Privacy Policy

Effective date: July 28, 2026

Atlas is made by Adriano Fiuza, an independent solo developer. This policy explains, in plain language, what data Atlas handles and why. If anything is unclear, email support@atlasapp.so.

The short version

What data Atlas collects

Account email. Used to create and sign in to your Atlas account and to identify which synced data belongs to you.

Profile name. If you set a display name in Settings, it is stored with your account so it can appear on your devices.

Your content. Tasks, notes, journal entries (including any voice memos you record), tags, focus session statistics, and any attachments (such as photos) you add. This is the substance of the app, so Atlas stores it to show it back to you and sync it across your devices.

Shared notes (optional). Atlas lets you share a note with other Atlas users by invite. If you share a note, its content, and any edits made by people you’ve invited, becomes visible to everyone with access, not just you. You choose who to invite (by email), what they can do (view or edit), and can remove their access or stop sharing the note at any time. A note you have not chosen to share stays private to you.

Usage statistics (first-party). Atlas records basic activity, such as days you opened the app, time in the foreground, app version, language, and whether your account has an active subscription, in Atlas’s own database, tied to your account. This powers aggregate numbers (like how many people use Atlas daily) and is never shared with third parties.

Beyond that, Atlas does not collect your location, contacts, browsing history, device fingerprints, or advertising identifiers.

What Atlas does not do

Where your data lives (sync)

When you sign in, your content is stored on servers operated through Supabase, a hosted infrastructure provider, so it can sync between your devices. Data is encrypted in transit (HTTPS/TLS) and protected by access controls so that only your account can read your data through the app.

Important honesty note: your content is not end-to-end encrypted. This means the server stores your content in a form that is technically readable by the infrastructure, as is the case for most sync services. The developer does not browse user content, but you should not store anything in Atlas that you would not entrust to a standard cloud service.

Locked notes and journals. The “lock” feature (Face ID / Touch ID / passcode) protects content from other people who handle your device. It does not add server-side encryption; locked items are stored on the server the same way as everything else.

Device permissions, explained

Atlas asks for permissions only when a feature needs them. Each one is optional:

Data retention and deletion

Your rights (GDPR, CCPA, and similar laws)

Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to lodge a complaint with a supervisory authority. Atlas is built so you can exercise the main ones yourself: export from Settings, deletion via Delete Account. For anything else, or if you just want help, email support@atlasapp.so and you’ll get a reply from the actual developer.

For GDPR purposes, the legal basis for processing your account and content is performance of a contract (providing the app and sync you signed up for); first-party usage statistics are processed under legitimate interest (operating and improving the app). For CCPA purposes: Atlas does not sell or share personal information.

Children

Atlas is not directed at children under 13 (or the minimum age in your region), and no data is knowingly collected from them.

Changes to this policy

If this policy changes in a meaningful way, the updated version will be published with a new effective date, and significant changes will be highlighted in the app or release notes.

Contact

Adriano Fiuza, support@atlasapp.so