Privacy
Last updated September 21, 2026
Who is responsible
Filed (filednotes.com) is the controller for the personal data described on this page. Operator: Alexander Nordin Davidsson (sole trader), Sweden.
- General and support questions: support@filednotes.com
- Privacy questions and data-subject requests: privacy@filednotes.com
The short version
Your notes are stored as plain markdown files in your own vault. We don't sell data, we don't run ads, and you can export or permanently delete everything yourself, at any time. The rest of this page explains exactly what is stored where and who processes what.
What we store
- Your account: email address and a hashed password. Sign-in creates a necessary session cookie; we do not use advertising or cross-site tracking cookies.
- Your notes: your daily journal and every filed note live as markdown files in a private vault, plus a search index and file metadata so the librarian can work. Every edit keeps recent prior versions (30 for subscribers, 3 otherwise).
- Usage counters: dates and volumes (questions, voice minutes, filing runs) used to enforce plan limits. These record amounts, not content.
- Billing: handled by Stripe. We store your plan and Stripe customer id; card numbers never touch our servers.
Website performance analytics
We use Cloudflare Web Analytics and Real User Measurements to understand page views and whether Filed loads quickly and reliably. Cloudflare's beacon reads temporary browser performance measurements, does not use cookies or browser storage, and does not store visitors' IP addresses in its analytics databases. We use this information to improve the app, not to build advertising profiles.
AI processing
Filed's whole job is a librarian that files and answers from your notes, so your journal text and questions are sent to the AI providers that power this:
- Cloudflare — hosts the app, the vault storage, and the database.
- OpenRouter and its upstream model providers — nightly filing and Ask answers.
- xAI — the primary service for turning dictation into text.
- OpenAI and DeepInfra — fallback transcription services if the primary service is unavailable or does not support the selected language. Audio sent for transcription is not kept by Filed; only the transcript you review lands in your journal.
- Resend — sends account verification and password-reset emails. It receives the destination address and the transactional email content, never your notes.
Send only what you're comfortable having processed by these services. We don't use your notes to train anything, and we don't share them with anyone else.
Getting your data out — or gone
- Import: Settings → Import brings an existing markdown vault (Obsidian and friends) in — and it stays plain markdown.
- Export: Settings → Export vault downloads your entire vault as a zip of markdown files, on any plan, any day.
- Delete account: Settings → Delete account removes your vault (including versions), search index, and account records. This is immediate and irreversible — export first if you want to keep anything.
Retention
Notes and versions live until you delete them. Deleted notes move to a trash folder and are purged after 30 days. Deleting your account erases the vault and index. Sessions and verification records are kept until they expire. Minimal billing records (plan, Stripe ids, invoice status — no note content) are kept for seven years, as accounting law requires.
Your rights (GDPR)
If you are in the EU/EEA (or anywhere similar rights apply), you can, free of charge:
- get a copy of your data (export in Settings does this yourself; we'll help on request),
- ask us to correct it,
- ask us to erase it (Settings → Delete account; legal duties such as accounting records are the exception),
- object to or restrict processing, or withdraw a consent at any time,
- lodge a complaint with your data-protection authority — in Sweden that is IMY; each EU country has an equivalent.
Legal bases, briefly: providing the app you signed up for (contract); keeping the service secure and understanding page performance (legitimate interest); sending transactional email (contract). We don't profile you or make automated decisions about you.
Where a provider processes data outside the EU/EEA — primarily the United States — we rely on the EU–US Data Privacy Framework where the provider is certified, and contractual safeguards otherwise. Each provider above is engaged under a data-processing agreement and handles data only on our instructions. The current list of processors and sub-processors is available from privacy@filednotes.com.
Contact
Questions or requests: support@filednotes.com (privacy matters: privacy@filednotes.com).