Overview
Understand what Prox Deck stores, what can sync, and when external services are involved.
1. On Your Device
Stored on This Device
Server settings, including custom HTTP Header names and values, are stored on this device with app preferences, operation summaries, and custom guest icons. Live PVE status and terminal output are used while needed and are not kept as activity history.
Credentials Stay Separate
Passwords, API Token secrets, SSH private keys, and passphrases are stored in Keychain instead of the app database or preferences.
Runtime authentication data—including PVE Tickets, CSRF tokens, cookies, authorization headers, and active SSH sessions—stays in memory and is not written as persistent session history.
2. Optional iCloud Sync
iCloud Sync is off unless you explicitly enable it.
Configuration Sync
When you enable iCloud Sync, server configuration—including custom HTTP Header names and values—SSH Profile metadata, selected app preferences, and deletion records use your private iCloud account.
Synchronization is designed to converge when devices are unlocked, available, and connected. It does not promise immediate or continuous background delivery. Custom guest icon files remain local and do not enter CloudKit.
PVE Password Sync
Only PVE passwords may use iCloud Keychain when sync is enabled. API Token secrets, SSH credentials, certificate trust, and SSH Host Key trust remain on each device.
Device-Only Choices
Biometric protection, certificate trust, Tailnet identity, terminal appearance, and Dashboard customization stay specific to this device.
3. When You Use External Services
Icons and Photos
The icon browser downloads public catalog data and images from approved HTTPS hosts. A custom icon is imported only after you select an image with the system photo picker. Prox Deck does not scan your photo library.
Purchases
Apple processes App Store purchases. RevenueCat loads product offerings, checks offer eligibility and Pro access, supports purchase and restore flows, and records paywall impressions.
Tailnet Connectivity
Tailscale is involved only when you explicitly enable App-level Tailnet connectivity. Tailnet authorization, control/runtime communication, and Tailnet transport are separate from routine PVE management connections.
Feedback
Feedback opens your mail app with the Prox Deck and iOS versions prefilled. You can review and edit the message before sending it.
Permissions
- Local Network lets Prox Deck reach a local PVE endpoint that you configure.
- Location / Precise Location while in use may be required by iOS to read the current Wi-Fi SSID for Smart Connect. Prox Deck does not keep a location history.
- Photos are accessed through the system picker only for items you select.
- Face ID / Touch ID provide a system authentication result for selected app protections. Prox Deck does not receive biometric data.
Retention and deletion
Deleting a server clears its related local configuration, credentials, and icon files. If iCloud Sync is enabled, deletion records are used to propagate that choice. Saved operation summaries are removed according to the retention period you select in the app. A Pro entitlement expiring does not delete your configuration. Third-party services retain data under their own policies and platform behavior.
Contact
For privacy questions, email apps.mccray@gmail.com.
Trademark notice
Prox Deck is an independent third-party client for Proxmox VE. It is not affiliated with, endorsed by, or sponsored by Proxmox Server Solutions GmbH. Proxmox and Proxmox VE are trademarks of Proxmox Server Solutions GmbH. Tailscale and Tailnet are trademarks of Tailscale Inc. Apple, iCloud, App Store, Face ID and Touch ID are trademarks of Apple Inc.