The short version

Your journal content stays on your iPhone unless you explicitly enable Gemini organization. With that consent, Jot sends only the current transcript, request time, locale and time zone, and relevant board/person labels through Jot's rate-limited gateway so Gemini can propose structure for your review. Jot has no account system or advertising SDK, and it never sends recordings or retained journal history to Gemini. Jot collects a small amount of pseudonymous product-usage and purchase information — fixed event names with no journal content attached — so the app can be improved. Jot does not track you across other companies' apps or websites.

Information stored by Jot

Your journal entries, recordings, transcripts, extracted items, projects, priorities, and insights are stored locally in Jot's app container on your iPhone. They remain under your control. The consented organization request described below passes through Jot’s gateway to Google Gemini.

Limited product analytics

Jot uses PostHog to count a short, fixed list of interactions. Jot supplies only the event name and never attaches journal text, recordings, transcripts, thought text, or project text. PostHog also receives a random install identifier and standard technical context. The complete event list is:

These analytics are pseudonymous at the installation level and are not tied to an account. Jot never calls an identify function and never sends a name, email address, Apple Account, or advertising identifier. The event identifier is a random value stored for this installation; deleting Jot discards it. Automatic interaction capture, screen recording, session replay, surveys, heatmaps, advertising profiles, and person profiles are switched off. Standard technical context can include app version, iOS version, device type, locale, timestamp, network state, and session information.

Subscription measurement

Jot uses RevenueCat in observer mode to validate and measure subscriptions. Apple — not RevenueCat — processes every purchase. RevenueCat receives purchase, renewal, expiration, and restore information for transactions Apple has already completed, associated with a random anonymous app-user identifier rather than a Jot account. StoreKit remains Jot's source of truth for access.

Not used for tracking

Usage and purchase information is associated with pseudonymous installation identifiers. Transcripts may contain names or other identifying details that you include. Jot conservatively declares this data as linked on its App Store privacy label. Jot does not share it with data brokers, use it for advertising, or combine it with data from other companies' apps or websites. Because Jot does no tracking as Apple defines it, Jot does not ask for App Tracking Transparency permission.

Speech and Gemini organization

Jot uses Apple-provided on-device speech technology to transcribe supported speech. If on-device transcription is unavailable, Jot keeps recording your audio but does not silently switch to remote transcription. Gemini organization is separate, requires your explicit opt-in, uses the limited request described above, and never takes external action. The app makes the organization request directly; it does not request an Apple DeviceCheck proof or temporary organizer session. Jot's gateway rate-limits requests using a hashed network key and does not log or retain request or response content after processing. Google processes prompts and responses under the Gemini API terms, including applicable retention and abuse-prevention practices. Jot does not enable API request logging, datasets, grounding or caching. Avoid including sensitive information that is not needed for organization.

Permissions

Subscriptions

Purchases are processed by Apple. Apple provides Jot only the signed transaction and entitlement information needed to unlock Jot Pro. The developer does not receive your full payment details. Apple's own privacy policy governs Apple's processing.

Your controls, backups, and deletion

You can turn Gemini organization off from Profile → Settings; this stops future organization requests and prevents applying an in-flight result. You can also choose Delete all Jot data in Settings to remove local notes, boards and recordings. This does not cancel your Apple subscription. Your local data may be included in your encrypted iPhone backup according to your Apple backup settings. Deleting Jot removes its local app data and install-scoped analytics identifiers unless that data is restored from a device backup. For a privacy or deletion request involving provider records, use the contact below; because Jot has no account, support may need the anonymous provider identifier shown during troubleshooting.

Children's privacy

Jot is intended for adults aged 18 and older. Enabling Gemini organization confirms that you are 18 or older. Jot is not directed to children. If you believe a child has submitted personal information, contact support.

Changes

If this policy changes materially, the effective date above will be updated before the revised policy applies.

Contact

For privacy questions, email sharoz75@gmail.com.