AppLane
Privacy Policy
Overview
AppLane is a macOS network-routing utility. It does not require an account and contains no advertising, analytics, tracking, telemetry, or developer-operated data collection service.
Data stored on your Mac
AppLane stores its configuration on your Mac. This can include selected applications, routing rules, proxy server addresses, and security-scoped file permissions used to identify applications. Proxy usernames and passwords are stored in the macOS Keychain with a device-only accessibility class.
While the Network Extension is running, it keeps up to 200 recent connection records in memory. A record can include an application's signing identifier, destination host and port, route, state, byte counts, start time, and an error description. AppLane does not send these records to the developer.
Network traffic and diagnostics
When routing is enabled, traffic matching your rules is sent through the proxy server or chain you selected. The proxy operator and destination service may process that traffic under their own privacy policies. Optional connection, website, and UDP checks contact the target you enter through the selected proxy. These operations provide the network function you request and do not send data to an AppLane service.
Optional proxy DNS
When you select Automatic DNS for a managed application with a proxy route, or select All Through Proxy, AppLane may send DNS questions through your selected SOCKS5 proxy to the Cloudflare or Google DNS-over-HTTPS resolver you choose. A DNS question contains the requested domain name, record type, and protocol metadata needed to return an answer. Your proxy operator and the selected resolver may process the connection or query under their own privacy policies.
AppLane does not add an account identifier, device identifier, analytics field, or advertising identifier to these requests. It does not send DNS questions to the AppLane developer or write them to its application log. DNS response mappings may be kept temporarily in Network Extension memory so later connections can use the requested hostname; they expire with DNS timing rules and are cleared when relevant network or configuration state changes. Local and company domains protected by Automatic mode continue to use their existing system resolver path.
Configuration export
Exports happen only when you request them. An exported file excludes proxy usernames and passwords, credential references, local application paths, and file-access bookmarks. It can still contain application identifiers, routing rules, and proxy addresses, so review it before sharing.
Retention and deletion
You can remove applications, rules, proxies, chains, and profiles in AppLane. Credentials created in the current session are removed after they are no longer referenced by configuration or undo history. Older or unknown AppLane Keychain entries are not swept automatically. Search for com.szlab.AppLane.proxy-credentials in Keychain Access to remove remaining items. Removing AppLane itself may leave sandbox data and Keychain entries on your Mac; remove those items separately to erase all local AppLane data.
Changes
If this policy changes, the new version and date will appear on this page.
Contact
Questions about privacy: szlab.ai@outlook.com.