NotePlan Privacy Policy


In short:

  • NotePlan saves your notes as text-files locally on your devices and synchronizes them using CloudKit, iCloud Drive, or Supabase (depending on the configuration; you can disable it if you don't want to use it). Your Calendar and Reminders data is only displayed inside the app and not stored or sent to our servers (they are stored by macOS and iOS locally or in your iCloud on Apple's servers).
  • The website uses "Plausible" for collecting anonymously website statistics.
  • We use "EmailOctopus" for newsletter and marketing emails (you can unsubscribe at any time by clicking on "unsubscribe" inside the newsletter emails). Through "EmailOctopus" we track newsletter emails, including who opens the emails and who clicks on which link (disable loading external images in your email client and don't click on the link, if you don't want it to be tracked).
  • We use "Stripe" as payment service, so you can purchase NotePlan directly from the website. Stripe collects personal data as necessary for the transaction.
  • We use "OpenAI" to process AI prompts. NotePlan only uploads the selected text and the prompt (or transcription) to OpenAI to create an AI reply, when you are using AI features (if you are not actively using it, no data is uploaded to OpenAI). Your notes, the text that you have not selected within the same note, your personal information, etc. is not shared with OpenAI.
  • We use iCloud, Google Calendar, and Outlook calendar integrations to let you view, edit and manage your calendar events. The data is not stored, nor processed in any kind other than giving you access to your own data.

In long: Your privacy is very important to us. NotePlan is committed to respecting the privacy of its users and the visitors of this website. We reserve the right to change this policy, which we’ll do through online posting. We are very careful with what we do with your information.

The purpose of this privacy policy (“Privacy Policy”) is to inform you what personally identifiable information or personal information we may collect from you when you use our application or visit this website, how we use such information, and the choices you have regarding our use of, and your ability to review and correct, the information.

For purposes of this Privacy Policy, the terms “we,” “us” and “our” refer to NotePlan “You” refers to you, as a user of the Application or visitor to the website, as applicable. Capitalized terms not defined in this Privacy Policy have the meanings set forth in the Terms of Use. This Privacy Policy is effective as of the date last modified, as listed in above.

How we use the information we collect

We may use the information we collect from our Application and website to: (i) provide, maintain, protect and improve the Service, (ii) provide to you and communicate with you about your use of the Application or requests, (iii) protect our or third party interests and (iv) perform any function we describe when you provide the information.

We use information collected from cookies and other technologies to improve your user experience and the overall quality of our Service and for any other lawful purpose that we choose.

We will ask for your consent before using information for a purpose other than those that are set out in this Privacy Policy.

Protecting your information

We take the security of your personal information very seriously and have implemented policies and procedures, including technical measures, that are designed to help safeguard it. While we strive to use best practices to protect your personal information, the Internet and computer technology are not 100% secure and we cannot absolutely ensure the security of any personal information that you provide to us.

Personal Data

Your notes (which you create and write inside NotePlan) are saved locally on your device as plain text-files and synchronized across your devices using CloudKit (by Apple), iCloud Drive (by Apple), or Supabase. Calendar and Reminder events from your "iCalendar" or Reminders app are only displayed or created inside NotePlan. The information is not sent outside of the app. The data is, however, saved on Apple's servers being an Apple technology or Supabase's servers, which might be in the U.S. If you don't want your data to be saved on Apple's server, disable iCloud (synchronization won't work). Disable 'iCloud Drive' as well, if you don't want your notes to be synchronized by Apple's servers. If you don't want your notes sent to Supabase's servers, don't login into a teamspace or your Supabase account.

Consumption Data:
We may share limited consumption data with Apple to assist in reviewing refund requests. This includes information such as when the app was last opened but does not include the content of notes, events, reminders, or any other personal data. You can opt out of sharing this consumption data by contacting us at [email protected].

If you want to access or delete your personal data related to consumption information, you can submit a request directly to Apple by visiting privacy.apple.com.

If you choose to store data in CloudKit, requests to delete or access your data may require you to follow Apple’s procedures. See Responding to Requests to Delete Data, Providing User Access to CloudKit Data, and Changing Access Controls on User Data for more details.

Read more about how Apple handles your data: https://support.apple.com/HT202303.


Use Of EmailOctopus

We use EmailOctopus to manage our newsletter and other email lists. There’s no third-party tracking in messages we send through EmailOctopus besides EmailOctopus' own analytics, which tracks subscribers who open a message or click the links inside (disable loading external images in your email client and don't click on the link, if you don't want it to be tracked or use tracking blockers supplied by your email client). EmailOctopus' privacy policy is available at https://emailoctopus.com/legal/privacy. You can unsubscribe from our newsletter by clicking on the unsubscribe link provided at the end of the newsletter. You can also email [email protected] to update or unsubscribe your email address, or to request that we delete your email address. What we will do with your email address: It will be shared with "EmailOctopus", since we use their email service, we will send you emails about updates for NotePlan, offers like limited discounts and anything else about NotePlan. The data provided in the newsletter registration are processed exclusively on the basis of your consent (Art. 6 (1) (a) GDPR)

Use of Plausible Analytics

We use Plausible Analytics on our website to collect anonymous usage data for the purpose of improving our app and user experience. Plausible is a privacy-focused analytics tool that does not use cookies or track personal information. All data is aggregated and anonymized, meaning it cannot be used to identify individual users. No personally identifiable information (PII), such as IP addresses, device IDs, or user IDs, is collected or stored. Plausible operates in compliance with GDPR, CCPA, and PECR regulations. For more details on Plausible’s privacy practices, please visit Plausible’s Privacy Policy.

Use Of Google Data

NotePlan's use and transfer of information received from Google APIs to any other app will adhere to Google API Services User Data Policy, including the Limited Use requirements. NotePlan accesses user's calendar data to display it for viewing, editing and creating calendar events on the front end. The data is not stored or processed other than giving the user access to his/her calendar.

Use of Supabase (Teamspaces)

We use Supabase as our backend service to store and manage application data (for teamspaces and optionally non-teamspaces if selected). Supabase provides a secure, open-source database and authentication system. Depending on how you use our app, Supabase may store certain data such as user accounts, authentication credentials, and app-related data. Any personal information stored in Supabase is protected with industry-standard security practices, including encryption and access controls. We do not share this data with third parties, and it is only used to provide essential app functionality. Supabase complies with GDPR, CCPA, and other data protection regulations. For more details, you can review Supabase’s Privacy Policy.

Use of Meta Pixel

We use Meta Pixel to track interactions on our website and measure the effectiveness of our advertising campaigns. This allows us to understand how users engage with our website, optimize ad targeting, and improve our marketing efforts. The Meta Pixel collects anonymized data about user activity, including page views and interactions with certain elements in marketing pages. This data helps us tailor our ads and provide a better user experience. If you do not wish to be tracked by the Meta Pixel, you can adjust your privacy settings in Facebook’s ad preferences or use a browser-based ad blocker.

Use Of NotePlan App

Data, which you save inside NotePlan such as notes, calendar entries, events, appointments, todos, etc. are not saved on our servers and we have no access to this data. This data is saved as human-readable textfiles locally on your Mac or iOS device and by default synchronized with your devices using "iCloud Drive" (Apple Service), "CloudKit" (Apple Service) or "Supabase" (depending on your configuration and if enabled). The synchronization services named may make backups of your data and sync it between your devices automatically. Any data transmitted is subject to the Apple Privacy Policy or Supabase Privacy Policy (if manually enabled). You always have the option of disabling iCloud and iCloud Drive from the System Settings (macOS, iOS and iPadOS). Supabase is by default disabled unless you login into your Supabase (teamspace) account. Disabling iCloud Drive will also disable CloudKit. You can also disable these services in NotePlan's internal preferences (never login for Supabase or logout). The data will be saved only locally, if it is disabled / logged out (inside the "~/Library/Application Support/co.noteplan.NotePlan[3]" folders). You have to take care of backups manually if you disable iCloud. Read here more about iCloud security and privacy: https://support.apple.com/en-us/HT202303. Through the iCloud service or Supabase service, your data might be stored on servers in the USA.

We use mobile and desktop analytics software to allow us to better understand the functionality of our software on your phone, tablet and desktop. This software may record information such as how often you engage with NotePlan, the events that occur within the app, aggregated usage and performance data, and where the Applications were downloaded from. We may link the information we store within the analytics software to any personal information you submit within the application. We collect this data to analyze and improve the software on the basis of Art. 6 para. 1 lit. f GDPR.

Use of Mixpanel

We use Mixpanel to analyze user interactions within our app and improve our services. Mixpanel helps us track usage patterns, feature engagement, and app performance. The data collected may include anonymous usage statistics, device information, and event-based interactions. If you have an account, we may associate certain data with your user profile to personalize your experience. Mixpanel does not collect sensitive personal information and operates in compliance with GDPR, CCPA, and other data privacy regulations. You can learn more about Mixpanel’s data practices by visiting their Privacy Policy.

Updating and deleting your personal information

At any time you have the right to inquire about your personal data we store, their origin and recipient and the purpose of the data processing and a right to correct, block or delete this data. For further information on personal data you, can contact us at any time at the address given at the bottom of this page.

We may reject requests that are unreasonably repetitive, require disproportionate technical effort (for example, developing a new system or fundamentally changing an existing practice), risk the privacy of others, or would be extremely impractical (for instance, requests concerning information residing on backup systems).

Where we can provide information access and correction, we will do so for free, except where it would require a disproportionate effort. We aim to maintain the Application and website in a manner that protects information from accidental or malicious destruction.

When this Privacy Policy applies

Our Privacy Policy applies to the Application and website but excludes services that have separate privacy policies that do not incorporate this Privacy Policy.

Our Privacy Policy does not cover the information practices of other companies and organizations who advertise our Application and/or website, and who may use cookies, pixel tags, and other technologies.

Changes

Our Privacy Policy may change from time to time. We will post any Privacy Policy changes on this page and, if the changes are significant, we will provide a more prominent notice (including, for certain services, email notification of Privacy Policy changes).

Contact Us

If you have any questions or suggestions regarding our Privacy Policy, please contact us at [email protected].