OpenCode Mobile is developed and distributed by VIBE TECHNOLOGIES, LLC,
a Washington State limited liability company.
Address: 519 S Henderson St, Seattle, WA 98108-4522, USA
Contact: support@agentlabs.cc
The app is open-source (MIT license). Source code: github.com/dzianisv/opencode-mobile.
We want to be explicit about what we never collect, transmit to our servers, or share with third parties:
The one exception is your email address, and only if you choose to type it in and join the optional "OpenCode Connect" waitlist — see section 3c below.
All communication between the app and your AI coding agent travels directly between your device and your self-hosted opencode server. VIBE TECHNOLOGIES, LLC never sees this traffic.
With your explicit consent (shown at first launch), we collect anonymous crash diagnostic data via Sentry to help us identify and fix bugs.
| Data type | What is captured | What is NOT captured |
|---|---|---|
| Device info | Device model (e.g. "Pixel 7"), OS version, screen resolution, app version | Device serial number, IMEI, advertising ID |
| Crash / error reports | Stack traces, exception types and messages, source file names and line numbers | Variable values at time of crash, no user data in scope |
| Breadcrumbs | Screen names and function call sequence leading to the crash (e.g., "navigated to session screen") | Message bodies, server URLs, prompt text — all stripped before upload by our URL-scrubbing filter |
| App version and build | Version string and build number | — |
URL scrubbing: before any event is sent to Sentry, our code strips all server URLs, authentication tokens, and query parameters. Stack traces are checked for embedded URLs. No server hostname or port number ever leaves your device via Sentry.
With the same explicit consent (a single opt-in covers both crash reporting and analytics), we collect a small set of anonymous usage events via PostHog to understand whether new users successfully connect to their server and start using the app (an "activation funnel").
| Event | When it fires | Properties |
|---|---|---|
app_opened |
Once per app session, after consent | is_first_open (true/false) |
connection_form_submitted |
You tap Connect/Save with a server URL entered | mode ("quick" or "advanced") |
connection_attempted |
A connection test starts | source ("onboarding" or "edit_test") |
connection_succeeded |
The connection test succeeds | source |
connection_failed |
The connection test fails | source, error_class (a coarse category such as "timeout" or
"unauthorized" — never the raw error text) |
message_sent |
You send a message to an agent session | — |
response_received |
An agent response finishes | — |
demo_started |
You open the offline "Try a Demo" screen (no server, no network) | — |
demo_step_advanced |
You reply to the demo's scripted permission prompt | step_index, step_name, reply ("once", "always", or
"reject") |
demo_completed |
The scripted demo reaches its end | outcome ("completed" or "denied") |
demo_exited_to_connect |
You tap "Connect your own server" on the demo's CTA | reached_completion (true/false) |
What analytics events never contain: your server URL, hostname, IP address, or port; prompts, messages, or AI responses; code or file contents; tokens or credentials; raw error messages. Connection failures are reduced to a fixed list of coarse categories before being sent. The demo screen is fully offline and hardcoded — these events describe interaction with the scripted walkthrough, never real session content.
Analytics data is sent to PostHog's EU region (eu.i.posthog.com)
and is identified only by a random, app-generated anonymous ID — not linked to your name,
email, or any account.
If you decline consent, no analytics is initialised and nothing is sent. If you revoke consent later, analytics stops immediately and any events still buffered on the device are discarded, not uploaded.
When a connection fails or the app crashes, you can tap Share Report to open
your device's normal share sheet with a diagnostic report. If you have granted the same
consent that covers crash reporting and analytics, a copy of that report is also
delivered directly to our support inbox, hosted on our own Chatwoot instance
(support.agentlabs.cc) — this is infrastructure we operate ourselves, not a
third-party SaaS vendor.
| Data type | What is included | What is NOT included |
|---|---|---|
| Diagnostic summary | Connection classification (e.g. "server unreachable"), probe results, timing | — |
| Device info | Device model, OS version, app version | Serial number, IMEI, advertising ID |
| Recent app logs | Recent internal log lines (screen names, function-level breadcrumbs) | Message bodies, prompts, AI responses |
| Your server address | — | Never included — every URL and every hostname/IP the app probed this session is redacted before the report leaves your device |
A random, per-install identifier (stored locally via secure device storage) links follow-up reports from the same install into the same support conversation so we can reply to an ongoing issue. This identifier is not linked to your name, email, or account — we only learn contact details if you volunteer them in your own reply.
Sharing a report is always a manual, explicit action — it is never sent automatically or in the background. It is only delivered to the support inbox if you have granted consent; if you decline or revoke consent, tapping Share Report still opens your device's normal share sheet, but nothing reaches our support inbox.
The Connect screen offers an optional waitlist for OpenCode Connect, our not-yet-launched hosted opencode service. If you choose to type in your email address and tap Join waitlist, we collect that email address and send it to Brevo, a third-party email marketing/CRM platform, so we can add you to the waitlist and notify you when the hosted service becomes available.
This is entirely separate from — and independent of — the crash-reporting/analytics consent toggle described in section 4. It only happens if you open the waitlist card and submit an email; if you never do, no email address is ever collected.
| Data type | What is collected | Shared with | Purpose |
|---|---|---|---|
| Email address | The email address you type into the waitlist field | Brevo (email marketing/CRM platform) | Notify you when OpenCode Connect launches; waitlist/account management |
We do not use this email address for any other purpose (no other marketing, no ads, no sale or rental to any other party). To unsubscribe or request deletion, use the unsubscribe link in any waitlist email, or email support@agentlabs.cc.
Crash reporting, usage analytics, and support-inbox delivery of shared reports are all opt-in and off by default, controlled by a single consent decision. The first time you launch the app you will see a consent prompt. You can change this at any time:
We use three third-party services:
eu.i.posthog.com).
We use no advertising networks, social SDKs, or any other third-party data collection services. The app contains no ads and no ad SDKs.
We also operate our own Chatwoot support-inbox instance
(support.agentlabs.cc, described in section 3b) to receive diagnostic reports
you explicitly choose to share. Unlike Sentry and PostHog, this is infrastructure we run
ourselves rather than a third-party vendor, but data sent to it still leaves your device and
is retained by us as described below.
Crash reports sent to Sentry are retained for approximately 90 days, after which they are automatically deleted per Sentry's retention defaults. Usage analytics events sent to PostHog are retained per PostHog's standard retention policy. Shared support reports delivered to our Chatwoot inbox are retained until the associated support conversation is resolved and periodically purged thereafter; email support@agentlabs.cc to request earlier deletion of a specific report. Waitlist email addresses submitted via the optional OpenCode Connect waitlist are retained in Brevo until you unsubscribe or request deletion.
Beyond that support inbox, we do not operate our own servers that store your data; there is no other VIBE TECHNOLOGIES back end involved in normal app usage.
You have the right to:
Residents of the EU/EEA/UK may exercise rights under GDPR/UK GDPR. California residents may exercise rights under the CCPA. To do so, contact us at the email above.
OpenCode Mobile is a developer tool intended for users aged 18 and over. We do not knowingly collect any data from children under 13 (or under 16 in the EU). If you believe a child has submitted data, please contact us and we will delete it promptly.
All diagnostic and analytics data — including shared support reports — is transmitted over HTTPS (TLS 1.2+) to Sentry, PostHog, and our Chatwoot support inbox. We do not transmit any data over unencrypted connections. Your opencode server traffic uses whatever transport security your server provides — we recommend HTTPS for all self-hosted deployments.
If we make material changes to this policy, we will update the effective date at the top of this page and, where feasible, notify users via an in-app notice. The latest version is always available at: dzianisv.github.io/opencode-mobile/privacy
VIBE TECHNOLOGIES, LLC
519 S Henderson St
Seattle, WA 98108-4522
USA
Email: support@agentlabs.cc
This addendum addresses Apple's specific privacy disclosure requirements for iOS apps distributed through the Apple App Store.
OpenCode Mobile does not use Apple's App Tracking Transparency (AppTrackingTransparency) framework. The app does not:
No ATT permission prompt is ever shown to users because there is nothing to track.
The following maps our data practices to Apple's official App Privacy categories (as required in App Store Connect):
| Apple Category | Collected? | Linked to identity? | Used for tracking? |
|---|---|---|---|
| Contact Info — Name/Phone/Address | No | N/A | No |
| Contact Info — Email Address | Yes — only if you join the optional OpenCode Connect waitlist | Yes — stored in Brevo to contact you about the waitlist | No |
| Location | No | N/A | No |
| Identifiers (Device ID) | Yes (Sentry / PostHog anonymous IDs, with consent) | No | No |
| Usage Data — Product Interaction | Yes (PostHog activation events, with consent) | No | No |
| Diagnostics — Crash Data | Yes (Sentry, with consent) | No | No |
| Diagnostics — Performance Data | Yes (Sentry, with consent) | No | No |
| Diagnostics — Other Diagnostic Data | Yes (shared support reports delivered to our Chatwoot inbox, only when the user taps "Share Report" with consent) | No | No |
| All other categories | No | N/A | No |
App Store Connect summary: Data Linked to You: Email Address (only if you join the optional OpenCode Connect waitlist). Data Not Linked to You: Crash Data, Performance Data, Product Interaction, Other Diagnostic Data (when user consents). Tracking: No.