Privacy Policy

Last updated: 12 June 2026

Mindex is a free, local-first desktop app for keeping notes and working with an AI agent over a local Markdown vault, operated by AAV Advisory Services LLC (mkr. Vostok-5, dom 17, kv. 58, Sverdlovskiy rayon, Bishkek, Kyrgyzstan), the data controller. This policy covers both the app and this website (mindex.live). The short version: Mindex is local-first — your notes never touch our servers. You sign in with Google so the app has an account for you, but that account is identity only; it does not store your notes.

1. Account & sign-in

Mindex requires you to sign in with your Google account. Sign-in is handled by Google and by our authentication provider, Supabase. We never see or receive your Google password. After sign-in we store a minimal profile — your email address, name, and avatar URL — to identify your account. That’s all the account is for: your notes are not part of it and stay on your own computer (see §2). You can sign out at any time from the app’s Settings → Account.

2. Your notes & vault

Your notes live as plain files in a folder on your own computer (local-first). Mindex never uploads your vault to us — there is nowhere for it to upload to. Version history and the search index are stored locally alongside your files.

3. AI features

AI features run through your own Claude, via the Claude Code CLI on your machine. When you use them, the note content you choose to include is sent to Anthropic to generate a response — see Anthropic’s privacy policy. Mindex does not proxy or store this content; it goes directly from your device to Anthropic under your own Claude subscription.

4. Voice & dictation

Voice notes and dictation are transcribed locally on your device with whisper.cpp. Your audio never leaves your machine and is not sent to any server.

5. Anonymous usage analytics & crash reporting (app)

To improve Mindex we collect anonymous product-usage and crash data from the app — never the content of your notes. It is tied only to a random install id (no account, no name, no email):

  • Usage analytics via PostHog — which features get used and how often (e.g. opening the Kanban board), plus app version and OS. It never includes note text.
  • Crash reporting via Sentry — errors and stack traces so we can fix bugs.
  • Bug reports — only what you type into the in-app “Report a bug” form (and an optional email if you want a reply), stored via Supabase.

You can turn analytics and crash reporting off any time in Settings → General → Privacy & feedback; the app works exactly the same.

6. This website

The website processes two things, and only on the website (not in the app):

  • Newsletter — if you submit your email, it is stored via Supabase so we can send occasional product updates. We don’t share or sell it, and you can unsubscribe or ask for deletion anytime.
  • Analytics — privacy-friendly product analytics via PostHog, loaded only after you accept cookies. It helps us see which pages and features people care about. No ads, no selling of data; decline and the site works exactly the same.

7. Data deletion & contact

To remove your email from the newsletter, or for any privacy question, contact dvolynov@gmail.com. Your notes are yours — delete the vault folder and they’re gone, locally.

8. Third parties

Anthropic (AI responses, only when you use AI), Supabase (newsletter email + bug reports), PostHog (website & anonymous app analytics), Sentry (app crash reporting), and Paddle (payment processing, only if you subscribe to Advanced). Your use of those features is also subject to their policies.