TOPS Privacy Policy

Privacy for TOPS on iPhone and iPad: local projects, permissions, audio, control networks, MIDI, StoreKit and support communications.

TOPS Privacy Policy — Theatre Operations & Production System

Effective date: 18 August 2026. Last updated: 5 October 2026.

TOPS is the new name of LightPad: this policy applies to the same iPhone and iPad app. It does not describe CueRemote, the separate QLab control app. Available features depend on the installed version and, where applicable, on Free or Full. This update describes the features of TOPS 1.0 (22). Describing a feature in this policy does not announce its release or its availability in every build.

1. Controller and contact

The controller for processing related to TOPS is UNQUINTO ESTUDIO EDITORIAL Y SONORO, S.L., with Spanish tax ID (NIF) B27688530 and its registered address at Calle Sol, no. 9, door D, 40332 Cobos de Fuentidueña, Segovia, Spain (referred to below as “Unquinto”).

Privacy and exercising your rights: contacto@unquinto.es. Technical support: developer@unquinto.es.

2. Summary

TOPS does not require an account and includes no advertising, advertising tracking, analytics or remote fixture catalogue. It uses Apple’s system services and frameworks and integrates the official Ableton LinkKit SDK for optional tempo synchronization on the local network.

The app does not send projects, cues, settings, audio files, fixture profiles, network addresses, MIDI mappings or operational logs to Unquinto. Production data is processed and stored locally. This is distinct from control traffic to destinations configured by the user, Apple’s services, and copies or files managed by the user through the system.

3. Information processed locally

Depending on the features used, TOPS may retain on the device:

  • projects, memories, cues, sequences, groups, patch data, pads and preferences;
  • network addresses, ports, universes, OSC profiles, workspace names or identifiers, and PJLink projectors configured by the user;
  • audio files selected by the user, copies for playback, their names and location references, as well as levels, routes, maps, output groups, positions and spatial movements;
  • fixture profiles imported through GDTF and the local interpretation required to operate them;
  • the selected MIDI source and the control mappings described in section 7;
  • autosaves, recovery information and local diagnostics.

The operator log and control monitors show recent histories held in memory. Diagnostics are also generated through Apple’s logging system; they may contain errors, file names or network destinations. These logs are not automatically sent to Unquinto.

4. Import, export and backups

TOPS accesses external files after the user selects them through the system file picker. It may create and access local copies, autosaves and recovery data within its container. Files services selected by the user — for example, iCloud Drive or another provider — may download or synchronize those files according to their own settings.

The exported project does not include audio files. It contains configuration and references, which may include production names, notes, equipment addresses, paths and file references. Keep the original audio files as well and relink them when necessary. Review the content before sharing a project, screenshot or diagnostic.

TOPS provides no account or synchronization or backup service of its own on Unquinto’s servers. However, the app’s local data may be included in iOS or iPadOS backups, in iCloud or on a computer, depending on the user’s settings and Apple’s rules. Local storage does not mean that data is excluded from those backups. Exporting to a shared destination also does not create a TOPS session synchronized between devices.

5. Permissions and audio playback

iOS or iPadOS may request local-network permission for Art-Net, sACN, OSC, PJLink and Ableton Link. Denying it prevents or limits those communications, but local editing features may remain available. TOPS does not request general access to Contacts, Photos or the microphone; it does not record sound.

Audio selected by the user is played through the route provided by iOS or iPadOS, which may be a device output, USB, Bluetooth, AirPlay or another system-compatible route. This is not transmission of audio to Unquinto. Channel count, channel order and compatibility depend on the device and route and must be checked with the show setup.

An audio cue may continue when the screen is locked or the app temporarily moves to the background. For continuous Art-Net, sACN, OSC and PJLink operation and effect synchronization with Link, keep TOPS open and active; continuity of network control in the background is not guaranteed.

6. Control network, OSC, PJLink and Ableton Link

When the user enables or runs these features, TOPS communicates directly with the configured equipment and applications. Art-Net, sACN and OSC use UDP. They may transmit DMX values, OSC addresses and arguments, cue names or identifiers, status information and other operational parameters. PJLink uses a direct TCP connection with the projector and receives its responses. Source addresses, ports and parameters are also visible to participants in the communication.

Art-Net, sACN, OSC and PJLink control channels do not include TLS or content encryption provided by TOPS. When a QLab workspace requires a passcode, it is sent as an argument in the OSC connection message. PJLink may use MD5 or SHA-256 challenge authentication, depending on the mode and projector; that authentication does not encrypt commands or responses. Storing a credential in Keychain does not encrypt network traffic.

These features are intended for a trusted control network. Do not expose their ports to the Internet or reuse personal passwords. A configured address may be reachable outside the local network, depending on system routing; TOPS does not make a destination private or provide a secure tunnel. Control only destinations you are authorized to control.

If you enable Ableton Link, LinkKit discovers participants through UDP multicast and shares session, tempo and phase information. TOPS does not enable Link Audio or remote start/stop synchronization. The integration is available in Free and Full and does not send projects or audio to Unquinto.

Unquinto does not receive, relay or retain this control traffic. Receiving equipment and applications — for example, a console, node, QLab, Eos or projector — may log messages according to their settings and policies.

7. MIDI

The MIDI integration queries sources exposed by CoreMIDI, including their local identifier, name and manufacturer when available. Connecting to a source requires an explicit action. Note and Control Change messages are processed locally to monitor, learn or execute assigned actions.

The app stores the selected source identifier and mappings locally: the mapping name, channel, control type and number, action and, where applicable, a reference to a pad. It does not store a recording of the MIDI performance or send these data to Unquinto. Mappings are preferences for this device, separate from the project file; they may be included in a system backup.

Show control requires explicit arming. Connection and arming are not automatically restored when the app opens; when it becomes inactive, the connection is closed, and you must reconnect and arm manually. TOPS does not include its own Bluetooth browser or pairing procedure. Source availability depends on what the system exposes; compatibility with every controller or transport is not guaranteed. This input integration does not imply MIDI Clock, LED feedback or motor control.

8. QLab and PJLink credentials

QLab passcodes and PJLink passwords entered in their dedicated credential fields are stored in Apple’s local Keychain, without iCloud Keychain synchronization, and are excluded from preference encoding, autosaves and exported projects. The configuration uses “this device only” protection: these credentials do not migrate to another device when a backup is restored.

“No synchronization” does not mean “excluded from every backup”: Apple may include Keychain items in protected backups tied to the device. Do not assume that exporting a project or changing devices will transfer its passwords.

To delete a configured credential, clear its dedicated field or delete the corresponding OSC profile or projector in the app. Deleting a project or uninstalling the app should not be relied on as a guarantee that all Keychain items or previous backups are deleted. Do not write passwords in names, notes or custom OSC arguments: those fields form part of ordinary project data and may appear in exports and monitors.

9. Apple and in-app purchases

Apple independently processes the download, the permanent, non-consumable Full purchase, billing, App Store operation and certain technical data under its terms and policies. Renaming LightPad to TOPS does not create a different purchase or a subscription.

Through StoreKit, the app queries product information, such as its name and localized price, and checks the status of signed transactions and access entitlements to activate, maintain or restore Full. Unquinto does not receive payment details. A product query may start when the app opens; querying, purchasing or restoring through Apple’s services may require Internet access. This is not DMX control traffic or transmission of projects to Unquinto.

From Settings > TOPS Full, you can restore purchases or redeem Apple offer codes. Redeem Code opens Apple’s official sheet, without a TOPS-specific redemption field. Access comes only from verified StoreKit entitlements, not from the result of the redemption sheet. If you redeem a valid Full code in the App Store while TOPS is closed, access updates on the next launch; if it was in the background, when it returns to the foreground. This feature does not change the existing Full purchase or create a subscription.

10. Support communications and providers

The app does not automatically send requests or diagnostics to Unquinto. If you voluntarily contact Unquinto by email or another channel, Unquinto will process the data included in the message — for example, your name, email address, content and attachments — to reply, resolve the issue, prevent abuse and maintain a reasonable support history. Include the app, version/build, device and reproducible steps; do not send passwords or payment details, and review attachments first.

The legal basis is performance of the contractual relationship or taking steps requested by the user and, where applicable, the legitimate interest in providing and protecting the service. Enquiries will be retained for as long as necessary to handle and document the issue and will then be deleted or anonymized, unless a legal obligation or the defence of claims requires retention for a different period.

To host this website and manage email, Unquinto uses web-hosting and email providers contracted for those functions. These providers act under their contracts and, where applicable, as data processors. If transfers outside the European Economic Area occur, an adequacy decision, standard contractual clauses or another valid legal safeguard will apply.

Unquinto does not sell personal data. Data received through support will be disclosed only to providers necessary to deliver the service, advisers subject to confidentiality, or authorities when there is a legal obligation.

11. Retention and deletion of local data

Projects, preferences and other data in the local container remain until the user deletes them through the available features or removes the app’s data through the operating system, except for temporary histories and recovery copies that are rotated. Deleting a cue does not necessarily delete its audio copy or every saved version of the project.

Where applicable, also delete exported or shared files at their destination and manage backups in the settings of the system or selected provider. Keychain credentials require the actions described in section 8. MIDI mappings can be deleted in their settings; disconnecting or disarming stops their use but does not delete saved mappings.

12. Rights

When Unquinto processes personal data received through support, you may request access, rectification, erasure, objection, restriction or portability, and withdraw consent where that is the applicable basis. To exercise these rights, write to contacto@unquinto.es, identifying your request and providing only the information necessary to verify it.

You may also lodge a complaint with the Spanish Data Protection Agency (Agencia Española de Protección de Datos) or the competent supervisory authority where you live.

13. Children, security and professional use

TOPS is a professional technical tool and is not specifically directed to children. The app does not request a date of birth or knowingly collect personal data from children.

Unquinto applies reasonable safeguards to the support data it receives. The user is responsible for protecting the device, project copies and control network. TOPS must not be used as the sole control for safety-critical systems, emergency lighting, pyrotechnics or machinery.

14. Changes and related documentation

This policy will be updated if features, providers or processing activities change. The current version will show its last-updated date on this page. Material changes will be communicated through an appropriate channel. Historical LightPad addresses may be retained to preserve links from earlier versions.

This policy covers the TOPS app and the support communications described above. Use of the website is also explained in its general privacy policy and cookie policy.

TOPS · TOPS support · Quick-start guide · Legal notice