PSSO Forge

Privacy policy

Publisher: Marc Nahum, under the e-nahum.net brand. Privacy and support contact: pssoforge@e-nahum.net. Effective date: October 3, 2026.

PSSO Forge creates, analyzes and corrects local Microsoft Intune Settings Catalog JSON files. The application does not require a PSSO Forge account.

Profile content and local preferences

The names, account claims, URLs, organization identifiers and other settings you enter or import are processed locally on your Mac. The application reads files you select and saves files to destinations you choose. It does not upload profile content to a developer-operated service or deploy profiles to Intune.

Appearance preferences are stored locally. Saved JSON and PowerShell files remain where you save them until you delete them. They may contain sensitive organization information: review them before sharing. Files in a cloud-synchronized folder may be synchronized by the storage service you selected, independently of this app. The app does not keep a developer-hosted copy of your profiles. Unsaved wizard answers and analysis results are held in app memory, rather than uploaded to a profile service.

When you use the Copy button, the generated PowerShell command is placed on the system clipboard. It can include your tenant identifier and local file path. Review it before sharing or pasting it into another application.

Optional purchases

Optional developer tips use Apple's StoreKit and App Store purchase system. Apple handles payment details; PSSO Forge does not receive card numbers. The app receives product and verified transaction information to handle purchase completion, pending purchases and refunds. Its transaction-handling state is held in memory; the developer does not operate a transaction-validation server for this app. Apple maintains purchase records under its own privacy policy and account settings. TestFlight purchases are test transactions. Product availability and purchases use Apple services; "local profile processing" does not mean that App Store purchases require no network connection.

External websites and exported scripts

Documentation and management-console links open external websites. Those sites operate under their own policies and can receive normal browser connection data. The app does not execute its exported PowerShell helper. If you choose to run a helper separately, it can authenticate to Microsoft Graph and upload the selected profile to your tenant; review the script and permissions first.

Support website hosting

The support/privacy website is hosted using GitHub Pages. GitHub states that it logs and stores visitors' IP addresses for security purposes, including for visitors who are not signed in. This hosting activity is separate from the macOS app's local profile processing.

This website does not include developer-added advertising, analytics scripts, tracking pixels or embedded third-party widgets. GitHub's own service practices are described in its privacy statement. Follow its policy for hosting-related information; do not interpret this app's no-tracking statement as a promise that the hosting provider keeps no connection logs.

Analytics and tracking

The app contains no advertising or third-party analytics SDK and does not track you across other apps or websites. No profile content is sent to a developer backend. TestFlight feedback and Apple/Xcode crash reports are separate services subject to the settings and information you choose to share with Apple. These reports are not telemetry implemented by PSSO Forge. The developer uses only these feedback/crash reports for support and issue correction, not advertising or profiling. Performance/hang reports are not part of this handling policy. Copies retained by the developer are kept for no more than 12 months after the last related exchange, or after receipt if there is no exchange. Diagnostic attachments are deleted when the issue is resolved. These rules concern the developer's copies, not records retained by Apple.

Retention, deletion and support

Delete exported files yourself to remove those copies; deleting the application does not necessarily delete files you saved elsewhere. Apple controls retention of App Store purchase records. If you voluntarily contact support or send a diagnostic file, that information is provided to the recipient you choose. Do not send credentials, tokens or unredacted production profiles.

Support messages can contain your email address, name, message, app version and any sanitized attachments you choose to include. These are used only to answer your request and investigate the reported issue, not advertising or marketing. The support address uses Google's email service. Email delivery also involves the sender's email provider. No automatic profile upload or in-app support submission form is implemented in PSSO Forge.

Support exchanges are kept for no more than 12 months after the last interaction. Diagnostic attachments are deleted when the reported issue is resolved. The developer is responsible for applying this rule in the support mailbox; PSSO Forge does not implement automatic deletion of support emails.

To ask about information you have sent to support, or request its deletion, contact pssoforge@e-nahum.net. The developer cannot delete files on your Mac, Apple's purchase records or GitHub's hosting logs on your behalf.

Policy updates

If these practices change, this page and its effective date will be updated. Relevant App Store privacy disclosures will also be reviewed.

Provider privacy information