MD HD Security

Security and privacy

Small permissions. Clear boundaries. No mystery cloud.

Security claims should match the shipped binary. This page explains the controls present in the iOS 1.0 candidate and calls out what MD HD does not do.

CONTROL 01

Cloud authorization

Dropbox uses OAuth. Tokens are encrypted at rest and cloud access is read-only.

CONTROL 02

Account sessions

Short-lived access tokens, rotating refresh tokens, replay rejection, and Keychain storage protect signed-in sessions.

CONTROL 03

Imported documents

Files selected through Apple Files are copied into the app sandbox. Selecting one file does not authorize its folder or cloud account, and limits are enforced where copies are persisted.

CONTROL 04

Purchases

Apple handles payment. RevenueCat synchronizes entitlements; MD HD does not collect card details.

CONTROL 05

Telemetry

The 1.0 app is ad-free. Error reports omit default personal data, and pasted Health Check content never leaves the browser.

CONTROL 06

Control and deletion

Users can disconnect storage, sign out, and permanently delete their MD HD account in the app.

MD HD can

Read files you explicitly select and Markdown available through an authorized Dropbox account.

MD HD cannot

See your Dropbox password, charge a card directly, or silently modify your source files.