Skip to content

Privacy Policy for Stashd Triage

Effective date: September 1, 2026

Last updated: September 3, 2026

Stashd Triage ("Stashd Triage," "we," "us," or "our") is a mobile client that lets you review and update issues in a Linear workspace. This Privacy Policy explains how Stashd Triage handles information when you use the app.

Summary

  • Stashd Triage does not require a Stashd account.
  • You can connect with Linear OAuth or a personal API key.
  • We do not operate a server that receives your Linear OAuth tokens, API key, or workspace content.
  • The app communicates directly from your device to Linear's API.
  • Your Linear OAuth tokens or API key are stored in secure, device-only storage.
  • App preferences and review history are stored locally on your device.
  • Stashd Premium is a monthly auto-renewable subscription purchased through Apple or, for eligible US storefronts, through RevenueCat's hosted card checkout. Stashd never handles card details.
  • We do not sell personal information, serve ads, track you across apps or websites, or include a third-party analytics SDK.

Information the app handles

Linear connection credentials

You can connect the app to Linear using OAuth or a personal API key.

OAuth: You sign in and approve Read and Write access on Linear's authorization page. The app exchanges the authorization code directly with Linear using PKCE, then uses the returned access and refresh tokens to authenticate requests and renew access. Stashd Triage does not receive your Linear password.

Personal API key: You provide a Linear personal API key. The app validates it directly with Linear before saving it. You control the key's permissions and team access and can revoke it in Linear's Security & Access settings.

For either method, the app validates the connection before saving it. OAuth tokens or the API key are stored in iOS Keychain using device-only secure credential storage, configured not to migrate through a device backup. Authentication, token refresh, and workspace requests go directly to Linear. We do not receive or store these credentials on Stashd-operated servers.

Linear workspace information

To provide issue-triage features, the app retrieves information permitted by your OAuth authorization or API key. Depending on your Linear workspace, that information may include:

  • workspace, team, workflow-state, project, label, and member information;
  • issue identifiers, titles, descriptions, priorities, assignees, projects, labels, due dates, statuses, and Linear URLs; and
  • search results and other issue metadata needed for actions such as duplicate marking.

This information travels directly between your device and Linear. The app may temporarily cache it in memory while you use the app. When you apply a change, create a project, or mark an issue as a duplicate, the app sends that instruction directly to Linear, where it changes data in your Linear workspace.

Your use of Linear and Linear's handling of workspace information are governed by your agreement with Linear and Linear's Privacy Policy.

Information stored locally on your device

The app stores information needed to remember your setup and preferences, including saved filters, Review All configuration, action docks, project ordering, reviewed-ticket history, saved-for-later tickets, and onboarding state. This information remains on your device and is not sent to us.

The app also stores a device-local trial record (how many successful sorts you have used, and whether the free trial is exhausted) in iOS Keychain using device-only secure storage. That record is independent of review history and is not removed by Clear all local data.

Purchases and access

You can subscribe to Stashd Premium with an auto-renewable monthly in-app purchase, a RevenueCat-hosted card checkout, an Apple offer code, or a promotional grant. Offer codes and web discounts provide 100% off for a set number of months, then renew at the regular monthly price unless you cancel. Stashd does not operate a payment backend and does not receive your card number, bank details, or Stripe secret keys.

Depending on the path you choose, Apple, RevenueCat, and (for card checkout) Stripe may process purchase information such as:

  • product identifiers, price, and purchase or redemption status;
  • a RevenueCat customer identifier (Support ID) created on device;
  • App Store account and device identifiers used to complete or restore a purchase;
  • receipt, invoice, or payment-processor records for card checkout.

Card checkout is shown only when the App Store storefront is the United States. That checkout runs on RevenueCat's hosted page with Stripe as the payment gateway. Restore purchase, redemption links, Apple offer-code redemption, and RevenueCat's customer portal exist so you can recover, manage, or cancel access you already paid for or were granted.

Support communications

If you contact us for support, we receive the information you choose to provide, such as your email address, message, and any diagnostic information or screenshots you attach. We use it only to respond, troubleshoot, protect the service, and maintain reasonable support records. Do not send Linear OAuth tokens, an API key, or confidential workspace content in a support request.

How information is used

Information handled by the app is used only to:

  • authenticate your device to Linear;
  • display, filter, search, and review issues you are authorized to access;
  • carry out Linear changes you explicitly request;
  • remember local preferences, review state, and trial eligibility;
  • complete, restore, or redeem a purchase you request; and
  • respond to support requests you send us.

We do not use app data for advertising, cross-app tracking, data brokerage, or behavioral profiling.

Sharing and third parties

Stashd Triage sends Linear credentials, workspace queries, and requested workspace changes only to Linear as necessary to provide the app's features. We do not send that information to advertising networks, analytics providers, or Stashd-operated servers.

Apple may process information related to downloading, installing, purchasing, or diagnosing apps under Apple's Privacy Policy. That processing is controlled by Apple, not Stashd Triage.

RevenueCat processes purchase and entitlement information under RevenueCat's Privacy Policy. For card checkout, Stripe processes payment information under Stripe's Privacy Policy. Stashd does not receive card details from those transactions.

We expect service providers that handle information described in this policy to protect it consistently with their own legal obligations and published privacy commitments.

Retention and deletion

We do not retain your Linear OAuth tokens, API key, or workspace content on Stashd-operated servers because the app has no such backend.

On your device:

  • Disconnect removes the stored OAuth tokens or API key while preserving local filters and preferences.
  • Clear all local data removes the stored credentials and all Stashd Triage preferences and history stored by the app on that device. It keeps purchase records and free-sort eligibility so clearing the app cannot reset the trial.
  • Deleting the app removes its locally stored app data, subject to the operating system's behavior. Trial eligibility often remains in iOS Keychain across reinstalls, but it is not guaranteed after a full device reset.

When you disconnect or clear local data, the app also attempts to revoke OAuth access directly with Linear. Removing credentials from the device does not guarantee that remote OAuth revocation succeeds. You can revoke the app's access in Linear if needed. Disconnecting Stashd does not sign you out of the Linear website.

Personal API keys remain active in Linear until you revoke them there. You can revoke OAuth access or a personal API key in Linear at any time. Revoking access or removing local credentials prevents further use of that connection by Stashd Triage but does not delete information already stored in your Linear workspace. To access, correct, export, or delete information held by Linear, use Linear's controls or contact Linear.

Support messages are kept only as long as reasonably needed to respond, maintain support records, protect against abuse, and satisfy legal obligations. You may ask us to delete a support conversation unless we must retain it for a legitimate legal or security reason.

Security

We use platform security features and encrypted HTTPS connections to reduce the risk of unauthorized access. OAuth tokens and API keys are stored using device-only secure credential storage. No method of storage or transmission is completely secure, so you should protect your device and grant only the Linear access the app needs.

Children

Stashd Triage is a productivity tool for people who use Linear and is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided personal information to us through a support request, contact us so we can delete it.

Your choices

You may:

  • decline to connect a Linear account;
  • connect using OAuth or a personal API key;
  • revoke OAuth access or restrict or revoke your API key in Linear;
  • disconnect Linear from the app;
  • restore or redeem a purchase;
  • copy your Support ID for purchase support;
  • clear locally stored Stashd Triage data without resetting purchase or trial eligibility; and
  • delete the app.

Where applicable law gives you additional rights regarding information we hold through support communications, contact us to exercise them. Because we do not receive your locally stored app data or Linear workspace content, we cannot retrieve or delete those items for you.

Changes to this policy

We may update this Privacy Policy when the app or our practices change. We will post the updated policy at the same URL and revise the "Last updated" date. If a change materially affects how the app handles information, we will provide additional notice where required.

Contact

Stashd Triage is operated by Eric Wiener.

For privacy questions or requests, contact: ericwiener3@gmail.com.