Privacy Policy
Last updated:
Fly Notes ("Fly Notes", "we", "us") makes an iPhone app for capturing notes, to-dos, and reminders. This policy explains what we collect, why, and your choices. Questions: support@flynotes.app.
The short version
- Your notes live on your iPhone, not on our servers.
- If you turn on iCloud sync (live sync across your devices is a Pro feature), your notes, categories, and app settings are mirrored to your own private iCloud account — Apple's storage, not ours. Your note text, category names, and synced settings are end-to-end encrypted, so only your signed-in devices can read them.
- We keep a small account record (so you can sign in), basic usage counts (to run fair limits) and, if you subscribe to Pro, your subscription status.
- When you use Ask or cloud transcription, the text or audio for that request is routed through OpenRouter to one of our AI providers (currently Google Cloud, Groq, Together AI, or DeepInfra) to produce a result. We only ever send it to providers running under zero-data-retention terms — that restriction is enforced on every request, and a request that would need to be stored is refused rather than sent. We don't keep it on our servers, OpenRouter doesn't store the content of your request, and none of these providers use it to train models. The serving provider doesn't retain your content in the normal course, though it may hold a temporary copy for a short time (up to 30 days) only to fix errors or investigate abuse.
- If you leave anonymous usage statistics on, we receive daily counts of how features are used, in coarse buckets — never your notes, questions, audio, or anything that identifies you. You can turn this off in Settings.
- If you join the launch waitlist, we keep your email until launch to invite you to the beta and notify you when we ship.
- We don't sell your data. We don't run ads.
What we collect
1. Account information
When you sign in with Apple or Google, we receive a stable account identifier and, if you allow it, your email address. We use this only to create and secure your account.
2. Usage counts
We count how many times you use metered features (like Ask or cloud voice notes) so we can apply fair-use limits. These counts are tied to your account, not to the content of your notes.
3. Subscription status
If you subscribe to Fly Notes Pro, we store your subscription status — your plan, its renewal date, and an Apple transaction identifier — so we can unlock Pro features and apply the correct limits. Payment is processed entirely by Apple; we never receive your payment details.
4. Note content — only when you use a cloud feature
Your notes, to-dos, and reminders are stored on your device. We never receive them in the normal course of using the app. When you choose to use Ask, or turn on cloud transcription, the specific text or audio needed for that request is routed through OpenRouter to one of our AI providers (currently Google Cloud, Groq, Together AI, or DeepInfra) to generate the answer or transcription, then returned to you. We do not store that content on our servers, and we don't send any identifier that ties the request to you. OpenRouter routes the request and, under its terms, does not store the content of your prompt or audio (it keeps only operational metadata such as timestamps and token counts).
We only use models and providers that operate under zero-data-retention terms. This is not a preference we express and hope is honoured: the restriction is applied to every request and enforced by OpenRouter at the routing layer, which will refuse a request outright rather than send it to an endpoint that would retain it. We also pin an explicit allowlist of the providers named above, so your content cannot be handed to some other provider even when our usual ones are busy or unavailable. The serving provider processes the request to produce your result and does not retain it in the normal course of doing so, and none of these providers use it to train models. The serving provider may keep a temporary copy for a short period (up to 30 days) only to troubleshoot errors or investigate abuse.
5. Waitlist email
If you join the pre-launch waitlist, we store the email you submit, on our own server, solely to invite you to test Fly Notes before launch and to notify you when it launches. You can ask us to remove it at any time.
6. Anonymous usage statistics (optional, on by default)
To improve the app, Fly Notes sends us daily counts of feature use in coarse, predefined buckets — for example how often Ask found an answer, or roughly how long questions are (short/medium/long). These counters carry no note contents, no questions or audio, no identifiers, and no sign-in — they are sent separately from your account and cannot be linked to it. Timestamps are no finer than the calendar day, and the only device information is a coarse size class (small phone / phone / tablet). Because these counts are anonymous and can't be traced back to you, they aren't personal information — the off switch is simply there so you stay in control. Turn them off any time in Settings → Privacy; switching off also deletes anything not yet sent.
7. Technical basics
Like any online service, our servers and hosting provider process basic connection data (such as IP address) to deliver the service and prevent abuse.
8. Spam protection (waitlist form)
The waitlist form is protected by Cloudflare Turnstile, a privacy-focused anti-bot check. When you submit the form, Turnstile processes signals such as your IP address, browser type (user agent), and a device assessment to confirm you're not a bot. We rely on this to prevent abuse of the form. Cloudflare acts as our processor for this check — see Cloudflare's Turnstile Privacy Policy. It runs only on the waitlist form, sets no advertising cookies, and is not used to track you.
iCloud sync and backup
Fly Notes can keep your notes in sync across your Apple devices. Live sync across devices is a Pro feature; on any plan, the notes on your device are also included in your iPhone's standard iCloud backup if you have that turned on, like other app data.
When sync is on, your notes, your categories, and your app settings (such as appearance and capture preferences) are mirrored into your own private iCloud database — Apple's storage, tied to your Apple ID. This never passes through Fly Notes' servers, it counts against your personal iCloud storage, and it requires you to be signed in to iCloud on the device. What's stored there is protected two ways:
- Your note text, your category names and shortcuts, and your synced settings are end-to-end encrypted. They can be read only on your own signed-in devices — neither Fly Notes nor Apple's servers can read them.
- Bookkeeping details — such as dates, done and pinned flags, colours, and the order of your notes and categories — are stored as standard iCloud fields, protected by Apple's standard iCloud security.
You stay in control. Your notes and your settings have separate switches (Settings → iCloud Sync), so you can sync one without the other. Turning a switch off stops this device from uploading further changes of that kind; data already copied to iCloud stays there until you delete it. Deleting a note removes it from iCloud too, across your synced devices. Sync uses your device's iCloud account, which is separate from the Fly Notes sign-in you use for Ask and cloud transcription, and Apple's iCloud terms apply to how it's stored.
What we do NOT do
- We don't store your notes on our servers.
- We don't store your synced notes on our servers — iCloud sync keeps them in your own private iCloud account, not ours.
- We don't sell or rent your personal information.
- We don't show ads or use advertising trackers.
- We don't use your content to train AI models, and under our AI providers' terms your Ask and transcription content isn't used to train theirs.
Who we share data with (sub-processors)
- Apple / Google — to verify your sign-in. Apple also processes Pro subscription payments and sends us the subscription's status; we never see your payment details.
- OpenRouter, Inc. — routes your Ask and cloud transcription requests to the serving AI provider. Configured for zero-data-retention routing, and restricted to the four providers below.
- Google Cloud (Vertex AI) — serves Ask answers. Zero data retention.
- Groq — serves cloud transcription and backs up Ask. Zero data retention.
- Together AI — cloud transcription backup. Zero data retention.
- DeepInfra — Ask backup. Zero data retention.
- Cloudflare — to host and deliver this website, and to run spam protection (Turnstile) on the waitlist form.
- Amazon Lightsail — to run our account and waitlist server.
Why we're allowed to use your data (legal bases)
Where data-protection law (such as the GDPR) applies, we rely on these legal bases:
- Contract — to create and run your account and provide the app's features.
- Consent — for the launch waitlist email, and for Ask and cloud transcription (which you choose to use). You can withdraw consent at any time.
- Legitimate interests — to keep the service secure, prevent abuse and spam, and apply fair-use limits.
Where your data is processed
We're based in Myanmar, and our providers process data outside it — in the United States and, depending on the provider's own infrastructure, other countries. These providers are OpenRouter and the AI providers it routes to (Google Cloud, Groq, Together AI, and DeepInfra, for Ask and cloud transcription — all under zero-data-retention terms, wherever they run), Cloudflare (this website and spam protection), and Amazon Lightsail (our account and waitlist server). Where required, these transfers rely on the providers' standard safeguards, such as Standard Contractual Clauses and their data-processing agreements. Because Myanmar is outside the EEA/UK and has no adequacy decision, where required we also apply appropriate safeguards to transfers of your data to us.
How long we keep things
- Account record, subscription status & usage counts: while your account is active; deleted when you delete your account.
- Anonymous usage statistics: kept only as aggregate daily counts that were never linked to you; turning the Settings toggle off also deletes any counts not yet sent from your device.
- Waitlist email: until launch (or until you ask us to remove it), then deleted. Used for at most a beta invite and one launch email.
- Ask / transcription content: not retained by us beyond producing your result. The serving AI provider doesn't retain it in the normal course, but may keep a temporary copy for up to 30 days only to fix errors or investigate abuse.
Your choices and rights
- Your notes: delete any note in the app; deleting the app removes them from your device.
- Your account: delete your account any time in the app under Settings → Account → Delete Account — this removes your account record and signs you out. You can also ask us at support@flynotes.app.
- Waitlist: ask us to remove your email any time at support@flynotes.app.
- Depending on where you live (e.g. EEA/UK/California), you may have rights to access, correct, delete, or port your data, and to object to certain processing. Contact us to exercise them.
- Complaints: if you're in the EEA or UK, you have the right to lodge a complaint with your local data-protection authority (in the UK, the Information Commissioner's Office). We'd like the chance to help first — email support@flynotes.app.
California residents
We don't sell or share your personal information, and we don't use it for cross-context behavioral advertising. You have the right to know what we collect (described above), to correct inaccurate information, to request deletion, and not to be treated differently for exercising these rights. Contact us at support@flynotes.app.
Children
Fly Notes is intended for people aged 16 and over. It isn't directed to children under 16, and we don't knowingly collect their data. If you believe a child under 16 has provided us information, contact us at support@flynotes.app and we'll delete it.
Changes
We'll update this page when our practices change and revise the "Last updated" date above.
Contact
Fly Notes, a product of INNOV8 VENTURES COMPANY LIMITED. Ngu War (2) Street, Malikha Housing, 16-18, Thingangyun, Yangon, Myanmar. Email: support@flynotes.app.