Security
Local by default
Secure payments via Stripe. Your photos are local, and they stay local.
Your photos are local, and they stay local
Everything you capture is written to your own Mac and nowhere else. There is no upload, no backup of it on our side, and no way for us to look at it.
Payments go through Stripe
Your card details are entered on Stripe's own checkout and never touch our servers. We receive an email address and a payment identifier — nothing else.
No telemetry, at all
The app does not report what you photograph, which features you use, or how often you open it. There is no analytics package in the binary.
How you can check the first one
Claims about privacy are cheap. This one is testable in under a minute: turn off your Wi-Fi and use the app. Shoot, edit, save to Photos. Everything works, because none of it depends on us.
If you want to go further, watch the network. Little Snitch or macOS’s own tooling will show you exactly what the app contacts — the two hosts listed below, and no image data going anywhere.
What does leave your Mac
Being straight about this is the only way the paragraph above is worth anything. The app contacts two hosts, and none of what it sends is a photo.
Our server, at bold-basilisk-860.convex.site, for:
- A licence check, about once a week: your key and a one-way hash of the machine identifier.
- Feedback, if you choose to send it: your message, the app version and the macOS version.
- Audio you explicitly send for transcription, if you use that feature. It is processed and not retained.
GitHub, at api.github.com, to ask whether there is a newer version. It is a plain read of the public releases list — the same page anyone can open — and it sends nothing about you or your Mac.
That is the complete list. Anything else would be a bug, and we would want to hear about it.
Payment
Checkout happens on Stripe’s own pages. We never see, hold or transmit a card number — there is nowhere in our code where one could be stored, because one never arrives.
Stripe is a PCI-DSS Level 1 service provider, which is the highest level there is. What comes back to us is an email address, an identifier for the checkout, and whether it was paid.
Your licence key
The key is what the app authenticates with, so treat it like a password: do not publish it. There is no password on your account because there is no account — signing in to your licence page is done by a link emailed to the address you bought with, and that link works once.
On our side we store only a hash of each sign-in token, so the table that grants access holds nothing anyone could sign in with.
If cloud sync ever arrives
It will be off unless you turn it on, and it will be end-to-end encrypted, with the key derived on your Mac. We would be storing files we cannot open. Turning it off deletes the copies; your originals never moved.
It does not exist today. You can see the shape of it on the gallery page, which is deliberately empty.
Telling us about a problem
If you find a security issue, email hello@getcappture.com before publishing it and we will work with you on a fix. We will not threaten you for reporting something in good faith.
The full detail of what we hold is in the privacy policy.
Last updated 30 September 2026.