Overview
CloudNest is a Mac backup utility that works with folders you select. Backup management and activity information remain on your Mac unless you choose to create and share a support report. CloudNest is a general-audience app and is not directed to children. Brent Gaddis provides CloudNest and is the data controller for the app information described here. The monitored privacy contact is support@brentgaddis.com.
Information CloudNest handles
CloudNest handles the names and paths of selected files and folders, security-scoped access bookmarks, schedules, activity and error details, destination information, snapshot metadata and manifests, and the protected file copies needed to create a backup. This can reveal sensitive filenames and folder organization even when the file contents are not opened in the interface.
Where backups and reports are stored
CloudNest stores backup configuration and activity information locally. Backup files and manifests are written to destinations you choose. Manual issue or support reports are created on your Mac and are shared only when you choose to send them. Anonymous app-health summaries are off unless a compatible build provides a diagnostics service and you explicitly enable them; this policy will be updated before that service is enabled for users. If you choose iCloud Drive or another storage provider as a destination, that provider processes the files under its terms.
Permissions and system features
CloudNest requests access only to folders and volumes you select or authorize through macOS, which can include Desktop, Documents, Downloads, removable media, or network volumes. Launch at Login is optional and supports schedules. macOS and any selected file-provider or storage service may process file access as part of those features.
Retention, repository removal, and legacy records
Snapshots remain at the chosen destination until you delete them or a configured cleanup rule removes them. Remove Repository & Reset deletes verified managed repository content and resets local configuration while leaving source files intact, but it can leave a small coordination shell, exported reports, temporary restore previews, and legacy CloudKit reconnect metadata. New CloudKit metadata publishing is disabled in the reviewed build, but old device or destination records may remain. Schedules require CloudNest or its process to be active, the Mac awake, and the destination mounted and writable; they are not an always-on cloud service.
Website, support, privacy requests, children, and policy changes
CloudNest’s app-data practices are described above and are separate from its pages on brentgaddis.com. Those pages use first-party aggregate analytics operated through Cloudflare. The site counts page views and allowlisted actions and keeps coarse source, country, device, browser, operating-system, engagement, performance, and reliability totals. It does not store raw analytics events, visitor or session identities, raw or hashed IP addresses, cookie or local-storage visitor IDs, full user agents, full referrers or URLs, form contents, arbitrary text, or a person’s raw click history. Country and source cells below five are suppressed, and aggregates are retained for up to 24 months. Cloudflare still processes request and network metadata to deliver and protect the site. If you contact support, the website, Cloudflare Turnstile, Cloudflare’s delivery services, and the email provider process the app selection, request type, reply email, subject, message, security signals, and delivery metadata you submit. Form contents are delivered to Brent’s monitored mailbox and are not written to website analytics or a website message database. Support email is retained only as reasonably needed to respond, maintain security and support records, resolve disputes, and meet legal obligations, then deleted or de-identified when no longer needed. Do not submit passwords, recovery keys, government identifiers, payment-card data, or unrelated sensitive content. The website does not use cross-site behavioral advertising or sell or share personal information for that purpose, so browser Do Not Track and Global Privacy Control signals do not change its behavior. CloudNest is offered to a general audience and is not directed to children under 13. If Brent learns that a child supplied personal information through a developer-controlled channel without required consent, he will take reasonable steps to delete it. Depending on where you live, applicable law may provide access, correction, deletion, or appeal rights; use the privacy-request form or email support@brentgaddis.com. Identity may be verified, and requests will be handled as applicable law requires. Material changes will be posted on this page with a new effective date, with additional notice or consent when required.
Optional encryption and credentials
If enabled, CloudNest uses AES-256-GCM for newly stored content chunks and keeps the encryption key in this Mac’s Keychain. Deduplication can reuse legacy plaintext chunks, and filenames, manifests, repository metadata, or older content may remain readable, so do not assume every repository byte is encrypted. NAS or SMB profile details are stored locally and credentials are kept in Keychain. CloudNest does not operate a developer backup server; a selected iCloud Drive, network, or file-provider destination processes files under that provider’s terms.
Questions
Contact Brent Gaddis with privacy questions about CloudNest.