Privacy
Privacy policy.
Tomato Session stores as little as it can, uses it only to run the app, and lets you delete everything yourself.
Last updated 7 September 2026. This policy covers the website tomatosessions.com and the Tomato Sessions app for macOS.
Who is responsible
Tomato Session is operated by Jim Aho, Sweden, who is the data controller for the personal data described here. Contact: jim@steadycoding.com.
What we collect
Account data: the name, email address and user id that your sign-in provider (Apple, Google or GitHub) shares with us when you sign in. We generate an internal user id and link each provider identity to it.
Focus sessions you save: start and end time, duration, paused minutes, category, intention, notes and the mood you pick. Sessions are stored only when you are signed in and choose to save them.
Feedback you submit through the feedback form, together with your internal user id.
Why we collect it
Only to provide the app: signing you in, saving your sessions, showing your statistics and achievements, and reading your feedback. We do not show ads, do not track you across other apps or websites, do not build profiles and never sell or share your data with third parties for their own purposes.
Where it is stored
Your data is stored in Microsoft Azure Table Storage in the European Union. The web application runs on Fly.io in Amsterdam, Netherlands. Data is encrypted in transit (HTTPS) and at rest.
Error reporting
The website uses Sentry to capture errors and performance data. An error report can include your IP address, browser details, the page you were on and, when you are signed in, your user id. The macOS app sends no analytics or error reports.
Sign-in providers
You sign in with Apple, Google or GitHub. We receive only the identity they share (name, email, provider user id) and never see your password. Each provider's own privacy policy governs what they collect on their side. With Sign in with Apple you may hide your email; we then store the relay address Apple gives us.
Retention and deletion
We keep your data until you delete your account. You can delete it yourself at any time from the profile page on the website or from the account section in the macOS app. Deletion removes your account, all linked provider identities, all focus sessions and, for Apple accounts, revokes the Sign in with Apple authorization. Feedback you submitted is deleted as well. Error reports in Sentry expire automatically after 90 days.
Your rights
Under the GDPR you may request access to, correction of, or deletion of your personal data, or object to how it is processed. Email jim@steadycoding.com and we will respond within 30 days. You may also complain to the Swedish Authority for Privacy Protection (IMY).
Changes to this policy
If this policy changes, the new version is published on this page with an updated date. Material changes will be announced in the app's release notes.