Last Updated: August 10, 2026
Dori is operated, at this stage, by an individual founder prior to formal incorporation of a company entity. In this Policy, "we" and "us" refer to that individual, doing business as Dori.
Dori is fundamentally a local-first application. Your notes, captures, meeting summaries, and metadata are stored directly on your own device (or your own self-hosted server, if you choose that option) as plain Markdown files. We do not operate central servers that store your vault content, and we cannot read it unless you explicitly share it with us (for example, to get support).
When you join the Dori waitlist at mydori.app, we collect the email address (and name, if you provide one) you submit. This is stored as a contact in Resend, our email service provider, and used to send you early-access updates and to notify us internally that someone signed up. We do not sell this information. You can ask us to remove you at any time (see Contact, below), or unsubscribe from any email we send.
Dori does not currently collect telemetry or automated crash reports from the desktop app. If you run into an issue, you may choose to manually share your local log files with us for debugging — we never collect them automatically.
If you use Dori's web portal, we set an essential session cookie required to keep you signed in. We do not use advertising or cross-site tracking cookies, and we do not run third-party analytics scripts (e.g. Google Analytics, Meta Pixel) on our website or portal.
Every integration below is opt-in — Dori only talks to a service if you explicitly connect it. Once connected, your interaction with that service is also governed by its own privacy policy, which we encourage you to read.
drive.file OAuth scope — Dori can only access files you explicitly select through Google's file picker, never a broad scan of your Drive.If you run Dori's engine on your own server or VPS instead of locally, your vault and configuration live entirely on infrastructure you control. We have no access to it.
Waitlist contact information is retained until you unsubscribe or ask us to delete it. Your local vault data is retained entirely under your own control, since it's plain files on your device or your own infrastructure — deleting the files deletes the data.
Dori is a productivity tool intended for professional use and is not directed at, or knowingly used to collect information from, children under 18.
Because Dori is local-first, most of your data never leaves your own device. Where you connect a third-party integration or AI provider, your data may be transferred to and processed by that provider under its own privacy policy and in whatever jurisdiction it operates.
If we introduce telemetry, cloud-based features, or new data collection in the future, we will update this Policy and notify users of material changes. Continued use of Dori after such an update constitutes acceptance of the revised Policy.
Questions about this Privacy Policy, or requests to access or delete data we hold about you, can be sent to hello@updates.mydori.app.