Last updated 20 August 2026
Privacy.
This page says what data Jot stores and what leaves your computer when you choose to use an optional feature.
The short version
- Your captures are a file on your disk. We have no copy and no way to get one.
- There is no account or sign-in requirement.
- Text can leave your computer only when you choose an AI feature and supply a provider key. It does not pass through us.
- We have never collected the content of a capture, and there is no code in the app that could.
Who is responsible
Wrivio Jot is made by Wrivio (the individual who makes Jot). For anything on this page, write to hello@wrivio.com. A postal address for data-protection correspondence is available on request; it is not published here because the business is pre-release and a stated address has to be one that will still be answered next year.
What stays on your computer
Everything you capture, and everything derived from it. Specifically, in your Windows app-data folder:
- A SQLite database holding every capture: the text you typed, the parsed title, any due and reminder times, tags, destination list, whether it is done, and the name of the application that had focus when you pressed the hotkey.
- A rotating daily backup of that database, kept for seven days in a subfolder. Local copies, never uploaded.
- Your settings — hotkey, theme, which mode the overlay opens in — in the same database.
- An unsent draft, if you dismissed the overlay with text in it. One at a time, discarded after a day.
You can open that database with any SQLite tool, copy it to another machine, or delete the folder and be certain nothing is left behind. There is nowhere else for it to be.
What leaves your computer, and only when you ask
AI features, with your own key
Off unless you paste in an API key. Jot has no AI service and no key of its own; the text goes from your machine directly to the provider you chose — Anthropic or OpenAI — under whatever agreement you have with them.
- What is sent, and when: the text of the specific capture you pressed the button on. Nothing is sent in the background, on a schedule, or on capture. One button, one request.
- What we see: nothing. The request does not touch us. We cannot read the text, we cannot read your key, and there is no telemetry recording that you used the feature.
- Where the key is kept: encrypted with the Windows Data Protection API, in a file next to the database — the same treatment as the Microsoft token, for the same reason. One key at a time; switching provider replaces it.
- Nothing is applied automatically. Every suggestion is shown to you and does nothing until you accept it.
Buying the Pro subscription
Handled entirely by the Microsoft Store. Payment details are given to Microsoft, never to us, and we never see them. The app asks Windows one question — is this subscription active — and gets a yes or no.
What is never collected
- The content of a capture never leaves your machine except in the two cases above, both of which you switch on and both of which go to a third party you chose rather than to us.
- No telemetry, no usage analytics, no crash reporting in the app. Not off by default — absent. The app's own content policy blocks its interface from making a network request at all, which is why this is enforced rather than promised.
- No advertising, no profiling, no data sold or shared, and no third party with access to anything. There is no dataset to sell.
- If crash reporting is ever added, it will be off by default and will never contain the content of a capture. This page will say so before it ships.
This website
- No cookies. The site sets none, and nothing on the page can identify you or follow you to another site.
- Nothing is loaded from anywhere else. Fonts, styles and scripts are all served from this domain. The site's content policy forbids the browser from fetching anything off-origin, and the build fails if a page tries.
- Aggregate page counts. Our host counts page views so we know whether anyone read this. It is cookieless, it does not build a profile, and it cannot follow you to another site.
- Server logs. Our host keeps standard request logs, including IP addresses, for a limited period. That is a normal part of running a website and we do not analyse them.
The launch-notification list
If you give us an email address, it is used for exactly one thing: one message when there is something to download. It is passed to a mailing-list provider and stored nowhere else. No newsletter, no drip sequence, no sale or transfer to anyone.
Reply to that message, or write to hello@wrivio.com at any time before it, and the address is deleted.
Your rights
If you are in the UK or the EU, data protection law gives you the right to see what personal data is held about you, to correct it, to have it deleted, to object to its processing, and to complain to your national supervisory authority.
In practice, the only personal data we could possibly hold is an email address you gave us for launch notification. Everything else described on this page is on your own machine, or in your own account with Microsoft or an AI provider, where those companies' own tools apply. To exercise any of these rights, write to hello@wrivio.com.
The lawful basis for holding an address you typed into the launch form is your consent, which you can withdraw at any time by asking.
Children
Jot is a productivity tool for adults. It is not directed at children and we do not knowingly collect anything from them.
Changes
When the meaning of this page changes, the date at the top changes with it. If a change affects what leaves your machine, it will be described here before the feature that causes it ships, not afterwards.
The repository is public, and this page is a file in it. Its history is the changelog.