Effective September 12, 2026
Life Capture Privacy Policy
Life Capture is built around a simple promise: your life, on your hardware. Life Capture Studio for Mac and Life Capture Pocket for iPhone store your captures locally on your own device. Processing is local by default. Studio 1.4.0 introduced optional Cloud narrator for journal prose. Studio 1.4.1, including TestFlight builds, adds separately enabled Cloud photo descriptions. Both use Apple's Private Cloud Compute and are off by default. Neither app requires a Life Capture account, hosted sync, hosted storage, third-party analytics, or ad tech. Your content is never used to train any model.
Your life is never the product#
Life Capture's mission is legacy without strings or monetization. We sell a tool, once. We never sell, rent, mine, or monetize what you make with it. There is no subscription that can lapse and lock you out of your own past, no advertising between your memories, no analytics watching how you use them, and no training of AI models on your photos, your voice, or your words. Revenue comes from the price of the app and nothing else — so the app answers to you, not to an engagement metric.
This policy is short because the business model asks nothing of you beyond the purchase.
The short version#
Life Capture does not collect your captures. There is no account to create, no hosted sync, no analytics, and no advertising. AI processing runs on your Mac by default. Cloud narrator is off by default; only while its Settings toggle is on does Studio send journal source text to Apple's Private Cloud Compute. In Studio 1.4.1, a separate default-off Cloud photo descriptions toggle permits reduced, metadata-stripped still-photo copies and the per-photo hints described below. Your archive and original media remain on your Mac. When enabled, Weather and Place Names send the dates or coordinates needed for lookups to Apple. Both settings start on and can be turned off in Settings. An optional image-understanding model downloads only when you choose Download. Photos, audio, and writing are not sent for these lookups or downloads. You control any transfer, export, or publication of your archive content.
What Life Capture collects#
Life Capture reads the local files you choose to import and writes its derivatives back to local storage. It does not send your photos, video, voice, writing, transcripts, Journals, or search data to the developer. Life Capture receives no user data. The optional Apple service requests described in this policy, including Cloud narrator and Cloud photo descriptions, are not developer-operated storage.
For App Store privacy disclosure purposes, the posture is: data collected — none; tracking — no; third-party tracking or data-collection SDKs — none; analytics — none; advertising — none; accounts — none required.
On-device processing#
By default, Life Capture Studio transcribes voice notes, reads photos, and drafts a day's story on your Mac using Apple's own frameworks — Apple Speech for transcription, Apple Vision for photo understanding, and Apple's on-device Foundation Models for writing. Cloud narrator sends only the text described below for journal writing; it does not authorize photo transfer. Studio 1.4.1 requires separate consent for Cloud photo descriptions. Transcription remains on your Mac.
Life Capture Studio may perform Apple-local capability checks and provision Apple's on-device models (for example, through Speech, Foundation Models, and Apple's asset installation paths). Those paths prepare local Apple capabilities on your machine; they are not channels for uploading your content.
Cloud narrator (optional)#
Cloud narrator is an optional journal-writing feature introduced in Life Capture Studio 1.4.0. It is off by default and requires macOS 27 with Private Cloud Compute available on your Mac. It runs Apple's larger writing model on Apple's Private Cloud Compute servers. This option is in Studio, not Pocket.
Only with your explicit opt-in, and only while the Cloud narrator toggle in Settings is on, Studio sends the text the journal is written from — event notes, transcripts, photo captions, dates and places. Photos, audio, video, and your archive are never sent to Cloud narrator.
Apple processes the text on Apple silicon servers under its stateless-compute design. It is not stored, is not readable by Apple, and is never used to train models. Life Capture still has no accounts and no analytics. Nothing is retained anywhere but your Mac.
Life Capture works without Cloud narrator. You can turn it off in Settings; turning it off changes nothing about your archive. If Cloud narrator is offline, reaches its quota, or is unavailable, Studio writes on your Mac instead.
Cloud photo descriptions (Studio 1.4.1)#
Starting with Studio 1.4.1, including TestFlight builds, Cloud photo descriptions is a separate optional setting, off by default on each Mac. It requires macOS 27 with Private Cloud Compute image processing available. Cloud narrator's text-only permission does not authorize images. This option is in Studio, not Pocket.
Only while you enable Cloud photo descriptions, Studio sends Apple Private Cloud Compute an orientation-corrected sRGB copy of the displayed still photo, including saved edits, at no more than one million pixels. Incidental EXIF, GPS, IPTC, TIFF, and text metadata are removed. If an intended edit is not ready or the image cannot be prepared, no image is sent. The caption prompt may include only this photo's tags, typed note, linked spoken-note transcript text, locally detected subject counts, and supplied time-of-day and place context. This inventory is shown before the toggle in Settings.
This does not send original photo files, filenames, archive paths, unrelated journal records, raw audio, videos, video preview frames, or your archive. Cloud photo descriptions uses Apple's first-party Private Cloud Compute service under the stateless-compute design described above. It introduces no third-party model service. Local Vision labels, recognized text, and subject counts remain available in your archive.
While enabled, Cloud photo descriptions handles still-photo captions ahead of the optional local image model. If a cloud description cannot complete or is not usable, Apple Vision supplies the local result; Studio does not load or download the local image model as a fallback. Existing useful captions for the same image and your caption edits keep their author, with any failed cloud attempt recorded separately. Video preview frames remain on the existing local route.
Turning this option off cancels pending cloud work and discards late responses. It cannot recall an image already sent and does not delete existing descriptions. Turning it back on does not revive old work or reprocess your archive; use Refresh Photo Descriptions to update existing captions. This option does not download or remove the local image model.
Rich image understanding (optional)#
Photos are described on your Mac by Apple Vision by default — no setup, no network. If you choose Download for rich image understanding in Settings, Life Capture downloads an open vision model once (about 6 GB — Qwen3.5, from the MLX community repository on Hugging Face) and then runs it entirely on your Mac. This model processes your photos, captions, tags, and notes on your Mac; its network use is limited to the model download or resume you explicitly start, and the Settings pane names the exact model, its source, and links its public model card before you agree. Removing the download in Settings returns the local photo route to Apple Vision; Cloud photo descriptions keeps its separate setting.
Rich image understanding is entirely opt-in and needs a Mac with enough memory; Macs that can't run the local model use Apple Vision for the local route. Cloud photo descriptions is a separate option in Studio 1.4.1. The downloaded model is a pre-trained open model that runs locally — it is never trained or fine-tuned on your content.
The model integration uses reviewed MLX and Hugging Face software libraries. Download requests identify the public model and files and expose ordinary connection information, such as your IP address, to the model host and its delivery providers. These requests do not include your archive content.
Weather and place-name lookups#
When a day has a location, Studio can request that day's weather from Apple's WeatherKit service. The request contains the date and location needed to return weather; it does not include your photos, video, voice, writing, transcripts, or Journal. No weather request is made for a day without a location.
Place Names uses Apple's geocoding service to resolve coordinates into human-readable locations. It sends the coordinates being resolved to Apple; it does not send your photos, voice notes, or writing. Weather and Place Names start enabled and may run automatically when you open or import located Moments. Turn either off in Settings to stop new lookups. A request already transmitted cannot be recalled. Previously saved local context remains in the archive; disabling a feature does not delete earlier generated writing or external copies.
Calendar reads authorized events through Apple Calendar on your Mac. It does not upload them to Life Capture. You can disable this context in Studio and revoke calendar permission in macOS Settings.
What stays on your device#
Unless you choose to transfer, export, publish, or synchronize them, the following remain in your local archive: raw photo, audio, and text captures; capture metadata and import manifests; checksums and archive integrity metadata; Apple Speech transcripts or local placeholders; normalized event data; generated daily drafts; reviewed journals; weekly and monthly lookbacks; and rebuildable local search indexes and app state.
With Cloud narrator on, the journal source text described above is also sent to Apple's Private Cloud Compute for processing. With Cloud photo descriptions separately enabled in Studio 1.4.1, the reduced still-photo copies and per-photo hints described above are also sent. The archive and its original media stay local; these options do not create hosted archive storage.
Your control#
Your archive is stored as inspectable folders, JSON, Markdown, and your original files. Because everything is local and in open formats, you can read it, move it, back it up, or delete it whenever you like, without asking anyone — and the open-source Open Life Reader can browse it without Studio at all. Removing a Moment in Studio first moves its recovery copy into Recently Deleted, where it remains until you restore or permanently delete it. Deleting your archive removes that local copy. It does not remove exports, recipients’ copies, backups, or hosted publications; manage those at their destinations. Life Capture operates no storage service retaining a copy for us to delete.
Publishing strips capture metadata. Published images are re-encoded without it, so no coordinates enter the published copy. Published video is transcoded for the web and stripped of location and identifying metadata before it leaves the archive; if you publish a single file, the video is left out and the page says so.
Children#
Life Capture is a general-purpose personal journaling app and is not directed to children. Because Life Capture receives no user data and requires no account, it does not knowingly collect information from children.
Changes to this policy#
If the app's privacy posture changes, this policy will be updated here with a new effective date. The intent is to keep Life Capture a local, no-collection app, matching the repository's no-leakage release review.
Contact#
Questions about this policy or about Life Capture: Gregory Stoltz, [email protected].