Vibe Noting Privacy

by Promptbox

Last updated: July 17, 2026

Stored on your phone

Your current journal, Markdown summary, conversation display, anonymous User ID, AI-disclosure acknowledgement, and scratchpad are stored locally by the app. The scratchpad uses Keychain on iOS and Android Keystore-backed encryption on Android. Clearing conversation history removes the displayed chat from that device while preserving the journal, summary, and scratchpad.

Face ID on iOS

Face ID is optional and disabled by default. When enabled, it protects access to the journal and conversation whenever Vibe Noting leaves the foreground. Face matching is performed by iOS; Vibe Noting receives only the authentication result and does not receive, store, or transmit facial or biometric data.

Sent for processing

Your prompts, current journal, scratchpad memory, audio recordings, and attachments are sent through Promptbox helpers to Google Gemini to generate replies and update the journal. The phone controls the tool chain; Promptbox's generic helpers provide Gemini, RAG, web, webpage reading, email, PDF, transfer, summary, and TTS operations. Photos are resized and compressed on your phone before upload; other attached files are sent in their original format. Journal content is sent to the LLM summary helper, and text selected for spoken playback is sent to the Inworld TTS helper.

Anonymous User ID and RAG archive

On first launch, Vibe Noting creates a random UUID on your phone. The UUID is sent to Promptbox only to find or create a separate Google Gemini File Search store named notes_<uuid>; no email address is required or automatically placed in Gemini's system prompt. On a new day, the previous journal is archived in that store.

Persistent scratchpad

When you explicitly direct Pepper to remember, store, or memorize operating information, it may overwrite the scratchpad stored securely on your phone. The scratchpad may contain sensitive information if you direct Pepper to retain it. Its complete contents are sent through Promptbox and appended to later Google Gemini system prompts, but are not stored in RAG or retained by the Promptbox helper. Resetting your User ID does not clear this phone-local memory.

Tools

Information may be sent to web search, webpage reading, email, PDF creation, or temporary transfer helpers when Pepper automatically uses those tools to complete your request. Every email tool call must specify a recipient address, which Pepper may obtain from the current request, journal, attachment, or scratchpad; if none is available, Pepper is instructed to ask. Generated transfer links may remain available until their stated expiration.

Your control

Do not submit information you do not want processed by these services. You can reset the User ID or clear conversation history from Settings. Resetting the ID switches to a new cloud File Search store but does not delete the previous store. Clearing the app's local data also does not delete previously archived cloud information. Contact support below to request help concerning stored information.

Questions: adam3056712@gmail.com