Privacy policy
Effective 9 September 2026 · App version 1.0
Shift Calendar - Pay Diary is developed by Julian Sainz Martinez. The app does not require an app account and does not send your shift calendar, pay records or notes to a developer-operated server.
Information stored on your device
The app stores the information you enter: jobs, rates, pay rules, planned and worked shifts, breaks, notes, locations entered as text, rotations, templates, leave entries, adjustments, pay comparisons, imported schedules, payslip PDFs and their titles, periods and notes, and preferences. It uses these records to provide the features you choose. The app does not request your device’s location.
There is no advertising, tracking SDK, developer analytics SDK, contact upload or live calendar-sharing service in the app. Apple may process App Store, TestFlight, diagnostics and device-backup information under your Apple settings and Apple’s privacy policy.
Purchases
Apple handles the free trial and one-time lifetime purchase. The app uses StoreKit to verify purchase entitlement and the trial’s original purchase date. Payment card details are not supplied to the developer. Purchase history belongs to your Apple Account and is separate from your calendar data.
Calendars and reminders
Calendar access and notifications are optional. With calendar permission, the app can display calendars you select and write your chosen shifts to a separate calendar. Your calendar provider, such as iCloud or an employer’s account, may sync those exported events under that account’s settings. The app does not export pay or private notes to Apple Calendar.
Shift reminders are local notifications scheduled on your device. Widgets use a local app-group file shared only between the app and its widget extension. Widgets exclude pay and notes; private mode also hides job names and shift titles.
Files, backups and sharing
You choose whether to export a schedule, work report or full backup and where to save it. Files saved to iCloud Drive or another provider are handled by that provider. Recipients can read and forward shared files. A shared calendar is a snapshot, not a live connection.
Schedule snapshots exclude pay, employers and locations. Notes are excluded unless you turn them on. Work reports and full backups may include private work details; review the export options before sharing. An unencrypted backup is readable. Password-protected backups are encrypted on your device and require the password you chose. The developer cannot recover that password.
When you restore a backup, the app first saves a recovery copy locally. App records may also be included in operating-system device backups, depending on your settings. The app does not provide its own automatic cloud sync.
Payslip PDFs
When you choose a PDF in Files, the app copies it into local app storage and records the job, pay period, title and notes you select. The original file stays with its existing provider. PDFs are displayed for you to read and compare manually; their text is not automatically extracted or interpreted, and the app does not upload them to the developer.
Saved payslip PDFs are included in a full backup. An unencrypted backup contains readable copies; choose password protection when appropriate. Exporting a PDF or backup shares its contents with the destination you choose. Local data may also be included in your operating-system device backups.
Deleting a payslip removes it from the active library. A copy may remain in a previously saved recovery backup or an exported file. Delete all local data also removes the app’s local PDF vault and recovery copy; copies held by other apps, file providers or device backups must be managed there.
Your control and deletion
You can edit records and export your data from the app. Settings → Delete all local data removes local app records, the payslip PDF vault, the local recovery copy, app widget data and scheduled app reminders. It does not delete copies you saved or sent elsewhere, exported calendar events, operating-system backups or Apple purchase history. Manage those copies through the relevant app, provider or Apple settings. The developer cannot access or remotely delete your local calendar.
This website and support
This support website is hosted on Cloudflare, with an earlier copy available on GitHub Pages. It has no added analytics, advertising scripts, forms or tracking cookies. The hosting providers process technical website request data, such as IP addresses, to deliver and protect their services. See Cloudflare’s privacy policy and GitHub’s privacy statement.
If you email shiftcalendar@jelluna.com, we receive your email address and the message you choose to send. We use it to respond and handle your request. Support email is hosted through Apple’s iCloud Mail under Apple’s privacy policy. Include only the information needed for support; do not send passwords, full pay statements or app backups. Support messages are kept only as long as needed to handle the request and necessary follow-up. You may email us to request access, correction or deletion of information you sent us, subject to any applicable retention requirements.
If you choose to post a support request in the support repository, the information you submit is public and is handled by GitHub. Do not post private work records, backup files, payment information or contact details. Support information is used to respond to your request and improve the app. You can edit your GitHub posts and request removal of a support issue through the same repository.
Questions and updates
For a privacy question, email shiftcalendar@jelluna.com. This page will be updated if the app’s data practices change, with a new effective date.