Privacy

The short version: this website counts page views only if you let it, and the app keeps your databases and passwords on your own machine.

-- last updated 18 September 2026

This website

We run Google Analytics here, but only after you have switched the analytics category on in the cookie banner. Until you do, no analytics script is loaded and nothing is sent to Google. Saying no — or never answering — leaves the site working exactly the same.

When it is on, Analytics collects the usual aggregate picture: which pages were opened, roughly which part of the world the visit came from, and which browser and device were used. It is there to tell us which pages are worth writing, not to work out who you are. We do not run advertising, and we do not share the data with anyone beyond Google. We do not ask for your name or your email address, and there is nothing to sign up for.

Our hosting provider keeps standard server logs — the requested address, a timestamp, the browser's user agent, and an IP address — for a short period, so that the site can be kept running and abuse can be stopped. We do not use those logs to build a profile of you.

Cookies

One cookie, set by the consent banner, remembers what you chose so we do not ask again on every visit. That one is always set — without it we would have no way to remember that you said no.

If you turn the analytics category on, Google Analytics sets its own cookies — _ga and _ga_<id> — so it can tell one visit from the next. Turn the category off again and we delete those cookies and reload the page without Analytics on it. You can change your choice at any time with the "Cookie settings" link in the footer.

Downloads

The download links point at GitHub, which serves the release files and applies its own privacy policy and logging to that request. If you would rather not involve GitHub, you can build Squeal from source instead.

The app itself

  • Your connections, worksheets, and query results are stored on your computer. They are not sent to us, and we have no server that could receive them.
  • Database passwords are encrypted with your operating system's keychain, and only after the app has asked and you have agreed.
  • On macOS and Windows the app checks for new releases so it can update itself. That check is a request to the update host, which sees the usual connection details such as your IP address and the version you are on.
  • The app queries the databases you point it at, and nothing else. There is no telemetry and no usage reporting.

Your rights

Because we hold so little, most data requests have a short answer: there is no account and no profile to export or delete. If you are in the EU or the UK, Google acts as our processor for the analytics described above, and withdrawing consent in the cookie banner stops it and deletes its cookies. If you want to ask about that, about the server logs our host keeps, or anything else on this page, write to chris@pullpanda.io and we will answer it.

Changes

If this policy changes — for example because analytics are actually switched on — the date at the top of this page changes with it.