Privacy Policy

OpenWebApp

Last Updated: February 21, 2026

🔒 Privacy First Approach

OpenWebApp does not collect, store, or transmit your personal data or conversations. Your data stays entirely on your device and your own OpenWebUI server. We have no access to your conversations, uploaded content, or AI interactions.

1. Introduction

sareba Computer & Software e.U. ("we," "us," or "our") operates the OpenWebApp mobile application (the "App"). This Privacy Policy explains how we handle information in connection with the App.

We are committed to protecting your privacy and ensuring transparency about our data practices. This policy complies with the General Data Protection Regulation (GDPR) and other applicable data protection laws.

2. Data Controller

The data controller responsible for your personal data is:

sareba Computer & Software e.U.

Vorgartenstrasse 441
2145 Hausbrunn
Austria

Email: it@sareba.net
Phone: +43 2533 20200
Website: sareba.net

Registration Number: FN612275f

3. What Data We Collect (and Don't Collect)

3.1 Data We Do NOT Collect

We do not collect, process, or store:

  • Your conversations or chat messages
  • Images or photos you upload
  • PDF documents or their contents
  • API tokens or server credentials
  • Your OpenWebUI server URL or configuration
  • IP addresses or device identifiers for tracking
  • Usage analytics or behavioral data
  • Location data
  • Contact information (unless you contact us)

3.2 Data We Collect

The only information we may collect relates to your subscription through Apple's App Store:

Data Type Purpose Legal Basis Storage
Apple ID Subscription Status Verify subscription and provide app access Contract Performance (GDPR Art. 6(1)(b)) Apple Inc.
Email (if you contact support) Respond to your inquiries Legitimate Interest (GDPR Art. 6(1)(f)) Email server
Crash Reports (optional, iOS) Improve app stability Consent (GDPR Art. 6(1)(a)) Apple Inc.

4. How Your Data is Stored

4.1 Local Data Storage

All app data is stored exclusively on your iOS device:

Important: If you delete the app, all locally stored data is permanently deleted from your device. We cannot recover this data as we never had access to it.

4.2 Your OpenWebUI Server

When you use the App, your conversations and uploaded content are transmitted directly to your own OpenWebUI server. We are not involved in this data transfer and have no access to or control over your server.

The privacy and security of data on your OpenWebUI server is governed by:

5. Data Transmission and Security

5.1 Direct Connection Architecture

The App connects directly from your device to your OpenWebUI server. Data flow:

  1. YouYour DeviceYour OpenWebUI Server
  2. We (sareba Computer & Software e.U.) are not in this data path
  3. No data passes through our servers

5.2 Security Measures

We implement security measures in the App:

6. Third-Party Services

6.1 Apple App Store and StoreKit

We use Apple's App Store and StoreKit framework for subscription management. Apple may collect:

This data is governed by Apple's Privacy Policy.

6.2 No Analytics or Tracking Services

We do not use:

7. Your Rights Under GDPR

As we do not collect your personal data, most GDPR rights are not applicable. However, you have the following rights:

7.1 Right to Information (Art. 15 GDPR)

You can request information about any personal data we may have (e.g., support emails). Contact us at privacy@sareba.net.

7.2 Right to Deletion (Art. 17 GDPR)

Since data is stored locally on your device, you can delete all data by deleting the app. For any data we may have (e.g., support emails), contact us for deletion.

7.3 Right to Data Portability (Art. 20 GDPR)

Your conversation data is stored in a standard format on your device and can be exported through iOS backup mechanisms.

7.4 Right to Object (Art. 21 GDPR)

You can object to any data processing. Since we don't collect personal data, simply don't use the App if you have concerns.

7.5 Right to Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority:

Austrian Data Protection Authority:
Österreichische Datenschutzbehörde
Barichgasse 40-42
1030 Wien
Austria
Website: dsb.gv.at

8. Children's Privacy

The App is not directed to children under 13 (or 16 in the EU). We do not knowingly collect data from children. If you believe a child has used the App, please contact us.

9. International Data Transfers

Since we do not collect or store your data, there are no international data transfers from us to third countries.

However, note that:

10. Data Retention

10.1 App Data

10.2 Support Emails

If you contact us for support, we retain your email for up to 3 years for support and legal purposes, then delete it.

10.3 Subscription Data

Subscription data is retained by Apple according to their retention policies and applicable laws.

11. Cookies and Tracking

The App does not use cookies or tracking technologies. If you visit our website (sareba.net), separate cookie policies apply.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

Your continued use of the App after changes constitutes acceptance of the updated policy.

13. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

14. Contact Us About Privacy

If you have questions or concerns about this Privacy Policy or our data practices:

Privacy Contact:

Email: it@sareba.net
General Support: support@openwebapp.net

Postal Address:
sareba Computer & Software e.U.
Vorgartenstrasse 441
2145 Hausbrunn
Austria

15. Summary

Key Takeaways

  • ✅ We do not collect, store, or process your conversations
  • ✅ All data stays on your device and your server
  • ✅ We have no access to your content or credentials
  • ✅ No analytics, tracking, or third-party data sharing
  • ✅ Subscription managed by Apple, not us
  • ✅ Full GDPR compliance through privacy-by-design
← Back to OpenWebApp