movetheneedle
Analyze an app

Early-access data policy

Data & privacy

Start with public data or share more for a sharper diagnosis. Raw app data stays private, and you remain in control.

Effective 20 July 2026. Questions or deletion requests: hello@movetheneedle.studio.

What you can share

You can begin with a public App Store page. If you own the app, you may optionally provide operating history, upload original App Store Connect exports, or connect App Store Connect and RevenueCat inside your email-verified private report page. movetheneedle never asks for your Apple or RevenueCat password.

What we store

The no-email public scan does not persist the app name, App Store link, app ID, or report result in our case database if you leave before requesting a report. To keep scans fast and reduce requests to Apple, we temporarily cache public App Store in-app purchase facts by storefront and app ID for up to 30 days. Anonymous analytics contain aggregate event and failure categories only, never the searched app ID, name, link, or raw Apple response.

  • Your intake: app reference, decision type, goal, name, email, and any operating context you add.
  • Files and metrics you deliberately provide, so the report can be prepared, evidenced, and reproduced.
  • If you connect a provider: an encrypted credential envelope, the exact selected app/project identifiers, connection and sync status, and credential-free selected-app evidence. The envelope remains until you disconnect it or request deletion.
  • The report, its evidence snapshot, access records, and your optional response or check-in.

How connected sources work

Credentials are encrypted at rest and never included in report artifacts. App Store Connect report reads are scoped to the selected Apple ID. RevenueCat uses aggregate read scopes and excludes customer-level endpoints.

For a buyer request, the buyer cannot authorize or manage the owner’s private sources. We email a separate secure authorization link to the app owner, and no private pull starts until that owner verifies their email and explicitly consents.

Optional screenshot analysis

When enabled, the public scan may send the app’s public listing facts and up to three public Apple-hosted screenshot URLs to OpenAI to describe the visible product-page promise. It does not send your email, submitted context, private metrics, or provider data, and the request is made with model-response storage disabled. This visual description is labeled separately and cannot change the deterministic public signal.

Evidence labels

Public, owner-reported, verified, estimated, and inferred information remain visibly distinct. A connected source confirms the source, not every claim made about the business. A recommendation is only described as measured when an outcome and a metric are present. Association is not presented as causation.

Benchmarks are opt-in

Anonymous aggregate benchmark use is optional and unchecked by default. If you opt in, app identity and raw app-level data are not shared. The report still states the cohort, sample, and applicability of any benchmark it uses.

What we do not do

We do not sell your data, publish your private numbers, or share raw app-level data with another owner, seller, or buyer without your authorization. If you tell us you are considering a sale, we may follow up with you directly; nothing about your app is shared with anyone else unless you agree.

Your controls

  • Disconnect a provider on your private report page and revoke its key or OAuth access at the provider to stop future access.
  • Ask us to revoke an issued report link.
  • Email hello@movetheneedle.studio to delete your submission and raw app-level data.

Storage and human involvement

Data is stored in a database and private object storage on Cloudflare. Report links expire, can be revoked, and require recipient-email verification. During early access, reports are deliberately prepared and reviewed with human involvement.

Analyze an iOS app ↗