Privacy Policy

Last Updated: August 10, 2026

Dori is operated, at this stage, by an individual founder prior to formal incorporation of a company entity. In this Policy, "we" and "us" refer to that individual, doing business as Dori.

Local-First Architecture

Dori is fundamentally a local-first application. Your notes, captures, meeting summaries, and metadata are stored directly on your own device (or your own self-hosted server, if you choose that option) as plain Markdown files. We do not operate central servers that store your vault content, and we cannot read it unless you explicitly share it with us (for example, to get support).

What We Collect

Waitlist and early access

When you join the Dori waitlist at mydori.app, we collect the email address (and name, if you provide one) you submit. This is stored as a contact in Resend, our email service provider, and used to send you early-access updates and to notify us internally that someone signed up. We do not sell this information. You can ask us to remove you at any time (see Contact, below), or unsubscribe from any email we send.

The desktop app

Dori does not currently collect telemetry or automated crash reports from the desktop app. If you run into an issue, you may choose to manually share your local log files with us for debugging — we never collect them automatically.

Signed-in portal usage

If you use Dori's web portal, we set an essential session cookie required to keep you signed in. We do not use advertising or cross-site tracking cookies, and we do not run third-party analytics scripts (e.g. Google Analytics, Meta Pixel) on our website or portal.

How Your Data Flows Through Integrations You Connect

Every integration below is opt-in — Dori only talks to a service if you explicitly connect it. Once connected, your interaction with that service is also governed by its own privacy policy, which we encourage you to read.

Self-Hosted and VPS Deployments

If you run Dori's engine on your own server or VPS instead of locally, your vault and configuration live entirely on infrastructure you control. We have no access to it.

What We Don't Do

Data Retention and Deletion

Waitlist contact information is retained until you unsubscribe or ask us to delete it. Your local vault data is retained entirely under your own control, since it's plain files on your device or your own infrastructure — deleting the files deletes the data.

Children's Privacy

Dori is a productivity tool intended for professional use and is not directed at, or knowingly used to collect information from, children under 18.

International Users

Because Dori is local-first, most of your data never leaves your own device. Where you connect a third-party integration or AI provider, your data may be transferred to and processed by that provider under its own privacy policy and in whatever jurisdiction it operates.

Changes to This Policy

If we introduce telemetry, cloud-based features, or new data collection in the future, we will update this Policy and notify users of material changes. Continued use of Dori after such an update constitutes acceptance of the revised Policy.

Contact

Questions about this Privacy Policy, or requests to access or delete data we hold about you, can be sent to hello@updates.mydori.app.

Terms of Service · mydori.app