Back to Ordinalist

Ordinalist Privacy Policy

How Ordinalist stores ranking data, uses Apple services, and protects your privacy.

Effective date: August 30, 2026

Ordinalist is referred to in this policy as the App. The App is developed and maintained by Andrew Mastracchio (the Developer). This policy explains what information the App handles, where it is stored, and the choices available to you.

Privacy at a glance

  • Rankings and ranking statistics are stored on your device by default.

  • iCloud Sync is optional and uses your private Apple iCloud account.

  • The Developer does not operate an Ordinalist account or data server.

  • There are no ads, third-party analytics, or cross-app tracking.

  • Diagnostic logs leave your device only when you choose to share them.

1. Information stored on your device

By default, the App stores its information locally on your device. This may include imported playlist or album details, song metadata needed for ranking, your ranking choices and results, prior results, decision-duration records used to calculate ranking statistics, preferences, and technical state needed to resume your work. Ranking statistics, such as total active ranking time, average decision time, and match-up summaries, are calculated from that stored ranking data. The Developer does not automatically receive this information.

The App shares its local store with its bundled widget and extensions through an Apple App Group so those components can provide the features you request. That shared storage remains within the App’s Apple-managed container.

2. Optional iCloud Sync

iCloud Sync is off by default. If you choose to enable it during onboarding or in Settings, the App stores and synchronizes the same ranking data, including decision-duration records and the information used to calculate ranking statistics, through your private Apple iCloud account so it can remain current across compatible devices. Ranking statistics are derived on your devices from this synchronized ranking data. The Developer does not operate the iCloud servers and does not have access to the data in your private CloudKit database.

You may stop that device from participating in iCloud Sync at any time by turning off Sync with iCloud in the App’s Settings. Turning sync off does not necessarily delete copies that were previously stored in iCloud. You can manage iCloud app data through your Apple account and device settings, subject to Apple’s services and retention practices.

3. Apple Music access

The App asks for permission to access Apple Music so you can import playlists and albums for ranking. For an imported playlist, the App may check its current contents when you open the associated ranking or request an update. The App compares those contents with its stored ranking and updates its own data to reflect songs added to or removed from the playlist. This check does not modify the playlist in Apple Music.

On supported platforms, the App can also open Apple Music and, only when you deliberately choose an action that applies your ranking to Apple Music, edit an eligible playlist or create a new playlist that reflects your ranking.

Apple Music library data is processed by the App and Apple’s Music services for these requested features. It is not transmitted to a server operated by the Developer. You can revoke Apple Music access in your device’s Privacy & Security settings, although features that require your music library will then be unavailable.

4. On-device AI

When On-Device AI is enabled and supported by your device, the App uses Apple’s on-device Foundation Models to generate ranking insights. These requests are processed on the device and are not sent to a Developer-operated AI service. You can disable On-Device AI in Settings.

5. Diagnostic logs and support

The App keeps a limited diagnostic log locally for troubleshooting. The log records technical events such as the App version, build, operation outcomes, whether ranking statistics were requested or loaded, aggregate statistic counts, and error types. It is designed not to record song, artist, album, or playlist names; file paths; URLs; stable identifiers; or detailed localized error contents.

The App does not automatically upload diagnostic logs. A log leaves your device only when you deliberately use the system share interface and choose a recipient. If you send a log to the Developer, it will be used only to investigate the issue, provide support, improve the App, maintain necessary development records, or comply with law. You can use the App without sharing a log.

6. Analytics, tracking, advertising, and sharing

The App does not use developer-operated analytics, advertising trackers, or data brokers. It does not track you across apps or websites and does not sell or rent personal information. The Developer does not maintain Ordinalist user accounts, advertising profiles, or a database of your App activity.

Information you voluntarily provide for support may be shared only when reasonably necessary to provide that support, operate or secure the App, comply with applicable law, or protect legal rights.

7. Retention, deletion, and your choices

  • Local App data: Retained on your device until you delete individual rankings or results in the App, or remove the App and its data, subject to Apple device backups.

  • iCloud data: If sync is enabled, retained in your private iCloud account until deleted through the App or your Apple account controls, subject to Apple’s practices.

  • iCloud consent: Revoke future synchronization on a device by turning off Sync with iCloud in the App’s Settings.

  • Apple Music permission: Revoke access through the device’s Privacy & Security settings.

  • On-device AI: Disable it at any time in the App’s Settings.

  • Logs sent to the Developer: Retained only as long as reasonably necessary for the purposes described above. You may request deletion using the contact method below, subject to legal or recordkeeping obligations.

8. Children’s privacy

The App does not knowingly collect personal information from children or adults through normal use. It does not maintain user accounts, advertising profiles, or developer-operated usage databases.

9. Security

The App is designed to minimize the information available to the Developer and relies on Apple’s platform security, sandboxing, App Group, iCloud, and permission systems. No storage or transmission method can be guaranteed completely secure, but limiting collection and access reduces exposure.

10. Apple services

Features may rely on Apple services including Apple Music, iCloud and CloudKit, system sharing, and Foundation Models. Information processed independently by Apple is governed by Apple’s terms and privacy practices. See Apple’s Privacy Policy.

11. Changes to this policy

This policy may be updated when the App’s features, legal obligations, or privacy practices change. Material changes will be reflected in the policy, and the effective date at the top identifies the latest revision.

12. Contact

For questions about this policy, the App’s privacy practices, or a request concerning diagnostic information you previously sent to the Developer, use the contact form at www.andrewmastracchio.com/ordinalist#support.