English
LimitPulse Privacy Policy
1. Scope and identity
This policy describes the Android and iPhone apps LimitPulse, published by YongTech. LimitPulse does not create a LimitPulse service account. Connecting OpenAI in the app connects an account the user already controls at OpenAI; it does not create or administer that account.
2. Data handled by the app
OpenAI authentication and account identifier.
Sign-in takes place in the system browser. LimitPulse never asks for or receives an OpenAI password. Device authorization results, access tokens, refresh tokens, ID tokens, and the ChatGPT account identifier are handled on the mobile device so the app can make read-only usage requests directly to OpenAI over HTTPS.
Android encrypts authentication material with AES-GCM using a key generated in Android Keystore. iPhone stores the complete authentication bundle in a device-only, non-syncing Keychain item. Authentication material is not sent to the LimitPulse public-signal service.
Usage and local history.
The app receives quota, reset-time, plan, and Token Activity values from OpenAI. It normalizes and stores the minimum values needed for current status and history in an app-private Room database on Android or SwiftData store on iPhone. LimitPulse does not read or store conversations, prompts, source code, profile photos, or email addresses.
Usage and history are processed on the device and are not uploaded to the LimitPulse public-signal service, Firebase, an analytics provider, or a crash-reporting provider.
Firebase Cloud Messaging.
When a release is configured for Firebase Cloud Messaging (FCM), Google/Firebase processes data required to deliver reset-verification signals. This may include a Firebase installation ID, app version, Firebase user agent, and messaging registration data. LimitPulse uses FCM only for the fixed public reset-signal topic.
FCM messages contain only a bounded public event type, public event identifier, public source category, and publication time. OpenAI tokens, cookies, account identifiers, usage, prompts, conversations, and source code are never put in an FCM message.
The app does not enable Google Analytics, Crashlytics, Firebase Performance Monitoring, advertising, or BigQuery delivery-metrics export.
Firebase documents some unlinked messaging diagnostics and SDK adoption information under analytics purposes. This supports delivery operations and SDK maintenance, not LimitPulse user-behavior analytics or advertising.
Public reset-signal service.
The LimitPulse public-signal service reads public reset announcements, classifies explicit completed-reset evidence, deduplicates public events, and sends the fixed FCM topic signal. It does not expose a client upload endpoint and does not receive OpenAI account data from the app.
3. Purposes
Data is used only to:
- connect to OpenAI at the user's request;
- retrieve and display read-only usage information;
- retain local usage and reset history;
- schedule account verification near expected resets;
- prompt the device to verify the user's actual account after a public signal; and
- show safe local status and failure information.
LimitPulse does not sell personal or sensitive data, use it for advertising, build advertising profiles, run Codex tasks, consume reset credits, or read or modify conversations.
4. Storage, retention, and backup
Encrypted authentication material and local history stay in app-private mobile storage. Android uses Android Keystore plus an encrypted authentication file and Room; iPhone uses a device-only Keychain item and SwiftData. Local history is excluded from Android backup and iPhone backup. Authentication material remains until disconnect, unrecoverable storage failure, app-data clear, or uninstall. Local history follows the in-app retention behavior and can be deleted at any time.
Google/Firebase applies its own retention rules to Firebase installation and messaging data. Disconnect disables FCM auto-initialization, requests topic unsubscription and FCM unregistration, and requests deletion of the Firebase installation ID.
5. User controls and deletion
- Disconnect OpenAI deletes the encrypted Android authentication file and Keystore key or the iPhone Keychain item, clears transient Cloudflare state, disables FCM auto-initialization, requests FCM cleanup, and cancels scheduled account checks.
- Delete local history deletes usage snapshots, quota windows, Token Activity history, reset evidence, sync state, and stored public signals from the Room database on Android or SwiftData store on iPhone.
These controls delete LimitPulse data on the Android phone or iPhone. They do not delete the user's OpenAI account. OpenAI account deletion must be performed through OpenAI.
LimitPulse has no developer-operated user account or account-data backend, so there is no separate LimitPulse cloud account to delete.
6. Permissions
- Internet: required for OpenAI requests and Firebase messaging.
- Notifications: requested only from a user action so verified reset alerts can be shown.
On Android, other network, wake, boot, and foreground-service permissions are contributed by FCM and WorkManager for delivery and scheduled work. On iPhone, background tasks and remote notifications remain controlled by iOS. Neither app requests contacts, location, camera, microphone, phone, SMS, advertising ID, or unrestricted storage access.
7. Security and limitations
Network traffic uses HTTPS and cleartext transport exceptions are not enabled.
Release builds contain no network body logger, Firebase Analytics product, or
developer-operated crash reporter. WebView is restricted to a Cloudflare
fallback at the exact
https://chatgpt.com origin and WebView debugging is disabled.
OpenAI usage endpoints used by LimitPulse are internal and may change. The app preserves the last successful value and displays an explicit state when a request fails. Android and iOS may delay background work. Force-stopping on Android or force-quitting on iPhone can block background checks and alerts until the user opens the app again.
8. International processing
OpenAI and Google/Firebase may process data in countries other than the user's country under their respective terms and privacy policies. Applicable jurisdiction-specific rights and disclosures may vary by launch country.
9. Children
LimitPulse is not designed or directed to children. Its intended audience is adults who already control an eligible OpenAI account.
10. Changes and contact
Material changes will be reflected by updating this policy and its effective date.
Developer/operator: YongTech
Privacy contact: pyhppyyhh0307@daum.net