Privacy explanation
Updated: October 7, 2026
Website and demo
This site has no account registration, work-content entry or audio recording. The demo uses predefined fictional data and makes no model requests. Language and appearance preferences are saved in your browser and reset when site data is cleared.
Visits, analytics and email
This site is hosted on Cloudflare Pages. Cloudflare processes request information such as IP addresses to deliver content and protect its network; its processing and retention follow the applicable Cloudflare policies. The site uses Cloudflare Web Analytics to understand visits and page performance: your browser loads a Cloudflare analytics script and sends the page visited, referring page, browser and device type, approximate region and load timing. It does not use cookies or browser storage to identify visitors, provides only aggregated data, and is not used for advertising or cross-site tracking. Blocking the script does not affect your use of the site. Email requests use your mail app. Once sent, the recipient and email providers process the message. Do not send real client records, recordings, API keys or passwords in requests or feedback.
Read Cloudflare’s privacy policy ↗
Beta requests and update emails
If registration is unavailable, request beta access through our support email. This website does not store your email address; your mail app and the recipient process the message. A beta request does not subscribe you to ongoing updates.
Beta registration uses a Feishu-hosted form. Your email, language and update choice are stored in a private Base. MeritMemo manages confirmation, invitation, delivery and suppression records. We verify a reply from your registered address before confirming the request. Important updates go only to people who opt in. This website does not store email addresses or send your work notes or audio to Feishu.
Use the unsubscribe link in our emails to send a stop request to support. We process it and retain suppression records to prevent further sends. This is handled manually, not an instant one-click unsubscribe. Contact support to access, correct or delete your information or change preferences. Unsubscribing does not automatically stop TestFlight testing.
You can request beta access without subscribing to updates. Do not submit client details or work content. Other submitters cannot view your registration. To withdraw a request or request deletion, contact [email protected]. We retain information as needed to process requests, provide chosen updates and record opt-outs. Deletion requests are reviewed manually; minimal suppression records are retained to prevent further emails.
Feishu privacy policy ↗Local app records
The app stores work records locally, with no iCloud record sync enabled. With cloud speech enhancement off, audio is processed on-device; offline Whisper requires a model download. When cloud speech is enabled and authorized, audio and vocabulary hints are sent to the HTTPS address listed in the consent screen, using a Doubao or OpenAI speech interface, including a compatible service you configure. Charges may apply. Audio upload and text structuring have separate, revocable consent. Provider retention and processing follow their policies and your account terms. Device backups and exports depend on system and destination settings.
Manual region selection does not make a region lookup request. When automatic mode makes a network-exit lookup request, that service receives network request information, including your IP address, but no audio or work records. Your current location is used only after you enable location and grant system permission; Apple services process the location for reverse geocoding. You can disable location or select a region manually. If region detection fails, the app attempts local transcription and never bypasses upload consent.
Text questions and history
Text questions are answered on-device. MeritMemo does not send your question or related records for this text query. Local search is used when the on-device model is unavailable. System dictation and third-party keyboards follow system settings and provider rules. Recent questions store local snapshots of questions and previous answers in protected files, up to 50 entries, excluding original audio, system backups, work-record backups and exports. Delete one or clear all without deleting work records. Deleting a source record removes question history referencing it; the app asks you to retry if file cleanup fails. Corrections are stored separately and original text is preserved. Only names you explicitly confirm are added to vocabulary; vocabulary may be sent with audio after you authorize cloud speech.
Optional third-party AI
After you configure and authorize third-party AI, the original note, reference date and time zone are sent to the provider and HTTPS address you confirm to structure fields. Audio and your entire memory library are not sent. Notes may contain client names and other personal information. The provider receives your API key and network request information; calls may incur charges under your account terms. Verify retention and processing policies before use, including with the actual operator of any custom or compatible service. Device-only structuring or revoking consent stops new requests of this type and cannot recall content already sent. API keys remain in local Keychain and are excluded from record exports. A connection test sends only the test text ping and your key, not work records.
Export, deletion and contact
To move devices, use a full backup containing saved records and locally available audio. JSON exports exclude audio. Audio is kept by default; you may keep only the last 30 days or remove audio while retaining text. Delete All Data clears local records, audio, vocabulary, question history, phone drafts, and pending Watch data on the phone; it revokes cloud consent and removes API keys saved by this app. Failed or interrupted cleanup can be retried. Local deletion does not remove exports, system backups, copies on other devices, or copies held by providers. Offline models are managed separately. Contact us through the support page with questions.