NoteXify logo NoteXify

Public privacy notice for the current Android build

Privacy Policy

This policy describes how NoteXify processes information across sign-in, note editing, AI assistance, cloud sync, PDF handling, premium billing, reminders, and support. It is written to align more closely with Google Play's User Data requirements and public policy expectations.

Effective date: April 17, 2026 Last updated: May 2, 2026 Support: notexify.support@gmail.com

What stays optional

AI assistance, biometrics, reminders, ads, and some sync-related behavior depend on the features you choose to use.

What stays local first

Notes are read from the local database for everyday use, saved PDFs remain in app storage, and exports are written to the device when you request them.

How to delete data

Use in-app deletion, the trash flow, account controls, or the public deletion request form if you cannot access your account.

01

Scope and developer

NoteXify is an Android note-taking application identified in the current project configuration with application ID com.ehp.notesmarterai. This policy applies to the app, the public documentation website, and related support and privacy handling described here.

For Play Console compliance purposes, this notice is intended to work together with in-app disclosures, runtime permission prompts, the Data safety form, and any product text shown at the moment a feature is used.

02

Data we process

NoteXify processes different categories of data depending on which features you use. The table below is intentionally specific so the policy is easier to compare against the actual Android build.

Category Examples Why it is processed Where it may go
Account and sign-in data Email address, Google sign-in information, authentication tokens Account login, session continuity, cloud access Firebase Authentication and related Google sign-in services
Notes and note metadata Note text, protected note fields, categories, priorities, reminders, timestamps Create, edit, organize, sync, restore, and search notes Stored locally first; encrypted note data may sync through Firebase services
AI assistance requests Selected note text that you submit to AI Powered assistance Generate titles, summaries, reminder intent, polished content, and categorization help Processed through NoteXify's server-side AI workflow only when you trigger the feature
PDF files and exports PDFs opened from share targets or device storage, exported note PDFs On-device reading, local library storage, and user-requested export Saved in app storage or device downloads unless you explicitly share a file
Purchases and entitlements Premium status, product identifiers, purchase verification data, limits and quotas Enable premium features and verify billing state Google Play Billing and backend verification services
Ads, anti-abuse, and basic diagnostics Device or other identifiers, ad interaction signals, rewarded ad counters, app version, network state Serve ads to eligible free users, prevent abuse, and support service operations Google AdMob, Google Play Integrity, Firebase and related backend services
Security, reminder, and permission settings PIN configuration, biometric preferences, reminder schedule data, notification permission status Support app lock, reminders, notification delivery, and secure re-entry Primarily stored on device; reminders are delivered through Android system services
Current permission profile: The reviewed Android manifest includes internet, network state, notification, biometric, and reminder-related permissions. It does not request location, contacts, camera, or microphone permissions in the current build.
03

How we use data and when consent matters

We use the data above to operate the app and its optional features. Some flows require your action or a permission prompt before they become active.

  • Sign-in data is used to authenticate the account and connect to cloud-backed services.
  • Note data is used to create, edit, search, organize, restore, and, when applicable, sync your notes.
  • AI assistance is opt-in. Note text is only sent for AI processing when you choose to run the feature.
  • Reminder notifications are optional and depend on your reminder settings and, where required, notification permissions.
  • Biometric unlock is optional. It is used only if you enable a local protection flow that supports it.
  • Ads are limited to eligible free-user experiences and are not based on the readable content of your notes.

If a feature requires runtime permission or an in-app confirmation, NoteXify should request it in context. This policy is not a substitute for an in-app disclosure where Google Play requires one.

04

Sharing and service providers

We use third-party providers for limited, defined functions. Providers process data according to their own terms and privacy materials in addition to this policy.

  • Firebase Authentication for email/password sign-in, Google sign-in, and session handling.
  • Firebase Firestore and Firebase Functions for cloud sync, entitlement handling, backend operations, and server-side AI routing.
  • Google Play Billing for premium purchase processing and entitlement verification.
  • Google AdMob for ad delivery in eligible free-user flows.
  • Google Play Integrity for anti-abuse and app integrity checks.
  • AI service providers used through NoteXify's server-side workflow for the AI Powered assistance feature when you trigger it.
Important: NoteXify does not use the readable content of your notes for ad targeting. Ads and rewarded flows are controlled separately from note content.
05

Security and user controls

NoteXify uses technical and organizational measures intended to reduce unnecessary exposure of sensitive note data.

  • Protected note fields use application-layer encryption based on AES-256-GCM before they are prepared for sync.
  • Key-wrapping and local security features are used to support protected note access and secure re-entry.
  • Optional PIN and biometric controls can add a local access layer on top of encrypted note storage.
  • Saved PDFs are kept in local app storage unless you export or share them yourself.
  • Notes can be exported as PDFs to the device downloads folder when you choose that action.

No security measure can guarantee absolute safety in every environment. You should still keep your device, operating system, and account credentials secure.

06

Retention, deletion, and your choices

Retention depends on the type of data and the feature you use. We aim to keep the policy specific enough to be operational, not vague.

  • Deleted notes move to Trash first and may be permanently removed after 30 days.
  • Saved PDFs remain in local storage until you remove them.
  • Account-linked cloud data may remain for technical, contractual, fraud-prevention, legal, or recovery reasons where applicable.
  • You may be able to delete account-linked data inside the app depending on the feature and account state.
  • If you cannot access your account, use the public deletion form: Data Deletion Request Form.
Your choices include: avoiding optional AI assistance, declining notification permissions, not enabling biometrics, using local-only guest flows where available, and contacting support for privacy questions or deletion follow-up.
07

Children's privacy

NoteXify is not directed to children under 13, or under the minimum digital age that applies in the user's jurisdiction, unless and until the product and its provider stack are specifically updated for that audience.

We do not knowingly collect personal data from children in a way that would require child-directed treatment under Google Play Families policies, COPPA, or similar laws for this current app experience. If you believe a child has provided personal data through NoteXify, contact us and we will investigate and take appropriate action, which may include deletion or restriction where required.

If NoteXify is later offered to an audience that includes children, the target-audience settings, provider configuration, ad treatment, and this privacy notice should all be updated before that release.

08

Changes and contact

We may update this policy when the product, provider stack, legal requirements, or data handling practices change. The latest version should remain available at a public, non-editable web URL.

You should also keep your Play Console Data safety section, target audience declarations, and in-app disclosures aligned with the behaviors described in this notice.