EasyHomebrew
Privacy Policy
Last updated: 29.08.2026
Privacy is a core principle of EasyHomebrew, not a setting. The App contains no analytics, no telemetry, and no tracking of any kind. It does not report which features you use, does not identify your installation, and does not send us a record of what you do with it. There is no switch to turn off, because there is nothing running.
This is a deliberate design decision rather than an omission. Earlier versions of the App transmitted anonymous, aggregate usage events; that capability was removed in full — the analytics library, the events, and the code that sent them — in version 2.9.0. This Policy describes the App as it is today.
EasyHomebrew values your privacy and is committed to explaining clearly how information is handled when you use our macOS application.
This Privacy Policy explains how WIZHUT TECH SINGLE MEMBER P.C., operating under the name Wizhut.tech ("Wizhut.tech", "we", "us", or "our"), processes information in connection with your use of the EasyHomebrew macOS application, including the main application and the menu-bar agent (the "App").
This Policy applies only to the App. It does not apply to the wizhut.tech website or to any other product, service, or website operated by Wizhut.tech, which may be governed by separate privacy notices.
By installing or using the App, you acknowledge that you have read and understood this Policy. If you do not agree, please uninstall the App.
1. Who we are
For the purposes of the General Data Protection Regulation (EU) 2016/679 ("GDPR") and other applicable data protection laws, the data controller is:
- Controller: WIZHUT TECH SINGLE MEMBER P.C.
- Trading name: Wizhut.tech
- Registered address: 52 Artis, Agios Dimitrios, Athens, Attica, Greece
- Contact email: privacy@wizhut.tech
You may contact us about privacy matters at the email address above. If you have any questions about this Policy or about how the App handles information, you may contact us at the email address above.
2. What the App does
EasyHomebrew is a macOS application designed to make Homebrew easier to use. Homebrew is a package manager commonly used by developers and advanced Mac users to install, update, remove, and manage software packages and development tools.
The App provides a graphical interface and related features for discovering, managing, updating, and understanding Homebrew packages on your Mac. The App is designed to minimise data collection and to perform key functionality locally on your device wherever reasonably possible.
3. Our approach to privacy
The App is designed according to the following principles:
- The App contains no analytics, telemetry, crash-reporting, or tracking software.
- We do not measure or record how you use the App.
- The App does not generate or transmit an installation, device, or session identifier.
- We do not require you to create an account.
- We do not collect your name, password, Apple ID, or account credentials through the App.
- We do not receive the names, versions, or identifiers of Homebrew formulae, casks, or taps that you install, uninstall, upgrade, browse, or search for.
- We do not receive your search queries.
- We do not receive file paths, file contents, terminal output, Brew Doctor warnings, or data from your home directory,
/usr/local, or/opt/homebrew. - Several App features run locally on your Mac.
- The requests the App does make are made by your Mac, to obtain something you asked for — package information, vulnerability data, or validation of your license.
4. Information we process
4.1 Analytics and telemetry: none
The App does not collect analytics or telemetry. It contains no analytics software development kit, sends no usage or diagnostic events, performs no crash reporting, and generates no installation, device, or session identifier. Nothing about how you use the App is transmitted to us, and nothing is stored by us about how you use it.
Because no such data exists, there is no opt-out setting, no consent banner, and no retention period to disclose for it. Settings → Privacy in the App states this and lists every server the App connects to, so you can verify the position against the App itself.
4.2 License information
The App is unlocked with a one-time license key. To activate and periodically re-validate that key, the App sends the key to our payment and licensing provider, Dodo Payments, which confirms whether it is valid and how many device activations it has. Your purchase — and therefore the email address you gave at checkout — is held by that provider under its own privacy notice and our agreement with it.
License validation is the only request the App makes that relates to you rather than to a package. It carries your license key and nothing else: no package list, no usage information, and no record of what you did in the App.
The license record is stored locally on your Mac so the App and the menu-bar agent can both read it, and so the App keeps working for a limited period without a network connection.
4.3 Information we do not collect through the App
The App does not transmit any of the following to us:
- the names, versions, or identifiers of Homebrew formulae, casks, or taps you install, uninstall, upgrade, or browse;
- search queries, including queries entered in the Discover view;
- the text of Brew Doctor warnings or other diagnostic output;
- file paths or file contents;
- data residing in
/usr/local,/opt/homebrew, or your home directory; - your name, email address, Apple ID, account credentials, or passwords;
- the contents of your terminal commands;
- the contents of your local project files or repositories;
- usage, diagnostic, analytics, or telemetry events of any kind;
- any installation, device, advertising, or session identifier.
The one thing the App does send that concerns you is your license key, as described in section 4.2. Your email address reaches us only if you give it at checkout or write to support — never from inside the App.
5. Purposes and legal basis
Where the GDPR applies, we process information for the following purposes and on the following legal basis.
5.1 Providing the App and its core functionality
Some processing is necessary to provide the App functions you request, including checking package metadata, vulnerability information, author information, update information, and related functionality.
Legal basis: performance of a contract / our legitimate interest in providing the App and its requested functionality.
5.2 Licensing
We process your license key, and the purchase record held by our payment provider, in order to sell you a license, unlock the App, re-validate it, manage the number of devices a license covers, and provide support and refunds.
Legal basis: performance of a contract, and our legitimate interest in preventing unauthorised use of a paid application.
5.3 Legal compliance
Where necessary, we may process limited information to comply with applicable legal obligations or to respond to lawful requests from public authorities.
Legal basis: compliance with a legal obligation.
6. Legitimate interest balancing
Where we rely on legitimate interests, we have considered the nature, scope, context, and purposes of the processing, as well as the potential impact on users.
The only processing we rely on legitimate interests for is license validation, which we consider limited and proportionate because:
- the App transmits your license key and nothing else for this purpose;
- the App does not transmit package names, package versions, search queries, file paths, file contents, account credentials, or terminal output to us;
- the App collects no analytics or telemetry at all, so there is no usage record to balance;
- we do not profile you or track you across apps or websites.
You may object to processing based on legitimate interests by contacting us at the address in section 17.
7. Your choices
There is no analytics setting in the App, because there is no analytics. Nothing needs to be switched off, and no consent is requested for anything of that kind. Earlier versions of the App offered a toggle for anonymous usage events; that toggle was removed in version 2.9.0 together with the events themselves.
The choices you do have are these:
- Settings → Privacy lists every server the App connects to and the reason for each, so you can check this Policy against the App.
- The Apple Intelligence features are optional and run on your Mac; they can be left unused, and are unavailable altogether on macOS versions that do not support them.
- Vulnerability scanning on launch can be turned off in Settings → Security, which stops the App contacting the vulnerability database unless you ask it to.
- Locally cached data — icons, generated descriptions, package metadata — can be cleared at any time from Settings → Storage.
- Uninstalling the App ends all network activity by it.
8. On-device processing
Several App features operate locally on your Mac. Unless otherwise stated, the inputs and outputs of these features are not transmitted to us.
8.1 Discover
The Discover feature uses Apple's on-device NLEmbedding framework to support semantic package search. Search queries entered in the Discover view are not transmitted to us.
8.2 AI homepage enrichment
Where enabled, Apple Intelligence may generate short package descriptions and select screenshots based on public package homepage content. Outputs are cached locally on your Mac for up to seven days.
8.3 AI category classification
Where enabled, Apple Intelligence may categorise uncategorised packages locally on demand.
8.4 Brew Doctor explanations
Where supported by your version of macOS, Apple Intelligence may rewrite Brew Doctor warnings into plain language locally on your Mac. The text of Brew Doctor warnings is not transmitted to us.
8.5 Icons, metadata, and local cache
Package icons, generated descriptions, catalogue metadata, and similar visual or metadata elements are cached locally on your Mac. You may clear locally cached data at any time from Settings → Storage.
9. Third-party services and network activity
The App connects to certain third-party or public infrastructure services to provide core functionality. These connections are made over HTTPS.
With the single exception of license validation (section 9.6, which carries your license key), the App does not include your name, email address, account credentials, package list, search queries, file contents, or terminal output in these requests. However, as with any internet request, the third-party service may receive technical information such as your IP address, request metadata, and user-agent or similar technical information. Each third-party service processes such information under its own privacy notice.
The list below is exhaustive as at the date of this Policy, and is mirrored in Settings → Privacy inside the App, so the two can be checked against each other.
9.1 Homebrew API
The App connects to Homebrew public infrastructure (formulae.brew.sh) for package metadata and for the 30/90/365-day install counts that the Homebrew project itself publishes. These counts describe packages, not users, and are the figures shown on a package detail page.
9.2 OSV vulnerability database
The App connects to api.osv.dev to match installed packages against published CVEs. Scanning on launch can be disabled in Settings → Security.
9.3 GitHub release notes
The App connects to api.github.com to retrieve a package's public release notes, and only when you ask for them by opening the What's New section on a package.
9.4 Icon lookup
To show an icon for a package, the App requests a favicon for the package's homepage domain from a public favicon service. The request carries the package homepage's domain, not your package list.
9.5 Public package homepages
The App may fetch public package homepages on demand when you open a package detail view. This is used solely to obtain icons and screenshots for that package.
9.6 Dodo Payments (licensing)
The App connects to Dodo Payments to activate and re-validate your license key, as described in section 4.2. This is the only request that concerns you rather than a package.
9.7 Sparkle update endpoint
The App uses the Sparkle update framework to check for new App releases and to download them, from an update feed we host. As with any download, standard request information such as your IP address and the requesting App version is visible to the server serving the file.
10. Service providers and other recipients
We do not sell personal data. We do not share information about you with third parties for advertising purposes, and — since the App collects no usage data — there is no usage data that could be shared, sold, or disclosed.
We may disclose limited information, where necessary, to the following categories of recipients:
- our personnel and authorised collaborators, who access information only on a need-to-know basis;
- infrastructure, hosting, security, email, support, payment, and licensing providers that help us operate and maintain the App and related systems;
- professional advisers, such as lawyers, accountants, auditors, or insurers, where necessary for our legitimate business or legal purposes;
- public authorities, courts, regulators, or law enforcement bodies, where we are legally required to do so or where disclosure is necessary for the establishment, exercise, or defence of legal claims.
Where service providers process personal data on our behalf, we take reasonable steps to ensure that appropriate contractual and security safeguards are in place and that such providers process the data only in accordance with our instructions and applicable law.
We may also use aggregated or de-identified information for internal reporting, product planning, and performance analysis.
11. International data transfers
The App transmits no diagnostic or usage events, so there is no such data to transfer. The limited license information we process is handled within the European Union or the European Economic Area, or under appropriate safeguards where our payment and licensing provider operates outside it.
Some third-party services used by the App, including public package infrastructure, vulnerability databases, update endpoints, public homepages, or code-hosting services, may operate globally. When your App connects directly to those services, the request is made from your device to the relevant service, and that service may process technical request information under its own privacy notice.
We do not intentionally transfer personal data that we control outside the European Economic Area unless appropriate safety measures are in place or the transfer is otherwise permitted by applicable law.
12. Data retention
We hold no diagnostic or usage events, so there is nothing of that kind to retain or delete. This is not a retention period that could be lengthened later; the data is never created.
Records relating to your license and purchase are retained for as long as the license is valid and thereafter for the period required to meet our accounting, tax, and legal obligations, or to establish, exercise, or defend legal claims.
Locally cached data on your Mac (icons, AI-generated descriptions, author look-ups) is retained on your device only and may be removed at any time through Settings → Storage.
13. Security
We implement and maintain appropriate technical measures designed to protect information processed in the App against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or unauthorised access.
These measures may include access controls, security procedures, limited internal access, and reasonable technical safeguards appropriate to the nature and scope of the information processed.
No method of transmission or storage is completely secure. The strongest protection the App offers is structural rather than procedural: data that is never collected cannot be breached, disclosed, or subpoenaed. The App performs its key functionality locally on your Mac and transmits to us only what is needed to validate your license.
14. Your rights
Subject to applicable law, you may have the following rights in relation to personal data we process about you:
- the right of access;
- the right to rectification;
- the right to erasure;
- the right to restriction of processing;
- the right to object to processing based on legitimate interests;
- the right to data portability, where applicable;
- the right to withdraw consent, where processing is based on consent;
- the right to lodge a complaint with a data protection supervisory authority.
Because the App is designed not to collect directly identifying information, we may not be able to identify information relating to a particular user unless you provide information that allows us to locate it. We will explain this if you make a request that we cannot fulfil for this reason.
To exercise your rights, contact us at privacy@wizhut.tech.
You also have the right to lodge a complaint with your local data protection supervisory authority. If you are located in Greece, the competent authority is the Hellenic Data Protection Authority. If you are located elsewhere in the EU or EEA, you may contact the supervisory authority in your country of residence, place of work, or place of the alleged infringement.
15. Minors
The App is intended for software developers. It is not directed at children under the age of sixteen (16), and we do not knowingly collect personal data from children.
If you believe that a child has provided us with personal data through the App, please contact us so that we can take appropriate action.
16. Changes to this Policy
We may update this Policy from time to time to reflect changes in the App, our processing practices, legal requirements, or operational needs.
When we make material changes, we will take reasonable steps to notify users, such as by updating the effective date, displaying a notice in the App, or using another appropriate method.
The version of the Policy published at the time of your use of the App applies to that use.
17. Contact
For questions about this Policy, the App's privacy settings, or your data protection rights, you may contact us at:
- privacy@wizhut.tech
- WIZHUT TECH SINGLE MEMBER P.C.
- 52 Artis, Agios Dimitrios, Athens, Attica, Greece