Privacy Policy
Effective date: July 28, 2026
Atlas is made by Adriano Fiuza, an independent solo developer. This policy explains, in plain language, what data Atlas handles and why. If anything is unclear, email support@atlasapp.so.
The short version
- Atlas collects only what it needs to work: your account email, an optional profile name, and the content you create (tasks, notes, journal entries and voice memos, focus statistics, and attachments).
- There are no ads, no third-party analytics or trackers, and your data is never sold or shared for marketing.
- If you choose to share a note with someone, its content becomes visible to the people you invite. Sharing is opt-in, per note, and you control who has access.
- Atlas keeps basic usage statistics (like days active) in its own database to understand how the app is doing. No third party receives them.
- Your content syncs through Supabase (hosted infrastructure) so it appears on all your devices.
- Your content is not end-to-end encrypted. “Locked” notes and journal entries restrict access on your device only; on the server they are stored like any other content.
- You can export your data and delete your account (and everything with it) from inside the app at any time.
What data Atlas collects
Account email. Used to create and sign in to your Atlas account and to identify which synced data belongs to you.
Profile name. If you set a display name in Settings, it is stored with your account so it can appear on your devices.
Your content. Tasks, notes, journal entries (including any voice memos you record), tags, focus session statistics, and any attachments (such as photos) you add. This is the substance of the app, so Atlas stores it to show it back to you and sync it across your devices.
Shared notes (optional). Atlas lets you share a note with other Atlas users by invite. If you share a note, its content, and any edits made by people you’ve invited, becomes visible to everyone with access, not just you. You choose who to invite (by email), what they can do (view or edit), and can remove their access or stop sharing the note at any time. A note you have not chosen to share stays private to you.
Usage statistics (first-party). Atlas records basic activity, such as days you opened the app, time in the foreground, app version, language, and whether your account has an active subscription, in Atlas’s own database, tied to your account. This powers aggregate numbers (like how many people use Atlas daily) and is never shared with third parties.
Beyond that, Atlas does not collect your location, contacts, browsing history, device fingerprints, or advertising identifiers.
What Atlas does not do
- No ads. Atlas shows no advertising of any kind.
- No voice sent anywhere. Speech captured for voice tasks is processed only on your device. It is never uploaded to Atlas, never sent to any third-party service, and is not used to train anything.
- No third-party analytics. Atlas contains no third-party analytics SDKs or trackers; the basic usage statistics above live only in Atlas’s own database.
- No tracking. Atlas does not track you across other apps or websites, and uses no advertising identifiers.
- No sale of data. Your data is never sold, rented, or shared with third parties for their own purposes.
Where your data lives (sync)
When you sign in, your content is stored on servers operated through Supabase, a hosted infrastructure provider, so it can sync between your devices. Data is encrypted in transit (HTTPS/TLS) and protected by access controls so that only your account can read your data through the app.
Important honesty note: your content is not end-to-end encrypted. This means the server stores your content in a form that is technically readable by the infrastructure, as is the case for most sync services. The developer does not browse user content, but you should not store anything in Atlas that you would not entrust to a standard cloud service.
Locked notes and journals. The “lock” feature (Face ID / Touch ID / passcode) protects content from other people who handle your device. It does not add server-side encryption; locked items are stored on the server the same way as everything else.
Device permissions, explained
Atlas asks for permissions only when a feature needs them. Each one is optional:
- Notifications: to deliver task reminders and focus-session alerts you set. Reminders are scheduled locally on each of your devices.
- Calendar: only if you choose to connect calendar features; used to display or create events you ask for. Calendar data is read on-device and is not uploaded to Atlas servers. Events shown inside Atlas are read live from your device each time you view a day, and are never stored, synced, or turned into tasks.
- Microphone: when you capture tasks by voice, and when you record a voice memo in a journal entry. Voice capture is transcribed and interpreted entirely on your device, using Apple’s on-device speech and language models. The audio is never recorded to a file, never uploaded, and never sent to any third party; it is discarded the moment you finish. Only the tasks you confirm are saved. A journal voice memo is different: you are deliberately recording it, so it is saved with that entry and syncs as part of your content.
- Face ID / Touch ID: to lock and unlock protected notes and journal entries. Biometric data is handled entirely by Apple’s operating system; Atlas never sees, stores, or transmits your biometric information.
- Photos: only when you attach an image to a task, note, or journal entry. Atlas accesses only the photos you pick; attached images become part of your synced content.
Data retention and deletion
- Export: Settings includes a data export so you can take a copy of your content at any time.
- Delete Account: the in-app Delete Account option permanently removes your account, your email, and all synced content from the servers. This is irreversible. Residual copies in routine infrastructure backups expire on the provider’s standard backup cycle.
- Uninstalling the app removes local data from that device but does not delete your synced account; use Delete Account for that.
Your rights (GDPR, CCPA, and similar laws)
Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to lodge a complaint with a supervisory authority. Atlas is built so you can exercise the main ones yourself: export from Settings, deletion via Delete Account. For anything else, or if you just want help, email support@atlasapp.so and you’ll get a reply from the actual developer.
For GDPR purposes, the legal basis for processing your account and content is performance of a contract (providing the app and sync you signed up for); first-party usage statistics are processed under legitimate interest (operating and improving the app). For CCPA purposes: Atlas does not sell or share personal information.
Children
Atlas is not directed at children under 13 (or the minimum age in your region), and no data is knowingly collected from them.
Changes to this policy
If this policy changes in a meaningful way, the updated version will be published with a new effective date, and significant changes will be highlighted in the app or release notes.
Contact
Adriano Fiuza, support@atlasapp.so