Privacy Policy
Effective date: August 17, 2026
Engram is built so you don't have to take our word for it. By default, everything you capture stays on your device, and the optional sync service is engineered so that we cannot read your notes — even if we wanted to.
This policy explains what Engram ("we", "us"), a product of Little Fort Software LLC, does and does not do with your information. It covers the Engram apps and the optional Engram Sync service.
The short version
- The core app works entirely on your device. No account, no servers, nothing sent anywhere.
- AI transcription and summarization run locally on your device by default. Your audio and notes are not uploaded for processing.
- Engram Sync (optional, paid) is end-to-end encrypted. Your notes are encrypted on your device before upload; we only ever store unreadable ciphertext.
- Engram Pro (optional, paid) adds cloud transcription: only when you turn it on, the audio you capture is sent to our own backend services to transcribe and structure it, then immediately discarded. Your audio and transcripts are never stored, never shared with a third party.
- No tracking, no advertising, no selling of data. Ever.
1. The free, local app
When you use Engram without an account, your notes, audio recordings, transcripts, and all AI processing remain on your device. We do not operate any server in this mode and we receive no information about you or your content.
To enable on-device AI, Engram downloads AI model files the first time you opt in. These downloads fetch model files from a combination of our own backend storage and third-party model hosts. These downloads are ordinary files and do not include your audio, notes, or any personal information. You choose whether and when to download them.
2. Engram Sync (optional)
If you choose to create an account and enable Sync, a small amount of information is sent to our servers so your encrypted notebooks can move between your devices:
- Email address — used to identify your account and for account-related communication.
- An authentication value derived from your password — your password is processed on your device and is never sent to us. We receive only a value used to verify sign-in, and we store only a hash of it.
- Encrypted key material — a "wrapped" encryption key that only your password (or your recovery key) can unlock. We cannot unwrap it.
- Encrypted note data — your notes, titles, and structure are encrypted on your device and stored only as opaque ciphertext. A random per-device identifier is used to route changes between your devices.
- Encrypted audio backups (optional) — if you keep the source audio for a recording, Engram can back it up so the recording is available on your other devices. Each audio file is encrypted on your device before it is uploaded and is stored only as opaque ciphertext — we can never play or listen to it. A backed-up recording is downloaded and decrypted only on your own devices, and only when you choose to play it there. This follows the app's "keep source audio" setting and, to conserve data, uploads over Wi-Fi by default (you can opt in to mobile data).
Zero-knowledge by design. Because all content is encrypted on your device with keys we never possess, we cannot read your notes, titles, transcripts, or recordings — and neither can anyone who might compromise our servers. The trade-off: if you forget your password and lose your one-time recovery key, your synced data cannot be recovered by anyone, including us.
3. Engram Pro cloud processing (optional)
Engram's free and Sync tiers process everything on your device; your synced notes are end-to-end encrypted and we cannot read them. Engram Pro adds an optional cloud-processing feature. If you turn it on, the audio you capture is uploaded over an encrypted connection to our own Microsoft Azure services (Azure AI Speech and Azure OpenAI) solely to transcribe it and structure your note.
Processed, then discarded. The audio you send for cloud processing and the transcript it produces are handled in memory and discarded immediately after your note is returned. They are never stored on our servers, never used to train any model, and never shared with a third party. Microsoft's automated safety system screens content during processing and does not store it; only if it flags potential abuse may Microsoft temporarily retain a sample of the flagged content for human review inside the same service boundary, where it is never used to train models. Processing happens within our own Microsoft Azure tenant, and any data the service holds at rest stays in the United States.
Cloud processing applies only to captures you make while the setting is on — it is off by default and you confirm it once before it is enabled. You can turn it off at any time, and your existing notes stay end-to-end encrypted. The resulting note is stored on your device (and, if you use Sync, backed up as end-to-end-encrypted ciphertext like every other note).
4. Billing
Engram Sync is a paid subscription. Payments are processed by our payment providers — Google Play or the Apple App Store (for in-app purchases) and Stripe (for web checkout). We do not receive or store your full payment card details.
To know whether your subscription is active, we store subscription status metadata and a billing reference identifier (such as a Stripe customer ID or a Google Play purchase token) linked to your account. Stripe's, Google's, and Apple's handling of your payment information is governed by their own privacy policies.
5. What we do not collect
- No analytics or telemetry. We do not track how you use the app.
- No advertising identifiers and no third-party ad or tracking SDKs.
- No location data, contacts, or device fingerprinting.
- We never sell, rent, or share your personal information.
6. How your information is protected
- All network communication uses encryption in transit (HTTPS/TLS).
- Synced note content is end-to-end encrypted at rest with keys derived on your device.
- Authentication values are stored only as hashes; your password is never transmitted or stored.
- Server infrastructure is hosted on Microsoft Azure in the United States.
7. Data retention and deletion
Local data lives on your device and is removed when you delete your notes or uninstall the app.
For Engram Sync accounts, you can permanently delete your account and all associated server-side data — your encrypted note data, encrypted audio backups, key material, and billing metadata — directly in the app via Settings → Account & Sync → Delete account (password-confirmed; takes effect immediately). If you can't access the app, email support@littlefort.io from your account email and we will process the deletion within 30 days. See delete your data for details. Signing out on a device immediately removes your account session, encryption key, and associated notes from that device.
8. Children's privacy
Engram is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us information that should be deleted, contact us and we will remove it.
9. Changes to this policy
We may update this policy from time to time. Material changes will be posted on this page with a new effective date.
10. Contact
Questions about this policy or your data? Email support@littlefort.io.