myrekall

Privacy Policy

Last updated: June 22, 2026

MyRekall is a personal context tool. You use it to store information about the people, places, and things in your life. This policy explains what data we collect, why we collect it, and how we handle it.

What we collect

When you sign in with Google, we receive your email address and a Google account identifier (used internally to link your Google account to your MyRekall account). That is the only information we collect from Google.

Everything else comes from you. When you create a record, the content of that record (names, notes, tags, relationships, and any structured fields) is stored in your account. If the photo feature is enabled, photos you upload are stored as well. We do not infer or collect anything beyond what you explicitly add.

We also store a session token in a cookie to keep you signed in. Sessions expire after seven days.

When you submit feedback through the app, we collect your message, the page you were on, and your browser's User-Agent string, in addition to your email address. This is posted to a private GitHub repository as a GitHub issue.

How we use your data

Your email is used to identify your account. Your records are used to provide the service: when you search, ask a question, or view your data, we retrieve and return your records to you. We do not use your data for advertising, profiling, or any purpose beyond operating MyRekall for you.

Google API data

MyRekall's use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically: we use your Google account only to authenticate you. We do not access your Gmail, Calendar, Drive, or any other Google service. We do not use Google user data for advertising. We do not use Google user data to develop, improve, or train AI or machine learning models. We do not transfer or sell Google user data to third parties except as necessary to operate the service (Cloudflare, described below). We do not allow humans to read your Google user data unless you give explicit permission, it is required for security purposes, it is required by law, or it is needed for internal operations consistent with these terms.

Who can see your data

We do not sell your data, share it with advertisers, or provide it to any third party for their own purposes.

MyRekall runs on Cloudflare's infrastructure. Your data is stored in Cloudflare's database, key-value, and object storage services. Cloudflare processes data on our behalf under their own privacy and security commitments. You can read about Cloudflare's practices at cloudflare.com/privacypolicy.

When you submit feedback through the app, that submission is posted to a private GitHub repository as an issue. When you submit a pilot access request from the public site, your name and email are posted as a comment on a private GitHub issue. GitHub's privacy policy applies to that storage.

As the sole operator, Thomas Dvornik may access data stored in these systems for the purpose of operating and maintaining the service.

AI features

MyRekall includes an AI feature that lets you ask questions about your records. When you use it, your question and relevant records are sent to a language model running on Cloudflare's AI infrastructure. Your data is not used to train models. Cloudflare's AI usage terms apply.

How long we keep your data

Your account and records are kept until you delete them or ask us to delete them. Sessions expire automatically after seven days.

Your rights

You can ask us to delete your account and all associated data at any time. Email us at the address below and we will remove it.

Changes to this policy

If we make changes that affect how we handle your data, we will update this page and change the date at the top. For significant changes, we will notify you by email if we have one on file.

Contact

Questions about this policy or requests to delete your data: amphro@gmail.com