Sage · Legal

Privacy Policy

On this page
  1. Information Collection and Use
  2. Local Storage and Cloud AI Processing
  3. Microphone, Photos, Files and Links
  4. Third-Party Access and International Processing
  5. Retention, Deletion and Your Choices
  6. Children
  7. Security
  8. Changes and Contact

Effective date: September 23, 2026

This Privacy Policy explains how Maxim Ermolaev (the "Service Provider", "we", "us" or "our") handles information when you use Sage – Second Brain ("Sage" or the "Application") for iOS and visit our website at sagebrain.tech. Contact: ermolaevm22@gmail.com.

Information Collection and Use

Sage helps you capture notes and attachments, organize them into topics, and generate insights for each thread. We process information to provide these features, authenticate users, maintain security, troubleshoot problems, and respond to support requests.

Sage does not request precise device location and does not include advertising or cross-app tracking SDKs. We do not sell your personal information or use your notes for targeted advertising.

Local Storage and Cloud AI Processing

Sage saves notes and attachments on your device first. SwiftData then syncs notes, categories, thread insights and attachment files through a private CloudKit database in your Apple iCloud account. Sync is asynchronous and depends on iCloud availability and device connectivity. Our backend does not keep a permanent copy of your journal. Device backups are managed separately by you and Apple.

Saved notes are queued for Capture processing and may be processed in the background. You start thread analysis by tapping Analyse. These features send the relevant note text, attachments, categories and previous insights through our authenticated backend to Google's Gemini API. Shared items are saved locally first, then imported into the main app for processing.

These requests can contain identifiable content; they are not merely anonymous statistics. Our backend processes this content to return results and does not keep it as a permanent copy of your notes. Internet transmission for AI processing is separate from local storage.

We use the Gemini API through a Google Cloud project with active paid billing. Under Google's Paid Services terms, prompts and responses are not used to improve Google's products or train its models. Google may retain prompts and responses for a limited period for safety, abuse prevention and required legal disclosures. Files uploaded through the Gemini Files API are automatically deleted by Google after 48 hours. This file expiry is separate from any permitted safety or legal retention. See the Gemini API Additional Terms, Files API documentation and Google Privacy Policy.

Microphone dictation uses Apple's on-device speech recognition. Temporary dictation audio is removed after transcription, failure or cancellation. The resulting text becomes part of your note and may subsequently be sent for AI processing as described above. Apple may download required speech language assets.

The Application accesses photos, camera input and files through the features and system permissions you choose to use. You can manage permissions in iOS Settings. Fetching previews for saved links or opening external links may contact the linked website and disclose your IP address and the requested URL to that website.

Third-Party Access and International Processing

We use Apple for sign-in, App Store payments and system services, RevenueCat to manage subscription access, Google for AI processing, and infrastructure providers to operate our backend. RevenueCat receives your Sage account identifier, purchase and subscription information, and technical information needed to provide its service. We do not send your notes, attachments, name or email address to RevenueCat. Apple processes payments; Sage does not receive your full payment-card details. See the RevenueCat Privacy Policy.

Data sent to our backend and providers may be processed outside your country, including in the United States. Apple's handling of information is described in the Apple Privacy Policy. External websites linked from Sage or this website have their own privacy practices.

We may disclose information when required by law or when reasonably necessary to protect users, prevent fraud, investigate abuse or protect legal rights. Access by service providers is limited to the processing needed for their services and applicable obligations.

Retention, Deletion and Your Choices

Notes, attachments and thread insights remain on your device and in your private iCloud database until removed. Deletions sync to other devices when they connect; they may remain in existing device backups or diagnostic records. Signing out does not delete notes or your server account. Deleting your Sage account removes local memory and queues deletion of synced records, but iCloud deletion requires sync to complete. Uninstalling the app does not automatically delete your server account or iCloud records.

We retain account data while needed to provide your account and service. Operational and support records are retained as needed for troubleshooting, security and legal obligations. You can request access, correction or deletion of information held by us by contacting ermolaevm22@gmail.com. We may need to verify your identity and may retain information where legally required. We cannot erase existing device backups under your control.

Where applicable, we rely on performing our service agreement, legitimate interests in operating and securing the service, legal obligations, and consent where required. Depending on your location, you may have rights to access, correct, erase, restrict or object to processing, obtain a portable copy, withdraw consent, or complain to a data protection authority. Contact us to exercise these rights.

Children

Sage's AI-powered service is intended for adults aged 18 and over and is not directed to children. If you believe a child has provided personal information through the service, please contact us so we can investigate and take appropriate action.

Security

We use HTTPS for production backend communication and Apple's protected storage mechanisms for local credentials. No system is completely secure. Protect access to your device and Apple account, and avoid submitting information you do not have permission to process.

Changes and Contact

We may update this policy as the service changes. The effective date above identifies the current version. We will provide additional notice or obtain consent where required by applicable law. For privacy questions or requests, contact Maxim Ermolaev at ermolaevm22@gmail.com.