1. Scope
This notice describes the data handled by FILO and applies to the features available in the version you use. The app works local-first and does not require a FILO account. The FILO 1.3.0 revision covers Budget, formatted text and update checks. Previous notices for FILO 1.0, 1.1 and 1.2 remain available in the history; new features are not attributed to earlier versions. The data controller and developer is Filippo Lacagnina.
2. Data handled by the app
You can enter titles, descriptions, Traces, Key Points, Steps and their lists, Appointments, Collections, dates, outcomes, places or links, reminders and audio notes. Formatting and link addresses are also stored for Traces and Steps. Budgets include a title, currency, optional limit, expense items, estimates, payment amounts and dates, notes and links to Steps. The app’s private storage also holds favorites, Collection icons and colors, and technical preferences, including theme, language, archive sorting, filters and the order and visibility of Home sections.
FILO includes no advertising, analytics, profiling, crash reporting, or tracking tools and does not send this content to the developer.
Formatting is handled on the device. Web links open in the browser only when you tap them: the destination website then handles visit data under its own privacy notice. Budget examples included in the app are demonstrations, separate from your archive.
3. Optional iCloud Sync
On iPhone and iPad running iOS or iPadOS 17 or later, you can enable Sync. Fili, Traces, Key Points, Steps and their list items, formatted documents and their links, Appointments, Collections, Budgets with items and payments, favorites, Collection icons and colors, reminders, metadata, and audio notes are then transferred through CloudKit and stored in your Apple Account’s private database. FILO does not use a developer-operated server, and the developer does not receive this content. Home section order and visibility are local device preferences, not content synchronized through FILO Sync.
Sync keeps a local copy and may use Apple's silent push notifications to start alignment in the background. You can disable it at any time: disabling Sync stops transfers but does not automatically delete the copy already stored in iCloud.
4. Permissions
Microphone access is used only when you choose to record an audio note. Notifications are used for reminders you configure and, on Apple devices with Sync enabled, may include silent CloudKit signals that start background alignment. You can revoke permissions in system settings.
5. Update checks
The app may contact Apple or Google Play to check for a newer version, even when Sync is disabled. Archive content, audio notes and backups are not sent for this purpose. Apple’s request includes the public app identifier, store country and normal connection metadata, including the IP address. Google Play processes device metadata, app version, installed modules and asset packs to determine update availability and size.
FILO stores the last check and prompt timestamps locally to limit their frequency; they are neither synced nor included in .filo backups. Updates can be postponed and the check does not block offline use. Availability depends on the platform and the app’s distribution channel.
6. User-directed backups and transfers
You can export an encrypted .filo archive, including Step lists and items, formatted text and links, Budgets, expense items and payments, favorites, and Collection icons and colors, and choose where to save it. Local Home order and visibility preferences are not part of this archive. Password and recovery key are alternatives and are not sent to the developer. After a successful restore, the device recognizes that protection for later imports. Backup does not link devices and is separate from iCloud Sync. If you choose a cloud service, that provider stores the file under its own rules.
iOS and Android may also include app data in device backups or transfers, depending on your settings and operating-system behavior.
7. Retention and deletion
Content, including formatted text, Step lists, Budgets, expense items and payments, remains on your device until you delete it. With Sync disabled, you can delete only the local copy; if a copy remains in iCloud, it may be restored when you enable Sync again. With Sync enabled, you can delete the archive from iCloud and every device connected to the same Apple Account. FILO also manages removal of audio files that are no longer used.
Previously exported .filo files cannot be deleted by FILO and must be removed from the chosen destination.
8. Recipients and transfers
The developer does not receive FILO content. If you enable Sync, Apple handles data stored in the private CloudKit database under the terms and conditions of your iCloud account. Other transfers may occur through a backup provider selected by you or operating-system backup and device-transfer services. Apple and Google Play also receive the technical data needed for the update checks described above, even without Sync. If you open a link, the destination website receives visit data through the browser.
9. Children
FILO is a general-audience productivity app and is not specifically designed or marketed as a product for children. The app requires no account and does not send user-entered content to the developer.
10. Changes
This notice is updated when the features described or the way data is handled changes. Its date identifies the text revision, not the app version or release date. The history preserves previous notices and summarizes their differences; a new app release does not need an identical copy of the notice if the data handling described remains unchanged.
11. Contact
For privacy questions, contact:
Privacy notice history
Read previous revisions separately from the current notice. The features described depend on your app version and platform.
13 September 2026 — FILO 1.3.0 (current notice)
Clarifies Budgets, expense items, payments, formatted text and links in local storage, Sync, backup and retention. Adds update checks through Apple and Google Play, even with Sync disabled, and explains user-directed opening of external links. No advertising, profiling or transmission of archive content to the developer.
7 September 2026 — FILO 1.2
Makes favorites and colors explicit in local data, Sync, and backup, and distinguishes local Home customization. Step and reminder edits use the existing data flows. These changes introduce no new advertising, usage analytics, or transmission to the developer.
Read the notice dated 7 September 2026
30 August 2026 — FILO 1.1
Adds Step lists to local content, Sync, backup, and deletion.
Read the 30 August 2026 privacy notice
24 August 2026 — FILO 1.0 with optional iCloud Sync
Describes the private CloudKit database, silent Apple signals, and the distinction between local and iCloud deletion.
Read the 24 August 2026 privacy notice
18 August 2026 — local FILO 1.0
The notice before Sync was introduced: local storage and user-directed backups.
