Personal OS

Privacy Policy

Last updated September 22, 2026

This policy explains what Personal OS (“we”, “the service”) collects, why, who else processes it, and the choices you have. Personal OS is operated by Personal OS.

The short version

  • We collect what you put into Personal OS so it can organise it and answer you.
  • Your content is sent to Anthropic for AI processing and stored in Google Cloud (Firebase).
  • We don’t sell your data, show ads, or use advertising trackers.
  • You can export everything or delete your account at any time from Settings.

What we collect

Account information

When you sign in with Google or Apple we receive the account identifier and profile information you authorize, such as your name and email address. Apple may supply a private relay email address. We record when you accepted these terms and, during the beta, invite and waitlist status.

Content you provide

Text, voice transcriptions, photos, videos, audio, files and links you capture; your conversations with the assistant; reminders, routines and settings; and anything the assistant derives from them, such as topics, summaries and memory notes. For links you save, our server fetches the page to summarise it.

Connected services (only if you connect them)

If you connect Google Calendar, Gmail, Google Drive or Google Health, GitHub, Linear, Telegram or WhatsApp, we access the data needed for the features you use, such as calendar events or messages you send to the Personal OS bot. We store the access tokens for these services encrypted. You can disconnect any service in Settings.

Usage and technical data

Request logs (time, route, status, errors), AI usage counts and costs per account for rate limits, device push-notification tokens, your time zone, and optional location or presence information if you enable those features. We may use privacy-safe product analytics that record pseudonymous usage metadata, such as which feature was used and whether it succeeded, and never the content of your captures or messages.

Your own API key

If you add an Anthropic API key, we store it encrypted and use it only to make requests for your account.

Native mobile features

When you choose dictation, your device speech service processes microphone audio. iOS prefers on-device recognition when supported; otherwise Apple may process audio. Android uses your installed speech provider, which may process audio on its servers. Personal OS receives the transcription, not the dictation audio. Text drafts and items shared into the mobile app are stored locally until you choose to send them. Photos upload to Firebase when selected. Notifications use Firebase and, on iOS, Apple Push Notification service. You can decline these permissions and still type. Sign-out clears this account’s text draft and pending shared items on that device; copies you export or share outside the app are controlled by you.

How we use it

  • To provide the service: store, organise, search and answer questions about your content; send reminders; perform actions you request or approve.
  • To keep it working and safe: rate limits, abuse prevention, debugging and security.
  • To contact you about your account, the beta, or changes to these policies.

We don’t use your content for advertising, sell it, or share it for others’ marketing. We don’t read your content except when needed to fix a problem you report, investigate abuse or security issues, or comply with the law.

Who processes your data

  • Anthropic — AI processing of your captures, questions and relevant context. Under Anthropic’s commercial API terms your content is not used to train its models by default; Anthropic may keep inputs and outputs for a limited period for safety and abuse monitoring. See Anthropic’s privacy policy.
  • Google Cloud / Firebase — hosting, sign-in, database, file storage and push notifications.
  • Web search providers (Anthropic, Tavily or Brave) — receive search queries when the assistant searches the web for you, not your saved content.
  • Services you connect — Google, GitHub, Linear, Telegram and WhatsApp exchange data with Personal OS under your instructions and their own policies.
  • Websites you link to — see a request from our server when a saved link is summarised.

We may disclose information if required by law, or to protect the rights and safety of users or the service.

Google user data

Personal OS’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google data is used only to provide the features you enable. It is not used for advertising, not sold, and not used to develop, improve or train generalised AI or machine-learning models. It is sent to Anthropic only as needed to answer your requests.

Storage and security

Data is stored in Google Cloud and may be processed in the United States and other countries where our providers operate. Connections use TLS, and stored data is encrypted at rest. API keys and connected-account tokens are additionally encrypted with AES-256-GCM. Access rules limit each account to its own data. Personal OS is not end-to-end encrypted: our server and the AI provider must read your content to process it. No system is perfectly secure; tell us if you find a vulnerability.

Retention and deletion

We keep your content until you delete it or delete your account. Deleting your account (Settings → Delete account) immediately removes your captures, files, conversations, memory, reminders, routines, connections and device tokens, revokes tokens we hold for connected services, and deletes your sign-in account. Copies held by providers, such as Anthropic’s limited safety retention and Google Cloud’s internal replication, expire on their own schedules. We keep a minimal record that a deletion happened, without your content. See how to delete your account, including if you can’t sign in.

Your choices and rights

  • Access and export: Settings → Export my data downloads your data as JSON.
  • Correction: edit or delete any capture, and review what the assistant believes about you in Settings.
  • Deletion: delete individual items or your whole account.
  • Disconnect: remove connected services and devices in Settings.
  • Notifications: turn push notifications off in the app or your device settings.

Depending on where you live, such as the EU, UK, Canada or California, you may have additional rights, including to object to processing or to complain to a data protection authority. Contact us to exercise any right. We respond within 30 days.

Cookies and local storage

We use one essential sign-in cookie, and browser storage for preferences and offline use. No advertising or cross-site tracking cookies.

Children

Personal OS is not for anyone under 18. We don’t knowingly collect data from children; contact us and we’ll delete it.

Changes

We’ll post changes here and update the date above. For material changes we’ll notify you in the app or by email before they take effect.

Contact

Personal OS