Privacy
Last updated 30 September 2026
Stash has no account, no server and no analytics. Your library lives on your Mac. Nobody but you can see what you save, because there is nowhere for it to be sent.
What Stash keeps, and where
- Your links, folders, tags, prices and notes are stored in an ordinary file on your Mac, in a folder you choose. It is plain JSON, which means you can open and read it yourself.
- Images you clip or drag in are saved as files beside that library.
- Your settings, including any keys you enter, are kept in the app's own preferences on your Mac.
- If you use the iPhone or iPad app, your library is carried between your devices through your own iCloud account. It is stored in Apple's iCloud Drive under your Apple ID, governed by Apple's terms, and we have no access to it.
What leaves your Mac
Only these, and only as a direct result of something you did:
- The pages you save. When you save a link, Stash fetches that page from the site it is on so it can read the title, the picture and, on a shopping list, the price and any closing date. This is a normal request to that website, made from your computer, the same as opening the page in a browser.
- youtube.com and i.ytimg.com. For a saved video, to read its title, length and thumbnail, and to play it.
- www.googleapis.com. Only if you choose to follow a YouTube channel and enter your own free YouTube Data API key in Settings. Stash asks that API which videos a channel has published. Without a key of your own, the feature stays off and nothing is sent.
- www.google.com. To fetch the small site icon shown next to a saved link, requested by the site's domain name only.
- fonts.googleapis.com and fonts.gstatic.com. This website uses Google Fonts. The app does not.
Stash itself never uploads your library, or any list of what you have saved, anywhere.
AI apps, if you connect one
Stash can answer an AI app such as Claude, so you can ask it about your library. This is off until you turn it on in Stash ▸ Settings ▸ AI apps, and changing your library (saving, filing, tagging) is a second switch, also off. Nothing can ever be deleted this way.
- Stash only answers on your own Mac, only to apps you have given its token to, and never to a web page. A new token, from the same place in Settings, cuts every app off.
- What Stash answers becomes part of your conversation with that app. The app handles it the way it handles anything else you tell it, under that app's own privacy policy. Stash sends nothing anywhere itself.
What Stash reads on your Mac
- Your browser's front tab. With your permission, macOS lets Stash ask Safari or Chrome for the address and title of the tab you are looking at, so it can save it. It is asked for at the moment you first use the feature, per browser, by macOS itself, and it reads nothing else: not your history, not your other tabs' contents, not form data.
- Part of the screen, when you clip one. Clipping uses macOS Screen Recording permission and captures only the rectangle you drag, only when you ask for it.
- Folders you point it at. If you set an Obsidian vault or a folder listing things you own, Stash reads files there. Both are optional and unset by default.
What Stash does not do
- No account, sign-in, or profile.
- No analytics, telemetry, crash reporting or advertising, and no third-party SDKs of any kind.
- No location, contacts, photo library, microphone, camera or health data.
- Nothing is sold or shared, because nothing is collected.
Children
Stash is not directed at children and collects no personal information from anyone.
Changes
If this policy changes, the date at the top changes with it, and the change will be described on this page.
Getting in touch
Questions about any of this are welcome on the Discord or by email from the support page.