Privacy Policy
Effective date: January 1, 2026
jottie ("we", "us", "our") provides a notes application that syncs your notes across devices and uses AI to help you organize and search your thoughts. This Privacy Policy explains what data we collect, how we use it, how we protect it, and the choices you have.
1. Information We Collect
Account Information
When you sign in with Google, we collect:
- Email address (used as your account identifier)
- Name and profile picture from your Google account
- Account creation and last activity timestamps
Content You Create
- Notes: The text content of notes you create, edit, and store
- Attachments: Files you upload to your notes
- Chat messages: Conversations you have with the AI assistant about your notes
- Boards: Kanban boards and organizational structures you create
Automatically Generated Data
Our AI processes your notes to extract:
- Tags (topics and categories)
- Entities (people, places, organizations mentioned)
- Dates and temporal references
- Note type classifications
- Semantic embeddings for search (mathematical representations of meaning)
Usage Information
- Feature usage patterns (which features you use and how often)
- Search queries and chat interactions
- Error logs and performance data
- Subscription and billing events
2. How We Use Your Information
To Provide the Service
- Store and sync your notes across devices
- Power semantic search to help you find notes by meaning, not just keywords
- Enable AI chat that can reference and summarize your notes
- Automatically organize notes with tags, entities, and dates
To Improve and Secure the Service
- Monitor for abuse and enforce rate limits
- Fix bugs and improve performance
- Develop new features based on usage patterns
- Protect against fraud and unauthorized access
To Communicate With You
- Respond to support requests
- Send service announcements and updates
- Notify you of changes to our policies
3. Data Storage and Security
Encryption
Your note content, associations, and chat messages are encrypted at rest using AES-256-GCM encryption. Each user has a unique encryption key, and these keys are themselves protected by Google Cloud Key Management Service (KMS).
Access Controls
We implement row-level security in our database, ensuring you can only access your own data. Our systems enforce strict access controls so that only you can view your notes.
Infrastructure
Your data is hosted on Google Cloud Platform infrastructure with enterprise-grade security, including encrypted connections (TLS/HTTPS), regular security updates, and access monitoring.
4. Data Sharing
We do not sell your data.
We share data only with the following trusted service providers who help us operate jottie:
- Google Cloud Platform: Infrastructure, database hosting, file storage, and AI services (Vertex AI) for semantic search and chat features
- Stripe: Payment processing for Pro subscriptions. Stripe receives your email and payment information; we do not store your credit card details
We may disclose information if required by law, court order, or to protect the rights, property, or safety of jottie, our users, or others.
5. AI and Your Data
jottie uses AI to power features like semantic search, automatic tagging, and chat. Here's how your data interacts with AI:
- Your notes are processed to generate embeddings (mathematical representations) for search
- When you chat, relevant notes are retrieved and sent to the AI model for context
- AI-generated tags and entities are stored with your notes
- We use Google Vertex AI with safety guardrails to filter harmful content
Your data is not used to train AI models. Processing happens on-demand to provide the service.
6. Data Retention
- Active notes: Stored as long as your account is active
- Deleted notes: Soft-deleted notes are retained for a recovery period, then permanently purged
- Account deletion: When you delete your account, all your data (notes, conversations, boards, and associated metadata) is permanently deleted
7. Your Rights and Choices
Access and Portability
You can access all your notes within the app. Contact us to request a copy of your data.
Deletion
You can delete individual notes at any time. To delete your entire account and all associated data, go to Settings or contact us.
Correction
You can edit your notes at any time. Contact us to correct other account information.
Opt-Out
You can sign out at any time to end your session.
8. California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know what personal information we collect and how it is used
- Request deletion of your personal information
- Non-discrimination for exercising your privacy rights
We do not sell personal information. To exercise your rights, contact us at the email below.
9. European Privacy Rights (GDPR)
If you are in the European Economic Area, you have rights including:
- Access to your personal data
- Rectification of inaccurate data
- Erasure of your data ("right to be forgotten")
- Data portability
- Objection to processing
- Withdrawal of consent
Our legal basis for processing is your consent (by using the service) and legitimate interests (operating and improving the service). Contact us to exercise your rights.
10. Children's Privacy
jottie is not intended for children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice in the app or sending an email. Your continued use after changes take effect constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us at:
Email: support@jottie.io