A little care for your privacy

Privacy Policy

Your drawing is personal. Here is what stays on your device, what sharing sends, and what you can control.

Effective date11 October 2026
Applies toTsukimi & this website

1. At a glance

Tsukimi is a private drawing and photo-note app for two people. Local creation does not require a separate Tsukimi account. CloudKit pairing uses your device's iCloud account.

While creatingDrafts stored locally
When you sendA finished image is shared
In the appNo advertising or tracking SDKs

Yumi Nexus (Wenxi Jiao), based in Auckland, New Zealand, is responsible for Tsukimi. This policy describes the current app, including pre-release versions, and these Tsukimi website pages. Other Yumi applications have their own policies.

2. Information the app handles

Information Purpose & location
Drawings and selected photos Local drawing files contain ink, imported images, layers, titles and editing state. They are stored on your device and may be included in device backups according to your Apple settings. The drawing process is not broadcast.
Sent images and titles Confirming Send uploads a flattened finished image, its title, sender name, sender identifier and creation time to the private CloudKit share. Image size and a checksum support validation and delivery. Editable layers and stroke timing are not sent as a live drawing session.
Pairing and profile information Your chosen display name, a CloudKit user-record identifier, membership and invitation information are used to identify the two people, restrict sharing and recover a connection. Tsukimi does not receive your Apple Account password.
Preferences and widget cache Theme, connection state, thumbnails and local read markers are kept on the device, including in storage shared with the widget extension. New markers indicate whether a drawing has been opened on this device; they are not a read receipt sent to the other person.
Delivery subscriptions Apple's CloudKit subscriptions and notification infrastructure support refreshing shared content. System scheduling determines background and widget updates.

The system photo picker lets you select photos to import; the app does not request access to your entire photo library for this. Saving a picture uses add-only Photos permission. Photos you save become separate copies in your photo library.

3. Sharing, recipients and providers

Your paired person can see and save the images you send. Pairing is limited to two people; you must disconnect before starting a different pairing. Keep invitation links private: on supported systems the first account to accept the single-use invitation becomes your partner. On iOS 17, an invitation is addressed to the iCloud email you provide, which Apple processes to identify the recipient.

CloudKit is provided by Apple. Private shares have public access disabled, but this does not mean that Tsukimi implements its own end-to-end encryption. Apple's infrastructure, security, terms and Privacy Policy apply to iCloud. Providers may process information outside your country.

Older local-service test connections: Some pre-release installations can still use a configured Tsukimi test service instead of CloudKit. In that mode, the service receives names, device/session identifiers, pairing codes and membership, sent images and titles, timestamps and any registered delivery tokens. The service operator can access stored content and controls its retention. This is not the default for a fresh installation and is not a server you need to run for normal CloudKit sharing. Disconnect the test connection before switching to iCloud.

We do not sell personal information or use in-app advertising, cross-app tracking or third-party analytics SDKs. Information may be disclosed when required by applicable law or necessary to address a security incident or protect people's rights, subject to applicable legal safeguards.

4. Storage, retention and deletion

Local drawings remain until you delete them in Drawings or remove the app. Deleting a local drawing does not recall an image already sent. Uninstalling the app does not automatically delete CloudKit records, device backups or pictures saved to Photos.

When the share owner disconnects, the app requests deletion of the private CloudKit zone used for that pairing. When the invited person disconnects, the app requests removal of their shared access; previously sent records may remain in the owner's zone. These actions need a successful network request. Apple manages platform backup and deletion processing.

Disconnecting clears this device's shared frame cache. Copies the other person saved, exported or captured cannot be remotely removed. For older test-service connections, contact the service operator about server-side deletion. If you need help with information we hold directly, contact us below.

5. Your choices and rights

  • Create without connecting; sharing is optional.
  • Choose which photo to import and which finished picture to send.
  • Delete local drawings, disconnect a pairing, and manage iCloud and Photos permissions in system Settings.
  • Remove the widget if you do not want personal pictures visible on the Home Screen. Anyone who can see your screen may see its contents.
  • Request access to, correction of, or deletion of personal information held by Yumi Nexus by emailing support. We may ask for limited information needed to verify and locate your request. Some information is controlled by Apple, your paired person or a test-service operator rather than by us.

Rights and exceptions depend on applicable law, including New Zealand's Privacy Act 2020. You can also contact the New Zealand Office of the Privacy Commissioner. The app is not specifically directed to children. A parent or guardian should help where required by law, and children should not be encouraged to share personal information with someone they do not know.

6. Website visits and support

These Tsukimi pages are static, hosted on Vercel, and do not add analytics scripts, advertising cookies or a Tsukimi web account. The hosting provider can process technical request information such as IP address, browser information, requested URL and request time for delivery, security and operational logging. See Vercel's Privacy Policy. Visiting a linked external site is subject to that site's policy.

If you email support, we receive your email address, message and anything you choose to attach. We use this information to answer your request and diagnose problems, and retain it as needed for support, security and applicable legal obligations. Please do not send passwords, private invitation links or personal drawings unless they are necessary and you choose to share them.

7. Changes and contact

We will update the effective date when this policy changes. Material changes to how the app handles information will be reflected here and, where required, communicated in the app.

Privacy contact
Wenxi Jiao · Yumi Nexus
Auckland, New Zealand

support@yumi.nexus →