Oriel

Privacy policy

Effective 5 October 2026. Applies to the Oriel iOS app and the Oriel Mac companion by 67 Enterprise.

The short version

Oriel has no account, no analytics, no advertising and no crash reporting of its own; if you share crash and usage data with Apple and app developers in your device settings, Apple may show us crash reports under its policies. Oriel has no cloud service of ours. Your screen travels only end-to-end encrypted from your Mac to your paired phone. We do not receive your screen, your typing, your clipboard, your device names or your pairing keys. Models you choose receive what the sections below describe, and nothing more.

What stays on your devices

DataWhere it is processedStored?Sent to 67 Enterprise?
Screen framesYour Mac, then your paired phone, encrypted end to endNoNever
Pointer, keyboard and scroll inputYour phone to your Mac, encrypted end to endNoNever
Typed textYour Mac, at the moment of typing onlyNo; never loggedNever
Pairing keys and the list of trusted devicesEach device's own KeychainYes, on that device until you forget or revoke itNever
Camera (iPhone/iPad)On the phone, only to scan the pairing codeNoNever
Local-network discoveryBonjour on your networkNoNever
Assistant settings and instructionsYour MacSettings yes; instructions and the assistant's steps in the activity log belowNever
Activity logYour Mac, in Library/Logs/Oriel in your home folderYes, for seven days; delete it any time in the companion's Settings, DiagnosticsNever
Diagnostics reportYour MacOnly if you export itOnly if you send it to us yourself

The activity log is there for troubleshooting. It records when sessions start and end and why, each assistant step with the names of the controls it used, and what the assistant reported back to you. Typed text and your answers appear only as a character count, an instruction that mentions a password, code or card number is left out, and long numbers are masked. It is a plain text file on your Mac and leaves it only if you send it to someone.

What a model receives

The assistant reads the screen on the Mac and produces a text description: the frontmost app and window title, control names, roles and positions from the accessibility tree, and text recognized on the Mac. Secure fields are never read, and text that looks like a password, one-time code or card number is left out. This description, your instruction and the assistant's own step history are sent to the models you configured.

Those providers process the data under their own terms. 67 Enterprise is not a party to those requests and cannot see them.

What we receive

Nothing, in normal use. If you email support, we receive what you write. Apple provides us aggregate App Store statistics under its own policies.

Optional relay

The companion contains an optional, off-by-default relay for connecting across networks. When you enable a relay (ours or one you run), it forwards encrypted bytes it cannot read and can observe connection metadata: addresses, timing and byte counts. It stores none of it beyond the connection; our relay logs only rejected registrations and its own start-up. A paired phone also keeps a reconnect key for that relay in its Keychain, next to the pairing keys, so it can find your Mac from outside your network; it is handed over inside the encrypted session and never passes through the relay in clear. Nothing else about the relay has changed in this policy, and it is enabled.

Children

Oriel is not directed at children under 13 and collects no personal data from anyone.

Changes and contact

We will post changes here with a new effective date. Questions: support@67enterprise.com.