Pico Notes — Privacy Policy

Last updated: November 16, 2025

Pico Notes ("we", "us", or "our") provides a cross-platform notes application that allows users to store and organize text, photos, videos, and other media. We are committed to protecting your privacy and being transparent about how your information is collected and used.

By creating an account or using the Pico Notes app, you agree to this Privacy Policy.

1. Information We Collect

We collect the following categories of information to provide and improve Pico Notes:

A. Information You Provide

  • Email address
  • Username
  • Password (securely hashed; never stored in plain text)
  • Profile photo
  • Phone number
  • Notes, text, and other written content
  • Images, audio, and videos uploaded to the app

B. Information Collected Automatically

  • Device information (model, OS version)
  • IP address
  • App usage analytics
  • Crash logs and performance data

No location data is collected (location features may be added later with notice)

2. How We Use Your Information

We use collected data for the following legitimate purposes:

  • Account creation and authentication (Google Sign-In)
  • Secure login and identity verification
  • Storing and syncing notes across devices
  • Backing up media (photos, videos, audio) for cross-platform use
  • App performance monitoring and crash prevention
  • Improving features and future development
  • Maintaining user privacy and data separation using secure database rules

We do not use your data for advertising or tracking across third-party apps.

3. Third-Party Services We Use

To operate the app, we rely on the following third-party services:

A. Supabase (Primary Backend)

  • Stores user accounts, notes, text, and media
  • Provides authentication and database security
  • Provides Supabase Logs and usage analytics
  • Stores uploaded images and videos via Supabase Storage

B. Google Sign-In

  • Used to authenticate users
  • Provides email, username, and profile photo (with user permission)

C. Future Infrastructure

We may later use:

  • Amazon Web Services (AWS) for storage or servers
  • AI features (e.g., OpenAI, Gemini)

Users will be notified before any new data use takes effect.

We do not share data with any other third parties.

4. Data Sharing & Selling

  • We do NOT sell your data.
  • We do NOT share your personal information with advertisers.
  • Data is shared only with the services listed above in order to operate the app.

5. Data Retention

We retain user data for as long as your account remains active. If you delete your account, your notes, media, and personal information will be permanently deleted from our systems, except where backup retention is required for security or legal reasons.

6. User Rights

Depending on your location, you have the right to:

  • Access your data
  • Request deletion of your account
  • Correct or update information
  • Withdraw consent for future data features
  • Ask how your data is used

7. Account & Data Deletion

Users can delete their accounts directly within the app.

When deleted:

  • All notes, images, videos, and personal information are wiped from Supabase
  • Deletion is permanent and cannot be undone

If you need support with deletion, email us at Piconoteincorporated@gmail.com

8. Data Security

We take security seriously and protect your data with:

  • Encryption in transit (HTTPS)
  • Encryption at rest (Supabase default encryption)
  • Hashed passwords (never stored plain)
  • Row-Level Security (RLS) rules that isolate each user's data
  • Strict storage access controls
  • Regular monitoring of system logs for unauthorized access

No security system is perfect, but we follow industry-standard best practices.

9. Children's Privacy

Pico Notes is intended for a general audience and is not directed at children under 13.

We do not knowingly collect information from children under 13.

If you believe a child has created an account, contact us and we will remove it.

10. International Transfers

Your data may be processed in the United States or other regions where our cloud providers operate. We comply with GDPR and other applicable privacy laws for international transfers.

11. Changes to This Policy

We may update this Privacy Policy as our app grows (for example, if we add AI features, payments, or AWS storage). When changes occur, we will update the "Last Updated" date and notify users when required.

12. Contact Us

For questions or concerns about this policy or your data, contact:

📧 Piconoteincorporated@gmail.com