Privacy Policy
Last updated: August 8, 2026
Pocket Notes ("Pocket Notes", "we", "us") is a meeting-notes application that records meetings and produces transcripts, summaries, decisions, and action items. This policy explains what we collect, how we use it, and the choices you have. Questions? Email john@johnhass.com.
Information we collect
- Account information — your name, email address, and password (stored hashed).
- Meeting content — audio you record, the resulting transcripts, and the summaries, decisions, action items, and people/speaker labels generated from them.
- Workspace data — the workspaces you create or are invited to, and their members.
- Connected-account tokens — if you connect Microsoft or Google, we store access and refresh tokens (encrypted) so we can create tasks on your behalf.
How we use information
- To provide the service: record, transcribe, summarize, and organize your meetings.
- To recognize speakers you have named across your own meetings.
- To create tasks in your connected Microsoft To Do or Google Tasks account when you explicitly choose to send an action item.
- To secure the service and provide support.
We do not sell your personal information, and we do not use your meeting content or connected-account data to serve advertising.
Service providers
We share data with a small number of processors solely to provide the service:
- AssemblyAI — audio is sent to AssemblyAI to produce transcripts.
- Anthropic (Claude) — transcripts are sent to Anthropic to generate summaries, decisions, and action items.
- Microsoft & Google — when you send an action item, its text is sent to Microsoft To Do or Google Tasks via their APIs to create the task.
- Hosting — our servers are operated on Akamai/Linode infrastructure.
Use of Google user data
Pocket Notes' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
When you connect Google, Pocket Notes requests the Google Tasks scope (https://www.googleapis.com/auth/tasks) and your email address. We use this access only to create tasks in a "PocketNotes" list in your Google Tasks when you explicitly send an action item, and to show which account is connected. We do not read your other tasks, we do not transfer this data to third parties except as needed to provide the feature, we do not use it for advertising, and we do not allow humans to read it except with your consent, for security or legal reasons, or where required to operate the feature. You can disconnect at any time in Settings, which deletes the stored Google tokens.
Use of Microsoft account data
When you connect Microsoft, Pocket Notes requests permission to read and write your Microsoft To Do tasks. We use it only to create tasks you explicitly send, in the same limited way described above. You can disconnect at any time in Settings, which deletes the stored Microsoft tokens.
Data retention
We keep your meetings and generated notes until you delete them or close your account. Connected-account tokens are kept until you disconnect. You can delete meetings and disconnect integrations from within the app; to delete your account and associated data, contact us.
Security
Data is transmitted over HTTPS. Passwords are hashed and connected-account tokens are encrypted at rest. No method of transmission or storage is completely secure, but we take reasonable measures to protect your data.
Your choices
- Delete individual meetings at any time.
- Connect or disconnect Microsoft and Google integrations at any time in Settings.
- Request access to or deletion of your account data by emailing us.
Children
Pocket Notes is not directed to children under 13 and we do not knowingly collect their data.
Changes
We may update this policy; material changes will be reflected by the "Last updated" date above.
Contact
Pocket Notes — john@johnhass.com
Pocket Notes