Back matter — Privacy
Privacy Policy
Last updated: July 27, 2026
LastApollo is a network proxy client for iPhone, iPad, and Apple TV. This policy sets out what information the app handles, what it deliberately never touches, and what you can do about it. The short version: we do not inspect, log, or transmit your network traffic.
01 What We Handle
Making the app work takes a short list, and this is all of it:
- Account identifier
- The email address you sign in with, used to authenticate you against the provider you chose. If you set the app up with a subscription URL instead of a site code, there is no account and no sign-in at all, and this does not apply to you.
- Site code, subscription URL, and login details
- Sent only to the provider endpoint they resolve to, in order to activate the app and sign you in. They go nowhere else.
- Activation lookup
- A site code is resolved on your device. The app downloads one small, static directory file from our storage buckets and looks the code up locally, so the code itself is never sent to us. As with any web request, fetching that file reaches the storage host with your IP address.
- On-device data
- Your subscription configuration, the node you selected, your custom routing entries, and a connection diagnostic log for troubleshooting. This stays on your device and leaves it only if you choose to copy or send it, for example when you contact support.
- Support messages
- If you open a ticket in the app, the subject and message you write, together with your session token, are sent to your chosen provider so they can answer it. What they do with it is governed by their privacy policy (see §05).
02 What We Never Touch
LastApollo keeps no record of what you do online. We do not read, analyze, store, or transmit your network traffic, the sites you visit, your DNS lookups, the contents of a tunnel session, your location, hardware identifiers, or usage metrics. The app ships without any third-party SDK for analytics, advertising, or tracking — there is no such code in it to switch on later.
03 Why We Handle It
Everything in §01 serves one purpose: making the app work. Verifying who you are, fetching the configuration your site code or subscription URL points to, and opening the connection on your device. None of it is monetized. We run no advertising, no marketing, no analytics, and no profiling against your data, and we never sell it, rent it, or hand it to any outside party.
04 The Tunnel
LastApollo runs no VPN or proxy servers and provides no network access of its own. It uses Apple's Network Extension framework to establish the connection locally, on your device. Traffic flows between your device and the servers of the provider you chose; it does not pass through any server we operate, and we cannot see inside it.
05 Your Provider
The servers you reach are operated by the provider your site code or subscription URL points to, not by LastApollo. Your relationship with that provider, and their handling of your data, are governed by their own terms and privacy policy. Please read them before you use the service.
06 Backups
If you enable device or iCloud backups, the app's on-device data may be included, according to your Apple settings. Items the app stores in the system Keychain are marked device-only and are not copied to iCloud or restored onto a different device. Backups themselves are controlled by Apple and by your settings, and are outside our control.
07 Security
Your password is never written to the device. It is sent once to your provider to sign you in, and only the session token that comes back is kept. That token, your account email, and the keys the app needs to talk to your provider are stored in the system Keychain, marked device-only. Other sensitive data at rest is encrypted with AES-GCM: the cached node configuration, which contains the credentials your nodes need, and any external credentials you enter yourself. Requests to providers travel over encrypted channels. No method of storage or transmission is ever completely secure, and we don't claim otherwise.
08 Retention and Deletion
Signing out erases your session token and email from the Keychain, clears the cached subscription configuration, and deletes the tunnel configuration and the diagnostic log written while you were signed in.
If anything is left in the Keychain after a reinstall, the app clears it the next time it starts without a local setup, so a fresh install never begins signed in.
You can delete your account from inside the app: open Settings, go to your account, and choose “Delete Account”. You confirm with your login password; on success the app signs you out and clears the account state it kept on the device. Server-side data associated with your account is handled by your chosen provider under their policy.
09 Children
LastApollo is not directed to children, and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, contact us and we will delete it.
10 Changes
We may revise this policy from time to time. Any update is reflected in the date shown beneath the title above, and significant changes will be surfaced in the app or on this site where appropriate.
11 Contact
Questions about this policy: REPLACE_EMAIL