This page aggregates measured, corroborated evidence: donors' iPhones recorded apps contacting this domain, every claim below was reported by separate accepted donations and published under a human verdict (later rows for an approved app inherit its verdict). A contact is a measurement, not an accusation — it does not show what data was sent.
gspe11-ssl.ls.apple.com
classified as first-party · 2
What our research panel found AI-drafted · human-reviewed
We ask several independent AI models the same question and publish their answers separately — cross-vendor agreement is evidence against fabrication, and disagreement is worth seeing. 3 of 3 models answered, overall confidence high. A human reviewed this domain's claims before anything here published.
Anthropic Claude — first-party
gspe11-ssl.ls.apple.com is an Apple-operated host (apple.com) associated with Apple's location services infrastructure, so contact from Apple's own Messages app is first-party. A bare connection does not by itself show a data flow (e.g., precise location) beyond the declared label, so I cannot conclude it is undisclosed.
OpenAI — first-party
The domain is under apple.com and most likely represents an Apple-operated service endpoint. The provided sharing label already covers several relevant categories, and the contact alone does not establish an additional undeclared data flow.
Google Gemini — first-party
The domain gspe11-ssl.ls.apple.com is owned and operated by Apple, matching the publisher of the Messages app as a first-party service endpoint.
Apps measured contacting this domain
| App | Label gap | Donations | Contacts | Seen |
|---|---|---|---|---|
| Messages | — | 3 | 24 | 2026-07-30 |
The corpus grows one report at a time: donate your App Privacy Report — anonymous by design.
Think something here is wrong?
Evidence and research improve when people push back. Tell us what to re-check — a misattributed domain, an outdated classification, a claim about your own app — and a human will review it. Responses can take up to 30 days.