NoteWrite
Request Early Access
Security & Privacy

Built to minimize what leaves your device — not maximize what AI can do

Every design decision in NoteWrite starts from the same question: does this actually need to happen, or does it just happen to be possible? Here's exactly what that means in practice.

Speech recognition runs on your device

When you dictate a session, Apple's on-device speech recognition converts your voice to text directly on your phone. Your audio itself is never transmitted anywhere — not to NoteWrite, not to AWS, not to Apple's cloud transcription service.

Client records stay on your device

Clients are identified by initials and an internal ID only — NoteWrite never asks for a full name. Client records, session content, and notes are stored in the app's private storage on your device, not in a database NoteWrite operates.

One AI provider, zero retention

The only data that ever leaves your device is what's needed for AI-assisted note extraction, generation, or revision — sent once, under a signed Business Associate Addendum with AWS, and never stored afterward. NoteWrite uses a single AI provider (AWS Bedrock, running Anthropic's Claude) for every AI feature in the app.

Safety content never reaches AI

Information about suicidal ideation, homicidal ideation, self-harm, or safety planning is handled by a separate, deterministic part of the app. It's never included in what's sent for AI extraction or generation, and AI-generated text is never permitted to introduce or alter it — in either direction.

Device authentication, every time

Face ID, Touch ID, or your device passcode is required every time the app opens or returns from background — not optional, not a setting you can turn off. Protects client records at all times, including the case of handing your device to a client to complete a screener.

An off switch for AI, not just a policy

For SOAP and DAP notes, you can turn AI off entirely in Settings and document by typing directly into each section. When it's off, nothing is transmitted anywhere — no network call happens at all.

What we deliberately don't do

No third-party analytics or ad tracking. NoteWrite doesn't use any analytics, advertising, or crash-reporting SDK.

No AI training on your data. Nothing sent for AI assistance is ever used to train any model.

No photo retention. Scanned handwritten notes are read on-device and discarded immediately — never saved to your Photos library or uploaded anywhere.

No write access to your calendar. Calendar sync is strictly read-only, and only for the calendars you explicitly select.

Full technical detail lives in our Privacy Policy — including exactly what's collected, where it's stored, and how AWS's Business Associate Addendum applies.

Read the Full Privacy Policy →