1. The short version
NoteFun is a handwriting notebook for iPad. Your notebooks, pages and strokes are stored on your iPad, and in your own iCloud if you turn on iCloud backup. There is no account or sign-in. The app uses Mixpanel for limited product analytics, Meta App Events for app measurement and attribution, and RevenueCat to check subscriptions. We do not sell your information. Notebook content is not sent to the analytics SDKs.
Ask and Tutor presence send the selected page content to the NoteFun tutor service so a reply can be produced, and NoteFun writes that reply back onto your page. A page image or selected PDF text may contain personal information, such as a name written in a notebook. The request passes through Supabase and OpenRouter to a model provider. The request does not set a no-training or zero-data-retention option. OpenRouter's and the selected model provider's policies and terms determine retention and training, which NoteFun does not control.
Plain-language summary. Notebooks are stored on your iPad, and in your own iCloud if you turn on backup. No account is required. An Ask sends the selected page image and any included PDF text through Supabase and OpenRouter to a model provider. The app does not set a no-training or zero-data-retention option, so provider policies determine retention and training. Mixpanel and Meta receive limited app events when usage-data sharing is on. Apple handles billing, and RevenueCat checks subscription status.
2. Who we are
NoteFun is an independent app developed and published by an individual developer. In this policy, "NoteFun", "we" and "us" mean that developer. You can reach us at any time at adk0110112@gmail.com.
3. Where your notes are stored
Everything you create in NoteFun, including notebooks, covers, page templates, handwriting strokes, text boxes, sticky notes, inserted images, audio recordings, tutor replies, favourites, and in-app trash contents, is written to the app's private storage on your iPad. If you turn on iCloud backup, a copy of that notebook data is also kept in your own iCloud.
- We do not operate an account system or a user database. When iCloud backup is on, Apple stores the backed-up notebook data under your own iCloud settings, not on a server of ours.
- We cannot browse, retrieve or restore your notebooks, with or without iCloud backup. Ask and Tutor presence are separate request flows described below.
- If your iPad is included in an iCloud or encrypted local backup, your NoteFun data may be part of that backup. That backup is governed by Apple's terms and your device settings, not by us.
- Files you deliberately export (a page as PNG or PDF) or share leave the app under your control, and what happens to them afterwards is governed by wherever you send them.
4. What happens when AI is used
Ask and Tutor presence send the page image and any selected PDF text to the NoteFun relay on Supabase. The relay forwards the request to OpenRouter, which routes it to the selected model provider.
What is sent
- An image of the page you ask about, including visible handwriting, drawings, and other page content in that snapshot.
- Any selected PDF text included with a PDF question.
- The request parameters needed to produce a reply, such as the selected model identifier and the instruction text that tells the model to answer as a handwriting tutor.
- An App Attest device token or proof used by the NoteFun relay to verify the app request. It is not an account or sign-in identity.
Where it is sent
The request first goes to the NoteFun relay on Supabase. The relay forwards it to OpenRouter (openrouter.ai), which routes it to the model provider that serves the selected model. NoteFun does not set a no-training or zero-data-retention option on this request. OpenRouter's and the model provider's handling, including retention and training, is governed by their own privacy policies and terms. We encourage you to read them before using AI features with sensitive material.
What is not sent
- Other pages, other notebooks, or anything outside the page context and selected PDF text for that request.
- We do not separately request your name, email address, contacts, photos library, location, or account identity. If personal information or photos appear in the page image or selected PDF text, they can be included in the request.
- Audio recordings you make in a notebook. They stay on the device.
Your control
- Ask sends a request when you use it. Tutor presence can send a request after its enabled pause trigger. There is no pre-fetching.
- AI can be turned off for a notebook, which prevents Ask and Tutor presence requests from that notebook.
- Because the page image and selected PDF text can be sent, please avoid including personal, confidential, or sensitive information unless you want it processed for the answer.
Third-party processing. The Supabase relay handles the request and forwards it to OpenRouter. OpenRouter and the model provider process the page image, selected PDF text, and prompt on their systems, which may be in a different country from yours. NoteFun does not enforce no-training or zero-data-retention handling for those services, and does not control how long they retain a request.
GIF search
When you search for GIFs in Elements, the words you type are sent to KLIPY (klipy.com) so it can return matching GIFs. Nothing else is sent: no notebook content, no page images, no account or device identifiers beyond what any web request carries. KLIPY's handling of search terms is governed by its own privacy policy. GIFs you insert are stored inside your notebook on your device.
5. Analytics, attribution, and what we do not collect
When Share anonymous usage data is enabled, the app sends a limited set of app events directly to Mixpanel and Meta for product analytics and app measurement or attribution. The setting is on by default and can be turned off in Settings under Usage data. The events use allowlisted categories, counts, and yes-or-no values, and use app-generated identifiers described below. Notebook pages, handwriting, drawings, PDF text, prompts, and tutor replies are not sent to these analytics SDKs.
- Mixpanel: receives app events such as app opens, feature use, Ask activity, imports, exports, and purchase steps. The app disables Mixpanel automatic event tracking and IP-based geolocation. Mixpanel uses a pseudonymous app identifier. When usage-data sharing is enabled, NoteFun can link it to the RevenueCat app-user identifier for purchase analytics.
- Meta App Events: receives app activation and allowlisted app events for measurement and attribution while usage-data sharing is enabled. Meta advertiser ID collection is enabled only when the usage-data setting is on and you authorize tracking through Apple's App Tracking Transparency (ATT) prompt.
- RevenueCat: processes the app-user identifier and App Store transaction and subscription information so NoteFun can check whether Pro is active. When usage-data sharing is enabled, the app can also send RevenueCat the Mixpanel identifier, Meta's app anonymous ID, and an Apple AdServices attribution token. The IDFA is sent only when usage-data sharing is on and ATT is authorized. If a RevenueCat integration is configured, RevenueCat can forward subscription events to Mixpanel or Meta from its servers.
Turning off usage-data sharing stops future app-originated Mixpanel and Meta events and disables advertiser ID collection by NoteFun. It does not change any server-side integration configured in RevenueCat. RevenueCat continues to process subscription status so the app can provide purchases and restore access. Data already received by a provider is subject to that provider's retention policies.
- No accounts. No sign-up, no email capture, no passwords, no profiles.
- No notebook content in analytics. The analytics and attribution events described above do not include notebook pages, handwriting, PDF text, or tutor replies.
- No data sale. We do not sell your personal information. Limited app events and attribution data are disclosed to the services named above for the purposes described in this policy.
- No profiling. We do not build profiles of you and do not carry out automated decision-making that produces legal or similarly significant effects.
6. Information Apple may provide
If you download NoteFun from the App Store, Apple may make aggregate, anonymised information available to us, for example the number of downloads, territories, crash traces, and any rating or review you choose to write publicly. This information comes from Apple, is aggregated or anonymised, and is not something we can use to identify you. Apple's own collection is governed by Apple's Privacy Policy.
If you subscribe to NoteFun Pro, payment is handled by Apple and NoteFun does not receive your card details. The RevenueCat SDK checks whether a subscription is currently active so the app can unlock Pro features; RevenueCat receives an app-user identifier and transaction and subscription information for this purpose. When usage-data sharing is enabled, the attribution identifiers described in section 5 may also be sent to RevenueCat. Apple's and RevenueCat's handling of that information is governed by their own privacy policies.
7. Why we process this data
We process the page image, selected PDF text, and prompt described in section 4 to generate the answer requested through Ask or Tutor presence and write it back onto your page. Where the UK/EU General Data Protection Regulation applies, our legal basis is the performance of a contract with you and your explicit request to use the AI feature. We do not process your content for a secondary purpose.
8. Retention
- On your iPad: your notes are kept until you delete them. Pages you delete go to the in-app trash and are removed permanently when you empty it or delete the notebook.
- In your iCloud: if iCloud backup is on, the backup is kept until you delete it or turn backup off in your iCloud settings.
- On the NoteFun relay: the relay receives a request to forward it. Operational retention follows the relay configuration.
- At OpenRouter and the model provider: the app does not set a no-training or zero-data-retention option. Retention and training of a request are determined by their policies and terms.
- At Mixpanel, Meta, and RevenueCat: app events, attribution identifiers, and subscription information are retained under each provider's policies and settings.
9. Your choices and rights
Your notebooks live on your own iPad and iCloud. We do not hold a notebook account or a copy of your pages, but the third-party services described in this policy receive limited app-event, attribution, or subscription data.
- Access and portability: open any page and export it as a PNG or PDF.
- Erasure: delete a page, a notebook, or the app itself. Deleting NoteFun removes its stored notebooks from your iPad. If iCloud backup is on, remove the NoteFun data from your iCloud settings as well.
- Restriction: turn AI off for a notebook to prevent Ask and Tutor presence requests from that notebook.
Depending on where you live, you may also have statutory rights to access, correct, delete, restrict or object to the processing of personal data, to withdraw consent, to data portability, and to lodge a complaint with your local supervisory authority. If you believe we hold personal data about you, write to adk0110112@gmail.com and we will respond within the period required by applicable law. We will not discriminate against you for exercising any of these rights.
10. Children
NoteFun is a general-audience study tool. It is not directed to children under 13 (or the equivalent minimum age in your jurisdiction). The app has no account creation, but it includes limited analytics and attribution through Mixpanel and Meta when usage-data sharing is enabled, and subscription processing through RevenueCat. A child can write or import personal information on a notebook page. When Ask or Tutor presence is used, the selected page image and any included PDF text are sent through the NoteFun tutor service, Supabase and OpenRouter to a model provider. That content may include a child's name or other personal information.
A parent, guardian or teacher should supervise a younger student's use of Ask and review what is visible in the page image or selected PDF text before the request is sent. The app does not set a no-training or zero-data-retention option for Ask; provider retention and training practices are governed by their own policies and terms. If you believe a child has sent personal information through the app, contact adk0110112@gmail.com and we will assist with steps available to us.
11. Security
NoteFun data is stored in the app's sandboxed container on your iPad and is protected by iOS file-level protections and by the passcode, Face ID or Touch ID you have set on the device. Requests to the AI provider are made over an encrypted HTTPS connection. No method of storage or transmission is perfectly secure, and we cannot guarantee absolute security. Keeping a device passcode enabled is the single most effective protection for your notes.
12. International transfers
If you use Ask or Tutor presence, the selected page content is sent to the NoteFun tutor service and on to the model provider that produces the reply. The analytics, attribution, and subscription services named in this policy may also process their respective data outside your country, including in the United States. Their infrastructure and transfers are governed by their own safeguards and policies. If you would prefer no AI request to take place, turn AI off for the notebook.
13. This website
This site is a static marketing site. It sets no cookies, runs no analytics and embeds no tracking pixels or social widgets. It loads a web font from Google Fonts, which means your browser makes a request to fonts.googleapis.com and fonts.gstatic.com; that request is handled under Google's policies. Our hosting provider may keep standard server logs (such as IP address and request time) for security and reliability, as any web host does.
14. Changes to this policy
If this policy changes, we will update the effective date at the top of the page and, where the change is material, note it in the app's release notes. Continuing to use NoteFun after a change means you accept the updated policy.
15. Contact
Questions, requests or concerns about privacy, including any request to exercise your rights, can be sent to adk0110112@gmail.com. We read every message.