Privacy Policy

Effective date: 20 July 2026

Introduction

Willownote is a personal task list with an optional MCP integration for AI assistants. This policy covers both the Willownote web app and this marketing site, and explains what data we collect, why we collect it, and what control you have over it.

This policy is published by Postma Software. It is governed by the laws of the Netherlands.

Data we collect

We collect the minimum needed to run the app:

  • Account data. Willownote signs you in with Google only. We store your Google account id, email address, display name, and profile picture from your Google profile, plus your timezone. If you purchase Willownote, we also store the date of purchase and the Stripe customer and payment identifiers for your purchase (never your card details).
  • Your content. The tasks, projects, and completion history you create in the app: titles, descriptions, dates, and project assignments.
  • API tokens. If you create a personal API token for MCP access (so an AI assistant can read or edit your list), the token is stored hashed (SHA-256) at rest. The plaintext value is shown to you once, at creation, and never again.
  • Session data. An httpOnly session cookie referencing a server-side session record, used to keep you signed in.
  • Contact messages. If you use our contact form, we process the email address and message you submit, solely to read and reply to your enquiry. Contact messages are emailed to us through our email provider; they are not stored in the app database.

How we use your data

Your data is used solely to provide the Willownote service: displaying your list, keeping it in sync across devices, honoring MCP requests made with your tokens, and maintaining your account. We do not sell your personal data, and we do not share it with third parties for advertising purposes.

Legal basis and your rights

If you are located in the European Union, United Kingdom, or another jurisdiction with similar data protection law, you have rights over your personal data, including the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate or incomplete data.
  • Request erasure of your personal data. On a verified request we will delete or irreversibly anonymise it, except where we are required to retain it by law.
  • Export your data in a portable format. You can export your tasks and projects yourself at any time from Settings, as a zip of JSON files.
  • Object to, or request that we restrict, certain processing.

To exercise any of these rights, contact us through our contact form. We process your account data on the basis of performing our contract with you (providing the app you signed up for) and, where applicable, our legitimate interest in operating and securing the service.

Data retention

By default, Willownote keeps rather than erases: completing a task moves it to your Done page instead of removing it, so your history stays intact. A small number of narrow, documented exceptions exist (for example, undoing a repeat completion removes the auto-created next instance, and abuse-prevention caps evict the very oldest records if an account grows far beyond normal personal use).

When you choose to delete a task or project yourself, it is not erased immediately. It moves to Trash, where it stays for 30 days and can be restored. After 30 days a scheduled process permanently deletes it, and it cannot be recovered. If you would rather not wait, "Empty trash" permanently deletes everything in your Trash right away.

This retention behaviour does not override your rights: if you ask us to erase your personal data, we will delete or irreversibly anonymise it as described above, subject only to data we must keep to comply with the law.

Third-party sub-processors

We use a small number of infrastructure providers to run Willownote. Each processes data on our behalf, under its own security and privacy commitments:

  • Railway hosts the API service and the Postgres database.
  • Cloudflare Pages hosts this static site and the app bundle.
  • Resend delivers the outbound email we send, including messages submitted through our contact form.
  • Stripe processes payments when you buy Willownote. We share your email address with Stripe to create the checkout. Willownote does not store your card details. If you later delete your account, Stripe may retain its own payment records as required by law even though we erase our copy.

Cookies

We use a single session cookie to keep you signed in. We do not use third-party advertising or tracking cookies.

Security

Data is transmitted over TLS. API tokens are hashed (SHA-256) at rest rather than stored as plaintext. Every account's data is isolated from every other account. Your tasks and projects are only ever accessible to you.

Children

Willownote is not directed at children under 16, and we do not knowingly collect personal data from them.

Changes to this policy

We may update this policy from time to time. If we make material changes, we will update the effective date above and, where appropriate, notify you directly.

Contact

Questions about this policy or your data can be sent through our contact form.