Privacy Policy
Last updated: 16 August 2026
Peak Browser (“Peak,” “we,” “our,” or “us”) is designed as a local-first browser workspace for Apple platforms. This Privacy Policy explains how information is handled when you use Peak, and how this website is handled separately.
Our Privacy Model
Peak does not run a built-in analytics pipeline, advertising tracker, or user-account service. We do not sell your data, and we do not operate servers that store your browsing history, notes, tasks, chats, whiteboards, bookmarks, or workspace data.
Most Peak data is stored locally on your device. If iCloud sync is enabled, that data may sync through your private Apple iCloud account using CloudKit.
Some optional features do reach outside your device: cloud AI models, the websites you browse, and Peak Surf's weather, map, and country data. Each is described below, and none of them is required to use Peak.
Information Stored On Your Device
Peak may store the following data locally so the app can function:
- Browsing history and search/activity logs
- Bookmarks and bookmark groups
- Saved sessions and workspaces
- Notes, note images, and attachments
- Kanban task boards
- AI chat history
- Whiteboards and whiteboard assets
- Mesh messages and peer/workspace metadata
- Arcade/game state where applicable
- App settings, workspace profiles, and preferences
This data is stored in app-local storage such as Core Data, app support files, UserDefaults, and Apple Keychain where appropriate.
iCloud Sync
Peak can sync workspace data through your private iCloud account using Apple CloudKit. We do not have access to your private iCloud database. iCloud data is handled by Apple under Apple's privacy and iCloud terms.
API Keys And Secrets
If you add an API key for an AI provider — OpenRouter, OpenAI, OpenCode, xAI, Google, Moonshot, Kimi Code, or Ollama Cloud — Peak stores it securely in Apple Keychain on your device. Each key is used only to make requests to the provider it belongs to, when you choose to use cloud AI features. Open-Meteo and optional future flight-provider credentials are stored in Keychain too; flight-provider keys are not transmitted while real-fare integration remains unavailable. Keys are never sent to our servers.
Mesh passphrases and related encryption material are also stored using Keychain-backed storage where applicable.
AI Features
AI features are optional.
If you use local Ollama models, requests are sent to your local Ollama service on your device or local machine.
If you use a cloud provider, your prompts, chat messages, selected context, and any attached content needed for the request may be sent to that provider. Those providers process the request according to their own terms and privacy policies.
Image, video, music, and speech generation runs through OpenRouter regardless of which model is answering your conversation, so those features send their prompts to OpenRouter.
Peak does not use your AI chats for our own training, analytics, or advertising.
Speech On Your Device
Peak can transcribe speech without sending audio anywhere, using a model that runs on your Mac or iPhone. It is off until you turn it on in Settings → API.
Turning it on downloads that model once, from Hugging Face. The request carries nothing about you beyond what any file download does — no account, no identifier, and none of your text or audio. Nothing is sent there again unless you remove the model and download it afresh, and you can delete it at any time in the same place.
After the download, everything happens on your device. Recordings you transcribe are read locally and never uploaded. When you dictate a message, the recording is transcribed and then deleted immediately; it is not kept, and it is never sent to us or to anyone else.
Reading a response aloud uses the speech voices built into your operating system. Nothing leaves the device for that either.
Transcription through a cloud provider remains available and is what Peak uses when the on-device model is switched off, or for languages it does not cover. In that case the audio is sent to the provider you configured, under their terms.
Markings On Generated Media
Images, audio, and video generated in Peak carry metadata recording that an AI model produced them, which model, and when. This is written into the file itself and travels with it when you export or share it. It identifies the model, never you — no account, device, or personal identifier is included.
Reading Public Code Repositories
If you ask Peak's assistant about a public GitHub repository, Peak requests the file listing and the specific files needed to answer from GitHub's API. Nothing is cloned, and the fetched text is held in memory for that conversation only — never written to disk. If you have added a GitHub token for publishing, it is sent with those requests so private repositories you own can be read and so rate limits apply to your account rather than anonymously.
Web Browsing And Search
Peak uses WebKit for browsing. When you visit websites or use a search engine, your device connects directly to those websites or services. Those third-party websites may collect information according to their own privacy policies.
Peak does not control the privacy practices of websites you visit.
Peak Surf: Waves, Weather, Maps, And Country Data
Peak Surf is optional. It contacts the third-party data services described below only when you use the relevant features.
Waves are simulated on your device. By default, Peak generates swell height, period, and direction locally using its own model. These figures are a plausible simulation, not a forecast. They are labelled “Simulated” wherever they appear, nothing about them is sent anywhere, and they must never be used to judge whether it is safe to enter the water.
Weather comes from Apple Weather. To show wind, cloud, precipitation, and sunrise and sunset times for a surf spot, the coordinates of that spot are sent to Apple's WeatherKit service. WeatherKit provides no ocean swell, which is why wave data comes from a separate source. Apple handles this data under Apple's own privacy policy.
Open-Meteo is opt-in and needs your own API key. Peak does not contact Open-Meteo unless you add your own Open-Meteo API key under Settings → Surf → Surf Data. Their free endpoint is licensed for non-commercial use only and Peak does not use it. If you add a key, the coordinates of spots you view are sent to Open-Meteo to fetch weather, marine conditions, and sunrise and sunset times, and Peak shows the attribution “Weather data by Open-Meteo.com” that their CC BY 4.0 licence requires. Open-Meteo states that their server logs may retain information such as IP addresses, requested URLs, and the coordinates within them for up to 90 days. Your key is stored on your device.
Country summaries come from Wikipedia. When you open a country in the surf travel passport, its name is sent to Wikipedia's API to fetch a summary. That text is contributed by Wikipedia's volunteer editors and reused under CC BY-SA 4.0; Peak links to the specific article it quotes. Requests are handled by the Wikimedia Foundation under the Wikimedia privacy policy.
Country indicators come from World Bank Open Data. Population, GDP per person, fertility, and life expectancy figures are fetched by sending a country code to the World Bank API. This data is licensed CC BY 4.0.
Maps come from Apple. Maps, satellite imagery, and geographic presentation are provided by Apple Maps through MapKit, which displays its own attribution on the map itself.
Forecast and country information may be cached on your device so Peak does not repeatedly re-request it. Peak does not sell any of this information, and does not use it for advertising or tracking.
Microphone
Peak uses the microphone only while you are actively dictating — when you press the microphone button and until you press stop. It is never used in the background, and Peak does not listen for a wake word.
The recording exists only long enough to be turned into text, and is deleted as soon as that is done. Where on-device transcription is switched on, that recording never leaves your device at all.
Location
Peak requests your location only when you use a feature that needs it: finding the coast nearest you when you set up a home break in Peak Surf, showing where you are on the surf travel map, and estimating flight distances. You can decline or revoke this permission at any time in your system settings, and those features fall back to a home coast you choose yourself.
Before any location leaves your device, Peak rounds it to roughly one kilometre. The unrounded position is used only on your device, to draw your own position on the map. The rounded coordinate is what gets sent to Apple Weather to fetch conditions, to Apple's geocoder to resolve a country name, and, only if you have configured your own key, to Open-Meteo.
Peak does not store your location on our servers, does not link it to an identity or an account, and does not use it for advertising or tracking.
Local Mesh Collaboration
Peak Mesh is an optional peer-to-peer feature built on Apple's Network framework. When enabled, Peak may share selected data with the peers you are connected to, depending on your mesh settings. This can include chat messages, tab shares, workspace signals, note/task/whiteboard updates, AI chat sync, Site Builder tab presence, game invites, and gameplay state. You control which workspace categories participate.
Peak operates no relay and no server in the middle: a mesh connection is always directly between your devices, encrypted, and authenticated with the room secret you set. Peak cannot read what passes over it.
Peers are found in three ways. Nearby devices are discovered on the local network. Devices can also connect over Apple's peer-to-peer Wi-Fi with no network at all. And you can write down a peer's address yourself, which dials that device directly — including one on a different network, over the internet. A written-down peer is a deliberate act: nothing is dialled that you have not entered.
Sharing a Site Builder tab shares that the editor is open and which project it is. On your own devices that opens the copy already synced through iCloud. On another person's device, opening that tab asks your device to send the project — its files and source — and only projects you currently have open and shared can be asked for. Send to Peer, inside a project, sends one deliberately at any time. No project leaves your device unless you share the tab or send it.
Analytics And Tracking In The App
The Peak app does not include built-in third-party analytics, advertising SDKs, or cross-app tracking. We do not sell personal information.
This Website
This section covers www.peakbrowser.app only, and describes something the app itself does not do.
This site runs no analytics at all. There is no Google Analytics, no tag manager, no advertising pixel, and no third-party script of any kind. Nothing is loaded from another company when you read these pages.
Because nothing is collected, there is nothing to consent to, and no cookie banner to dismiss. The site sets no cookies and writes nothing to your browser's storage.
Until August 2026 this site offered Google Analytics behind an opt-in banner. It was removed: a page about a local-first browser was asking to be allowed to watch you read it, and the question was better answered by not asking. Any consent recorded under the old banner is now unused, and the code that read it is gone.
The site is hosted on Vercel, which keeps standard server request logs. Search engines report their own aggregate figures — how often a page appeared in results and how often it was clicked — which we can see for this site without anything being added to it.
None of this touches the app. Installing Peak does not carry any website analytics with it.
Data Deletion
You can delete Peak data from inside Settings. Depending on your configuration, deleting synced data may also remove it from your private iCloud-synced workspace.
You may also remove the app from your device to delete local app data, subject to Apple platform behavior and any iCloud sync settings.
Children's Privacy
Peak is not directed to children under 13. We do not knowingly collect personal information from children.
Changes To This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated “Last updated” date.
Contact
If you have questions about this Privacy Policy, contact us at Designr.pros@gmail.com.