MindDrop

Privacy Policy

Last updated: July 31, 2026

MindDrop is a local-first voice and written capture app. Notes, local Markdown files, retained recordings, transcripts, and generated Note content are stored on your device unless you explicitly save Markdown to a Folder you selected.

OpenAI processing

When you record a voice MindDrop, MindDrop sends the completed audio securely through MindDrop's authenticated service to OpenAI for transcription. MindDrop does not use temporary audio storage. MindDrop does not perform voice transcription on the device.

When you choose Process MindDrop, MindDrop sends your reviewed voice transcript or written text to OpenAI to structure the title, Note body, themes/Markdown tags, and Key insights.

MindDrop asks for combined secure-processing consent before these actions. You can decline or revoke consent in Settings. Declining or revoking consent blocks new processing but does not block access to existing Notes.

MindDrop does not retain audio, transcript text, reviewed input, generated Note content, or model output on its backend. Production processing is enabled only after provider data-retention and infrastructure logging controls are verified.

Access and subscription metadata

MindDrop silently uses available Apple StoreKit app/subscription transactions, App Attest, and DeviceCheck to provide three included MindDrops, verify subscriptions, prevent fraud, enforce allowances, and respond to renewal, refund, and revocation events. When silent account evidence is unavailable, the included-use fallback applies to the current physical device. DeviceCheck's two bits preserve the zero-to-three use count across reinstall on that device; a different device may receive a separate fallback allowance.

MindDrop retains pseudonymous access, entitlement, allowance, operation-status, device-integrity, provider-cost, and App Store notification metadata. It does not retain raw Apple app identifiers; stored subject identifiers and Support codes are non-reversible derivations.

DeviceCheck tokens are sent transiently to Apple and are not stored by MindDrop. Apple retains the two per-device bits used for the included-use count.

Included-use identity is retained for the lifetime of the included-use program unless a verified deletion request is completed. MindDrop also attempts to clear the current device's DeviceCheck bits during in-app service-data deletion. Operational security, cost, operation, notification, and expired entitlement metadata is deleted after it is no longer needed, normally within 90 days.

Local data and Folder access

MindDrop saves final Markdown locally before attempting Folder export. Folder access is optional and uses Apple security-scoped permissions. A failed Folder write leaves the complete Note in MindDrop with retry options.

Existing local Notes remain viewable, editable, deletable, shareable, and exportable after subscription cancellation, expiry, consent revocation, allowance exhaustion, or provider outage.

Retained recording audio is deleted by default only after successful transcription and final local Markdown save.

Service-data requests

You may request access to or deletion of MindDrop's pseudonymous service metadata using the Support code shown in Settings. Deleting the included-use ledger may allow three included MindDrops again if you later return.

You can also delete service metadata directly in Settings. Local Notes are not deleted by this action. Write to minddrop.app.support@gmail.com and include your Support code.

Purchases

Subscriptions are processed by Apple. MindDrop receives verified transaction and subscription status needed to provide access. Apple's own privacy practices govern App Store billing.

Children

MindDrop is not directed at children under 13.

Changes

This policy may be updated as MindDrop changes. Material changes will be reflected in the Last updated date.

Contact

Privacy and support information: https://minddrop.life/support

Privacy policy: https://minddrop.life/privacy