Air Widgets App – Privacy Policy

Last updated: 3 September 2026.

In short: Air Widgets has no user accounts and no server of its own. It is read-only — it never creates, changes, or deletes anything in your Airtable. Your credentials and your data stay on your device and are sent only to Airtable. We do not collect analytics, we do not track you, and we have no access to your data.

This policy covers the Air Widgets iOS app. This website has its own separate privacy policy.

No Air Widgets account, no Air Widgets server

Air Widgets connects your device directly to Airtable’s API. We do not operate a backend for the app, and we never receive, store, or process your Airtable data or credentials on our own systems. There is no Air Widgets login and nothing to sign up for.

Your Airtable connection

You connect Air Widgets to Airtable in one of two ways:

  • Airtable sign-in (OAuth). Air Widgets asks only for permission to read records and to read your base structure (scopes: data.records:read, schema.bases:read). Sign-in happens in a system browser sheet provided by iOS.
  • Personal access token. You create a token in your Airtable account with the scopes data.records:read and schema.bases:read, and paste it into the app.

Air Widgets never asks for write access. A token you give it cannot be used by the app to change anything, because the app never calls a write endpoint and does not request the scope that would allow one.

Your credentials are stored in your device’s Keychain (encrypted by iOS) and shared only with other Air Pack apps on the same device. They are never transmitted to us.

What the app reads

To draw a widget, the app reads the base structure and the records in the base, table, and view you point that widget at — and nothing else. It reads on a schedule set by iOS so the widget can refresh in the background. This information flows directly between your device and Airtable.

What is stored on your device

Air Widgets stores the following on your device, inside the app’s shared Air Pack container and protected by iOS: your widget configurations and their settings, a cached copy of your Airtable structure, and a cached snapshot of what each widget last drew — which is how a widget keeps showing its last reading when you are offline instead of going blank.

The widget itself runs as a separate extension and reads that same on-device container; that is why it can refresh without opening the app. None of this is synced to any server of ours. It is protected by the operating system but is not additionally encrypted by the app, so we recommend using your device passcode and standard iOS security.

Device permissions

Air Widgets requests no device permissions at all. It does not ask for your camera, photos, location, contacts, microphone, or health data, and it does not send notifications. If iOS ever prompts you for a permission on behalf of this app, something is wrong — please tell us.

Tap actions you choose

You can set what happens when a widget is tapped. Most options stay inside the app or Airtable, but two hand off to somewhere you pick: opening a web address you enter, or running one of your Shortcuts. Those destinations are yours and are governed by whatever handles them — the app just opens what you configured. If Air Fill is installed on the same device, a tap can also open one of your Air Fill forms; that list is read from the shared on-device container and nothing leaves your device to build it.

Third parties

  • Airtable. The app’s whole purpose is to show data from your own Airtable account. Airtable’s handling of that data is governed by Airtable’s own privacy policy and your agreement with Airtable.
  • Apple. Any subscription is processed by Apple through the App Store; we do not receive your payment details.
  • No analytics, advertising, tracking, or third-party SDKs. Air Widgets contains no analytics, crash-reporting, advertising, or attribution software, collects no usage data and no advertising identifier, and shows no App Tracking Transparency prompt because it does not track.

What we can see

Because there is no Air Widgets server, we have no logs of your activity and no access to your widgets, your data, or your credentials. The only information we receive is what you choose to send us directly — for example, if you email us for support.

Retention and deletion

Because your data lives on your device, you control it. Removing a connection wipes its stored credential and settings; deleting a widget removes its configuration and cached snapshot; and deleting the app removes its on-device data. There is no server-side copy for us to hold or delete. You can also revoke the token or authorisation from inside your Airtable account at any time, which cuts the app off immediately.

Scope of this version

This policy describes the current version of Air Widgets, which is read-only and has no cloud sync, no account system, and no server of ours in the path. If a future version introduces any of those, or ever needs write access, we will update this policy before enabling it.

Children

Air Widgets is a productivity tool intended for general and business use and is not directed to children under 13.

Changes and contact

We may update this policy; the date above reflects the current version. Questions: hello@airwidgets.app.

Air Widgets is an independent app and is not affiliated with, or endorsed by, Airtable. “Airtable” is a trademark of its respective owner.