Skip to main content
Privacy

Enough privacy policy

Last updated: July 2026

Intro

Enough is a local-first iPhone and iPad app. It has no app account, advertising, analytics, or tracking, and it does not maintain a developer-controlled database of your music library or decisions.

Your data

  • Your music metadata, followed sources, decisions, enough rules, scan history, and settings are stored on your device using SwiftData.
  • When iCloud sync is enabled, that data syncs through your private iCloud account. You can turn iCloud sync off and use local-only storage.
  • Enough does not provide the developer with access to your local or private iCloud data.
  • You can export your data or delete app data from within Enough.

Data collection

  • Enough does not use user accounts, advertising SDKs, analytics SDKs, or tracking technologies.
  • Enough does not sell your data or share it for advertising or tracking.
  • If you contact Enough by email, your email provider and the recipient process the information needed to respond.

Apple Music

Enough asks for Apple Music access to find followed artists and playlists, scan music metadata, check library membership, and add music to your library or playlists. Apple processes these requests under its privacy policy.

Spotify

Spotify connection is optional. Enough uses the public client ID you enter to connect to Spotify and retrieve playlists owned by your Spotify account and their tracks. Spotify access and refresh tokens are stored in Keychain, are not stored in SwiftData, and are not included in Enough backups. Spotify processes connected account data under its privacy policy.

AI-assisted imports

  • When available and selected, Apple Intelligence and Vision process link previews and photo text on your device without an OpenAI request.
  • If OpenAI is selected or used as the fallback, Enough sends a request to the OpenAI Responses API with store: false.
  • For a link import, the request contains only the URL, page title, and a capped, sanitized page excerpt needed to identify music.
  • For a photo import, the request contains only downscaled image data that you intentionally selected.
  • Enough does not persist raw page previews, prompts, responses, or extracted payloads after they are mapped to music candidates.
  • OpenAI processes these requests under its privacy policy.
  • Enough fetches a web page only when you intentionally import its URL. The website receives the normal technical information required to answer that request.
  • Unsafe local, private, and credentialed URLs are rejected before they are fetched.
  • An image is processed only when you intentionally select it for an import.

Backups

An Enough backup contains the app data needed for restoration, including music metadata, source identifiers and URLs, decisions, enough rules, save routing, AI settings, the user-entered OpenAI API key, Spotify settings and client ID, scan state and reports, and follow suggestions. Treat exported backup files as sensitive.

Backups do not contain Spotify access or refresh tokens, CloudKit metadata, caches, raw prompts, raw API responses, or external payload logs.

Logging

Diagnostic logs are limited to scan totals and sanitized error types, domains, and codes. They do not include music titles, artist names, raw identifiers, ISRC values, URLs, tokens, prompts, localized error descriptions, or raw API payloads.

This website

This static website does not use cookies, forms, analytics, or tracking. Cloudflare provides hosting and may process standard technical request information needed to deliver and secure the site under its privacy policy.

Your control

Enough has no developer-controlled account or user database from which to request an export or deletion. You can export or delete app data from Enough and manage data held by Apple, Spotify, OpenAI, or Cloudflare directly with those providers.

Contact

For privacy questions: alonuziel@gmail.com