Last updated: August 16, 2026
App Provider: XYZTech
Contact: XYZKeyboard Support

This Privacy Policy describes how XYZKeyboard (玲珑键盘), its host application, and its keyboard extension handle information. It reflects the current product design: core input is local and offline, while AI networking is optional and controlled by you.

1. Summary

XYZKeyboard does not require an account. Basic full-pinyin input, nine-key input, local candidate processing, symbols, emoji, personal lexicons, and offline dictionary lookup are designed to run on your device.

XYZTech does not operate an input-content server for basic keyboard use, does not sell your personal information, does not serve advertising, does not build advertising profiles, and does not use XYZKeyboard for cross-app or cross-site tracking.

If you enable optional AI, the App may send limited input data directly to the provider and endpoint you choose. That provider’s privacy policy and terms govern its handling of the request after transmission.

2. Information Processed Locally

Depending on the features you use, XYZKeyboard may process or store the following on your device or in the shared App Group container used by the host app and keyboard extension:

  • keyboard layout, appearance, input-mode, category-lexicon, and AI settings;
  • current composition state and local candidate-processing data;
  • personal lexicon entries, local word frequency, and association-learning records created by your selections;
  • recently used emoji records;
  • offline dictionary and lexicon data distributed with the App;
  • AI request counts, cache hits, local skips, prompt-token counts, completion-token counts, and locally estimated usage; and
  • the state needed to remember onboarding, consent, and configuration decisions.

API keys for configured AI providers are stored in the Apple Keychain using the shared access group needed by the host app and keyboard extension. The ordinary AI configuration does not contain the API key, and personal-lexicon exports do not include it.

The App may temporarily retain AI candidate responses in process memory to avoid duplicate requests. This cache is short-lived and is not intended as permanent storage.

3. Optional AI Data Sharing

AI is optional. A network request may be made only after you enable AI, configure a valid provider and model, accept the data-sharing disclosure for that configuration, and provide the system access needed by iOS. The local candidate strategy may also skip a request when local results are sufficient.

The AI Service Disclosure identifies the possible request contents and explains the provider, endpoint, model, consent, and deletion controls. In summary, a request may contain the current pinyin letters or nine-key digits, the input mode, pinyin-correction information, and up to 24 characters immediately before the cursor. The request is normalized and limited before transmission.

Requests go directly from the App to your configured endpoint. XYZTech does not operate a proxy, relay, or server that receives and stores those requests. A provider may process, retain, log, use, or disclose the request and response under its own policies, and may charge fees. Review the provider’s current terms and privacy policy before enabling it.

4. Clipboard and Full Access

Basic input does not require Full Access. Full Access may be required for network AI and for the user-initiated clipboard feature.

XYZKeyboard reads the system clipboard only when you actively tap the clipboard control. The content is inserted into the current text field and is not intentionally uploaded or retained by XYZTech. If you continue using AI after inserting clipboard content, the inserted text may become part of the limited context sent to your selected provider.

5. Information XYZTech Does Not Collect Through the App

Based on the current implementation, XYZTech does not collect through its own servers:

  • an account name, email address, phone number, contact list, or account credentials;
  • advertising identifiers or cross-app tracking data;
  • precise location, payment information, or biometric information;
  • the content of basic offline input;
  • personal-lexicon exports, unless you choose to send them to us in a support request; or
  • AI request content through a XYZTech proxy or analytics service.

Apple may provide crash or diagnostic information if you separately choose to share diagnostics with app developers through Apple settings. Any such information is handled under Apple’s applicable processes and is used to diagnose and improve the App.

6. How Information Is Used

Local information is used to:

  • provide input, candidate ranking, correction, symbols, emoji, dictionary, and learning features;
  • synchronize necessary settings between the host app and keyboard extension;
  • display local AI usage statistics;
  • remember your data-sharing decision for the exact AI configuration you approved; and
  • support troubleshooting when you voluntarily provide information through the support channel.

XYZTech does not use local input, personal lexicons, or local AI statistics for advertising or profiling.

7. Sharing and Third-Party Services

XYZTech does not sell your personal information. Information may leave your device when you choose to:

  • enable an AI provider and authorize a request;
  • copy, share, or export text or a personal lexicon through iOS;
  • submit a support request or attach diagnostics;
  • use iOS backups, device migration, or other Apple services according to your settings; or
  • open content in another app or service.

When you share content with a provider, app, website, service, or person, that recipient’s privacy policy and terms apply. Third-party open-source libraries and offline language data included with the App are used for local functionality and are not used by XYZTech for advertising or tracking.

8. Retention and Deletion

Local settings, learning data, usage statistics, and temporary caches remain on the device or in the shared App Group until they expire, are changed or cleared in the App, or are removed by deleting the App, subject to iOS backup and Keychain behavior.

To remove an AI credential, clear the API key in AI settings before deleting the App. To stop new AI sharing, disable AI or revoke the data-sharing decision. These actions cannot delete data already received by a third-party provider. Use that provider’s deletion and retention controls for provider-side data.

If you contact XYZTech through GitHub Issues, the issue and any information you include may remain subject to GitHub’s terms, privacy policy, and retention practices. Do not include sensitive input text, passwords, or API keys.

9. Security

XYZKeyboard uses iOS app sandboxing, App Group storage, the Apple Keychain, and HTTPS requirements for non-local remote AI endpoints. No storage or transmission method is perfectly secure. Protect your device with a passcode and review the security and privacy settings of any AI provider or local-network service you configure.

10. Children

XYZKeyboard is not designed to collect children’s personal information. We do not knowingly collect personal information from children through our own servers. Parents and guardians should review the age requirements and privacy terms of any third-party AI provider configured in the App.

11. International Processing

Core input is processed locally. If you enable a third-party provider, contact XYZTech, use GitHub Issues, share diagnostics through Apple, or use another external service, information may be processed in countries where that recipient or its service providers operate.

12. Your Choices and Rights

You can control the main data flows by:

  • leaving AI disabled;
  • refusing or withdrawing consent for an AI configuration;
  • revoking Full Access in iOS Settings;
  • clearing the API key and local settings in the App;
  • deleting personal lexicon entries or exported files; and
  • deleting XYZKeyboard from your device.

Depending on where you live, you may have additional privacy rights. To ask a privacy question or submit a request, use the XYZKeyboard Support page. We may need enough information to understand and respond to the request, but please do not send unnecessary personal data.

13. Changes to This Policy

We may update this Privacy Policy when the App, its data flows, third-party integrations, or legal requirements change. The updated version will be identified by the “Last updated” date above. If a change materially affects how information is handled, we will update the in-app disclosure or request a new consent where appropriate.

14. Contact

For questions about this Privacy Policy or XYZKeyboard data practices:

XYZTech
XYZKeyboard Support

Please do not include passwords, API keys, or private input text in a public issue.