Scrollmates
← All articlesProduct and privacy5 min read

What can a Screen Time app see on your iPhone?

Under Apple’s standard Family Controls permission, an app works with opaque selections and activity totals rather than a readable list of your apps. But that is no longer the whole platform story: Apple now offers a separate data-access capability that can reveal identifiers to eligible, approved apps in the EU.

So the honest privacy question has two parts: what can iOS permit, and what does this particular app actually read and send?

What iOS hands a standard Screen Time app

You choose apps, categories and websites inside Apple’s FamilyActivityPicker. Apple’s FamilyActivitySelection documentation is explicit about why: “To protect the user’s privacy, FamilyActivitySelection holds opaque values that represent categories, applications, and web domains selected by the user.”

An app can use those values to:

  • shield the selected apps and sites with ManagedSettings;
  • schedule monitoring intervals with DeviceActivity;
  • receive events when configured activity thresholds are reached; and
  • ask a DeviceActivityReport extension to aggregate activity covered by a filter.

The opaque token is useful without being a normal bundle identifier. The app can persist it, compare encoded selections and hand it back to Apple’s frameworks.

One more sentence in that same documentation is worth knowing as a user, because it is a privacy guarantee rather than a bug: “If a user, parent, or guardian revokes authorization of your app, any tokens that [the picker] provided while your app was authorized are voided.” Withdrawing Screen Time access does not merely stop an app from acting — it invalidates what it was holding.

The iOS 26.4 exception matters

Apple added an approvedWithDataAccess authorisation status, introduced in iOS and iPadOS 26.4, alongside a separate App and Website Usage capability. Apple’s own description of the status is “The person, parent, or guardian approved the request for authorization with access to non-tokenized family activity data.” It “lets your app use [that capability] to fetch the actual bundle identifiers of installed applications, domain names of visited websites, and display names of activity categories instead of the opaque, tokenized representations”.

Three limits are stated in the same documentation, and each is checkable rather than promotional:

  • Only one app at a time can hold this authorisation on a device. “If a person grants data access to a different app, your app’s status reverts to .notDetermined.”
  • Customer installations can only reach this status inside the EU, on a device located there and signed in with an Apple Account whose country or region is in the EU. Outside the EU, the status is never returned and property access fails.
  • Developers can test it anywhere using an Apple-provided provisioning profile, which is why a screenshot of the capability is not evidence that a shipped app has it in your country.

Availability and approval can change; this describes the documentation as of 9 September 2026.

That means a 2022-style promise that no Screen Time app can ever learn an identifier is now inaccurate. Check the app’s own privacy disclosures and behaviour, not only the framework’s original design.

What Scrollmates uses — and does not use

Scrollmates uses Apple’s picker selection to create shields and activity filters. Its current report pipeline iterates over the selected activity and adds totalActivityDuration; it does not read an application’s bundle identifier, display name, visited domain name or content.

That boundary is reflected in the data model:

SurfaceWhat is usedWhat is not collected or shown
On-device selectionOpaque app, category and web-domain tokens; item count; opaque fingerprintA server-side block list or readable app-name list
On-device activityCovered durations and threshold eventsMessages, page contents, search terms, keystrokes or screenshots
Bonded backendMinute durations, event types, pool and bond stateApp names, URLs or browsing history
Your scrollmateCovered daily minutes, share of the pool, scrolling-now presence and bond eventsWhich apps or sites you chose; anything outside the pool

An opaque fingerprint can tell whether two stored selections match; it cannot be used by a scrollmate as an app list.

What stays local in solo mode

Solo mode is free and accountless. Screen-time minutes and events do not leave the iPhone. The network gate rejects those uploads unless a bond exists.

Setup can send one identifier-free statistics row containing answers to three onboarding questions and the ending chosen, but only if at least one question was answered. Skip all three and it sends nothing. A solo user can also deliberately send a support report; the app shows what will be included before sending.

Once a person bonds, aggregate minutes and events must sync so two phones can share one pool. Scrollmates has no advertising SDKs, analytics SDKs or third-party trackers, but “nothing ever leaves your phone” would still be false for bonded use.

How this differs from parental monitoring

Family Controls can support several product shapes. A parental tool may be intentionally asymmetric. A usage-analysis app may request broader access. An accountability app can choose to exchange a small aggregate between consenting adults.

Do not infer privacy from a category label. Look for four specifics:

  1. Is the selection readable or tokenised?
  2. Which usage fields does the code or policy say it reads?
  3. Which fields leave the device?
  4. Who can see the result?

Frequently asked questions

Can Scrollmates see which apps I block?

Its current selection and reporting paths use tokens, counts and durations; the backend receives no app-name field or block list.

Can my scrollmate see everything in Screen Time?

No. They see activity covered by your chosen pool at an aggregate level, not device-wide Screen Time or app names.

Does Apple make all Screen Time apps equally private?

No. Standard approval is privacy-scoped, but Apple’s newer, separately entitled data-access mode can expose identifiers to eligible apps in supported EU contexts.

Does Scrollmates sell usage data?

No. Its published policy says data is not sold, rented or traded and is not used for advertising profiles.

Ask what the app does, not only what the API can do

Operating-system constraints are valuable. They are not a substitute for product choices. A useful privacy answer names the platform capability, the code path, the network payload and the person at the other end.

By Scrollmates. Company-written and reviewed against the sources linked above.

Research checked: 9 September 2026.

Keep going

Comparisons · 4 min

Why there is no Scrollmates Android app

Scrollmates currently requires two iPhones. Android exposes a different usage-data model, so a faithful port needs more than rebuilding the interface.