Privacy Policy
Short version: 7note encrypts your vault on your device. There is no 7note developer account, analytics SDK, or advertising network. Optional iCloud sync (off by default) uploads ciphertext to your Private Database. If you lose both your passphrase and recovery key, nobody—including the developer—can restore your vault.
Summary
- Vault contents are sealed on device before storage or optional sync.
- No sale of personal data; no third-party analytics or ads in the app.
- Optional CloudKit sync stores sealed blobs in your iCloud Private Database only.
- Support cannot reset a forgotten passphrase or recover vault contents.
What 7note stores on your device
When you create a vault, 7note stores:
- An encrypted vault database (note titles, bodies, logins, and related fields sealed in AES-GCM envelopes).
- Key material wrapped in the system Keychain (and related unlock metadata).
- App preferences that live with the vault metadata (for example sync on/off, autolock timing).
Passwords and other secrets are not kept as plaintext at rest in the app container. The Password AutoFill extension reads the same sealed vault through an App Group; it does not maintain a separate plaintext password store.
Optional iCloud sync
Sync is off by default. If you enable “Sync via iCloud”:
- 7note uploads sealed blobs and wrapped key material to CloudKit container
iCloud.com.peterchen.7notein your Private database. - Apple’s infrastructure may process sync metadata (for example record IDs, sizes, timestamps) under Apple’s privacy terms. Sealed note contents are not readable by the developer.
- Turning sync off stops further uploads; previously synced ciphertext may remain in your iCloud data until you delete it through Apple’s iCloud management tools or wipe the vault as described below.
What we do not collect
The developer does not operate a backend that collects:
- Analytics or crash telemetry from third-party SDKs
- Advertising identifiers or cross-app tracking
- Contact information for a “7note cloud account” (there is none)
- Your passphrase or recovery key
We do not sell your personal data.
CSV import
You may import logins from a CSV file you choose. CSV files are plaintext on disk. 7note processes them locally and does not upload the CSV as a CSV to a developer server. Delete the source CSV after import if it contains secrets. 7note does not offer plaintext CSV export of secrets (encrypted backup only).
AutoFill
On iOS and Mac, when you enable 7note under system AutoFill / Passwords settings, the Credential Provider extension can offer matching logins after the vault is unlocked. Unlock still requires biometrics, device passcode, passphrase, or recovery key according to your settings. AutoFill does not bypass recovery-key protection.
No server-side reset
There is no email or support reset for a forgotten passphrase. Support cannot recover vault contents. Keep your recovery key offline when you create the vault.
How to wipe data
- Delete the vault in Settings (if available) and/or delete the app to remove local ciphertext and Keychain items associated with the app.
- If you used iCloud sync, also remove related data from iCloud as managed by Apple after wiping the local vault, if you want cloud copies removed.
Children’s privacy
7note is a general productivity / secrets vault and is not directed at children. Do not store others’ sensitive data without a lawful basis and consent where required.
Changes
We may update this policy when the product’s data practices change. The effective date above will be revised accordingly. Continued use after an update means you acknowledge the revised policy.
Contact
For privacy questions about 7note (product support ≠ key recovery), contact Peter Chen at C18054796582@gmail.com.
Important: Contacting support cannot restore a vault if the passphrase and recovery key are both lost.