Privacy Policy
This policy covers the Smritsavant desktop and mobile apps, the licence service behind them, and this website. The browser extension has its ownprivacy policy. Effective 4 August 2026.
The short version
- Your notes never leave your device. We run no server that stores, reads, or processes note content. The AI features run on your hardware.
- The app sends no telemetry. No analytics, no crash uploads, no usage events. An automated test suite fails our build if a telemetry endpoint appears.
- Your account is license plumbing only. The license server stores: your email, license purchases, redemption codes, hashed device fingerprints with self-chosen labels and last-seen timestamps, and an audit trail of license events. That's the complete list.
- This website sets no cookies and runs no analytics. Fonts are self-hosted; no third-party requests are made.
- The browser extension collects nothing at all. It makes no network requests and hands what you clip to the app on your own machine — see theClipper privacy policy.
Who we are
Smritsavant is operated from Canada, and is the data controller for the information described below. For the operator's registered details, or to exercise any right in this policy, write to[email protected].
What the app processes
Nothing reaches us. Your notes, their embeddings, your recordings and transcripts, your images and their descriptions, and everything the AI makes from them are written to a database file on your own machine and stay there. We have no ability to read them, no key that would let us, and no copy to lose. That is a property of how the app is built rather than a promise about how we behave: there is no endpoint to send them to.
What the licence server processes, and why
- Email — identifies your account; used for magic-link sign-in, redemption codes, and receipts. Never sold, never shared for marketing.
- Hashed device fingerprint — enforces device slots and prevents trial resets. The hash can't be reversed into your hardware details.
- Purchase records — from our merchant of record (Lemon Squeezy) or the app stores when you link a store purchase; needed to compute your upgrade credit.
- Licence event audit trail — activations, deactivations and transfers, so a dispute about a licence can be settled from a record rather than from memory.
Why we are allowed to hold it
Under the GDPR our lawful basis for the above is performance of a contract — you bought a licence, and these are the minimum records needed to give you one and keep it working. Purchase records and the audit trail are also kept to meet a legal obligation (tax and accounting). We rely on legitimate interest for nothing, and we ask for no consent, because we do nothing optional with your data.
How long we keep it
Account data is kept while your account exists. If you delete your account it is erased after the grace period shown to you at the time; what survives is the minimal record of the purchase itself, which tax and accounting law requires us to retain. Hashed device fingerprints are removed when you release the device slot or delete the account.
Who else is involved
We use as few third parties as a paid product allows, and none of them ever sees note content — it never leaves your machine, so there is nothing for them to see.
- Lemon Squeezy — our merchant of record. They take the payment and handle your card details; we never see them. They pass us the purchase record.
- Cloudflare — hosts this website and the licence service.
- The app stores — if you buy through Apple, Google or Microsoft, that purchase is theirs, and reaches us only as a receipt you choose to link.
Where your data goes
The licence service runs on globally distributed infrastructure, so the small amount of account data described above may be processed outside your country, including outside the EEA and the UK. Where that happens the transfer relies on the provider's Standard Contractual Clauses. Again: none of this involves your notes, which do not travel at all.
Your rights
You can ask us for a copy of what we hold, to correct it, to delete it, or to hand it to you in a portable form — and you can object to our processing it. Most of that you can do yourself, immediately, from your account page: export everything the licence server knows about you, or delete the account outright. For anything else, email[email protected] and we will answer within 30 days.
If you are in the EEA or the UK you may complain to your data protection authority; in Canada, to the Office of the Privacy Commissioner. We would rather you came to us first, but it is your right and we will not make it awkward.
We do not sell personal information, and never have — including under the California Consumer Privacy Act's broad reading of "sell", which covers sharing for advertising value. There is no advertising in Smritsavant and no data broker in our stack.
Cloud features you can opt into
If you enable a bring-your-own-key cloud model or web search in the app, your prompts/queries go to that provider under your key and their policy — the app shows a consent screen naming the endpoint before the first request and counts every request in the Network Audit. Off by default; nothing else in the app talks to the network.
Children
Smritsavant is not directed at children under 13 (under 16 in the EEA), and we do not knowingly collect their information. If you believe a child has created an account, write to us and we will delete it.
This website
This site is static files. It sets no cookies, runs no analytics or tracking scripts, loads nothing from third-party servers, and sends no beacons. The account page talks to our license API only after you sign in, for the data it displays.
Changes to this policy
If this policy changes in a way that affects what we collect or who sees it, we will say so here and change the effective date above before the change takes effect. We will not quietly broaden it.
Contact
Privacy questions: [email protected].