Super Shortcuts
Download
Privacy

Privacy Policy

Super Shortcuts is local-first: what you build and what you say stay on your computer. Using it needs an account, which holds your email, your plan, and a record of the devices you sign in on. This page explains what leaves your computer, what doesn't, who else touches it, and your rights over it.

Last updated: September 28, 2026

In short

  • Your shortcuts and your voice stay on your computer. Voice is transcribed on-device.
  • Your account holds your email, your plan, and a record of the computers you sign in on - the hardware id hashed, the model in plain text. Not your shortcuts.
  • App analytics are off until you turn them on. Crash reports are on until you turn them off.
  • Stripe bills Pro and holds your card. We never see the number.
  • We never sell your personal data and we run no advertising.
  • Ask us anything about your data at privacy@supershortcuts.com. We aim to answer within 30 days.

Who we are and what this covers

Super Shortcuts is made by Cmon Labs Inc. ("we", "us"), a company in Irvine, California. We are the data controller for the personal data this page describes. For anything about your data, write to us at privacy@supershortcuts.com or the postal address at the bottom of this page.

This policy covers the Super Shortcuts app on every platform we release it for, your account, this website, and the email we send you. It does not cover other websites we link to, or the sign-in providers you may choose to use, which have their own policies. It is part of our Terms and prevails on anything both documents describe.

You need to give us an email address to use the app; without it we cannot create an account or tell the app which plan you're on. Everything else on this page is optional or off until you turn it on.

The app on your computer

Your shortcuts and your voice stay on your computer. Signing in gives us your email address, which plan you're on, and a record of each device you sign in on (see Your account for exactly what that record contains). Voice is transcribed on-device with a local Whisper model; audio is never persisted and never sent anywhere. The voice models themselves are downloaded on demand from Hugging Face the first time you turn voice on. While it runs, the app also checks our update server for new versions about once an hour; that request carries your IP address and the app version, like any download, and nothing about your system. Opening the template gallery in the app fetches the current template list from our server now and then, not on every open; the request is not signed in and carries your IP address, and nothing else about you. If you click Install on one of our template pages, the app opens and fetches that one template from our server; the request is not signed in and carries your IP address and the template's public id, and nothing about you or your account.

Regardless of any setting on this page, these things never leave your computer as part of any report or event, and no feature sends them unless this page says it does:

  • Voice audio, voice transcripts, or any recognized speech
  • What you type, the URLs you open, or file paths
  • Foreground app names, window titles, or browser page contents
  • Clipboard contents
  • Your name, your computer's name, or any hardware serial number

What you build stays local today. Your shortcuts, their names and contents, your settings, and your usage history live in a database on your computer. Nothing in your account holds them and no report or event carries them. If we ever add a feature that stores or shares what you build - a backup, or sharing a shortcut with a teammate - it will be one you switch on, and this page will describe it before you can. No such feature exists today.

Permissions the app asks for

To drive your other apps, Super Shortcuts needs the automation permissions your operating system controls. It explains each one before you grant it, and you can revoke any of them at any time.

On macOS

Super Shortcuts for macOS is a non-sandboxed, notarized app. It asks for:

  • Accessibility - lets an app read what is on screen in other apps and send keystrokes. Super Shortcuts uses it only to run the command you triggered in the app you're in, and never sends what it reads anywhere.
  • Automation (Apple Events) - for shortcuts scoped to a website, the app reads the URL of your frontmost browser tab so a command (e.g. one meant for github.com) only fires on matching pages. It does not read page contents.
  • Microphone - only if you use voice commands; audio is transcribed on-device and discarded.

Revoke any of these in System Settings → Privacy & Security.

Analytics and diagnostics in the app

To improve the app we use two small, separate channels, plus local logs that never leave your computer. You can change both choices at any time in Settings → Privacy.

Product analytics

Opt-in · off by default

If you turn this on, the app sends pseudonymous usage events to PostHog (EU) so we can see which features get used - keyed to a random per-install ID, never your name, email, or content. Events include your Mac's model (for example, "Mac15,6") and screen size, and an approximate city worked out from your internet connection's address - never a precise location. That address is used for the lookup and then thrown away; it isn't stored.

Crash & diagnostics

On by default · you can turn it off

To find and fix crashes, the app sends crash reports to Sentry (EU), including the diagnostics macOS itself records about a crash or a hang. A report contains the technical trace, the app version, your device model and macOS version, which window was open (by name, never its title), and simple yes/no flags for whether a feature has the permissions it needs - so we can see how many installs can't function. It is scrubbed of personal data and content before it is sent, and carries no IP address or user identity.

Local logs

Stays on your computer

Ordinary diagnostic logs stay on your computer. We never auto-upload them; you can export a log bundle yourself if you need support.

Your account

Super Shortcuts asks you to sign in the first time you open it. The account exists so your plan follows you between devices, and so you have somewhere to manage a subscription. It holds your email address, the sign-in methods you've attached, your plan and its status, and when it was created and last used. It does not hold your shortcuts or anything they touch.

You can sign in with a code we email you, or with Google or Microsoft. If you use a provider, we receive the email address and a stable identifier it gives us, and nothing more - we send them nothing about how you use the app, and the choice of provider is yours. Sign-in codes and links are single-use and expire. The sign-in page runs on this website and is served from our own backend; it sets no advertising or analytics cookies.

Product updates. We email account holders the occasional product update: what's new in the app and, now and then, news about Pro. Every one has an unsubscribe link, and unsubscribing never affects your account or the emails it needs, like sign-in codes, receipts and notices of a change. If your account was opened on or before September 28, 2026, nothing changes for you: product updates only if you opt in.

The devices you sign in on. Each sign-in records a device on your account so your plan can be checked on it: a one-way hash of a hardware identifier (the "machine ID"), a friendly device model such as "MacBook Pro", the app version, and when that device was first and last seen. We deliberately do not receive your computer's name (which is often a person's name), its serial number, or the raw hardware identifier. Deleting your account deletes these rows.

Deleting your account. Settings → Account → Delete account removes the account, its sign-in methods, its devices, and any active subscription, which ends Pro at once; the Terms set out the refund window. Your local shortcuts are untouched.

Two things outlive a deletion, and we would rather say so than let you find out. First, records we have to keep for tax and accounting (an invoice, for instance) are retained for as long as the law requires, at Stripe and with us. Second, we keep a small deletion record: a one-way hash of your email address, the date of deletion, and whether the account had already used its free trial. It exists so a deleted account cannot be recreated to take a second trial. It is kept for a limited period and then deleted, contains no readable email address, and holds nothing about your shortcuts.

Pro and billing

If you subscribe to Pro, we sell it and Stripe is the merchant of record: it handles checkout, billing, and the customer portal (through its Link service) on our behalf. Stripe collects your email and billing details on its own pages - we never see or store your card number. We open the checkout with your account email, so Stripe already has it. Stripe's notifications to us carry more than we keep; what we store is the subscription's status and dates (trial, renewal, cancellation) and the references Stripe uses for it. Receipts and invoices come from Stripe, which is also why we can't reissue one. The Terms set out what that split means for the sale itself.

If you bought a one-time license before September 2026, it becomes lifetime Pro access on your account. Records of that purchase remain with Lemon Squeezy, the Merchant of Record at the time.

Feedback you send

If you use the in-app feedback form, we receive your message, the app and macOS version, and the same hashed machine ID your account uses, so we can match a report to an install. Only if you choose to add them, we also receive your email address (so we can reply) and a diagnostics summary. We use this solely to answer you and improve the product, and we forward it to our own mailbox to read it. Email to our support or privacy addresses is handled the same way.

This website

If you sign up for email updates, we store the address you submit (via our API and our email provider) so we can send the occasional product update. We don't sell or rent it, and you can unsubscribe or ask us to remove it at any time. We use Cloudflare Turnstile to keep spam off the form; it briefly processes your IP for that purpose, and unlike the alternatives it sets no advertising cookie and does not make you label photographs.

The download page doesn't ask for your email on a Mac: the "Download for macOS" button simply redirects you to our update host. The app asks you to sign in when you first open it (see Your account).

On a phone there is no file to install, so the download page instead offers to email you the link. If you use that, we store the address and send one message with the link. Product updates come only if you tick the box for them, or if you later create an account (see Your account), and every such message carries an unsubscribe link. The Windows waitlist stores your address the same way as the email updates above.

Cookies & analytics on this site

Analytics. To understand how the site is used and improve it, we measure aggregate website usage with Google Analytics 4 and PostHog. These set analytics cookies on your device. In the EU/EEA, the UK and Switzerland we ask first and nothing loads until you answer; everywhere else they are on unless you turn them off below or your browser sends a Global Privacy Control signal - see Your choice, by region further down. We record events like page scroll depth and which links get clicked, tied to a random cookie ID - not to your name or email.

Session replay. Wherever analytics are on for you, PostHog also records a replay of your visit: the pages as you saw them, and your scrolls, clicks, and pointer movement, so we can see where the site confuses people. Anything you type into a form is masked in your browser before it is sent. Replay is part of analytics: it never loads if you reject, and withdrawing consent stops it.

No advertising. This site runs no advertising pixels and shares no data with ad platforms. We do not allow third parties to collect information about your activity across other websites through this site. If an earlier visit here set any advertising cookies or identifiers, we automatically delete the ones we can still reach.

Your choice, by region. If you're in the EU/EEA, the UK, or Switzerland, no analytics loads until you answer the cookie banner - Reject and Accept are equally weighted. Elsewhere, analytics is enabled by default under an opt-out model. Either way you can change your mind anytime: use Cookie settings in the footer to re-open the banner. Withdrawing takes effect immediately on the page you're on - we stop sending, and delete the cookies we can reach. Strictly necessary storage (like remembering your choice) is exempt and always used.

Browser signals. If your browser sends the Global Privacy Control signal, we treat it as a no for analytics wherever you are: no analytics loads and no banner appears. A choice you make yourself in the banner or in Cookie settings takes precedence over the signal. We do not act on the older "Do Not Track" setting, which has no agreed meaning.

What we use your data for, and why the law allows it

The law in the EU/EEA, the UK, and Switzerland asks us to name a legal basis for each thing we do with your data:

What we doWhat it usesWhy the law allows it
Running your account and checking your plan on the devices you sign in onWhat it usesEmail address, sign-in method, plan and status, the device recordWhy the law allows itOur contract with you
Signing you in by emailWhat it usesYour email address and a single-use code or linkWhy the law allows itOur contract with you
Selling and billing ProWhat it usesWhat Stripe tells us about your subscription: started, renewed, failed, endedWhy the law allows itOur contract with you
Product analytics in the appWhat it usesBucketed usage events under a random install ID, with your Mac's model, screen size, and an approximate city looked up from your IP address, which is not storedWhy the law allows itYour consent - it is off until you turn it on
Website analyticsWhat it usesPage views and interaction events tied to a cookie IDWhy the law allows itYour consent where the law requires it; elsewhere an opt-out you can use at any time
Product updates by email to account holdersWhat it usesYour account email address and your planWhy the law allows itOur legitimate interest in telling people who use Super Shortcuts what's new; unsubscribe or object and we stop, no reason needed. For an account opened on or before September 28, 2026, only your consent
Product updates you signed up for on this websiteWhat it usesThe email address you gave us for thatWhy the law allows itYour consent - you signed up, and every message can unsubscribe you
Finding and fixing crashesWhat it usesCrash traces and permission flags, scrubbed of personal data and contentWhy the law allows itOur legitimate interest in a product that works; you can turn it off
Diagnosing problems with our serversWhat it usesRequest logs: your IP address, the approximate location derived from it, the time and the address requested, kept a few daysWhy the law allows itOur legitimate interest in a service that works
Keeping spam and abuse out: the bot check on our forms, limiting how many requests one IP address can make to our servers, and preventing a second free trialWhat it usesYour IP address, for the bot check and the request limits; a one-way hash of a deleted account's emailWhy the law allows itOur legitimate interest in a service that is not abused
Answering feedback and support requestsWhat it usesYour message and, if you add it, your email addressWhy the law allows itOur legitimate interest in answering you
Telling you about your account and the service: a sign-in, a change to this policy or the Terms, a security noticeWhat it usesYour account email addressWhy the law allows itOur contract with you, and in some cases a legal obligation
Improving the product and understanding how it is usedWhat it usesAnalytics you have turned on, crash reports, and the feedback you sendWhy the law allows itOur legitimate interest in a better product
Protecting the service: investigating abuse, securing our systems, enforcing the TermsWhat it usesAccount, device, and request data as needed for the investigationWhy the law allows itOur legitimate interest in a service that is safe to run
Producing statistics that cannot identify anyoneWhat it usesAggregated analytics and account dataWhy the law allows itOur legitimate interest in understanding our business
Keeping tax and accounting recordsWhat it usesInvoice records, held at Stripe and with usWhy the law allows itA legal obligation
Answering a lawful request from a court or authorityWhat it usesOnly what the request lawfully requiresWhy the law allows itA legal obligation

We do not use your data for purposes incompatible with these, we do not make automated decisions about you that have legal or similarly significant effects, and we do not use it to train AI models.

Who we share it with

We never sell your personal data, and we do not share it with anyone for advertising. Our business is selling Pro, not audiences. The people who do receive some of your data are the providers below. Most handle it on our behalf under contract and are limited in how they may use it. Stripe, Lemon Squeezy, and any sign-in provider you choose are responsible for their part under their own policies:

ServiceWhat it doesWhat it may receive
Stripe (incl. Link)What it doesMerchant of Record for Super Shortcuts Pro: it takes the payment on our behalf, issues your receipt, remits the tax, and runs the customer portal where you manage or cancel. We are the seller.What it may receiveYour email and billing details - entered on Stripe's checkout, not by us. We never see your card number.
Google, MicrosoftWhat it doesOptional sign-in providers. Only the one you choose receives anything, and only if you choose it.What it may receiveThe sign-in request itself. They return your email address and a stable account identifier to us; we send them nothing about your use of the app.
ResendWhat it doesTransactional and product email: sign-in codes and links, and the occasional product update.What it may receiveYour email address, the messages we send you, and which of our email lists you're on.
Lemon Squeezy (legacy)What it doesMerchant of Record for the one-time Pro purchases sold before September 2026. No new purchases go through it.What it may receiveThe name, email, and billing details collected on their checkout at the time of that purchase.
PostHogWhat it doesProduct analytics. Website (US Cloud) and, separately, the app (EU Cloud).What it may receiveWebsite: page and interaction events and a session replay with typed input masked, tied to a cookie ID, and only while website analytics are on for you. App: bucketed usage events under a random install ID, with the Mac model, screen size and an approximate city looked up from the IP address (which is not stored), only if you opt in. Never your content.
Google Analytics 4 (US)What it doesAggregate website usage analytics.What it may receivePage views and interaction events tied to a cookie ID, and only while website analytics are on for you. Advertising features are switched off - GA is never used to build ad profiles.
Sentry (EU region)What it doesCrash and diagnostics reporting for the app.What it may receiveCrash traces and a PII-scrubbed health posture. Opt-out (on by default).
Google WorkspaceWhat it doesHosts our mailboxes, including privacy@ and support@, and receives the feedback-form messages we forward to ourselves.What it may receiveWhatever you write to us, and the email address you write from.
CloudflareWhat it doesHosts this website and our backend, stores the account database in North America, and runs the Turnstile bot check on our forms.What it may receiveThe ordinary request data any web host receives, including your IP address, plus whatever the page or form you used sends us.

This list is current as of September 28, 2026, and we'll update it as our providers change. One thing that is not on it: the first time you turn voice on, the app downloads its speech model from Hugging Face, a public model host. That's a file download, like fetching an app update - Hugging Face receives only the download request, including your IP address as any download does, nothing about your account, and never your voice, which is transcribed on your computer.

Beyond those providers, we would disclose personal data only:

  • When the law requires it - to a court, regulator, or law enforcement, in response to a request we believe is lawful and binding. We disclose only what the request requires, and where the law allows and it is practical, we tell you first - unless notice would put someone at risk.
  • To protect people - where we believe in good faith it is necessary to prevent fraud, abuse, or serious harm, or to enforce our Terms.
  • If the business changes hands - in a merger, acquisition, sale of assets, or insolvency, your data may transfer to the new owner. We will require them to honor this policy for it, or to tell you before using it differently.
  • To our professional advisers - lawyers, accountants, auditors, and insurers, who are bound to confidentiality, and only what they need for their work.
  • At your direction - when you ask us to.

We may also publish or share statistics that are aggregated so that they cannot identify you, such as how many installs use voice.

Where your data is stored

We're a US company. Your account and the email addresses you give us are stored with Cloudflare in North America; Stripe, Resend, and the Google Workspace mailboxes you write to are US providers too. App analytics and crash reports are stored in PostHog's and Sentry's EU regions. Website analytics are processed in the United States - in the EU/EEA, the UK and Switzerland only if you accept them, and elsewhere unless you turn them off or your browser sends a Global Privacy Control signal.

If you're in the EU/EEA, the UK, or Switzerland, that means your data is transferred to the United States - every provider above is a US company, wherever its servers happen to be. For website analytics that's your choice - it only happens if you accept analytics cookies. For the things the product can't work without - your account, sign-in emails, and payments - it isn't a choice, so it rests on the safeguards in our contracts with those providers instead: standard contractual clauses (and the UK addendum or Swiss adjustments to them), or the provider's certification under the EU-US Data Privacy Framework and its UK and Swiss extensions where it holds one. Ask us which applies to a particular provider and we'll tell you and give you a copy of it.

How long we keep it

We keep personal data for as long as we need it for the purpose we collected it for, and no longer. In practice:

  • Your account and the devices on it are kept while the account exists. Delete it and they go, apart from the two things named in Your account: tax records for as long as the law requires, and the trial-reuse record for a limited period. As the Terms describe, we may also close a free account that has gone unused for a long time, and we will email you first.
  • Email addresses you gave us for updates are kept until you unsubscribe or ask us to remove them. An account address that gets product updates keeps getting them while the account exists, unless you unsubscribe; deleting the account takes it off our mailing list.
  • Feedback and support messages are kept while we are answering you and for a reasonable time afterwards, in case the same problem comes back.
  • Request logs on our servers - each request's IP address and the approximate location Cloudflare derives from it, with the time and the address requested - are kept for a few days to diagnose problems, then deleted automatically.
  • Analytics and crash reports are aggregate or pseudonymous and are discarded after a period set with the provider.
  • On your computer, the app keeps your shortcuts, settings, and usage history for as long as you keep it, fully under your control. Deleting the app leaves them behind, as macOS does for any app. To remove everything, sign out in the app first - that clears the saved session from your keychain - then delete the app, its folder in ~/Library/Application Support, and its preferences in ~/Library/Preferences.

We may keep data longer where the law requires it, to resolve a dispute, or to enforce our agreements, and we may keep anonymised statistics indefinitely. Once data is no longer needed we delete it or anonymise it.

How we protect it

We hold little, which is the first line of defence, and what we do hold is protected in ways worth being specific about:

  • Everything travels over encrypted connections, and the account database is encrypted at rest by our hosting provider.
  • Sign-in codes and magic links are stored hashed, never in a form we could read back to you. They expire quickly, work once, and lock after a few wrong attempts.
  • Session tokens are stored hashed too. A leak of our database would not hand anyone a working session.
  • The machine ID is a one-way hash, and we deliberately never receive your computer's name, serial number, or hardware identifier.
  • We never see your card number. It goes to Stripe on Stripe's own pages and never touches our systems.

No system is perfect, and we'd rather tell you what we do than promise what nobody can. Where the law requires us to tell you about a security incident affecting your personal data, we will do so by email to your account address, or by a notice in the app or on this site. If you believe you've found a security problem, email privacy@supershortcuts.com and we'll get back to you.

Your rights and choices

You can act on most of this yourself, at any time:

  • Grant or withdraw analytics consent for this site via Cookie settings in the footer.
  • Turn app analytics on or off, and crash reports off, in the app's Settings → Privacy.
  • Unsubscribe from product updates with the link in any message.
  • Revoke any permission in your operating system's settings.
  • Delete your account from Settings → Account.

If you're in the EU/EEA, the UK, or Switzerland, you also have the right to ask us for access to your personal data and a copy of it, to have it corrected or deleted, to restrict or object to how we process it, to take it with you in a portable format, and to withdraw a consent you gave us (which doesn't affect anything already lawfully processed).

You have the right to object. Where we rely on our legitimate interest, you can object at any time, and we will stop unless we can show a compelling reason that outweighs your interests. We do rely on it to send product updates to accounts opened after September 28, 2026: object, or use the unsubscribe link in any of them, and we stop without needing a reason.

Wherever you live, we honor these rights. We will never treat you differently for exercising one, and you can ask someone to act for you if we are shown they have your authority.

How to ask. Email privacy@supershortcuts.com from the address on your account, or tell us which address it is. We may ask you to confirm that you control it before we act, so that nobody can get your data by asking for it. We aim to answer within 30 days; if a request is complex we may need longer, and we will tell you within that time. We provide copies of your data as JSON. There is normally no charge.

Complaints. We would like the chance to fix a problem first, but you always have the right to complain to a supervisory authority: your national data protection authority in the EU/EEA, the Information Commissioner's Office in the UK, or the Federal Data Protection and Information Commissioner in Switzerland.

Children

Super Shortcuts is a tool for professionals and isn't directed at children. We don't knowingly collect data from anyone under 13, or under 16 outside the United States. If you believe a child has given us personal data, tell us and we will delete it.

Changes to this policy

If we change how we handle data, we'll update this page and its "last updated" date. For a material change - a new kind of data, a new use, or a new provider - we'll give you notice before it takes effect, such as in the app or by email. Earlier versions are available on request.

Contact

Questions about privacy or permissions, or want to exercise a right above? Email privacy@supershortcuts.com.

Cmon Labs Inc.
122 Avento
Irvine, CA 92602
United States
Super Shortcuts

A local automation app for macOS - turn the things you repeat into keyboard or voice commands, scoped to the app or website you're in.

Product

  • Download for Mac
  • Windows waitlist
  • Pricing
  • How it works

Compare

  • vs Raycast
  • vs Keyboard Maestro
  • vs Apple Shortcuts
  • vs Claude Cowork
  • vs Codex Computer Use
  • All comparisons

Resources

  • Mac shortcuts database
  • Shortcut templates
  • Guides
  • Blog
  • Changelog
  • Docs
  • Sign in & Pro

Company

  • Press & facts
  • Privacy
  • Terms
  • Cookie settings
  • Support
© 2026 Cmon Labs Inc.A Cmon Labs experimentmacOS 12+ · Apple Silicon & Intel

We use cookies for analytics (Google Analytics, PostHog) to see how the site is used. We never sell your data. See our Privacy Policy.