SandShot
Privacy Policy
Last updated: July 23, 2026
SandShot is built privacy-first. It is a screenshot studio for macOS and iOS with no account to create, no advertising, and no tracking. Your screenshots — often from an app you have not released yet — stay on your machine: the app contains no networking code at all, and there is no SandShot server. This policy explains what data the app handles, why, and the choices you have.
In short: we do not collect your data, because there is nothing for us to collect it with. Composing and exporting happen entirely on your device; the only optional feature that involves any external processing is the Claude AI panel, which runs through your own Claude account.
1. Information the app handles
Everything below is created by you while using the app and is stored only on your device, in locations you choose. The app never asks for your name, email address, phone number, contacts, or location, and it does not collect any device identifiers.
- Screenshots you import: the raw PNG/JPEG/HEIC images you add from your disk, Photos, Files, or a running iOS Simulator.
- Projects: a project is a single JSON file — containing your images, captions, layout, and style settings — saved wherever you choose to save it.
- Exports: the finished store screenshots and Feature Graphics the app renders, written to the folder you pick.
- App preferences: small local settings such as window state and the last-used export options.
2. Where your data is stored
- All rendering, composing, and exporting happens locally on your device. The app makes no network requests of its own.
- The macOS app runs in Apple's App Sandbox and can only read and write files you explicitly select or save. It has no access to the rest of your disk.
- SandShot does not operate any backend server and never receives a copy of your screenshots, projects, or exports.
- There are no accounts, so nothing you make is linked to any online identity.
3. What we do not collect
- No analytics or usage tracking of any kind.
- No advertising and no advertising identifiers.
- No third-party SDKs — the app is built entirely on Apple frameworks.
- No accounts, sign-ins, or personal identifiers.
- No crash reports or diagnostics sent to us. (You can share standard diagnostics with Apple through system settings; that is governed by Apple's privacy policy.)
4. AI features (Claude)
The AI panel (macOS only) is optional — every core feature works fully without it. It requires the Claude Code CLI to be installed on your Mac and runs it locally with your own Claude account. When you use an AI feature, the following is processed through your Claude account, under Anthropic's terms and privacy policy:
- AI Design: the design brief text you write.
- Generate Captions: your screenshots are written temporarily to a local temp folder so the CLI can look at them, and are deleted after use.
- Release Notes: the version number and raw change list you type.
SandShot itself adds no tracking to these requests and never sees them — they go directly from the CLI on your Mac to your Claude account. Usage is billed to your own Claude Code plan.
5. Simulator capture
Capturing from a running iOS Simulator uses Apple's local simctl command-line tool on your Mac. The captured image is written straight into your project; nothing leaves your machine.
6. Device permissions
- macOS: file access is limited to files and folders you explicitly open or save (App Sandbox, user-selected read/write).
- iOS and iPadOS: importing uses the system Photos picker and Files browser, which run outside the app — the app only receives the specific images you pick and never gets access to your whole photo library.
- The app requests no camera, microphone, location, or contacts access on any platform.
7. Changes to this policy
If the app's data practices ever change, this policy will be updated and the date at the top revised. Material changes will be called out in the app's release notes.
8. Contact
Questions about privacy in SandShot? Contact Rilabs Studio at support@rilabsstudio.com.