YOUR DATA, EXPLAINED
Privacy Policy
Effective September 29, 2026
AgentLookout is a companion for viewing and managing supported coding-agent sessions from your Apple devices. This policy describes information handled by AgentLookout and its Connector.
Who operates AgentLookout
AgentLookout is operated by Kirlos Yousef. For privacy questions or requests, email hello@kirlosyousef.com.
What the app processes
The Mac Connector reads supported agent session information on your Mac so AgentLookout can display session status, project grouping, and supported actions. Depending on the provider and feature in use, session information can include session titles, provider names, repository names or paths, status, and revision or capability details. The Connector communicates with the companion app through an encrypted connection.
The iPhone or iPad stores pairing information and may cache session details so it can restore the view. Pairing credentials and cached app data are stored on your device. AgentLookout does not require an account, name, or email address to pair the devices.
Encrypted relay and service metadata
When the paired devices communicate through AgentLookout’s relay, message contents are encrypted between the devices. The relay is not a zero-metadata service: it processes and may temporarily store encrypted message envelopes, pairing and routing identifiers, public-key identifiers, protocol and sequence information, message sizes, expiry times, delivery outcomes, and push-notification routing information. Cloudflare, as the relay infrastructure provider, may process network information such as IP addresses and request timestamps for operation and security.
If push notifications are enabled, the service processes an Apple Push Notification service token and sends a generic alert when an agent needs attention. The notification does not include the agent’s prompt or response text. Apple processes push notifications under its own policies.
Pairing-code lookup data is short-lived and designed to expire within five minutes. Encrypted relay messages carry an expiry and are removed after expiry or acknowledgement, subject to infrastructure operation and provider retention practices.
Permissions
- Camera: used only when you choose to scan the pairing QR code. You can enter a pairing code instead.
- Notifications: used for agent attention alerts if you allow them. You can change notification permission in iOS Settings.
- Device authentication: Face ID or device authentication may be requested to protect sensitive approval actions.
How information is used
Information is used to pair your devices, show session status, route encrypted messages, deliver generic attention alerts, secure actions, and maintain the service. We do not sell personal information or use it for advertising. The current app does not require an account.
Storage, deletion, and your choices
Session information and pairing data may remain in the app’s local cache until the app data is removed. You can disable notifications in iOS Settings and avoid camera access by entering a code. To request deletion of relay routing or pairing data, email hello@kirlosyousef.com from the address you want us to reply to and include enough non-sensitive detail to identify the paired installation. Never email a pairing secret, private key, or session content.
Apple and Cloudflare may retain operational records under their own retention and security practices. Removing AgentLookout from a device does not necessarily delete records held by those providers.
Service providers
AgentLookout uses Apple services for distribution, device notifications, and device-level security, and Cloudflare infrastructure for encrypted relay delivery. These providers handle information under their own privacy terms. This website is designed as a static site. If hosted with GitHub Pages, GitHub may log visitors’ IP addresses for security purposes under its Pages data collection practices.
Children
AgentLookout is a developer productivity tool and is not designed for children under 13. We do not knowingly collect personal information directly from children.
Changes to this policy
We may update this policy when the app or its services change. The effective date at the top shows when the current version was published. Material changes will be reflected on this page.
Contact
Questions or privacy requests: hello@kirlosyousef.com.