This policy is unusually short, for a simple reason: Standin has no server. We have nowhere to store your data, so most of what a privacy policy has to cover simply doesn't exist here.
No account, no login, no analytics, no ad SDK, no third-party tracking library. This app never sends any of your content to us, because we have nothing that could receive it.
Recordings and the photos taken automatically are stored in this app's private directory on your phone. When you tap "organize into notes," they go straight from your phone to Google's Gemini API, using an API key you applied for yourself, stored on your phone.
The finished note and photos are written into the folder you chose (usually an Obsidian vault), using Android's Storage Access Framework (SAF). We only ever touch the one folder you selected.
Once your content reaches the Gemini API, it's governed by the terms between you and Google, not by ours. That's the necessary consequence of using your own API key — also it's exactly why we chose this architecture: so that we never become a checkpoint between you and your own data.
⚠️ One thing to know about the free tier: Google's policy states that content on the free tier may be used to improve its models. That's usually fine for recording your own classes; if you're handling content that can't leave your control, turn on the paid tier in Google Cloud instead — paid-tier content isn't used for training. The app's settings page and first-launch walkthrough both say this again.
| Permission | Used for | Not used for |
|---|---|---|
| Microphone | Recording audio after you press record | Never activates unless you've pressed record |
| Camera | Detecting slide changes and photographing them; scanning textbooks and handwritten notes | Never used in the background |
| Notifications | Showing the persistent notification while recording or organizing is running | Never pushes marketing messages |
| Folder access (SAF) | Writing notes and photos into the folder you chose | Never reads any file outside that folder |
| Network | Sending audio and photos to Google's API | Never connects to any server of ours |
The app keeps an operation log on your phone (when recording started, how many photos were taken, what the API responded), stored locally only, used to diagnose problems when something goes wrong. It never contains your API key, recordings, or photos.
You can generate a plain-text file yourself using "Report a problem." Once it's generated, you get to review the full contents first, then decide whether to send it and to whom — through your phone's own share sheet, not any upload channel of ours. You can cancel at any point. If you choose to also attach "the note and transcript produced," that's a deliberate choice you make in the moment.
Purchases go through Google Play. Payment details are handled by Google — we never see your payment method, only whether Play tells us this account has purchased.
Gemini API usage costs never pass through us — that's a bill between your Google account and Google. We have no mechanism to take a cut, and no technical way to.
This app is built for students and working professionals. It isn't designed for children under 13, and it doesn't actively collect personal data from any age group — because it doesn't collect personal data at all.
The beta sign-up form on the homepage is a Google Form — hosted by Google, not passing through our servers (we don't have any). It asks for your name, email, native language, which language version you plan to test, Android version, your role (student/teacher/researcher/developer/working professional/other), and whether you'll use it in a real class or meeting, plus one optional field at the end. It's used solely to select this round's testers and reach out to you directly — never for anything else, and never sold or shared with a third party.
This doesn't contradict "personal data we collect: none" above — that statement is about the app itself: recordings, photos, and notes never pass through us, start to finish. The sign-up form is the one place on this website that collects personal data, and it's collected by Google Forms, not our server — we still have nowhere to store it even if we wanted to.
Any change updates the date at the top of this page. Because the app itself has no server and no accounts, we have no way to notify you proactively — that's the flip side of not collecting a way to contact you. (Email addresses collected through the beta sign-up form are used only to reach that round's testers, never to send policy-change notices.)
For privacy questions, email support@bitilabs.com. Once the app is listed, the developer contact on the Google Play store page will be the same address.