This is a courtesy translation. Only the German version is legally binding.
Autoreverse · Legal
Autoreverse Privacy Policy
As of: version 1.3
1. Summary
Autoreverse is an app that connects you to your own Autoreverse Server. Other media servers are not supported. The app itself operates no servers, collects no usage data and contains no third-party analytics or advertising software. All your audiobook and podcast data stays on the server you run yourself and in a local cache on your device.
2. Who is responsible?
MOJM – Owner: Oliver Terp
Heinrich-Lübke-Str. 16
42579 Heiligenhaus
Germany
Email for access and deletion requests: kontakt@mojm.de
3. Which servers does the app contact?
Autoreverse communicates exclusively with the Autoreverse Server whose address you enter
yourself when setting up the app. There is no server operated by the app’s developer, and the
app does not connect to any other service on its own. Cover images are also loaded directly
from your own server – through the standard iOS URL cache (URLCache), not from a
third party.
Because self-hosted servers often run on the local network over HTTP or with self-signed
certificates, the app also allows unencrypted or not-by-default trusted connections to exactly
this one server you configured. Technically, NSAllowsArbitraryLoads is set. This does
not change the fact that the app contacts no other endpoint.
4. What data is stored where?
Credentials. When you sign in, the app sends your username and password, or
the OpenID Connect sign-in flow, once to your server. Only the sign-in token issued by the
server is stored – not your password. The token is kept in your device’s keychain, protected
with the level “available after first unlock” (kSecAttrAccessibleAfterFirstUnlock). It belongs to a dedicated app group (group.de.mojm.autoreverse) used
exclusively by Autoreverse itself. The server address is additionally stored in the iOS app
settings (UserDefaults). When you sign out, the token and server address are
deleted from the keychain and the settings.
Library, listening progress and statistics. This data lives primarily on your
own Autoreverse Server – you are responsible for it yourself. For offline use and faster
loading, the app keeps a local cache on your device as an SQLite database (library.sqlite) in the app’s own “Application Support” directory. This cache never leaves your device.
Downloaded audiobooks and episodes. Audio files downloaded for offline playback are also stored locally in the app’s own storage area.
5. Analytics, tracking and advertising
Autoreverse contains no analytics software, no tracking, no advertising and no third-party crash reporting service. Apart from the app’s own domain and data access code, only GRDB.swift is included, a pure SQLite database binding with no networking or analytics functions. There is no communication with analytics, tracking or advertising services.
6. App purchase and supporting the server
The Autoreverse app is intended to be offered as a paid app on the App Store. The purchase is handled entirely by Apple through the App Store. MOJM receives no payment or credit card data. The acquisition, download, provision of updates and payment processing are governed by the current Apple Media Services Terms and Conditions, including the additional terms for the App Store and the Apple Privacy Policy. These contractual and privacy terms apply independently of the terms for using the self-hosted Autoreverse Server.
The Autoreverse Server remains free of charge regardless and will be released as open-source software. Anyone who wants to support the development of the server can do so voluntarily through donation options to be announced. A donation is neither a requirement for using the server nor linked to additional features.
7. Your rights
Since Autoreverse itself does not collect or store personal data on its own servers, requests for access, rectification and deletion usually concern the data on your own Autoreverse Server, for which you as the operator are responsible. For questions about the app or locally stored data, you can reach us at kontakt@mojm.de.
You can delete locally stored data yourself at any time: via “Sign out” in the settings, via “Delete all downloads” or by uninstalling the app.
AUTO