Archive — previous text, not the current privacy notice.
Privacy Policy
This Privacy Policy explains how data is handled in the FILO mobile app.
Version 1.0 | Effective August 24, 2026 | Data controller: Filippo Lacagnina
1. Scope
This Privacy Policy applies to FILO 1.0. The app works local-first and requires no FILO account. On compatible iPhone and iPad devices, you may choose to enable iCloud Sync. The data controller and app developer is Filippo Lacagnina.
2. Data handled by the app
You may enter titles, descriptions, Traces, Key points, Steps, Appointments, Collections, dates, outcomes, places or links, reminders, and audio notes. This content, together with technical preferences, is stored in the app's private storage on your device.
FILO includes no advertising, analytics, profiling, crash reporting, or tracking tools and does not send this content to the developer.
3. Optional iCloud Sync
On iPhone and iPad running iOS or iPadOS 17 or later, you can enable Sync. Fili, Traces, Key points, Steps, Appointments, Collections, reminders, metadata, and audio notes are then transferred through CloudKit and stored in your Apple Account's private database. FILO uses no developer-operated server, and the developer does not receive this content.
Sync keeps a local copy and may use Apple's silent push notifications to start alignment in the background. You can disable it at any time: disabling Sync stops transfers but does not automatically delete the copy already stored in iCloud.
4. Permissions
Microphone access is used only when you choose to record an audio note. Notifications are used for reminders you configure and, on Apple devices with Sync enabled, may include silent CloudKit signals that start background alignment. You can revoke permissions in system settings.
5. User-directed backups and transfers
You can export an encrypted .filo file and choose where to save it. The password and recovery key are alternatives and are never sent to FILO. After a successful restore, the device recognizes that protection for future imports. Backup does not link devices and is separate from iCloud Sync. If you choose a cloud service, that provider stores the file under its own terms.
iOS and Android may also include app data in device backups or transfers, depending on your settings and operating-system behavior.
6. Retention and deletion
Content remains on your device until you delete it. With Sync disabled, you can delete only the local copy; if a copy remains in iCloud, it may be restored when you enable Sync again. With Sync enabled, you can delete the archive from iCloud and every device connected to the same Apple Account. FILO also manages removal of audio files that are no longer used.
Previously exported .filo files cannot be deleted by FILO and must be removed from the chosen destination.
7. Recipients and transfers
The developer does not receive FILO content. If you enable Sync, Apple handles data stored in the private CloudKit database under the terms and conditions of your iCloud account. Other transfers may occur through a backup provider selected by you or operating-system backup and device-transfer services.
8. Children
FILO is a general-audience productivity app and is not specifically designed or marketed as a product for children. The app requires no account and does not send user-entered content to the developer.
9. Changes
This policy may be updated if the app's features or data-handling practices change. The effective date will be updated on this page.
10. Contact
For privacy questions, contact: