Content stays between devices
Files, photos, folders, and clipboard content are sent directly between trusted devices. Nyft does not upload that content to its account database.
Privacy, by design
Nyft is built around a simple boundary: your account connects your devices, while your files and clipboard content stay between them.
Last updated July 22, 2026
Files, photos, folders, and clipboard content are sent directly between trusted devices. Nyft does not upload that content to its account database.
Nyft stores the account and device information needed to sign you in, recognize trusted devices, show availability, and route optional notifications.
Each nearby transfer uses authenticated device identities, an ephemeral session key, and authenticated encryption before content leaves the sending device.
When you sign in with Apple or Google, Nyft receives the information needed to create and maintain your account. This can include your account identifier, email address, display name, sign-in provider, and authentication session information. Nyft does not receive your Apple or Google password.
Nyft stores an installation identifier, device name, platform, public identity key, trust status, and timestamps such as when a device was last seen. The device name can be one provided by your operating system, or a name you choose in Nyft.
If notifications are enabled, Nyft stores an Apple Push Notification service token and its environment. An offline-transfer notification can include the sending device name and the number of items waiting. It does not include filenames, clipboard text, or file contents.
Transfer content is kept on the devices involved in the transfer. Nyft may also keep local activity and clipboard history so the app can show recent items and resume your workflow. Local history can include filenames, item sizes, device names, dates, transfer status, local file locations, and clipboard text or links.
Removing Nyft account data does not remove files already saved on your devices. Those remain under your control until you delete them.
Nearby devices discover each other over the local network. Before a transfer begins, Nyft verifies the device identity associated with your account. The devices establish a temporary Curve25519 shared secret, encrypt transfer data with ChaCha20-Poly1305, and use SHA-256 to check file integrity.
No security system is perfect. Keep your operating systems current, protect access to your devices, and remove any device from your Nyft account if you no longer recognize or control it.
To request access, correction, or deletion of your account information, email support@nyft.app from the address associated with your account. Nyft may need to verify that the account belongs to you before completing the request.
Nyft uses a small number of service providers for account and delivery infrastructure:
Nyft's account backend is currently hosted in Supabase's India region. Providers may process information in other countries under their own privacy terms and safeguards.
nyft.app currently uses no advertising cookies and no analytics trackers. The site detects your platform in the browser only to tailor the coming-soon button.
Website infrastructure can process standard network information such as your IP address, browser details, requested page, and request time for delivery, reliability, and security. Nyft does not combine this information with your app account for advertising.
Nyft is not designed for children under 13, and Nyft does not knowingly collect personal information from children under 13.
This page will be updated when Nyft's data practices materially change. The date at the top shows when the notice was last revised.
Material changes will be reflected here before they apply to a public Nyft release.