Privacy
- We never see your notes. There is no Noteshell account and no Noteshell server holding your work.
- Your prompts go straight from your machine to the AI provider you chose. What they do with them is up to them; some train on what you send. Read their policy.
- We collect six anonymous counters and, if you turn it on, crash reports.
1. What stays on your machine
Notes, Builds, dashboards, datasets, chat history, your workspace and your API keys are files and settings on your own disk. There is no Noteshell account to make and nothing to sync. We have no copy of any of it, and no way to get one.
2. Your AI provider is the one that sees your prompts
When you ask the agent to do something, Noteshell sends your message, the files in context and its own working notes to the model provider you configured, whether that is Anthropic, OpenRouter, or whoever you signed in with, using your credentials. That request goes from your computer straight to them. It does not pass through us and we never see it.
What happens to it there is governed by their policy, not ours. Providers differ: some retain prompts, some train on them, some don’t. If that matters to you, read the policy of the provider you connect. It’s the one that decides.
When Curio searches the web, the search query goes to Exa, a search provider, and the results come back to your machine. That is the only other party in a chat. You can turn web search off in Settings → Privacy & diagnostics.
3. What we do collect
A usage heartbeat, on by default. Six counters: notes edited, chats sent, Builds opened, dashboards viewed, artifacts created, missions run. Plus your app version and OS. No content, no filenames, no identity. Turn it off in Settings.
Crash reports, off unless you opt in. If you switch them on we get the crash type and where it happened, capped at five a day. The error message itself is discarded before it’s sent.
Bug reports, only when you send one. You get to see what’s attached before it goes, and the email field is optional.
A version check. The app asks us whether a newer build exists, shortly after launch and every few hours. It sends the version it’s running and nothing else.
4. Other things the app talks to
A dictionary API when you look up a word; any page you point the agent at, fetched directly by the app; and, only if you add your own Groq key, audio you attach, sent to Groq to be transcribed. None of it passes through us.
5. Accounts you connect
You can connect GitHub, Google Drive and Calendar, Slack, Linear and Notion, and read public data from LeetCode. Tokens are stored encrypted on your machine; the app talks to those services directly, and what it fetches is written to files in your workspace. Disconnect any of them in Settings at any time.
Noteshell’s use of information received from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements.
6. This website
No advertising trackers, and nothing here builds a profile of you. If you send a bug report from here, we get what you typed. Download links are counted. The early-access form runs Vercel’s bot check, which exists to stop automated signups and not to identify you.
The early-access list. If you leave your address we store it, together with the line you write about what you want Noteshell for, so we can tell you when the beta opens and ask what would make it useful to you. Alongside those we record which page you signed up from, the page that referred you, and the country your request came from, so we know where people are finding us. A short notification, containing your address and that country, goes to our own team chat when someone signs up.
We don’t sell the list, share it, or send you a newsletter. We keep it until you ask us to remove it, or 24 months after we last wrote to you, whichever comes first. To be removed sooner, write to customer@noteshell.io and we’ll delete the record.
7. Children, and changes
Noteshell isn’t directed at children under 13 and we don’t knowingly collect anything from them. This page will change as the product does. The date at the top is the current version.