Necta Privacy Policy
Effective date: August 26, 2026
Necta ("we," "us," "our") is a personal note-capture and AI-organization app. This policy explains what information we collect, how we use it, and how it's protected.
1. Information we collect
- Account information: your email address and password (password is hashed by our authentication provider, Supabase — we never see or store it in plain text).
- Content you create: everything you capture in Necta — typed notes, photos you submit for transcription, voice recordings (processed to text and then discarded — we don't keep the audio file), goals, mood entries, sticky notes, and mind map connections.
- Payment information: if you subscribe to Necta Pro, payment is handled entirely by Stripe. We never receive or store your card details — only that a subscription exists and its status.
- Basic usage data: standard technical logs (e.g., for debugging and abuse prevention) generated by our hosting provider.
2. How we use your information
- To provide the core product: storing, organizing, and letting you search/chat with your own captured content.
- To process your captures through AI (see below) so they can be cleaned up, categorized, and made searchable.
- To manage your subscription and billing, if applicable.
- To communicate with you about your account (e.g., password resets).
3. AI processing
When you capture a note, photo, or voice recording, that content is sent to OpenAI's API to be transcribed, cleaned up, and sorted into the right category. Per OpenAI's API terms, data submitted through their API is not used to train their models. We do not use your content to train any AI model ourselves.
4. Who we share information with
We don't sell your data. We share information only with the service providers that make Necta work:
- Supabase — hosts our database and handles authentication. Your account and content are stored here.
- OpenAI — processes captures (text/photo/voice) as described above.
- Stripe — processes payments for Necta Pro. Stripe has its own privacy policy governing your payment data.
- Vercel — hosts the application itself.
5. Data security
Every piece of content in Necta is protected at the database level so that it is only ever accessible to the account that created it — other users cannot see your captures, goals, or notes under any circumstance. Administrative access that could bypass this protection is used only in two narrowly-scoped, automated cases (payment webhook processing and account deletion), and never to view your content.
6. Data retention and deletion
We keep your content for as long as your account is active. You can permanently delete your account and everything in it at any time from within the app (via the "Delete account" option) — this immediately and irreversibly removes your account, hives, thoughts, goals, notes, and every other record associated with it. No manual request or waiting period is required.
7. Cookies
We use only the minimum cookie required to keep you logged in (session authentication). We do not use advertising cookies, analytics trackers, or any third-party tracking scripts.
8. Children's privacy
Necta is not intended for children under 13, and we do not knowingly collect information from them.
9. Changes to this policy
We may update this policy from time to time. Material changes will be reflected with an updated effective date above.
10. Contact us
Questions about this policy or your data: support@getnecta.app