Skip to content
Pipwild
The notebookYour worldField notesSign in
Back to Pipwild

Privacy, plainly.

How Pipwild handles your account, your captures, and the AI actions you choose.

Last updated September 12, 2026 · Operated by Tony Montes

Your account

When you sign in with Google, we store your Google account identifier, email address, and name to identify your account. We do not request access to Gmail, Drive, Calendar, or your contacts.

A necessary session cookie keeps you signed in for up to 30 days. It is not used for advertising.

What you save here

Pipwild stores the content you save, including journal entries, recordings, notebook photos, tasks, habits, focus blocks, reviews, conversation text and cited passages, and settings. An optional profile can hold preferences you choose to share with the app. Unsaved text drafts may remain in browser storage on that browser, separated by account. They do not become synced journal entries until you save them.

Conversation recordings can be kept temporarily in your browser so you can recover them after a failed request. They are separate from saved voice journal attachments. Conversation audio is sent for transcription only when you confirm that action. You can edit the transcript before sending a message to Pip. Temporary conversation audio is cleared after a successful saved reply or when you discard it.

This is a hosted service. Account records are stored in Google Cloud Firestore, and original attachments are stored in a private Google Cloud Storage bucket. Google Cloud Run operates the service. Your content is associated with your account so you can open it from another signed-in device.

Private habit controls conceal the habit name in the interface. They do not remove the habit from account storage or from an export you choose to download.

When an AI provider receives content

Provider requests happen when you choose a capture-reading, organizing, or conversation action. When you organize a journal entry, Anthropic receives the selected text. Optional context for organizing can include your profile preferences and a summary of activity counts. Reading a notebook photo sends the selected photo to Anthropic without profile context. ElevenLabs receives selected recordings for speech transcription. In conversation mode, Anthropic receives the message you send, the conversation context needed to reply, and any optional journal context you choose to enable. If profile context is on in Settings, conversation requests also include your profile name, preferences, interests, and available minutes. Profile context starts turned on, and you can turn it off. When you choose to hear a reply aloud, or enable spoken new replies, ElevenLabs receives the reply text to create spoken audio. Spoken replies are off by default. Generated reply audio is played for the conversation and is not saved as a journal attachment.

These providers receive the content needed for the action. The app does not monitor other apps, read your messages in the background, or send all of your account content just because you signed in.

AI results can be wrong. You can review recognized text and edit proposed tasks before accepting them. Providers have their own data policies and retention rules, which may differ from ours.

Anthropic API retention information ElevenLabs privacy information Google privacy information

Optional journal memory

Journal memory starts turned off. If you enable it, the app can use relevant passages from your saved journal and the memories you approve to help with a request. This can include older entries. Selected context is sent to Anthropic with that request. Your other accounts and other people’s notebooks are not part of it.

You can inspect saved memories and their source passages, forget individual passages, exclude an entry, clear saved memories, or turn memory off. Clearing memories also turns memory off. Forgetting a passage prevents its use in future retrieval, and excluding an entry removes its saved memories. Turning it off stops its use in future AI requests. It does not erase an earlier provider request or the journal entry it came from. Delete an entry separately if you want to remove that source from your account.

Deleting a journal entry also removes memories linked to it. Editing an entry invalidates remembered quotes that no longer match its text. Forgetting a passage, clearing memories, deleting an entry, or changing its cited words also replaces affected saved AI replies with a removal notice. This does not erase content already sent to an AI provider. Deleting a conversation removes that chat; it does not delete the journal passages it referred to.

A remembered passage records something you wrote at a point in time. It may be incomplete or out of date. You can correct your journal or remove a memory, and you should check a reply’s cited sources before relying on it.

Why we use this information

We use account information and saved content to provide the app, keep each person's data separate, perform the actions they request, and respond to support requests. Technical service records may include request times, network information, and errors needed to operate the service and limit abuse. Routine service logs are kept for 30 days.

There are no ads or payments in Pipwild. We do not sell your journal content or use it for advertising. Server-side usage limits help keep the free service available. Each account has 2,000 MiB of original-file storage (about 2 GB), with up to 20 MiB per file. Reusing a saved original counts it once.

Your controls and deletion

You can edit or delete saved entries and download an export from Settings. Exports can contain private text and original attachments, so keep them somewhere you trust.

You can delete your account in Settings by confirming with the word DELETE. This removes the account's active app data and original attachments and ends its sessions. Saved account records are kept until you delete them or your account. Temporary demo accounts expire after 30 days. Unsaved drafts in browser storage on other devices may need to be cleared separately.

Deleted attachments may remain in the cloud storage provider's recovery system for up to seven days. AI providers may retain submitted content under their own policies. Deleting your account here does not delete your Google account.

For access, correction, deletion, or other privacy requests, email santiago.montesb@gmail.com. We may need to verify that the request belongs to the account owner.

Who the app is for

Pipwild is for adults aged 18 and over. It is not intended for children. If you believe a child has provided personal information, contact us so we can look into it.

Changes and contact

If this policy changes, we will update the date on this page. The operator is Tony Montes. For questions about this policy, contact santiago.montesb@gmail.com.

Looking for the terms?Read the terms
Pipwild

A little place for your next step.

Open your campExplore the demoJournaling, habits & focus guidesPrivacyTermsSay hello
Made for real life, one day at a time.