Archive — previous text, not the current privacy notice.
Privacy Policy
This Privacy Policy explains how data is handled in the FILO mobile app.
Privacy notice revision: 7 September 2026 | Data controller: Filippo Lacagnina
1. Scope
This notice describes the data handled by FILO and applies to the features available in the version you use. The app works local-first and does not require a FILO account. Previous notices covering FILO 1.0 and 1.1 are available in the history at the bottom of this page. The FILO 1.2 update clarifies favorites, Collection colors, and Home customization; it does not attribute these features to earlier versions. The data controller and developer is Filippo Lacagnina.
2. Data handled by the app
You can enter titles, descriptions, Traces, Key Points, Steps and their item lists, Appointments, Collections, dates, outcomes, places or links, reminders, and audio notes. The app’s private storage also holds favorite Fili and Collections, Collection icons and colors, and technical preferences, including the order and visibility of Home sections.
FILO includes no advertising, analytics, profiling, crash reporting, or tracking tools and does not send this content to the developer.
3. Optional iCloud Sync
On iPhone and iPad running iOS or iPadOS 17 or later, you can enable Sync. Fili, Traces, Key Points, Steps and their list items, Appointments, Collections, favorites, Collection icons and colors, reminders, metadata, and audio notes are then transferred through CloudKit and stored in your Apple Account’s private database. FILO does not use a developer-operated server, and the developer does not receive this content. Home section order and visibility are local device preferences, not content synchronized through FILO Sync.
Sync keeps a local copy and may use Apple's silent push notifications to start alignment in the background. You can disable it at any time: disabling Sync stops transfers but does not automatically delete the copy already stored in iCloud.
4. Permissions
Microphone access is used only when you choose to record an audio note. Notifications are used for reminders you configure and, on Apple devices with Sync enabled, may include silent CloudKit signals that start background alignment. You can revoke permissions in system settings.
5. User-directed backups and transfers
You can export an encrypted .filo archive, including Step lists and items, favorites, and Collection icons and colors, and choose where to save it. Local Home order and visibility preferences are not part of this archive. Password and recovery key are alternatives and are not sent to the developer. After a successful restore, the device recognizes that protection for later imports. Backup does not link devices and is separate from iCloud Sync. If you choose a cloud service, that provider stores the file under its own rules.
iOS and Android may also include app data in device backups or transfers, depending on your settings and operating-system behavior.
6. Retention and deletion
Content, including Step lists and their items, remains on your device until you delete it. With Sync disabled, you can delete only the local copy; if a copy remains in iCloud, it may be restored when you enable Sync again. With Sync enabled, you can delete the archive from iCloud and every device connected to the same Apple Account. FILO also manages removal of audio files that are no longer used.
Previously exported .filo files cannot be deleted by FILO and must be removed from the chosen destination.
7. Recipients and transfers
The developer does not receive FILO content. If you enable Sync, Apple handles data stored in the private CloudKit database under the terms and conditions of your iCloud account. Other transfers may occur through a backup provider selected by you or operating-system backup and device-transfer services.
8. Children
FILO is a general-audience productivity app and is not specifically designed or marketed as a product for children. The app requires no account and does not send user-entered content to the developer.
9. Changes
This notice is updated when the features described or the way data is handled changes. Its date identifies the text revision, not the app version or release date. The history preserves previous notices and summarizes their differences; a new app release does not need an identical copy of the notice if the data handling described remains unchanged.
10. Contact
For privacy questions, contact: