Fabula One.

Privacy in the companion app

The companion app for Android and iPhone is a different piece of software from the website, and it stores different things — far less, as it turns out. This page covers the app only. The main privacy notice covers the website, the account and the server, all of which the app shares.

Last updated 9 September 2026

The short version

What is stored on your phone

The token that says you are signed in, first. It is written to the platform's secure store — the Keychain on iPhone, and the encrypted store backed by the Android Keystore on Android — rather than to an ordinary file, because it is a key to your account for as long as it lasts.

And your preferences, which at present means one: whether the library shows the sample screenplay. A preference is not a credential and is not kept in the secure store; it is an ordinary setting describing this phone rather than your account. It is never sent anywhere, and uninstalling the app removes it.

What A random sign-in token. Not your password; there is no password.
Where iOS Keychain / Android Keystore-backed storage, on the phone.
How long Up to 120 days, or until you sign out, whichever comes first. Signing out deletes it from the phone and ends the session on the server.
Removing it Sign out in the app, or uninstall the app. Either removes it from the phone.

Screenplays, drafts, notes, cast and settings are all read from the server when a screen needs them and are gone when the app closes. That is a deliberate choice rather than an oversight: a phone is easier to lose than a laptop, and the less of somebody's unfinished work is sitting on it, the less a lost phone costs them.

The one exception: a PDF you share

The app can turn a screenplay into a PDF and hand it to another application — mail, a messaging app, a file store — and to do that it has to write the file down somewhere the other application can reach. It writes it to the phone's temporary cache.

When Only when you tap share. Nothing is written there by reading a screenplay.
Where The app's own cache directory, which no other application can read into.
How long Until the phone reclaims the space, which it does on its own when storage runs short. Clearing the app's cache in Android settings removes it at once, and so does uninstalling.
Where it goes next Wherever you send it. That choice is yours and is made in the phone's own share sheet; the app is not told what you picked.

This is said here at some length for a small thing, because the sentence above it — that your screenplays are not kept on the phone — is the kind of promise that is worth either keeping exactly or qualifying openly. A copy you asked for, in a place the system empties, is the whole of the qualification.

What the app sends

The app talks to one server, app.fabulaone.com, and to nothing else. There is no other network destination in it.

That is the complete list. The app never uploads a screenplay: reading one is all it can do, and the writer's own copy is never touched by it.

What the app does not collect

Permissions

The app asks for internet access, which it needs to reach your account, and for nothing else. If a future version needs a permission, it will ask at the moment it is needed and say what for.

Deleting things

Signing out removes the token from the phone and ends that session on the server; uninstalling the app removes it too. Neither deletes anything from your account — your screenplays and your backups are the same after as before, and the website is where they are managed.

To delete the account itself, and everything the server holds with it, see the main privacy notice, which is where that is described and where the request goes.

The rest

Who is responsible, what the server stores, how long it keeps it, who else is involved, and your rights under the LGPD and the GDPR are all on the main privacy notice. They are the same company, the same server and the same account whichever way you reach it, and repeating them here would only give them a second chance to fall out of step.