Cuenora beta privacy information
The aim is simple: collect as little as possible, keep Brain Dump local, and make cloud reminders work without the reminder service needing to read their private text.
What stays on this device
Brain Dump text, tasks, Memory Inbox items that do not have a cloud reminder, settings, and the readable copy of reminder text are stored in this browser on this device. Cuenora does not need to upload ordinary Brain Dump text just to recognise simple local cues such as a time or shopping phrase.
What reliable reminders send
When you choose to enable reliable closed-app reminders, Cuenora sends the minimum scheduling information needed to deliver them: a device identifier, push-subscription information, reminder time, recurrence, timezone, reminder status and related delivery metadata.
The private reminder text is encrypted on your device with AES-GCM before cloud sync. The reminder service stores and forwards ciphertext rather than the readable reminder words. The encryption key is kept in browser storage on this device and is not uploaded with the reminder.
What is not hidden from the reminder service
Content encryption does not hide the fact that a reminder exists or the time, recurrence, timezone, device identifier and technical push metadata needed to schedule and deliver it. Cuenora therefore describes this specifically as encrypted reminder text rather than claiming that all reminder metadata is invisible.
If the encryption key is unavailable
Cuenora prioritises reminder reliability. If the device cannot access its local reminder-content key, the due notification should still arrive with the generic message “Private reminder — open Cuenora to view” rather than silently failing.
Cloud retention
Active future and recurring reminders are kept while they are needed for delivery. Finished or deleted cloud reminder records are removed after 30 days. One-time reminders that were delivered but remain in a waiting state are removed after 90 days. Disabled push-subscription records are removed after 30 days. Structured beta-feedback records are removed after 180 days. You can delete this device’s cloud reminder data sooner from Settings.
Beta feedback
The beta feedback endpoint is intentionally limited to structured choices such as whether the opening was understood, how busy it felt, return intent, friction category, device category and recruitment source. It is designed not to collect names, email addresses, diagnoses, medical details, task contents, reminder contents or free-text notes. These structured beta records are retained for up to 180 days so the beta can be evaluated, then deleted.
Your controls
You can keep Cuenora local-only by not enabling reliable reminders. You can export and restore your local Cuenora data. In Settings, “Delete cloud reminder data” deletes this device’s reminder-service record and associated cloud reminders and push registration while leaving local Cuenora content on the device.
Security and legal status of this beta
Cuenora is an early beta, not a medical or diagnostic service. Security measures are being developed using privacy-by-design and data-minimisation principles. A full production privacy notice must include the final data-controller identity/contact route, confirmed lawful-basis wording and processor details before general public release. Beta users should use the contact route through which they received access for privacy questions and should not post personal information in public issue trackers.