XTimers by Xintech LLC Privacy Policy
XTimers is operated by Xintech LLC and uses Xin Account for shared sign-in. This policy explains the information processed for Xin Account identity services and for XTimers timers, alarms, countdowns, activity tracking, calendar features, synchronization, reports, custom sounds, reminders, support, and messaging features.
Xin Account Identity and Sign-In
XTimers uses a Xin Account to identify and authenticate a user. A Xin Account is the shared identity layer for XTimers and any other connected products listed in the account controls; it is not an XTimers product account and does not contain XTimers timers, reports, sounds, or SMS data.
Xin Account processes an account identifier, email address, authentication and session records, linked sign-in provider records, recovery and security records, account lifecycle records, and the association between the Xin Account and each connected product account. Xintech LLC uses this information to authenticate the user, secure and recover the account, manage sessions and linked providers, authorize connected-product access, prevent abuse, and provide identity support. A user may sign in with Apple or Google. The selected provider processes the authentication information under its own privacy policy; XTimers receives the provider identity and account information needed to link and authenticate the Xin Account.
XTimers Product and Contact Information
When a user connects XTimers to a Xin Account, XTimers processes a separate XTimers account identifier, its Xin Account association, product settings, and the contact email used for requested XTimers messages. When the user sets up SMS features, XTimers also processes the proposed account phone number, its verification status, and SMS consent records. XTimers uses this product information to synchronize XTimers data, deliver requested messages, prevent abuse, and provide XTimers product support.
Timer, Task, and Report Content
Signed-in users may synchronize timer and countdown names, task sets, timer state, session history, application settings, archived snapshots, reminders, and related metadata. If a user emails or publishes a report, XTimers processes the report content, title, recipient information, and delivery or link-expiration metadata needed to provide that feature. Published report links can be configured to expire after 1, 7, 30, 90, or 365 days.
Timer content synced to your devices is stored in the app's local data area, protected by operating-system and device protections—such as a passcode and Data Protection on iPhone or iPad, or a login password and FileVault on Mac—rather than separate app-level encryption. Sign-in credentials and protected-sync keys are stored in the system Keychain.
Alarm Definitions, Devices, and Delivery Status
Local-only alarms remain on the installation where they were created and are not uploaded merely because a user signs in. If the user explicitly promotes an alarm or creates a signed-in alarm, XTimers may synchronize its name, schedule, recurrence, sound and presentation choices, enabled state, revision history, and other definition metadata.
To implement a separate “Rings On” choice for each device, XTimers processes per-installation identifiers and user-visible device names, platform and alarm capabilities, desired target choices, and the device's reported scheduling state. Scheduling and cancellation receipts can include the alarm and device identifiers, definition revision, desired and actual state, timestamps, attempt information, status or failure reason, and evidence that an alarm was scheduled, stopped, snoozed, fired, or canceled. This information keeps the shared list truthful; a requested target is not represented as delivered until the target device confirms it.
On iPhone and iPad, AlarmKit authorization and system scheduling are handled by Apple. On Mac, alarms require the Mac to be awake, XTimers to be running, and required permissions. Stop, snooze, fire, and cancellation actions can be synchronized so other installations can update their status, but an offline installation may act later or continue ringing.
Email and SMS Information
XTimers currently sends email reports and user-created reminders only to the signed-in user's own verified XTimers account email address, and may attempt requested verification messages there. After a signed-in user gives explicit consent, XTimers may attempt to send a setup verification code to the user-entered proposed account phone number. User-created reminder SMS may be attempted only after successful verification and opt-in, and only to that same phone number. XTimers may process message content, delivery status, scheduled time, and provider response metadata to deliver and troubleshoot these messages.
For SMS, XTimers may store the phone number, consent status and source, consent wording and version, SMS Terms URL, Privacy Policy URL, consent timestamp, verification status, user-created reminder content, scheduled time, and delivery metadata. Users can reply STOP to opt out and HELP for help.
Custom Sounds
A signed-in user can choose to synchronize custom sound files and their names and settings. XTimers stores those files with the user's account so they are available on the user's other devices.
Background Photos and Colors
A photo selected only as the current device's background remains on that installation. When a signed-in user explicitly adds a color or photo to the account Background Library, XTimers uploads and synchronizes the image bytes or color value, content hash, user-visible name, settings, and related metadata needed to manage that library across devices. The account library is limited to 100 MB. Users can delete library items or reset the local background in the app.
Automatic Activity Tracking
When the user enables automatic activity tracking, XTimers records application activity on the user's Mac. Active browser-tab web-address and title tracking is available only in the separately distributed XTimers Pro edition (downloaded from xintechllc.com, not the App Store); it never applies to the App Store edition. The underlying activity log is maintained on the device and is not continuously uploaded. While tracking runs, raw events older than 365 days are removed. Turning tracking off stops XTimers app recording and its browser integration but does not erase existing history; Reset tracked data clears that local history. An installed browser extension can continue its own active-tab queries and local delivery attempts until the user disables or removes it. XTimers Pro stores the full active-tab web address and title locally, while activity summaries derive the website hostname. If the user explicitly emails or publishes an activity report, the selected report content, including application names and derived hostnames shown in that report, is sent to XTimers' service to perform the requested action; raw web addresses and titles are not included in those reports. The separately distributed browser component is covered by the XTimers Activity Extension Privacy Policy.
Personal Calendar Overlay and Event Alerts
When the user turns on the Personal Calendar Overlay and grants permission, XTimers reads events from the calendars the user selects in Apple Calendar, including any iCloud, Google, Outlook, or subscribed calendars already configured there. XTimers does not connect to those calendar providers directly and never requests their account credentials; Apple Calendar continues to synchronize them under the user's own settings. Event details—including title, start and end time, all-day and cancellation state, and calendar name, identifier, and color—are read on the device to display events or trigger user-selected advance alerts and are not uploaded to XTimers' service. On Mac, XTimers may locally examine an event web address, location, or notes to identify a supported HTTPS conference link and open it when the user chooses. XTimers stores on the installation the feature choices, selected-calendar identifiers, alert lead time, short-lived alert acknowledgements, and a record of which privacy explanation was acknowledged. XTimers never creates, edits, or deletes calendar events.
Feedback and Customer Support
Users may submit feedback anonymously or choose to attach it to their signed-in account. XTimers stores the feedback text and operational metadata needed to review the request, prevent abuse, and respond or fix problems. Anonymous feedback is not attached to an account identifier, although ordinary network request metadata may still be recorded.
Device, Usage, Diagnostic, and Network Information
XTimers may process a per-installation device identifier, push-notification token, platform, app version, build number, operating-system version, device model, service command or feature interaction, response status, response duration, and error information. These records are used to provide synchronization and notifications, operate the service, measure feature use, diagnose failures, improve performance, and prevent abuse.
XTimers receives the IP address and user-agent information used to connect to its service. For security, troubleshooting, abuse prevention, and service administration, the service may retain the IP address, a derived IP key, approximate country, region, city, postal area, network organization, request time, command name, and a stable hashed account identifier for authenticated requests. The app also submits Apple MetricKit diagnostic payloads that can contain crash, hang, CPU, disk, energy, launch, and other performance or technical information.
How Information Is Used
- Authenticate Xin Accounts and authorize connected XTimers accounts.
- Synchronize user-selected XTimers content across devices.
- Run timers, alarms, reports, reminders, messaging, custom sounds, and sharing.
- Deliver push notifications and keep the user's devices in sync.
- Provide customer support and investigate reported problems.
- Protect accounts, enforce service limits, and prevent abuse.
- Understand feature use and improve reliability and performance.
- Meet legal, carrier, and operational requirements.
Service Providers
Xintech LLC uses service providers for identity and authentication, cloud hosting and storage, email and SMS delivery, push notifications, diagnostics, Apple system frameworks, and website analytics. Apple and Google may also process a sign-in request when the user chooses the corresponding provider. These providers may process information only as needed to perform services for Xintech LLC, subject to their applicable terms and privacy safeguards. Email and SMS providers receive the recipient, requested message content, and delivery metadata needed to send the user's message.
When a user opens an external benefit or support link, XTimers does not append an account identifier or personal data to the outbound link. The destination still receives ordinary browser and network information, such as an IP address and user agent, under its own privacy practices.
No Advertising Tracking, Sale, or Marketing Sharing
XTimers does not use the collected app data to track users across apps or websites owned by other companies for advertising. Xintech LLC does not sell SMS opt-in data or other app data. Xintech LLC does not share SMS opt-in data, phone numbers, or text-message consent with third parties or affiliates for marketing or promotional purposes.
Retention and Deletion
Xin Account identity data is retained while needed to provide the shared identity and connected-product associations. XTimers product data is retained while needed to provide the connected XTimers account and its requested features. Published report content is unavailable after its selected expiration and is removed by service cleanup. Message and consent records may be retained as needed for delivery, troubleshooting, abuse prevention, and carrier or legal compliance.
Active shared alarm definitions, current device targets, and current delivery status are retained while needed to provide the connected XTimers account. Records that an alarm was deleted and evidence that it was canceled are kept for at least 90 days, and longer when an active device target has not confirmed cancellation. This prevents an offline device from incorrectly recreating or continuing the alarm. Retired or stale devices may keep their last truthful reported status. This operational retention does not replace an authenticated request to delete the XTimers account itself.
Sign Out and Local Data
Signing out ends XTimers access on that device and pauses authenticated synchronization. XTimers makes a best-effort attempt to cancel system alarms owned by that installation before hiding its signed-in alarm state; a pending or failed cancellation remains truthful when confirmation is unavailable. Signing out preserves local timers and other local data; XTimers does not currently provide a separate whole-app local-data reset on Mac, iPhone, or iPad. Removing or uninstalling the app can leave Application Support, container, or backup copies, depending on the platform and system settings. Signing out or uninstalling does not delete the Xin Account or server copies of connected XTimers data; use the authenticated account-deletion actions for that purpose.
Delete XTimers Data
A signed-in user can delete one connected XTimers account. This removes that account's data from the XTimers service, including active timers, alarms, session and task history, device-targeting and scheduling-status records, snapshots, sounds, Background Library content, feedback, reminders, messages, published reports and report links, SMS configuration, and push-registration data. XTimers makes a best-effort attempt to cancel alarms scheduled by that installation before removing its local account state. The Xin Account, shared sign-in identity, and any other connected product accounts remain available.
Delete Xin Account
A user can separately delete the global Xin Account. The confirmation identifies every connected product to be deleted. Xintech LLC first completes deletion of those connected product accounts, including XTimers data, and then deletes the shared Xin Account identity, authentication and session records, linked-provider records, and active recovery records. An unfinished or zero-product Xin identity can be deleted without deleting XTimers data because no XTimers account is connected to it.
If a deletion is interrupted, XTimers keeps a protected, operation-scoped recovery record so it can resume the same request. That record does not retain the emailed verification code or the user's password.
Separately maintained request logs, IP information, security records, deletion receipts, and diagnostic submissions may remain after either deletion scope when needed for security, troubleshooting, legal compliance, fraud or abuse prevention, or service administration. Xintech LLC deletes or de-identifies those records when they are no longer reasonably necessary for those purposes.
Privacy Choices
Users can manage synchronization and activity-tracking features in the app, sign out, delete XTimers data while keeping Xin Account, delete the global Xin Account and every listed product, and opt out of SMS by replying STOP. See the XTimers Privacy Choices page for details.
Security
Xintech LLC uses administrative, technical, and organizational measures intended to protect XTimers information. No storage or transmission system can be guaranteed to be completely secure.
Website Analytics
This website uses Umami Cloud, a cookie-free analytics service, to count page visits and basic website actions such as App Store, download, support, privacy, terms, and email-link clicks. Umami receives connection and browser information used for aggregate metrics, including the page, referrer, browser, operating system, device type, language, screen size, and approximate location. Umami states that it does not store IP addresses and uses an anonymized, rotating session identifier. These website metrics are separate from the XTimers app data described above.
Contact
For questions or requests, see xintechllc.com/XTimers/support.html.
Last updated: .