Last updated 19 September 2026
StationDeck does not sell any information, and collects none unless you switch on Instant Alerts. There are no accounts, no analytics, no advertising, no tracking, and no third-party SDKs of any kind.
StationDeck only uses your device's location if you choose Where I am or Both under Settings → Storm Tracking, so it can warn you about storms heading toward you rather than only toward your weather station. With the default, My station, iOS never asks for location permission.
When you do turn it on, the app uses low-power "significant change" location, which updates only after you have moved a fair distance. The position is kept on your device and, if Instant Alerts is also on, sent to StationDeck's alert server as described below. Switching back to My station clears it.
Where the app needs coordinates — to centre the radar, to find nearby weather stations, or to look up a forecast — you type a place in yourself or pick it from a search. Those coordinates are stored on your device.
| Data | Where it lives |
|---|---|
| API keys and access tokens for the weather services you choose to connect | Your device's Keychain. Never transmitted anywhere except to the service they belong to. |
| Preferences: dashboard layout, units, alert thresholds, saved locations, chosen station | On your device, and synced through your own iCloud account so your devices match. Sync is on by default and can be switched off in Settings → iCloud. The developer has no access to your iCloud data. |
| Recent weather readings and sensor battery history | On your device only, so widgets and charts work offline. |
StationDeck talks directly from your device to the services you configure. The one exception is Instant Alerts, described below, which is off unless you switch it on.
| Service | Why |
|---|---|
| api.ecowitt.net | Readings from your Ecowitt station, if you connect one |
| rt.ambientweather.net | Readings from your Ambient Weather station, if you connect one |
| Your own Home Assistant address | Readings from your Home Assistant, if you connect it |
| api.weather.gov and mapservices.weather.noaa.gov | US National Weather Service forecasts, alerts, station observations, map layers, and radar when NOAA is the chosen radar source |
| api.rainviewer.com and its tile servers | Worldwide precipitation radar, the default radar source |
| api.weather.com | Readings from a Weather Underground station, if you connect one |
| mesonet.agron.iastate.edu | The national radar composite, read by StationDeck's server to forecast rain and storms for the next hour |
| www.nhc.noaa.gov | National Hurricane Center tropical outlooks, active storms and forecast cones |
| api.open-meteo.com | Numerical weather model output |
| Apple Maps | Base maps and place search, handled by iOS |
Requests carry only what is needed to answer them — coordinates, and your own credentials where a service requires them. Each of these services has its own privacy policy governing what it does with a request.
Station alerts — wind, freezing, rain, battery, offline — are generated on your device by comparing readings against thresholds you set. Nothing about them leaves your device.
iOS only lets an app check for weather warnings occasionally in the background, which can be too slow for a tornado warning. If you switch on Instant Alerts, StationDeck's alert server checks the National Weather Service every minute and sends a push notification as soon as a new warning covers your station.
To do that, the app sends the server your station's coordinates, stored rounded to about 100 metres, and the notification token Apple issues for this installation of the app. If you have chosen to have warnings follow you, it also sends your device's latest approximate position, rounded the same way; the server keeps only the most recent one and ignores it once it is a day old. If you turn on storm and rain alerts, it also receives your time zone and a Live Activity token so it can start the Lock Screen countdown. The server also keeps a list of which alerts it has already sent you, so each arrives once. It receives no name, email, Apple ID, station keys or weather readings, and nothing is used for advertising, analytics or tracking or shared with anyone. The server runs on Netlify.
Switching Instant Alerts off deletes this record from the server straight away. If the app is deleted, Apple reports the token as invalid and the record is deleted the next time an alert would have been sent.
StationDeck collects no personal information from anyone, including children under 13. The only data that leaves a device for the developer's server is the optional Instant Alerts record described above.
If this policy ever changes, the revised version will be posted here with a new date. Any change that affected what the app collects would be described plainly rather than buried.
Questions about privacy in StationDeck: tfaneuf@gmail.com