Privacy Policy
PRIVACY.md and need the
company's real details before the site goes live.
The short version
Nothiza has no server. There is no account and no sign-up, and none of your data is sent to us — not usage, not telemetry, not crash reports.
Everything the app reads stays on your Mac. The only network traffic it makes is talking directly to services you connected yourself, using your own credentials.
What the app touches, and why
| Data | What for | Where it goes |
|---|---|---|
| Calendar events | Show your next meeting, the countdown and the call link | Stays on your Mac |
| Now playing (music) | Show track, artist and artwork; control the player | Stays on your Mac |
| Audio devices | List and switch input/output; lock the microphone | Stays on your Mac |
| Bluetooth devices | Show battery level | Stays on your Mac |
| Processes listening on local ports | List development servers | Stays on your Mac |
| Files dragged onto the Shelf | Hold them until you drop them somewhere else | Stays on your Mac |
| Notes text | The feature itself | Stays on your Mac |
| Todoist token | Fetch and complete your tasks | macOS Keychain |
| Anthropic API key | Show your usage percentage | macOS Keychain |
System permissions
The first time you open it, macOS asks for:
- Calendar — without it the agenda tab stays empty; everything else works.
- Automation — to read what's playing and control the player.
You can revoke both at any time in System Settings ▸ Privacy & Security. The app keeps working, minus those features.
Network connections
Nothiza only reaches the network once you connect a service:
- api.todoist.com — your tasks, authenticated with the token you provided.
- api.anthropic.com — your usage percentage, authenticated with your key.
There is no middleman. Traffic goes from your Mac straight to the service.
Credentials
Tokens and keys live in the macOS Keychain, with
accessibility kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly:
readable after the Mac's first unlock, and not synced to
iCloud nor included in backups. They are never written to a config file or
a log.
To remove them: delete the token in the app's Settings, or remove the “Nothiza” item in Keychain Access.
What the app does not do
- It collects no analytics, no usage metrics and no device identifiers.
- It uses no cookies, pixels, third-party SDKs or ad networks.
- It does not read the contents of your files — the Shelf holds references.
- It does not record audio. Its audio access is about routing (which device is active), not capture.
- It does not send crash reports automatically.
Your rights (LGPD)
Because we process none of your personal data in our systems, there is nothing on our side to access, correct or delete. The data the app handles is under your direct control: deleting the app and removing its Keychain items wipes all of it.
Questions about this document: SUPPORT EMAIL.
Purchase
Payment is processed by PAYMENT GATEWAY, which acts as controller of the payment data and applies its own privacy policy. We neither receive nor store card details. From the gateway we get only what is needed to issue and support your license — your name and email address.
Changes
Material changes to this policy will be announced on the site and reflected in the date at the top of this document.
See also the license agreement, which incorporates this document in clause 8.
This English text is a translation provided for convenience. Nothiza is sold by a Brazilian company and the Portuguese version at /privacidade is the authoritative one; if the two ever diverge, the Portuguese text prevails.