Privacy Policy
Last updated: August 18, 2026
1. Who we are
Noteline is operated by Foo AI Corp. ("Noteline", "we"). We are the data controller for the personal data described in this policy. You can reach us anytime at contact@noteline.io.
2. The short version
Your notes never leave your device. Noteline has no accounts and no sync servers, and the apps contain no analytics, telemetry, or crash reporting. The only personal data we ever handle is the email you use to buy a license, your license key when the app checks that it is still valid, and cookieless page-view counts on this website.
3. What we collect
- Notes — stored on your device only: as plain Markdown files on desktop, and in your browser's local storage in the web editor. They are never sent to us. Word and PDF conversion happens on your device, offline.
- Purchase information — when you buy a license, payment is handled by Polar; your card details never touch our systems. We receive your email address and order record to issue your license key and provide support.
- License activation and checks — activating a license sends your key and a device label to our payment provider (Polar) to count your devices (up to 5). After that, the desktop app asks Polar once per launch whether the key is still valid, so a refunded or revoked key stops working. That request carries the key and activation id — no notes, no usage data. If you are offline it simply does nothing; the app never locks you out for being offline.
- Update checks — the desktop app asks our release server (GitHub) whether a newer version exists. This is a standard web request (your IP address and a user-agent string); it carries no identifier and none of your content.
- Analytics — this website uses Cloudflare Web Analytics to count page views and page-load speed. It is cookieless and does not fingerprint you or build a profile across sites. The apps carry no analytics at all.
- Error reports — none. The apps do not send crash or error reports anywhere. If something breaks, nothing leaves your device; tell us what happened at the support address and we will look into it.
- Local storage — the app uses your browser's local storage for settings like theme and open tabs. We do not use tracking cookies.
Mobile apps (iOS & Android)
The Noteline apps for iOS and Android follow the same local-only model: notes are plain Markdown (.md) files on your device — no account, no sync server, and no analytics, telemetry, or ads. On iOS the folder shows up in the Files app, and you can choose to keep it in your own iCloud Drive; in that case the files sync through your personal Apple account and never reach us. On Android the folder lives in the app's own storage, which means Android removes it if you uninstall the app — share or export anything you want to keep first. The apps are distributed through the App Store and Google Play, and we receive no personal data from them.
4. How we use it
- To issue your license key and help you when something goes wrong.
- To check that a license is still valid on the devices using it.
- To understand roughly how many people visit the website.
Under the GDPR, our legal bases are: performance of a contract (your purchase), our legitimate interests (keeping the product secure and working), and consent where the law requires it. You can withdraw consent at any time.
5. Who processes data for us
- Cloudflare — website hosting, protection, and cookieless page-view analytics.
- GitHub — hosting downloads and update checks.
- Polar — payments, license-key activation, and validity checks.
Payments: license sales are handled by Polar acting as merchant of record. Your card details never reach us.
6. Security
Your notes are not on our servers, so the most important security property is structural: there is nothing of yours for us to lose. The website is served over TLS, and license checks go to Polar over TLS — nothing about your notes is involved.
7. How long we keep data
Purchase records are kept as long as tax and commerce law requires. Website analytics are kept only briefly and contain no notes. There is no account to retain — because there is no account.
8. Your rights
You can ask us to access, correct, export, or delete your personal data by emailing contact@noteline.io. We respond within 30 days.
One thing you don't need to ask us for: your notes. They are plain Markdown files on your own disk — already yours to copy, move, or delete. (On Android they sit in the app's own storage, so export them before uninstalling.)
If you are in the EU/EEA or UK, you also have the right to object to or restrict processing, and to lodge a complaint with your local supervisory authority. If you are a California resident: we do not sell your personal information or share it for cross-context behavioral advertising, and we will never discriminate against you for exercising your rights.
9. International transfers
We are based in South Korea, which holds an EU adequacy decision. Some processors (such as Cloudflare, GitHub, or Polar) may process data in other regions, including the US; where that happens, we rely on adequacy decisions, Standard Contractual Clauses, or equivalent safeguards.
10. Children
Noteline is not directed at children under 13 (or the higher minimum age in your country). We do not knowingly collect data from children. If you believe we have, email us and we will delete it.
11. Changes
We may update this policy. We'll post the new version here with an updated date.
12. Contact
Questions or requests: contact@noteline.io