Legal
Jade Note Privacy Policy
Effective date: September 12, 2026
This Privacy Policy explains how Unrealm LLC ("Jade Note," "we," "us," or "our") collects, uses, discloses, and protects personal information when you use Jade Note.
Jade Note is an AI-powered note-taking service available as a web application, as iOS and Android mobile apps, and through the Jade Note Web Clipper Chrome extension. It lets users create notes, organize them by category, search and review their notes, connect compatible external AI tools through MCP, configure triggers and reminders, and manage paid Pro features. The in-app interactive Chat feature has been discontinued. We continue to retain previously created Chat data so you can view Chat history through September 30, 2026, and as otherwise described in this Privacy Policy.
1. Personal Information We Collect
We collect personal information from you, from your use of Jade Note, and from service providers that support the service.
Account and Authentication Information
When you create or use an account, we may collect:
- Firebase user ID and authentication information;
- email address, including a private relay email address if you use Sign in with Apple and choose Hide My Email;
- display name or other profile information provided by Google or Apple when you use those sign-in methods;
- account creation date and last login information;
- nickname, profile text, preferred language, timezone, theme, and other profile or preference settings;
- onboarding choices, such as preferred AI services, note apps, and use cases;
- service preferences, such as UI locale and AI model or mode preferences.
Supported sign-in methods are email and password, Google, and Sign in with Apple on iOS. Authentication is handled through Firebase Authentication.
Notes, Content, and Organization Data
When you use Jade Note, we collect and store the content and metadata needed to provide the service, including:
- notes, note titles, note body content, note properties, note versions, pinned status, reminders, and timestamps;
- files you import, such as Notion or Markdown ZIP archives, and the notes and categories created from those files;
- in-app contact requests, including the title, message, and any reply email you provide;
- private MCP note-update confirmation proposals, stored temporarily so Jade Note can apply only the exact proposal that the user later confirms;
- categories, category descriptions, custom prompts, category forms, and category display settings;
- linked URLs and linked resource metadata, including page titles, domains, summaries, status, and related errors;
- if your account previously used in-app Chat: previously created chat sessions, chat messages, AI responses, referenced notes, focus selections, note creation or editing suggestions, and related proposal metadata;
- triggers, automation settings, trigger run logs, generated insights, and related scheduling metadata;
- flag definitions, assignments, notification preferences, delivery records, and any Grok Bot webhook URL, key, and authorization header, Slack or Discord incoming webhook URL, or Hermes Cloud webhook URL and HMAC secret, you supply through Jade Note's Flags settings;
- profile context and long-term memory records created from your profile or prior chat interactions to support relevant AI responses;
- embeddings, vector index records, note chunks, and retrieval metadata used to search your notes for AI features.
Billing and Subscription Information
When you receive a Pro Trial, purchase a paid plan, or manage a paid plan, we may collect and store billing-related information, including:
- subscription plan, subscription status, trial end date, and current billing period end;
- Stripe customer ID, subscription ID, price ID, checkout session metadata, and billing portal status;
- payment status updates received through Stripe webhooks.
Payment card numbers and detailed payment credentials are processed by Stripe and are not directly stored by Jade Note.
Usage, AI Credit, and Technical Information
We collect information about how the service is used and operated, including:
- AI usage records, token usage, AI credit reservations, AI credit charges, feature names, model names, and monthly usage periods;
- trigger run counts and usage limits;
- Google Analytics for Firebase data, including pseudonymous Firebase user and Analytics client identifiers, normalized page paths, sign-in method, onboarding steps and selected onboarding choices, successful feature actions, plan tier, UI locale, onboarding path, and normalized MCP service and tool metadata;
- a separate MCP tool-call event log stored in Google Cloud BigQuery, keyed by your Firebase user ID directly (not a separate pseudonymous identifier), recording which normalized MCP operation was called, whether it succeeded or failed, and timing -- never note, category, chat, or search content;
- API request metadata, error logs, security logs, diagnostic logs, and operational logs;
- device, browser, network, IP address, and approximate location information that may be included in logs or provided by hosting, security, or infrastructure providers.
Local and Session Storage
Jade Note may store information in your browser's local storage or session storage, including:
- login/backend sync markers;
- UI locale;
- sidebar and interface preferences;
- temporary note drafts;
- leftover local data from the former in-app Chat feature, if still present in your browser.
This browser storage helps the app work smoothly on your device. It is not currently used for advertising tracking.
Jade Note Mobile Apps
When you use the Jade Note iOS or Android app, we may also collect or store:
- device timezone, used to display dates and schedule digest or reminder timing;
- UI locale and theme preferences stored on the device;
- temporary note drafts stored in on-device secure storage;
- contact-request content you submit from Settings;
- files you select for import, which are uploaded to Jade Note only when you choose to import them.
The mobile app may store information in on-device preferences or secure storage so the app works smoothly. This on-device storage is not currently used for advertising tracking.
Jade Note Web Clipper
When you use the Jade Note Web Clipper Chrome extension, the extension may handle:
- the URL and title of the active page after you open the extension or invoke its context-menu action;
- page text that you explicitly select and choose to save;
- note titles, note content, category selections, and formatted-category field values that you enter in the extension;
- the Firebase ID token and email address from your existing Jade Note browser session, used only to authenticate your Jade Note API requests; and
- temporary context-menu draft data and extension connection settings stored through Chrome storage.
The extension sends clipped content only when you choose to create a note. It does not continuously monitor your browsing activity and does not use browsing activity, selected page content, authentication information, or note content for advertising, sale, creditworthiness, or unrelated purposes.
Jade Note's use and transfer of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.
2. How We Use Personal Information
We use personal information to:
- create, authenticate, and maintain user accounts;
- provide the web application, iOS and Android mobile apps, and Web Clipper;
- provide note creation, editing, organization, search, reminders, category features, and file import;
- receive and respond to in-app contact requests;
- provide retrieval, embeddings, MCP integrations, triggers, automations, and insights;
- host and display previously created Chat history while it remains available in the service, and maintain relevant profile context;
- manage Free, Pro Trial, and Pro plan access;
- create Stripe checkout and billing portal sessions, process subscription status, and manage billing support;
- calculate AI credits, enforce usage limits, and prevent unexpected overage charges;
- provide customer support and respond to requests;
- debug, secure, monitor, and improve service reliability;
- analyze onboarding completion, feature adoption, and retention so we can improve the product experience;
- detect, prevent, and respond to fraud, abuse, unauthorized access, policy violations, or security incidents;
- comply with legal obligations and enforce our Terms of Service.
3. AI Processing and Model Training
Jade Note processes your notes, profile information, prompts, and related content to provide AI features you request. This may include generating embeddings, retrieving relevant notes, sending selected context to configured AI providers, supporting compatible external AI tools through MCP, and running configured triggers or automations. If you ask an MCP client to design a category using selected example notes, Jade Note sends the titles and up to 1,500 characters of text from each selected note to the configured AI provider to generate that proposal. We store previously created Chat messages, AI responses, and related Chat metadata so you can view Chat history while it remains available. We no longer process new in-app Chat requests.
Unless we separately ask for and receive your consent, we do not use your notes, chat messages, or other user content to train or improve AI models.
AI providers may process prompts, retrieved note context, and AI outputs as service providers or subprocessors so that Jade Note can provide the requested AI features.
4. How We Disclose Personal Information
We may disclose personal information as described below.
Service Providers and Subprocessors
We use service providers to operate Jade Note. These may include:
- Firebase Authentication and Google Cloud services for authentication, hosting, infrastructure, database, logging, task scheduling, and secrets management;
- Google for Google sign-in;
- Apple for Sign in with Apple on iOS, including Hide My Email relay addresses when you choose that option;
- Google Analytics for Firebase for product usage analytics and aggregated reporting;
- PostgreSQL / Cloud SQL and vector storage for notes, chat history, embeddings, AI retrieval, and application records;
- configured AI providers for embeddings, summaries, automations, insights, and MCP category proposals that use selected example notes;
- Stripe for checkout, billing, subscription management, payment processing, and billing portal services;
- hosting, security, monitoring, and operational providers that help us run and protect the service.
These providers may process personal information only as needed to provide services to us, subject to their own terms, data processing terms, and legal obligations.
Flag Notifications and Connected Webhooks
If you enable a flag's email notification or a webhook, adding that flag to a note may send the note's title and Jade Note URL, together with the flag's name and purpose, through our email delivery provider or to your configured webhook endpoint. Supported webhook destinations are Grok Bot at api2.cursor.sh, Slack Incoming Webhooks at hooks.slack.com, Discord Incoming Webhooks at discord.com, and Hermes Cloud inbound webhooks at a subdomain of agents.nousresearch.com. The flag notification payload does not include the note body. The receiving service handles the transmitted information under its own terms and privacy policy.
We store the webhook connection you provide in Jade Note's Flags settings or through a connected MCP client exposing configure_flag_webhook to authenticate future deliveries. Grok Bot connections include a URL, key, and authorization header. Slack and Discord connections store only the incoming webhook URL, which itself is the secret. Hermes Cloud connections include a URL and HMAC secret used to sign the JSON body. The MCP tool can replace the complete connection or enable and disable notifications without deleting saved credentials. Your connected client processes the connection information you submit under its own data practices. MCP tool responses report the webhook host and safe configuration status rather than returning the saved URL path, key, or authorization value. Creating or updating a flag definition saves settings without sending a notification; a later flag assignment can trigger delivery. You can disable the flag's email or webhook notification setting to stop future deliveries, but messages already sent cannot be recalled.
Legal, Safety, and Compliance
We may disclose personal information if we believe it is reasonably necessary to:
- comply with law, legal process, or government requests;
- protect the rights, privacy, safety, or property of Jade Note, users, service providers, or the public;
- investigate or prevent fraud, abuse, security incidents, or violations of our Terms;
- enforce agreements or defend legal claims.
Business Transfers
If Jade Note is involved in a merger, acquisition, financing, reorganization, sale of assets, or similar transaction, personal information may be disclosed or transferred as part of that transaction, subject to appropriate confidentiality and legal protections.
5. Advertising, Analytics, and Sale or Sharing
Jade Note uses Google Analytics for Firebase to understand account registration, onboarding completion, feature adoption, MCP integrations, and retention. Analytics data may include pseudonymous user and client identifiers, device and browser information, approximate location derived by Google, normalized app routes, and the product usage metadata described above.
We do not send note titles, note bodies, category names, chat messages, AI responses, search text, Insight content, email addresses, or raw MCP client identifiers to Google Analytics. We configure Analytics without advertising storage, advertising user data, or ad personalization.
Separately, Jade Note records MCP tool-call activity (which operation was called, success or failure, and timing) in a Google Cloud BigQuery table for product analytics and reliability monitoring. This table uses your Firebase user ID directly rather than a separate pseudonymous identifier, because access to it is currently limited to the same personnel who already operate the underlying database. It never contains note, category, chat, or search content, or full error messages.
We do not sell personal information. We do not share personal information for cross-context behavioral advertising as those terms are commonly used in US state privacy laws.
We do not use Analytics for advertising or retargeting. If those practices change, we will update this Privacy Policy and provide any required notices or choices.
6. Cookies and Similar Technologies
Jade Note may use cookies, browser storage, on-device app storage, authentication mechanisms, service workers, and similar technologies to keep you signed in, remember settings, manage drafts, operate the web and mobile apps, and support Google Analytics measurement.
We do not currently use these technologies for advertising tracking.
7. Data Retention
We retain personal information for as long as needed to provide Jade Note, maintain your account, support billing and subscriptions, comply with legal obligations, resolve disputes, enforce agreements, prevent abuse, and maintain security.
Examples include:
- account information is generally retained while your account is active;
- notes, categories, previously created chat history, embeddings, triggers, insights, and related records are retained while needed to provide the service. Previously created Chat history remains available for viewing through September 30, 2026;
- AI usage, billing, subscription, and ledger records may be retained for accounting, tax, dispute, audit, and abuse-prevention purposes;
- logs and security records may be retained for operational, reliability, security, and legal purposes;
- Google Analytics user-level and event-level data is configured for a retention period of up to 14 months, while aggregated reports may be retained longer;
- the MCP tool-call event log in BigQuery is retained for up to 14 months;
- MCP note-update confirmation proposals expire after 24 hours and are then removed from active storage by scheduled cleanup;
- deleted notes may be soft-deleted or retained in backups, logs, or derived indexes for a limited period before deletion or de-identification.
You can delete your account in Settings. You may also request account deletion or data-related assistance by contacting [email protected].
8. Your Privacy Choices and Rights
Depending on where you live, you may have rights to request access to, deletion of, correction of, or a copy of personal information we hold about you. You may also have the right to object to or restrict certain processing, withdraw consent where processing is based on consent, or appeal a decision about your request.
To make a privacy request, contact [email protected]. We may need to verify your identity before responding. We will not discriminate against you for exercising privacy rights, but some requests may affect our ability to provide the service.
You can also:
- update certain profile and preference information in the service;
- delete notes or categories using available product features;
- cancel paid subscriptions through the Stripe billing portal or other available billing flow;
- clear local storage or session storage in your browser, or clear the Jade Note mobile app's local data or uninstall the app, understanding that this may affect app behavior.
9. US State Privacy Notice
For transparency, this section summarizes common categories of personal information we may collect and disclose to service providers:
| Category | Examples | Disclosed to service providers |
|---|---|---|
| Identifiers | Firebase UID, email address (including Apple Hide My Email relay addresses), Stripe customer ID | Yes |
| Customer records / account data | Account profile, subscription status, support requests | Yes |
| Commercial information | Plan, subscription status, billing metadata, payment status | Yes |
| Internet or network activity | API logs, security logs, browser/device metadata | Yes |
| User content | Notes, categories, prompts, chat messages, linked resources | Yes |
| Inferences or derived data | Embeddings, retrieval metadata, AI usage and profile context | Yes |
| Sensitive information if you provide it | Sensitive details included in notes, chats, profile, or linked resources | Yes, as needed to provide the service |
We do not knowingly sell personal information or share it for cross-context behavioral advertising. We do not knowingly collect personal information from children under 13.
If applicable law gives you additional rights, you may exercise them by contacting [email protected].
10. Children's Privacy
Jade Note is intended for users who are at least 13 years old. Jade Note is not directed to children under 13, and children under 13 may not create an account or use the service.
If you are under 18, you may use Jade Note only with the consent and supervision of a parent or legal guardian.
If we learn that we collected personal information from a child under 13, we may delete the account and associated information as required by law. If you believe a child under 13 has provided personal information to Jade Note, contact [email protected].
11. Security
We use administrative, technical, and organizational measures designed to protect personal information. These may include authenticated API access, access controls, cloud security controls, secrets management, logging, and operational monitoring.
No method of transmission or storage is completely secure. You are responsible for keeping your account credentials secure and for using a secure device and network.
12. International Data Transfers
Jade Note may be operated from Japan and may use service providers in Japan, the United States, and other countries. Your personal information may be processed and stored in countries where privacy laws may differ from those in your state or country.
By using Jade Note, you understand that personal information may be transferred to and processed in these locations, subject to applicable legal requirements.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will provide reasonable notice, such as by posting the updated policy, sending an email, or showing an in-service notice.
The updated policy will be effective on the date stated in the policy or notice. Your continued use of Jade Note after the updated policy becomes effective means you acknowledge the updated policy.
14. Contact
Operator: Unrealm LLC
Privacy / support contact: [email protected]
Website: https://jadenote.app
Terms of Service: https://jadenote.app/terms
Privacy Policy URL: https://jadenote.app/privacy