Legal

Privacy Policy

This page describes the Subflare app as it ships. If a feature is off by default, it stays off until you turn it on.

Effective date: August 13, 2026

Subflare is an independent Reddit client for Apple platforms (iPhone, iPad, and Apple Watch), plus this informational website. This policy explains how Subflare handles information when you use the website and the Subflare app. Subflare is not affiliated with, endorsed by, or operated by Reddit, Inc.

Hosted copy: https://subflare.app/privacy.html

Summary

Subflare does not operate an advertising network, does not sell personal information, and does not use third-party analytics or cross-app tracking. Most app data stays on your device. If you enable iCloud sync, selected preferences and lists are stored in your Apple iCloud account. When you use Reddit, media, YouTube, GIF search, linked-page summaries, optional archive lookup, or an optional paywall helper, your device communicates directly with those services.

Subflare does not run its own accounts backend, crash SDK, or push-notification server. Optional Apple surfaces (Home Screen widget, Live Activities, Siri, Watch, Share and Safari extensions) keep data on your devices and in Apple’s platform services.

Information Subflare handles

Reddit account and session information

Subflare does not create or control your Reddit account. When you sign in, Reddit’s website handles your credentials inside an in-app browser. Subflare receives Reddit web-session cookies after a successful sign-in and stores them in Apple Keychain on your device (AfterFirstUnlockThisDeviceOnly). These cookies are used to keep you signed in and authenticate requests to Reddit (www.reddit.com / old.reddit.com browser endpoints). Subflare does not use oauth.reddit.com.

Subflare does not intentionally collect your Reddit password. Session cookies are not included in iCloud sync, widgets, Watch transfers, support messages, or logs.

Content and activity stored on your device

To provide the app, Subflare may store:

These records are stored in the app’s local container using platform storage such as SwiftData, files, and UserDefaults. They are used to provide features, improve responsiveness, and support offline or stale-while-revalidate behavior. Subflare does not send this local activity history to the developer.

Optional Siri history search (off by default in Privacy settings) may donate titles and community names of posts you have opened to Apple’s on-device semantic index so Siri / Apple Intelligence can find them on this device. That donation does not upload Reddit content to Subflare. Turning the setting off, or enabling Incognito, removes those donated history entities from the index.

Incognito

Incognito pauses new read-history and activity-insight recording. It does not make Reddit or other network requests anonymous, remove information already stored, or change what Reddit and visited services can observe. While Incognito is on, Subflare also stops donating read-history entities for Siri search and skips persistent digest caches.

App Lock

If you turn on App Lock, Subflare stores a hashed Subflare passcode in Apple Keychain on this device (not your iPhone / iPad device passcode). Optional Face ID or Touch ID is a local shortcut to unlock the app. The passcode hash is not synced with iCloud and is not sent to the developer. A grace period you choose can delay the next lock after you leave the app.

iCloud sync

If iCloud sync is enabled, Subflare uses Apple’s iCloud key-value store to sync selected theme preferences and local lists, which may include favorites, recents, filters, collections, feed-type filters, and local hidden-item records. Reddit session cookies, App Lock secrets, read history, activity insights, and cached Reddit content are not synced through this feature.

You can turn iCloud sync off in Subflare’s Privacy settings. Turning it off stops future Subflare pushes and pulls but does not necessarily delete values already retained in your iCloud account. Apple processes iCloud data under Apple’s privacy terms and account controls.

Focus Filters

If you configure an iOS Focus Filter for Subflare, temporary preferences (such as temporarily hiding or blurring mature-labeled media, or a temporary theme) may be stored in an App Group on your device while that Focus is active. These overrides are not synced into Theme Studio or iCloud preference sync.

Home Screen widget, Share, Safari, Watch, and Live Activities

These Apple surfaces stay on your devices:

Local notifications

If you allow notifications, Subflare may schedule local alerts on this device for thread reminders and for Daily Flare / Evening Flare when an edition is ready. Those notifications can include a post title, community name, and time. Subflare does not operate a remote push backend.

Support communications

If you email subflareapp@gmail.com, the developer receives the email address, message, attachments, and other information you choose to provide. This information is used only to respond to and manage your support request. Do not send passwords or Reddit session cookies.

Network services and disclosures

Reddit

Subflare communicates with Reddit to display user-generated content and perform actions you request, such as voting, saving, posting, subscribing, hiding, reporting, or sending messages. When signed in, requests may include Reddit session cookies. Reddit can receive your IP address, device and browser request information, Reddit account identifiers, requested content, and actions.

Reddit’s handling of this information is governed by Reddit’s own policies:

Reddit Chat

Subflare can display Reddit's chat web client inside an embedded browser. It uses the active Reddit session so you do not need to sign in a second time. Chat requests and messages are sent directly between the embedded Reddit client and Reddit. Subflare does not independently parse, store, log, or synchronize chat message content.

Images, video, GIF search, and other media hosts

Posts and comments may contain media hosted by Reddit or third parties. Loading that media causes your device to contact the host, which can receive standard network information such as your IP address, User-Agent, requested URL, and request time.

If you use GIF search in compose or comments, Subflare queries Klipy (api.klipy.com) with an app-shipped client credential (or a Keychain override if one was saved). Those requests do not include Reddit session cookies. They do include an anonymous install identifier (customer_id): a random UUID created on this device and stored in UserDefaults — not your Reddit username, Apple ID, or advertising identifier. Selected GIF media may then load from Klipy-returned CDN URLs (which may include Giphy or other hosts). Klipy’s handling of requests is governed by its own privacy policy. You can avoid this contact by not using GIF search.

YouTube

For YouTube posts, Subflare may load an embedded YouTube player in a web view or open YouTube externally. YouTube and Google may receive standard request and device information and may use cookies or similar technologies according to their policies. Do not play or open a YouTube item if you do not want your device to contact YouTube.

Linked sites and linked-page summaries

Opening an external link contacts the destination site. If you separately enable linked-page summaries, Subflare makes a cookieless HTTPS request directly from your device to the linked site, extracts readable article text, and summarizes it on-device. The linked site can receive your IP address, User-Agent, requested URL, and request time. Subflare does not attach Reddit session cookies to linked-page fetches. X / Twitter destinations are not summarized.

Extracted article text is not sent to the developer or a cloud AI provider. Subflare may retain the resulting summary text in a local cache for a limited period.

Optional paywall helper

If you enable “Open paywalled articles,” Subflare can show a button that opens a third-party RemovePaywall page for a link you already chose to view. You are choosing to visit that site. Subflare does not send Reddit session cookies there. This control is off by default.

Archived deleted posts and comments (optional)

If you enable “Recover deleted comments” (archived deleted content), explicitly looking up a deleted or removed post or comment may cause Subflare to query the third-party Arctic Shift archive (arctic-shift.photon-reddit.com) for a previously indexed copy. The request includes the Reddit content id and asks only for archived text and basic attribution fields. It is cookieless and does not include your Reddit session cookies. Arctic Shift can receive your IP address, User-Agent, and the content id you chose to look up. Archives may be incomplete, delayed, inaccurate, or unavailable, and may retain content Reddit no longer displays. Results are kept in memory for the current app session and are not written into Subflare’s normal Reddit content cache. This feature is off by default.

On-device AI, translation, and Listening

Optional Summaries, linked-page summaries, media (photo) descriptions, profile sketches, sentiment meters, insight quotes, Daily Flare, Evening Flare, and Translate use Apple’s on-device Foundation Models and, for photos, on-device Vision. These features are off by default (or subordinate to Summaries). Reddit content, comments, extracted linked-page text, and photo bytes are processed on this device and are not intentionally uploaded by Subflare to a third-party AI service.

Listening reads posts or a feed aloud with Apple’s on-device text-to-speech. Audio is not uploaded.

Apple may provide operating-system components and model assets under Apple’s terms, but Subflare does not use a cloud large-language-model provider for these features. Media summaries and Flare preparation skip Low Power Mode.

Apple services

Apple provides Keychain, iCloud, App Store distribution, widgets, WatchConnectivity, Live Activities, local notifications, Siri / App Intents, Foundation Models, speech, and related platform services. Apple handles information under its privacy policy. Subflare does not process App Store payments for tips or subscriptions at this time.

Tracking, advertising, and analytics

Subflare does not include third-party advertising SDKs, does not use information for cross-app tracking, and does not sell or rent personal information. Subflare does not currently send product analytics or crash telemetry to the developer. Standard App Store and operating-system diagnostics may be available to the developer if you choose to share them with Apple.

Retention and deletion

Local cache entries are replaced or expire as the app operates. Read history and activity insights are bounded but remain until cleared, replaced, or the app’s local data is removed. Settings and local lists remain until changed or deleted. Keychain sessions and App Lock secrets remain until you sign out, turn the feature off, or remove them through an applicable system/app flow. Support email is retained only as reasonably needed to answer the request, maintain support records, prevent abuse, or comply with law.

Subflare provides these controls:

Clearing Subflare data does not delete your Reddit account, Reddit posts, comments, votes, messages, or other data held by Reddit. To request Reddit account deletion, use Reddit account settings and follow Reddit’s instructions. Reddit, not Subflare, controls that process.

For help with Subflare’s data controls, email subflareapp@gmail.com.

Data security

Subflare uses Apple Keychain for Reddit session cookies and the App Lock passcode hash, HTTPS for supported network requests, cookieless isolated fetching for linked-page summaries and optional archive lookup, and local platform storage for app data. No storage or transmission method is completely secure. Protect your device passcode and Apple and Reddit accounts, and sign out on devices you no longer control.

User-generated and mature content

Subflare displays user-generated content supplied by Reddit and external sites. That content may be inaccurate, offensive, or mature. By default, Subflare blurs media labeled mature (NSFW) until you tap to reveal it. Optional iOS Focus Filters can temporarily hide or blur that content while a Focus is active. No filter can guarantee that all objectionable content is removed. Reddit remains responsible for its service, moderation systems, account data, and Content Policy enforcement. Mature-content preferences for your Reddit account are controlled on Reddit’s website.

Children’s privacy

Subflare is not directed to children under 13, and the developer does not knowingly collect personal information from children. Reddit, Apple, YouTube, GIF providers, and linked services apply their own age requirements. If you believe a child has sent personal information to Subflare support, contact subflareapp@gmail.com to request deletion.

International use

Reddit, Apple, media providers, linked sites, and email providers may process information in countries other than your own. Their privacy policies govern those transfers. Subflare’s developer receives information directly only when you choose to contact support or share diagnostics through Apple.

Changes to this policy

This policy may be updated when Subflare’s features, service providers, or legal obligations change. The effective date at the top will be revised. Material changes should be reflected in the hosted policy presented by the app before the updated behavior is released.

Contact

Questions or deletion requests concerning information sent directly to Subflare support can be emailed to:

subflareapp@gmail.com

For Reddit-held data or Reddit account deletion, contact Reddit or use Reddit’s account settings.