Direct local transfers
Your media moves device to device without passing through the internet or a remote server.
Keep every transfer direct, local, and under your control. Rollit never uploads your photos or videos to the internet or sends them through our servers.
Your media moves device to device without passing through the internet or a remote server.
Rollit briefly stores a six-digit verification code, local connection addresses, and random session details to connect your browser. Active connection details expire automatically shortly after use.
Rollit does not require an account and does not use advertising trackers or behavioral analytics.
Rollit Backup writes media to your chosen computer folder without uploading it to Bytely or another cloud service.
This Privacy Policy applies to the Rollit app, the Rollit Web Page at rollit.bytely.app, the Rollit Backup browser extension, and related local transfer services operated by Bytely. It explains how information is handled when you add media to Photos, back up media to your computer, or use optional browser pairing.
When you choose Rollit Web Page, Rollit temporarily sends connection details to Bytely's pairing service so your browser can find your iPhone or iPad. These details include:
Rollit does not send a separate device display name. However, a local network hostname may include a name assigned to your iPhone or iPad.
Bytely processes these connection details only to provide browser pairing and keep it secure. Active details are deleted when pairing closes or expire automatically within approximately five to ten minutes. Cloudflare recovery systems may keep deleted records technically recoverable for up to 30 days.
Rollit Backup saves the photos and videos you select to a folder on your computer when you start a local backup in a supported Chromium browser using Device Name or Numeric IP Address.
Temporary pairing and backup-job details are stored locally by Chrome. Pairing details expire after 30 minutes of inactivity. Job details may remain for up to seven days within the same browser session so an interrupted backup can report its status.
Your selected folder permission and completed-file checkpoints remain in local extension storage until you clear the extension's data or remove the extension. Rollit uses them to confirm the destination and skip files already completed when you resume. Choosing another folder replaces the saved folder permission but does not remove older checkpoints.
Rollit also creates a small hidden .rollit-backup-state folder inside the generated Rollit Backup folder. Its state file contains version information and a random destination identifier used only to keep resume checkpoints tied to the correct folder.
Rollit Backup does not sell or transfer user data, use it for advertising or profiling, or use it for any purpose unrelated to its local backup function. Its use of information complies with the Chrome Web Store User Data Policy, including the Limited Use requirements.
Cloudflare hosts and protects the online pairing service and may process standard request data, including IP address and browser information. Apple provides the App Store, Photos, and optional iCloud services. Our email provider processes support messages, which are kept only as needed to respond.
We do not sell personal information, share it with data brokers, or use it for targeted advertising. Information may be disclosed when legally required or necessary to protect users and the service.
Cloudflare operates globally, so technical information may be processed outside your country under applicable safeguards.
You can avoid online pairing by choosing Device Name or Numeric IP Address. You can manage Rollit permissions in Settings, close an active transfer session, and delete files stored in Rollit.
You choose the computer folder used by Rollit Backup and can change it from the extension. Removing the extension clears its extension-owned local storage. Files already written to your chosen folder, including the small backup-state folder, remain under your control and can be deleted with your computer's normal file tools.
Where privacy law applies, you may contact us to exercise your rights over the limited connection or support information handled by Bytely. You may also complain to your local data protection authority.
Because Rollit has no accounts and pairing details expire quickly, we may be unable to identify an expired session.
Hosted pairing uses HTTPS, short-lived access tokens, verification codes, rate limits, and automatic expiration.
Browser media transfers over your local network currently use local HTTP with a random session token and are not protected by local TLS. Use Rollit on a trusted network and close the transfer screen when finished.
Rollit is not directed to children under 13 or the minimum age required in their country. Contact us if you believe a child has provided personal information.
We may update this policy when Rollit, its providers, or legal requirements change.
For privacy questions or requests concerning Rollit, contact Bytely at [email protected].
Contact Support