Last updated: 2026-05-29
Privacy Policy
Our Privacy Commitment
Hako is private by default. Every item you save is encrypted on your device before it reaches our servers using zero-knowledge encryption, and items that stay private remain unreadable to us—only you can decrypt them.
Some features (AI classification, server-side search, and connected tools) need to read an item’s content to work. You can turn these on per item by marking it Tool-accessible. When you do, we store a readable copy of that item so those features can operate. Items you keep Private are never stored in readable form, and switching an item back to Private deletes the readable copy. See Section 3 for exactly what this means.
1. Information We Collect
Information You Provide
- Account Information: When you sign in with Apple, we receive your Apple ID user identifier and, if you choose to share it, your email address and name.
- Private Content: Items you keep Private (the default) are encrypted on your device. We store only the encrypted data, which we cannot decrypt.
- Tool-accessible Content: If you mark an item Tool-accessible, we additionally store a readable copy so that AI classification, search, and connected tools can work on it. You choose this per item, and it is not the default.
- Device Information: We store device identifiers and public keys to enable multi-device sync and end-to-end encryption.
Information Collected Automatically
- Usage Data: Basic app usage analytics to improve the service (e.g., landing-page traffic, feature usage, crash reports). We use PostHog for privacy-respecting analytics with Do Not Track honored, autocapture off, and session recording disabled. This data is anonymized and does not include your content.
- Push Notification Tokens: If you enable notifications, we store tokens to deliver reminders and updates.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve Hako
- Sync your encrypted data across your devices
- Send push notifications for reminders (if enabled)
- Process subscription payments through Apple
- Respond to your support requests
- Protect against fraud and abuse
3. Zero-Knowledge and Tool-accessible Items
Every item is encrypted on your device with AES-256-GCM before it is synced. What differs is whether we also keep a readable copy:
Private items (the default):
- Encryption happens on your device: Your content is encrypted using AES-256-GCM before transmission.
- We never see your encryption keys: Keys are derived on your device and never sent to our servers.
- We cannot decrypt your data: Even with a court order, we could only provide encrypted data that is meaningless without your keys.
- Recovery requires your key: If you lose your recovery password and all devices, your data cannot be recovered—by anyone.
Tool-accessible items (only when you choose them):
- We store a readable copy in addition to the encrypted copy, so that AI classification, server-side search, and connected tools can read the content.
- This readable copy can be accessed by our systems and by service providers that power those features (for example, our AI classification provider).
- You can change an item back to Private at any time, which deletes the readable copy from our servers. New items default to Private.
We never use your content—private or tool-accessible—to train AI models.
4. Data Sharing
We do not sell your personal information. We may share limited data with:
- Apple: For authentication (Sign in with Apple) and payment processing (App Store subscriptions).
- Service Providers: Infrastructure providers who help us operate the service (e.g., hosting, analytics, and—for Tool-accessible items only—AI classification). They process data on our behalf and are bound by confidentiality agreements. Service providers only ever receive readable content for items you have marked Tool-accessible; Private items are shared only as undecryptable ciphertext.
- Legal Requirements: If required by law, we may disclose information. However, due to encryption, we can only provide encrypted data and metadata.
5. Data Retention
We retain your data as follows:
- Account Data: Retained while your account is active.
- Encrypted Content: Retained until you delete it or delete your account.
- Deleted Data: Permanently removed within 30 days of deletion.
- Anonymized Analytics: May be retained indefinitely for service improvement.
6. Your Rights and Choices
You have control over your data:
- Access: You can view all your data in the App at any time.
- Export: You can export your data through the App.
- Deletion: You can delete individual items or your entire account. Account deletion permanently removes all data.
- Notifications: You can enable or disable push notifications in the App settings.
- Subscription: You can manage or cancel subscriptions through your App Store settings.
7. Data Security
We implement robust security measures:
- On-device AES-256-GCM encryption for all user content, with Private items kept zero-knowledge (no readable copy on our servers)
- X25519 key exchange for secure device pairing
- TLS 1.3 for all data in transit
- Encrypted database storage
- Regular security audits and updates
8. Children's Privacy
Hako is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
9. International Data Transfers
Your data may be processed on servers located in the United States. By using Hako, you consent to this transfer. Due to our encryption architecture, your Private content remains protected as undecryptable ciphertext regardless of where it is stored; Tool-accessible items are processed in readable form to provide the features you enabled.
10. California Privacy Rights
California residents have additional rights under the CCPA:
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising your rights
11. European Privacy Rights
If you are in the European Economic Area (EEA), you have rights under GDPR including:
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to data portability
- Right to object to processing
- Right to lodge a complaint with a supervisory authority
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes through the App or via email. Your continued use of Hako after changes take effect constitutes acceptance of the revised policy.
13. Contact Us
If you have questions about this Privacy Policy or our privacy practices, please contact us at privacy@hakoapp.co.