understand where people complete or leave the diary flow and which themes and actions are useful. They are not used for advertising, cross-app tracking, or individual profiles.

Explicit choice and opt-out

During setup, Mongle asks you to choose “Share” or “Don’t send.” Before consent, after refusal, and after you turn sharing off in Mongle Settings, no analytics event is created, stored, or sent. Turning it off cancels in-flight requests. Every feature remains available either way.

What an event can contain

The fixed allowlist covers onboarding completion, app opens, permission results, draft and cover steps, theme choices, save and share results, deletion, cadence changes, and reminder changes. Events may include coarse source, cadence, theme, result, permission, and photo-count buckets plus app version, build, distribution, and iOS major version. TelemetryDeck also records when its server receives an event.

No returning-user identifier

Mongle sends an empty TelemetryDeck clientUser value. A random session ID exists only in memory for the current app process and changes after relaunch. The app creates no account ID, IDFA, IDFV, device name, or installation ID and keeps no analytics queue on disk.

TelemetryDeck processing and retention

Mongle sends allowed events directly to TelemetryDeck’s v2 ingest service. Under Aroido’s current free plan, events are available in the dashboard for a three-month live access window. TelemetryDeck states that older events may be unloaded to cold storage, so its retention and privacy terms also apply. Because events contain no returning-user identifier, Aroido cannot isolate one person’s past events.

Storage and retention

Your diary content remains under your device controls

Diary data

Diary text and metadata are stored locally with Apple’s SwiftData. Photos stay in Apple Photos; Mongle stores references instead of copying the originals. Device backups follow the iPhone backup settings you control.

Temporary sharing files

A share-ready JPEG is created only when you request it. Temporary share files are deleted after sharing or cancellation; files left by an unexpected app termination are removed after 24 hours on the next launch.

Deletion

You can delete a diary inside Mongle without deleting the original Photos assets. Deleting the app removes its local data, subject to your system backup settings. Aroido has no server copy to delete.

Permissions and choices

Access is requested only for the feature you choose

Photos

Mongle requests Photos read access when you start selecting diary photos, and add-only access when you choose to save a finished image. You can limit or revoke access in iOS Settings.

Notifications

Diary reminders are local notifications. They are optional and can be changed in Mongle or iOS Settings without blocking diary features.

Apple services

Mongle may use Apple Photos, iCloud Photos, MapKit, and system backup according to your Apple settings. Aroido does not receive data those Apple services process. Apple’s own terms and privacy policy apply to them.

Sharing

Sharing starts with you

Mongle opens the iOS share sheet only after your explicit action. The exported image includes the diary page you chose, but not the original file name, EXIF metadata, exact GPS coordinates, or all photos from the period. The destination you select applies its own privacy practices.

Support contact

Information you choose to send us

If you email support, Aroido receives your email address and message only to respond and resolve the request. We keep it only as long as reasonably needed for support and legal obligations. You may ask us to delete the support correspondence.

Policy changes

If Mongle’s data practices change, this page and its effective date will be updated before the changed practice applies where required.

bigcat@aroido.com