Canvas privacy policy

Last updated: September 15, 2026.

Canvas is a private iPad photo frame. No account or login is required for the Apple Photos workflow or the included Landscapes, Cityscapes, and Abstract albums.

What Canvas accesses

Canvas has no Canvas-operated media server and includes no analytics, advertising, tracking, or data brokerage.

Storage and deletion

Disconnect Google Photos to remove its saved authorization. Deleting Canvas removes its local settings, exclusions, imported audio, downloaded Google Photos media, and stored tokens; it does not remove Apple Photos or Google Photos items. Deleting a saved Canvas Google copy does not remove its Apple Photos album or assets.

Third parties

If you choose an Ambient Weather station, Canvas stores your personal Ambient API key in the iPad Keychain and sends that key and the selected station identifier to ClimateIQ’s secure proxy to retrieve your station readings. The shared Ambient application key stays on the server. A connected station is the sole weather source; Canvas does not fetch Apple Weather alongside it. Optional AQI still describes air quality near the iPad.

Apple system frameworks provide Photos, media playback, Keychain, local storage, and WeatherKit. Google receives information necessary for the optional Google Photos Picker and OAuth flow when you choose that feature. ClimateIQ receives the approximate coordinates needed to select the nearest AirNow monitoring site and fetches AirNow's public data server-side. Canvas does not send your media to any Canvas-operated service or directly to AirNow.

Contact

Canvas support

Open-source repository