Privacy Policy
HogLens - PostHog Analytics Companion
Last Updated: August 12, 2026
Effective Date: August 12, 2026
Introduction
I am Patrick Diezi, an independent software developer operating under the name KREANIQS, based in Switzerland. I developed HogLens to provide a native PostHog analytics experience for Apple devices while respecting your privacy.
This Privacy Policy explains how I handle information when you use the HogLens application ("App") and the HogLens website at www.hoglens.app ("Website"). I believe in transparency and want you to understand exactly what data is collected, how it is used, and the choices you have.
The key takeaway: your PostHog analytics data stays between you and PostHog — I never see it. The App itself talks to my own infrastructure for exactly three things: optional, consent-gated usage analytics; a remote configuration file; and a small developer news feed. None of these carries your personal data, your PostHog data, or your API tokens.
Contact Information:
Patrick Diezi / KREANIQS
Lehmbergstrasse 8
8514 Amlikon-Bissegg
Switzerland
Email: privacy@hoglens.app
Website: www.hoglens.app
1. Information I Do NOT Collect
Let me be clear about what HogLens does NOT do:
- No access to your PostHog data: The analytics data you view in HogLens flows directly between your device and your PostHog server. I never see, store, or process it.
- No personal data collection: I do not collect your name, email, location, or any other personal identifiers through the App.
- No API token access: Your PostHog API tokens never leave your device (see Section 2.1).
- No advertising: HogLens contains no advertisements and does not share data with advertisers.
- No data selling: I do not sell, rent, or trade any information to third parties.
- No tracking without consent: The App's own usage analytics (Section 5) run only after you explicitly agree, and you can turn them off at any time.
2. Information Stored on Your Device
HogLens stores certain information locally on your device to provide its functionality:
2.1 PostHog API Tokens
Your PostHog API tokens are stored securely in your device's Keychain, which is Apple's secure credential storage system. These tokens:
- Are encrypted by the operating system
- Never leave your device (they are NOT synced via iCloud)
- Are used only to authenticate requests to your PostHog server
- Can be deleted at any time by removing the connection in HogLens
2.2 App Configuration and Data
HogLens stores the following data locally using SwiftData:
- Connection settings: Server URLs and connection names (not API tokens)
- Project information: Project IDs and names from your PostHog account
- Dashboard configurations: Your custom dashboards, layouts, and insight settings
- Event monitor settings: Your event monitoring preferences and highlight rules
- App preferences: Appearance settings, grid configuration, and other preferences
- Cached data: Temporary cache of chart data for performance (with automatic expiration)
- News state: Which developer news items you have already seen, and a cached copy of the news feed (see Section 7) — stored only on your device, never synced
3. iCloud Synchronization
HogLens uses Apple's CloudKit service to synchronize your data across your Apple devices.
3.1 What Is Synced
The following data is synchronized via iCloud:
- Connection settings (server URLs, names) — excluding API tokens
- Project information
- Dashboard configurations and layouts
- Event monitor settings
- App preferences
3.2 What Is NOT Synced
The following data stays local to each device:
- API tokens (stored only in device Keychain)
- Cached chart data (temporary performance data)
- News seen-state and feed cache (per-device by design)
- Log files (debug information)
3.3 How iCloud Sync Works
- Data is synced using Apple's CloudKit framework
- Data is stored in your personal iCloud account
- Apple encrypts data in transit and at rest
- I have no access to your iCloud data
- You can disable iCloud sync in your device's system settings
For information about how Apple handles iCloud data, please see Apple's Privacy Policy.
4. Information Transmitted to PostHog (Your Data)
When you use HogLens, the App communicates directly with your PostHog server to retrieve analytics data.
4.1 Data Sent to PostHog
HogLens sends the following to your PostHog server:
- Your API token (for authentication)
- API requests for analytics data (events, insights, trends)
- Query parameters (date ranges, filters, breakdowns)
4.2 Data Received from PostHog
HogLens receives:
- Analytics data (events, trends, metrics)
- Project and dashboard metadata
- Event definitions and properties
4.3 My Role
I am not involved in this data exchange. The connection is directly between your device and your PostHog server (whether PostHog Cloud or your self-hosted instance). For information about how PostHog handles your data, please see PostHog's Privacy Policy.
5. App Usage Analytics (Consent-Gated)
Yes — the PostHog companion app uses PostHog itself. HogLens can send anonymous usage analytics about the App to my own PostHog project, so I can understand which features matter and where the App fails. This is entirely separate from your PostHog data (Section 4), and it is off until you say yes.
5.1 Consent First
- On first launch, the App asks for your consent before any analytics event is sent. If you decline, nothing is sent.
- You can change your decision at any time in Settings → Privacy. Turning analytics off stops all events immediately.
- Every event passes a consent check before it leaves your device — there is no path around it.
5.2 What Is Sent (If You Consent)
- Feature-usage events (e.g., "Dashboard Created", "Export Performed", "News Sheet Shown") with coarse, non-identifying properties such as counts, durations, chart types, platform, and app version
- Error categories (e.g., "API Error" with a status code) — never error message contents
Events are grouped by a random installation identifier that is not linked to your identity and cannot be used to contact or identify you.
5.3 What Is NEVER Sent
- Your PostHog API tokens or server URLs
- The contents of your dashboards, insights, events, or queries
- Names you give connections, projects, or dashboards
- Your name, email, or any personal identifier
5.4 Where It Goes
Events are sent to my PostHog project on PostHog Cloud EU (processed in the European Union). They are used solely to improve HogLens and are not shared with anyone.
6. Remote Configuration
At launch, the App fetches a small configuration file from my server at api.hoglens.app (a Cloudflare Worker). This tells the App which features are enabled and where to send consent-gated analytics.
- The request is read-only and authenticated with an app-level key that is the same for every installation — it identifies the App, not you
- No personal data, tokens, or usage information is sent
- As with any web request, the server sees standard connection metadata (such as your IP address) while handling it; nothing is retained per user
- If the server is unreachable, the App uses safe defaults and works normally
7. Developer News Feed
HogLens periodically checks a short news feed from me — release notes, announcements, and tips — so I can reach you inside the App without an update.
- The App fetches a public, read-only file from
ctnk.kreaniqs.com(my server, behind Cloudflare); images in news items load from the same host - The request carries no identifiers, no account data, no tokens, and no query parameters. Like every standard system web request, it includes your IP address and a default User-Agent header naming the app and its version — nothing more is added, and nothing is retained per user
- The App re-checks efficiently (conditional requests), and failures are silent: no connection, no error — offline, HogLens works exactly the same
- Which news items you have read is stored only on your device (Section 2.2) and never reported back to me. If you consented to usage analytics (Section 5), the App records anonymous events about news being shown or dismissed — governed by the same consent switch
8. App Store and Payments
HogLens is distributed through Apple's App Store, and all purchases are processed by Apple.
8.1 Purchase Information
When you make a purchase:
- Apple processes your payment
- Apple provides me with anonymized transaction data (no personal information)
- I receive information about subscription status to verify your access
8.2 Information from Apple
Apple may provide me with:
- Aggregated, anonymous sales statistics
- Subscription status (active, expired, etc.) for entitlement verification
- Anonymous crash reports (if you opt in through your device settings)
I do not receive your name, email, payment details, or other personal information from Apple.
For information about Apple's data practices, please see Apple's Privacy Policy.
9. Website
The HogLens website (www.hoglens.app) is a static informational site.
9.1 Website Data Collection
The website:
- Does not use cookies for tracking
- Does not collect personal information
- Does not include analytics or tracking scripts
- May use basic server logs (IP addresses, access times) for security purposes only
9.2 Contact Forms
If you contact me via email (support@hoglens.app, privacy@hoglens.app, etc.), I will collect:
- Your email address
- The content of your message
- Any information you voluntarily provide
I use this information solely to respond to your inquiry and do not share it with third parties.
10. Third-Party Services
HogLens interacts with the following services:
10.1 PostHog (Your Server)
- Purpose: Analytics data retrieval — your data, your server
- Data shared: API tokens, query requests (directly from your device)
- Privacy Policy: https://posthog.com/privacy
10.2 PostHog Cloud EU (My Project)
- Purpose: Consent-gated App usage analytics (Section 5)
- Data shared: Anonymous feature-usage events, only after your consent
- Privacy Policy: https://posthog.com/privacy
10.3 Cloudflare (api.hoglens.app, ctnk.kreaniqs.com)
- Purpose: Remote configuration (Section 6) and developer news feed (Section 7)
- Data shared: None beyond standard connection metadata
- Privacy Policy: https://www.cloudflare.com/privacypolicy/
10.4 Apple (iCloud/CloudKit)
- Purpose: Data synchronization across devices
- Data shared: App configuration (excluding API tokens)
- Privacy Policy: https://www.apple.com/legal/privacy/
10.5 Apple (App Store)
- Purpose: App distribution, payments, crash reports
- Data shared: Transaction data (processed by Apple)
- Privacy Policy: https://www.apple.com/legal/privacy/
I do not use any other third-party services for analytics, advertising, or data processing.
11. Data Security
I take the security of your data seriously:
11.1 Security Measures
- API tokens are stored in Apple's Keychain, which uses hardware-level encryption
- Local data is stored using SwiftData with standard iOS/macOS protections
- iCloud data is encrypted by Apple in transit and at rest
- All network communication (PostHog, remote configuration, news feed) uses HTTPS encryption
11.2 Your Responsibilities
You are responsible for:
- Keeping your PostHog API tokens confidential
- Securing your Apple ID and iCloud account
- Maintaining physical security of your devices
11.3 Data Breach
In the unlikely event of a data breach affecting your information, I will notify affected users in accordance with applicable laws.
12. Data Retention
12.1 Local Data
Data stored on your device remains until you:
- Delete the data within HogLens
- Uninstall the App
- Reset your device
12.2 iCloud Data
Data synced to iCloud remains until you:
- Delete it within HogLens (syncs the deletion)
- Disable iCloud sync for HogLens
- Delete your iCloud account
12.3 Usage Analytics
Consent-gated usage events (Section 5) are retained in my PostHog project in aggregate form for product analysis. They contain no personal identifiers that would allow me to single you out or contact you.
12.4 Support Communications
If you contact me for support, I retain your communications for as long as necessary to provide assistance and maintain records, typically no longer than 3 years.
13. Your Rights
Depending on your jurisdiction, you may have certain rights regarding your personal information:
13.1 Access and Portability
You can access all your data directly within HogLens. Your data is stored on your device and in your iCloud account, which you fully control.
13.2 Deletion
You can delete your data by:
- Deleting connections, dashboards, or other items within the App
- Uninstalling the App (removes local data)
- Managing your iCloud data through Apple's settings
13.3 Correction
You can correct any data directly within HogLens.
13.4 Data Export
You can export your dashboards as images using the export feature within HogLens.
13.5 Consent Withdrawal
You can withdraw your analytics consent at any time in Settings → Privacy — no events are sent from that moment on.
14. Children's Privacy
HogLens is a business analytics tool and is not directed at children under 13 years of age. I do not knowingly collect personal information from children under 13. If you believe a child has provided information through the App, please contact me at privacy@hoglens.app.
15. International Data Transfers
15.1 iCloud Synchronization
When you use iCloud sync, your data may be transferred to and stored on servers located outside your country of residence, in accordance with Apple's data practices.
15.2 PostHog Communication
When you connect to PostHog:
- PostHog Cloud EU: Data processed in the European Union
- PostHog Cloud US: Data processed in the United States
- Self-hosted: Data processed according to your server location
15.3 My Infrastructure
- App usage analytics (Section 5): PostHog Cloud EU, processed in the European Union
- Remote configuration and news feed (Sections 6–7): served via Cloudflare's global network; no personal data is stored there
15.4 My Location
I am based in Switzerland, which has been recognized by the European Commission as providing adequate data protection.
16. Swiss and EU Data Protection
16.1 Legal Basis (GDPR/Swiss DPA)
The legal bases under GDPR and the Swiss Data Protection Act are:
- Consent: App usage analytics (Section 5) — asked explicitly, revocable at any time
- Contract performance: Processing necessary to provide the App's functionality (Sections 2–4, 6–7)
- Legitimate interests: Basic server logs for security purposes
16.2 Data Protection Authority
If you have concerns about my data practices, you can contact:
- Switzerland: Federal Data Protection and Information Commissioner (FDPIC)
- EU: Your local Data Protection Authority
17. California Privacy Rights (CCPA)
If you are a California resident:
17.1 Categories of Information
The consent-gated usage analytics described in Section 5 consist of anonymous feature-usage events without personal identifiers. I do not collect personal information as defined by the CCPA through the HogLens App.
17.2 Sale of Personal Information
I do not sell personal information to third parties.
17.3 Do Not Track
Beyond the consent-gated analytics you control in Settings, HogLens does not track users across apps or websites, so "Do Not Track" signals are not applicable.
18. Changes to This Privacy Policy
I may update this Privacy Policy from time to time. Changes will be:
- Posted on this page with an updated "Last Updated" date
- Announced within the App for significant changes
Your continued use of HogLens after any changes constitutes acceptance of the updated Privacy Policy.
19. Open Source Components
HogLens includes the following open-source components:
| Component | License | Purpose |
|---|---|---|
| MarkdownUI | MIT | Rendering formatted text |
| ZIPFoundation | MIT | Export functionality |
| PostHog iOS SDK | MIT | Consent-gated usage analytics (Section 5) |
20. Contact Me
If you have any questions, concerns, or requests regarding this Privacy Policy or my data practices, please contact me:
Patrick Diezi / KREANIQS
- Privacy Inquiries: privacy@hoglens.app
- General Support: support@hoglens.app
- Legal Matters: legal@hoglens.app
- Website: www.hoglens.app
Postal Address:
Patrick Diezi
Lehmbergstrasse 8
8514 Amlikon-Bissegg
Switzerland
I will respond to your inquiry within 30 days.
Summary
| What | How It's Handled |
|---|---|
| API Tokens | Stored in device Keychain only (never synced, never sent to me) |
| App Data | Stored locally + iCloud sync (your control) |
| Your PostHog Data | Direct from your device to PostHog — I never see it |
| App Usage Analytics | Only with your consent, anonymous, PostHog Cloud EU, off switch in Settings |
| Remote Configuration | Read-only fetch from api.hoglens.app, no personal data |
| Developer News | Read-only fetch from ctnk.kreaniqs.com, no identifiers, read-state stays on device |
| Data Sharing / Selling | None |
| Payments | Processed by Apple |
© 2026 Patrick Diezi / KREANIQS. All rights reserved.
This website
The document above is the Privacy Policy shipped inside the HogLens app and covers the app. This section additionally covers this website, hoglens.app, and is maintained here.
Nothing third-party loads before you click the feedback button. Loading any page of this site contacts my own server and two Upvoty addresses — one for the feedback widget's code (app.upvoty.com), one for its configuration (core-api.upvotyfeedback.com) — and nothing else. Measured on September 4, 2026 on every page, twice, on two different origins.
No cookies are set on any origin, before or after you use the widget, and this site stores nothing in your browser's local or session storage. It runs no analytics, and it embeds no fonts, images or scripts of its own from anyone.
What happens when you open the feedback board
The feedback boards are provided by Upvoty, the only third party this site integrates. When you click the feedback button on any page, or open the feedback page where the board is embedded directly, this site embeds a page from feedback-portal.hoglens.app, which runs under Upvoty's control. That page then requests assets from further third parties of its own:
- Google — the Montserrat font from
fonts.googleapis.comandfonts.gstatic.com; - Iconify — icon files from
api.iconify.design; - Amazon Web Services — images from Upvoty's storage at
upvotypublic.s3.eu-central-1.amazonaws.com.
Each of those requests is made by your browser, so Google, Iconify and Amazon receive your IP address, together with the standard details every web request carries (the requested file, your browser's user-agent string, and the referring page). That is what was observed and what necessarily follows from it; what each of them does with a request is governed by their own policies, not by mine. None of them set a cookie in the recordings. The board itself stores five values in your browser under its address, feedback-portal.hoglens.app: a guest access token and refresh token that identify your browser to Upvoty, and three view preferences (sort order, filters, columns).
This site's Content-Security-Policy permits exactly three Upvoty addresses on this site's own pages — the widget's code, its configuration, and the embedded board — and nothing else. I accepted the board's use of Google Fonts and Iconify on September 4, 2026 as a known dependency of Upvoty rather than something this site chooses; it is recorded as the one exception to this site's rule of loading no external fonts or scripts.
Reading is anonymous. Taking part is not.
You can read every post without identifying yourself. To post, comment or vote, Upvoty requires you to sign in, with an e-mail address (it sends you a sign-in link) or a Google account; the board's configuration lists exactly those two methods. Signing in creates an account with Upvoty, not with me, and I never see a password. I administer the boards, so the names and e-mail addresses of people who sign in are visible to me there, attached to what they post. Anything you post is also public to every other reader. What Upvoty does with your account is governed by Upvoty's privacy policy, not by mine.
If you e-mail support@hoglens.app instead, your message reaches my Microsoft 365 mailbox and is handled there; it is not entered into Upvoty.