CoNote

Privacy Policy

Effective August 17, 2026 iOS and iPadOS

CoNote is local-first. You can create CoNotes, Task Tables, and Fridge boards without an account. Information is processed outside CoNote's local storage only when you use an Apple service such as speech recognition, iCloud, sharing, Spotlight, Shortcuts, notifications, StoreKit, or export, or when you contact support. Text and selected images can also be analyzed privately on-device when you ask CoNote to suggest tasks.

1. Scope and privacy approach

This policy explains how FFDEV Apps ("FFDEV," "we," or "us") handles information in CoNote on iOS and iPadOS. CoNote is not currently offered for Android, so Google Play's Data safety disclosure does not apply to this app.

CoNote does not contain advertising, cross-app tracking, third-party analytics, or a third-party crash-reporting service. FFDEV does not sell or rent personal information, use it for targeted advertising, or create advertising profiles.

Information that remains only in local app storage is not collected by FFDEV. Apple may process device, speech, search, Shortcuts, backup, CloudKit, StoreKit, notification, and App Store information under its own terms when you use those Apple services.

2. Data handling summary

The table summarizes CoNote's current data flows. Cloud, collaboration, purchase, and support processing occur only when you choose those features.

Data When processed Purpose and destination
CoNotes, Task Tables, and board content Rich text and list formatting, tasks and recurrence details, reminders, links between CoNotes and Task Tables, selected task relationships, comments, drawings, board objects and layer settings, deleted items, revisions, and attachments are stored locally and uploaded only when iCloud sync or sharing is enabled. Personal categories remain in local preferences. App functionality, backup, sync, version history, and collaboration through Apple CloudKit.
Account, profile, and collaboration identifiers A stable Apple user identifier is processed when you choose Sign in with Apple. CoNote requests no name or email scope. You may choose a 2-to-24-character collaboration username. CoNote also processes CloudKit participant identifiers, names or email addresses made available by Apple, ownership, participant access rules, the owner's current account-bound Pro status, comment authorship, edit information, and contribution markers. Account management, cloud access, permissions, ownership, collaboration profiles, enforcing view or edit access, showing activity, and identifying contributions through Apple CloudKit.
Photos Only photos you select or take. They remain local unless their document is synced, shared, or exported. Adding visual content to a note or board, CloudKit sync, collaboration, or a destination you select in the share sheet.
Speech audio and transcripts Live microphone audio is sent to Apple's Speech framework only when you start transcription. CoNote does not save the recording. The resulting transcript becomes editable CoNote content. Converting speech to text through Apple. A saved transcript may later sync, be shared, or be exported like other document content.
Task-capture inputs and suggestions Text you provide, selected photos, camera images, and PDFs are analyzed on-device only when you choose task capture. CoNote may recognize text and suggest task titles, priorities, dates, reminders, and recurrence. Nothing is sent to FFDEV for this recognition. Private on-device task extraction using Apple's Vision and PDFKit frameworks. Suggestions become ordinary editable tasks only when you accept them.
Shared-in and system-search content Text, links, or images you intentionally send through CoNote's Share extension are saved into the CoNote you choose. Titles, body text, tasks, board text, and category names from unlocked documents may be indexed by Spotlight on your device. Quick capture from another app, Apple system search, Shortcuts, widgets, and opening the selected content.
Purchase information StoreKit provides product identifiers, subscription and entitlement state, expiration and renewal state, introductory-trial eligibility, Family Sharing status, an app account token, and the original transaction identifier. FFDEV does not receive payment-card details. Providing and restoring CoNote Pro features through Apple, and verifying that cloud collaboration access belongs to the same signed-in CoNote identity.
Support information Your sender address, message, attachments, and any device or app details you include when emailing support. Responding to your request through your email provider and Microsoft Outlook, FFDEV's receiving email service.

App Store disclosure alignment: CoNote sends no analytics, advertising, or tracking data to FFDEV. When you choose Apple-powered features, Apple may process speech audio, system-search and Shortcuts information, the Sign in with Apple identifier, CloudKit user content and collaboration information, photos included in documents, notification data, and StoreKit purchase or entitlement information, including an app account token, for app functionality. On-device task capture does not send its source text, photos, camera images, or PDFs to FFDEV.

3. Information stored on your device

CoNote stores titles and rich text, font and list formatting, text contribution markers, dedicated Task Tables, selected task relationships, recurrence and reminder details, comments and replies, document links and backlinks, Fridge-board drawings and objects, layer, group, font, and paper settings, selected photos, photo and board contribution markers, category assignments and section positions, document settings, deleted items, local revision history, entitlement state, StoreKit account and transaction identifiers, chosen appearance theme, collaboration profile, and app preferences in app-controlled local storage.

A shared app-group container allows the main app, widgets, Shortcuts, App Intents, and Share extension to use selected cached document content. Text, URLs, or images that you intentionally send to CoNote from another app are added to the document you choose.

You may separately blur a document preview in dashboards and widgets or lock a CoNote or board using device-owner authentication. Preview blur is a display preference; the privacy lock is an access control inside CoNote but does not encrypt the underlying document separately from iOS storage protection.

Local data remains until you delete it, reset the library, or uninstall the app. It may appear in an iCloud device backup if backup is enabled in system settings.

4. Sign in with Apple, CloudKit, and collaboration

You can use CoNote without signing in. If you choose Sign in with Apple, the app receives a stable Apple user identifier and stores it locally to remember that cloud features are enabled. CoNote requests no name or email scopes through Sign in with Apple. After signing in, you may choose a collaboration username between 2 and 24 characters. That profile is stored locally and in your private CloudKit database so CoNote can keep your identity consistent across your devices.

When cloud features are enabled, Apple CloudKit stores CoNotes, Task Tables, tasks and recurrence details, reminders, links and selected-task relationships, comments and replies, rich text, text contribution markers, board content and layer settings, font and paper choices, photos and their contribution markers, revisions, edit metadata, sharing state, participant access rules, the owner's current account-bound Pro status, and related document records in CoNote's iCloud container. Personal category names and assignments, category section positions, appearance theme, privacy locks, preview-blur choices, and widget configuration remain local. CloudKit information is associated with your Apple/iCloud account so it can sync between your devices.

If you share a CoNote, Task Table, or board, its content and photos are placed in a CloudKit shared database. People you invite can access that shared document with the view or edit permission you choose. CoNote processes participant identity details made available by CloudKit, ownership, access rules, collaboration profile names and avatar color seeds, comment authorship, text and visual contribution markers, edit-session information, and owner entitlement state to manage access, show collaboration and comment activity, and optionally alert you to changes. Collaborators may copy or export content they can access.

Apple applies its own security controls to CloudKit data and network transmission. No method of electronic storage or transmission can be guaranteed completely secure.

5. Photos and camera

CoNote asks for photo-library or camera access only when you add an image or choose task capture from a photo or camera. A photo you select or take to add becomes part of the CoNote or Fridge board and is stored locally. A photo or camera image used only for task capture is analyzed on-device and is not automatically added to a CoNote. CoNote does not scan your photo library in the background or use the camera continuously.

If iCloud sync or sharing is enabled for that document, the photo is uploaded to CloudKit and may be visible to invited collaborators. You can remove a photo from the document and manage camera or photo permission in iOS or iPadOS Settings.

6. Microphone and speech recognition

CoNote asks for microphone and speech-recognition permission only when you start audio transcription. While recording, live audio is provided to Apple's Speech framework to produce partial and final text. Depending on the device, language, availability, and Apple settings, Apple may process recognition on the device or through its speech service under Apple's privacy terms.

CoNote does not create or retain an audio recording and FFDEV does not receive the audio or transcript from Apple. When you accept the transcript, it becomes editable document content stored like text you typed and may later be included in iCloud sync, collaboration, Spotlight, or export according to the choices described in this policy. You can stop recording at any time or revoke microphone and speech-recognition access in Settings.

7. On-device task capture

CoNote can suggest editable tasks from text on-device. CoNote Pro additionally unlocks selected photos, camera captures, scanned pages, and PDFs. CoNote uses Apple's Vision and PDFKit frameworks, with local text and language analysis, only after you choose a source and start the feature. The source stays on the device during recognition and is not uploaded to FFDEV or a third-party recognition service.

The suggestions may include a task title, priority, due date, reminder time, or daily, weekly, monthly, or yearly recurrence. You can review, edit, select, or reject every suggestion. Accepted tasks become ordinary CoNote content and may later be stored in iCloud, shared with collaborators, indexed by Spotlight, shown in widgets, or exported according to the choices described in this policy. Source photos and PDFs are not automatically added to a CoNote by task capture alone.

8. Share extension, Spotlight, Shortcuts, and widgets

The CoNote Share extension accepts text, URLs, and images that you deliberately share from another app and saves them to an existing or new CoNote in the local app-group container. If that document later uses iCloud sync or collaboration, the imported content is handled like its other content.

CoNote makes unlocked, non-deleted documents searchable through Core Spotlight. The local system index may include a CoNote, Task Table, or board title, body text, task titles, Fridge text and sticky notes, and category name. Privacy-locked documents are excluded and the index is refreshed when lock state or content changes. Accepted task-capture results are indexed like other task content. Apple controls Spotlight storage and search behavior; you can manage CoNote's search access in iOS or iPadOS Settings.

App Intents and Shortcuts can create or open CoNotes and boards, add tasks to Task Tables, and quick-capture text using the local app-group cache. Commands and content you provide to Siri or Shortcuts may be processed by Apple under its settings and privacy terms.

Widgets read selected cached document content from the same local app-group container and display it on your device. Privacy-locked or preview-blurred content is restricted in supported system surfaces.

9. Privacy locks and device authentication

You can lock selected CoNotes and boards with Apple's LocalAuthentication framework. iOS or iPadOS verifies you with Face ID, Touch ID where available, or the device passcode. CoNote receives only whether authentication succeeded; it does not receive, store, or transmit biometric templates or passcodes.

The identifiers of documents you lock and the separate preview-blur preferences are stored locally. Your selected appearance theme, font and paper preferences, category settings, and widget configuration are also local personalization choices. An unlocked document remains available for the current in-app session until authentication expires. A privacy lock protects access through CoNote and removes that document from CoNote's Spotlight index, but it is not separate end-to-end encryption and cannot revoke copies already shared or exported.

10. CoNote Pro subscriptions

Monthly and annual CoNote Pro subscriptions are offered through Apple's StoreKit and the App Store, with the introductory free trial Apple displays for eligible accounts. Apple processes payment details and billing. CoNote receives transaction and entitlement information such as the product identifier, subscription state, expiration date, renewal state, trial eligibility, Family Sharing status, app account token, and original transaction identifier. Pro features currently include collaboration, categories, advanced tasks, photo, camera, scan, and PDF task capture, audio transcription, Fridge precision tools, connected knowledge, version history, configurable widgets, export, expanded typography and board styles, and Studio Mono and Paper Atelier themes. Board templates and overview widgets are available without a Pro subscription.

When a signed-in person starts a purchase, CoNote gives StoreKit a deterministic UUID derived one-way from the app-scoped Sign in with Apple identifier. The token does not reveal that identifier and lets CoNote verify that cloud collaboration access belongs to the same CoNote identity. CoNote stores the StoreKit-signed token, original transaction identifier, and a limited entitlement snapshot locally so Pro access can be checked for up to 72 hours when offline. Family-shared, anonymous, or older unbound purchases may provide local Pro features but are not treated as account-bound proof for cloud collaboration.

FFDEV does not receive your payment-card details and does not operate a separate purchase server. Deleting CoNote data does not cancel an App Store subscription; subscriptions must be managed through your Apple account settings.

11. Notifications

If you enable task reminders, CoNote schedules local notifications containing the relevant CoNote title and task text. If you enable collaboration alerts, local notifications may identify the shared item, participant or comment author, and type of change. CoNote also registers for Apple remote notifications used by CloudKit to signal that synced or shared records changed. These service notifications support synchronization and collaboration and are not marketing messages.

Apple processes notification delivery information, including the app/device token needed to route a CloudKit notification. You can change notification access through system controls.

12. Export and external sharing

When you export a CoNote or board, CoNote creates a PDF or image in temporary local storage and opens Apple's share sheet. The person, app, or service you select receives the exported file and handles it under its own privacy practices. FFDEV does not receive a copy merely because you export it.

13. Support and feedback

Support links open an email app installed on your device. You decide whether to send the email, what to write, and whether to include device details or attachments. If you send it, FFDEV receives the sender address, subject, message, and attachments.

We use support information to answer the request, investigate issues, maintain support records, and protect the service. Your email provider and Microsoft, which hosts the receiving mailbox, also process the message under their own privacy terms. CoNote does not send support messages to an embedded analytics or feedback database.

14. Service providers and disclosure

Apple provides speech recognition, device authentication, on-device Vision and PDFKit frameworks, Spotlight, Siri and Shortcuts, Sign in with Apple, CloudKit storage and collaboration, notification delivery, iCloud device backup, StoreKit purchases, App Store distribution, and system share sheets. People invited to a shared CoNote receive the content, photos, comments, participant details, and edit information in that shared document.

We otherwise disclose information only when needed to provide a feature you choose, respond to your support request, comply with law or valid legal process, or protect users, FFDEV, and the app. We do not sell personal information or share it with data brokers, advertisers, or advertising networks.

15. Retention, deletion, and your choices

Local content remains until you delete it or remove the app. CloudKit records remain until you delete the document or account data, leave a share, or the service is discontinued. Support messages are retained only as long as reasonably necessary to answer requests, maintain business and security records, resolve disputes, or comply with law, then deleted or anonymized where appropriate.

When you sign out, CoNote asks whether to keep independent local copies or remove local content. Keeping copies gives the documents new local identities, removes collaboration information, and stops their iCloud synchronization. Removing local content clears the signed-in library from that device after CoNote confirms recoverable changes have been saved to iCloud. In both cases, cloud access and local account information are disabled.

Delete Account in Cloud Settings deletes CoNote records you own from iCloud, including your private collaboration profile, participant access rules, and owner entitlement metadata; stops shares you created; leaves received shares and removes your access to them; and clears local cloud-account and collaboration information. You can choose to keep independent local copies, which retain content and local organization but remove participants, comments, activity, author marks, and cloud synchronization, or remove the local library and return to first-install content. CoNote refreshes its Spotlight index to reflect the resulting local library. Documents owned by other people remain under those owners' control. The local StoreKit entitlement cache and Apple's account, purchase, security-log, and backup records are handled separately and may remain according to Apple's requirements.

For detailed instructions and alternatives when you cannot access the app, visit Delete your CoNote account and data. We may ask you to verify account ownership and will never ask for your Apple password.

16. Children's privacy

CoNote is not directed to children for the purpose of collecting personal information and does not knowingly collect children's information through advertising or tracking. A parent or guardian should supervise task capture from photos or PDFs, speech capture, system sharing, optional cloud collaboration, purchases, and support email use by a child. Contact us if you believe a child submitted personal information that should be deleted.

17. This website

This static support website does not use advertising cookies, analytics, account login, or embedded forms. It is delivered through Firebase Hosting, which may process network and request information such as IP address, browser or device information, requested URL, and security logs to deliver and protect the site.

18. Changes to this policy

We may update this policy when CoNote, its platform, or its service providers change. Material changes will be reflected on this page, and the effective date identifies the latest revision.

19. Contact

FFDEV Apps is responsible for the app data practices described in this policy. For privacy questions or requests related to CoNote, email fffeedback@outlook.com.