Privacy

Scroll the Volume

Scroll the Volume has a dedicated privacy page on this site. The table below separates website handling from app/store handling so visitors do not have to guess.

App privacy policy

Current privacy statement

This policy is synchronized from the app's maintained privacy-policy source and included here on the canonical customer-facing route.

Privacy Policy for Scroll the Volume

Last updated: August 23, 2026

This policy explains how Scroll the Volume handles information when you use the app on Mac, iPhone, Apple Watch, widgets, and Control Center. It applies to version 3.0 and later.

Privacy Summary

Scroll the Volume does not use advertising, third-party analytics, cross-app tracking, or data brokers. We do not sell personal information and do not operate a remote-control relay server. Information handled by the app is used only to provide features requested by the user, maintain security, process purchases through Apple, and remember app preferences.

Local Processing and Storage

The app stores information locally so that it can function and remember your choices. This may include app preferences, audio-device names and identifiers, output-icon choices, Scenes and presets, feature settings, entitlement state, paired-device state, and diagnostic information that you explicitly choose to copy. Trusted remote-control credentials may be stored in Apple's Keychain.

Focus status is processed locally on the Mac solely to provide the optional Focus volume-reduction feature. Scroll the Volume does not upload Focus status to CloudKit or to a developer-operated server.

Local-Network Remote Control

Pairing and trust establishment occur only while the Mac and iPhone are on the same local network. After the user enters the pairing code, the apps use an authenticated, encrypted connection to discover the paired Mac, exchange current control state, and relay commands between devices that the user owns. Apple Watch commands are relayed through the paired iPhone.

Local-network communication is not sent to a server operated by us. The free foreground iPhone controls use this local-network path.

Optional Private iCloud Remote Control

When the user explicitly enables Allow control over iCloud in the Mac app, Scroll the Volume may use Apple-managed CloudKit as a fallback when the already-paired devices cannot communicate directly over the local network. This optional Pro or trial feature is off by default, requires an existing local pairing, and requires the Mac and iPhone to be signed in to the same Apple Account.

The fallback uses the user's private CloudKit database. CloudKit records in a private database are owned by the user, count toward the user's iCloud storage, and are not visible to us through Apple's Developer Portal or CloudKit Console. We do not create a Scroll the Volume account and do not operate an intermediary relay server.

Depending on the controls and features in use, the app may place the following operational information in the private CloudKit database:

  • remote-control commands and their acknowledgements;
  • current volume, mute, audio-output, routing, and device-capability state;
  • app-assigned pairing, host, controller, session, and command identifiers;
  • current media source, playback state, track metadata, and artwork when media controls are enabled; and
  • timestamps and expiration information needed to deliver commands safely and reject stale requests.

Scroll the Volume does not upload contacts, messages, microphone recordings, precise location, Focus status, advertising identifiers, or payment-card details through this feature.

Encryption and Security

Cloud command, response, state, media, and artwork payloads are encrypted by Scroll the Volume before upload. Encryption keys are derived from the trusted pairing secret held by the paired devices. CloudKit record selectors use a one-way hashed host selector instead of the raw Mac host identifier. Apple also protects private CloudKit data through its own platform security.

No method of electronic storage or transmission can be guaranteed to be completely secure, but the app limits Cloud control to a previously paired session, verifies command responses, rejects unencrypted Cloud payloads, and disables remote mutations when current authenticated reachability cannot be confirmed.

Retention and Deletion

  • Remote command records expire after approximately 30 seconds.
  • Command-response records expire after approximately 120 seconds.
  • The current state and current artwork use replacing records, so newer information replaces the previous information for that paired Mac.
  • Expired records are removed during periodic cleanup, normally during preparation or foreground activity and no more frequently than hourly.
  • Disabling Allow control over iCloud or forgetting the paired device requests deletion of the commands, responses, state, and artwork associated with that Mac. Completion depends on the app being able to access the user's iCloud account.

The user can view current synchronized state in the app and can stop future CloudKit use at any time by disabling the iCloud option. Because private CloudKit records are not accessible to us through developer tools, we cannot inspect or export a user's private records on the user's behalf. Users may also manage their iCloud account and storage through Apple's system settings.

Purchases and Subscriptions

If you purchase or restore a subscription or lifetime unlock, the transaction is processed by Apple through the App Store. The app receives entitlement information needed to unlock features, but we do not receive or store full payment-card information.

Apple Services

Scroll the Volume uses Apple services such as the App Store, CloudKit, Keychain, local-network frameworks, push notifications, WidgetKit, WatchConnectivity, and system audio frameworks. Apple may process information under its own privacy policy when providing those services. CloudKit notifications are used to wake the apps for remote-control mailbox updates; they are not used for marketing.

For more information, see Apple's Privacy Policy.

Data Sharing, Advertising, and Tracking

We do not sell user information, share it with advertising companies or data brokers, use it for targeted advertising, or combine it with data from other companies to track users. The app contains no third-party advertising or analytics SDK.

Children's Privacy

Scroll the Volume is not designed to collect personal information from children. The app does not knowingly use information from children for advertising, profiling, or tracking.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect app updates or legal requirements. The latest version will be published on this page.

Contact

If you have questions about this policy or Scroll the Volume's privacy practices, contact stefano.bergamini@icloud.com.

Privacy table

What is handled where.

Website accounts
No account creation or login on stefanobergamini.com.
Website analytics
No custom analytics script is installed by this build. Cloudflare may still process standard technical request data to deliver and protect the site.
App data
Product data, if any, is handled inside the app or by Apple platform services rather than by this website.
Network and third parties
Cloudflare serves the site; Apple hosts the App Store listing and purchase flow.
Export or delete
Use app/device controls where available, or email support with the app name for help.
Accessibility
Accessibility issues can be reported through the app-specific support page.

Store listing

Apple remains the purchase and update channel.

The current App Store listing is free to start. Optional purchases, downloads, updates, and refunds are handled by Apple.