PRIVACY

Privacy Policy

Effective August 13, 2026 · 시행일 2026년 8월 13일

On-device firstLocal logs and Saved content stay on your Mac.
No trackingNo advertising or third-party analytics SDK.
Optional LeagueNothing is published until you explicitly join.
ENGLISH

TokenFuel Privacy Policy

TokenFuel is designed to keep coding content on your Mac.

Data processed only on your device

With your explicit folder permission, TokenFuel reads local usage data created by Claude Code, Codex, Gemini CLI, Qwen Code, OpenCode, and Windsurf. It processes timestamps, model identifiers, token counts, session identifiers, and locally cached rate-limit metadata to display usage. Prompt text, code, filenames, authentication files, and raw log files are not uploaded.

Daily aggregates, preferences, security-scoped bookmarks, achievements, and Saved items are stored locally. Saved prompts, commands, and session notes are never synchronized by TokenFuel.

When you export a CSV, JSON, or HTML report, TokenFuel writes only aggregate dates, provider and model identifiers, token and session totals, and available API-equivalent estimates to the location you choose. Reports never include prompts, code, filenames, authentication data, or Saved-item content.

Optional League data

League is disabled until you choose to join. You may browse public rankings as a read-only guest without an active iCloud account. Guest browsing creates no League record and transmits no TokenFuel identity or local usage aggregate. An active iCloud account and explicit consent are required to join and publish totals.

When joined, TokenFuel stores in Apple CloudKit: a one-way hash derived from the participant’s iCloud user record identifier; a random identifier for each contributing Mac; a generated anonymous Coder ID; week and League scope (overall or provider); weekly token total; weekly session count; usage streak; a short model-family summary; and record creation and update times. Contributions from Macs using the same iCloud account are combined into one League profile.

This information is used only for the public weekly ranking. Totals are self-reported from local logs and are not independently verified by TokenFuel. The information is linked to the participant’s CloudKit record for record ownership, is not used for tracking or advertising, and is not sold.

Choosing Leave on This Mac & Delete Its Data deletes the League ranking records contributed by the current Mac and stops future uploads from that Mac. Other Macs using the same iCloud account remain connected. If deletion cannot complete because iCloud is unavailable, the app reports the error and the user can retry.

Services

TokenFuel uses Apple CloudKit for the optional League, StoreKit for App Store purchases, and Apple UserNotifications for local alerts. It contains no advertising or third-party analytics SDK.

To show service health, TokenFuel periodically makes read-only requests to official public status endpoints operated by Anthropic, OpenAI, Google, and Windsurf/Codeium. TokenFuel sends no log data, token totals, prompts, account identifiers, or advertising identifiers in these requests. Results are cached locally.

Your choices

You may disconnect any local usage source at any time. You may leave League and delete its public records from the League screen. Removing the app deletes local app data according to macOS behavior.

Security and changes

TokenFuel minimizes transmitted data and uses Apple’s authenticated CloudKit access controls. No system can guarantee absolute security. Material policy changes will be published with an updated effective date.

Contact

Controller: JunSeok Park. For privacy or deletion requests, use the monitored support contact listed on TokenFuel’s App Store page.

한국어

TokenFuel 개인정보 처리방침

TokenFuel은 코딩 내용을 Mac에만 보관하도록 설계되었습니다.

기기에서만 처리되는 데이터

사용자가 폴더 접근을 명시적으로 허용하면 Claude Code, Codex, Gemini CLI, Qwen Code, OpenCode, Windsurf가 생성한 로컬 사용량 데이터에서 시간, 모델 식별자, 토큰 수, 세션 식별자, 로컬에 캐시된 한도 메타데이터를 처리합니다. 프롬프트, 코드, 파일명, 인증 파일, 원본 로그는 업로드하지 않습니다.

일별 집계, 환경설정, 보안 범위 북마크, 성취, Saved 항목은 로컬에 저장됩니다. Saved 프롬프트, 명령어, 세션 메모는 TokenFuel이 동기화하지 않습니다.

CSV·JSON·HTML 사용량 보고서를 내보내면 사용자가 선택한 위치에 날짜, AI·모델 식별자, 토큰·세션 합계, 확인 가능한 API 환산 추정치만 기록합니다. 프롬프트, 코드, 파일명, 인증 데이터, Saved 항목 내용은 포함되지 않습니다.

선택형 리그 데이터

리그는 사용자가 직접 참여하기 전까지 비활성화됩니다. iCloud에 로그인하지 않아도 공개 리그를 읽기 전용 게스트로 볼 수 있으며, 이때 TokenFuel 식별자나 로컬 사용량 집계를 전송하거나 CloudKit 레코드를 만들지 않습니다. 참여와 합계 게시는 활성 iCloud 계정과 명시적 동의가 필요합니다.

참여 시 iCloud 사용자 레코드 식별자의 단방향 해시, 각 Mac에 무작위로 생성한 기여 식별자, 자동 생성된 익명 Coder ID, 주차 및 리그 범위(전체 또는 AI별), 주간 토큰 합계, 세션 수, 스트릭, 짧은 모델군 요약, 생성·수정 시간이 Apple CloudKit에 저장됩니다. 같은 iCloud 계정을 사용하는 Mac들의 기여분은 하나의 리그 프로필로 합산됩니다.

합계는 로컬 로그를 기반으로 사용자가 자가 보고한 값이며 TokenFuel이 독립적으로 검증한 수치가 아닙니다. 이 정보는 주간 랭킹 제공에만 사용되며 추적·광고·판매에 사용되지 않습니다.

이 Mac에서 탈퇴 및 전송 데이터 삭제를 선택하면 현재 Mac이 전송한 리그 랭킹 기록을 삭제하고 이후 전송을 중단합니다. 같은 iCloud 계정의 다른 Mac은 계속 연결됩니다. iCloud 연결 문제로 삭제하지 못하면 오류를 표시하며 다시 시도할 수 있습니다.

사용하는 서비스

TokenFuel은 선택형 리그에 Apple CloudKit, App Store 결제에 StoreKit, 로컬 알림에 Apple UserNotifications를 사용합니다. 광고 및 제3자 분석 SDK는 포함하지 않습니다.

AI 서비스 상태를 표시하기 위해 Anthropic, OpenAI, Google, Windsurf/Codeium의 공식 공개 상태 엔드포인트에 읽기 전용 요청을 낮은 빈도로 보냅니다. 로그·토큰 합계·프롬프트·계정 식별자·광고 식별자는 전송하지 않으며 결과는 로컬에 캐시합니다.

사용자의 선택

언제든 로컬 사용량 소스 연결을 해제할 수 있습니다. 리그 화면에서 탈퇴하고 공개 레코드를 삭제할 수 있습니다. 앱을 제거하면 macOS 동작에 따라 로컬 앱 데이터가 삭제됩니다.

보안과 변경

TokenFuel은 전송 데이터를 최소화하고 Apple의 인증된 CloudKit 접근 제어를 사용합니다. 어떤 시스템도 절대적인 보안을 보장할 수 없습니다. 중요한 변경은 시행일과 함께 게시합니다.

문의

처리자: JunSeok Park. 개인정보 또는 삭제 요청은 TokenFuel App Store 페이지에 기재된 지원 연락처를 이용해 주세요.