SonarTreeTerms of Service

Legal

Privacy Policy

Last updated: July 19, 2026

SonarTree is the app intelligence tool for developers who ship their own apps. This page explains, in plain English, what we collect, why we collect it, and exactly what happens when you delete your account.

What we collect

  • Account identity. When you sign in, Firebase Authentication stores your email address and issues a unique account ID. We never see or store your password ourselves; Firebase handles authentication directly.
  • Apps and keywords you track. The apps you connect, the keywords you track, your alert history, and your usage preferences are stored in our database, linked to your account ID rather than your email. This is the data that makes SonarTree useful to you.
  • Account settings and plan. A small profile record (email, display name, notification preferences, current subscription tier) is stored separately, keyed to your account ID.
  • Billing data. If you subscribe to a paid plan, Stripe processes your payment and stores your card details directly. We never see or store your full card number, only your subscription status and Stripe's own customer and subscription identifiers, so we know what plan you're on.

App Store Connect keys

If you connect App Store Connect to pull in your own downloads, revenue, and engagement data, we ask for an API key you generate in your own developer account. That key is encrypted before it ever reaches our database, using public-key sealed-box encryption: our servers can seal a key when you submit it, but nothing in our system is able to unseal or read it back out afterward except the one background process that uses it to talk to Apple's API on your behalf. We never log the key, in any form. Disconnecting App Store Connect, or deleting your account, permanently deletes that encrypted key. There is no separate copy anywhere else to clean up.

What isn't personal data

SonarTree also maintains a large, shared database of App Store keyword rankings, popularity and difficulty scores, and app listing metadata. This describes the App Store itself, not you: it isn't tied to any individual account, and every customer's tracking of the same keyword draws from the same shared rows. Deleting your account removes your own tracking of that data (which keywords you followed, for which apps), but does not erase the underlying keyword or ranking data itself, the same way canceling a market-data subscription doesn't erase the market.

Hosting

Today, SonarTree runs on development infrastructure while we build the product. We plan to move production hosting to Hetzner, an EU-based provider, before opening the product more broadly. We are stating that plan here rather than a hosting location that is already true, because we would rather be accurate about where our infrastructure actually stands than describe a future state as a present one.

Who else sees your data

  • Firebase / Google Cloud, for authentication and the account settings record described above.
  • Stripe, for payment processing on paid subscriptions.
  • Apple, only through your own App Store Connect key, used solely to call Apple's own APIs on your behalf.

We don't sell your data, and we don't share it with anyone else.

Deleting your account

You can delete your account and your data at any time from your account settings. When you do, we, in order:

  1. Cancel any active subscription with Stripe first, so you are never billed after deletion.
  2. Permanently delete your App Store Connect key, every keyword you track, every app you connected, your downloads and revenue history, your alert history, and your subscription record.
  3. Delete your account settings record.
  4. Delete your sign-in account entirely.

What deletion does not touch: the shared, anonymous App Store keyword and ranking data described above. That data was never yours specifically, and it isn't personal data, so there is nothing of yours left in it once the steps above are done.

Your rights

Email [email protected] any time to ask what data we hold about you, request a copy, or ask us to delete it. Deletion is also self-serve from your account settings. We'll respond as quickly as we can.

Changes

If what we collect changes, we'll update this page and the date at the top.