Cuedora Privacy Policy

Privacy Policy

Cuedora is built so that what you capture stays on your Mac. This page says exactly what that means, including the few network requests the app can make and what they contain.

Effective date: August 19, 2026
Publisher: Chhaya Digital LLC

What Cuedora does on your Mac

Cuedora is a capture-to-action utility for macOS. You can speak, select a region of the screen, or keep a screenshot, and turn that into a note, a reminder, a calendar event, or text at the cursor.

Speech recognition, screenshot OCR, explanations, and suggested actions all run on your Mac. The default speech engine is a local helper process that only accepts connections from this computer, at 127.0.0.1. You can instead choose Apple’s built-in on-device speech engine. Understanding and text cleanup use Apple’s on-device Foundation Models when they are available, with a deterministic fallback that also runs locally.

Audio is encoded in memory, sent only to that local helper (or to Apple’s on-device speech APIs if you selected them), and is not kept as a recording after transcription. Nothing you capture is used to train a model, and we do not run analytics or advertising in the app.

What never leaves your Mac

Cuedora does not send any of the following to Chhaya Digital, to Lemon Squeezy, to the update host, or to any other network service:

Those materials are processed and stored only on your computer, unless you yourself export a file and then choose to send it to someone.

Network connections the app can make

The app is allowed a short, fixed list of destinations. Each one is described below as it is implemented today. Ordinary connection metadata — your IP address, the approximate time of the request, and a typical macOS User-Agent — is visible to the host of every HTTPS request. That is true of any app that uses the internet. Capture content is never included.

1. License activation, validation, and deactivation

When you activate, validate, or deactivate a paid license, Cuedora posts a form to Lemon Squeezy’s license API at https://api.lemonsqueezy.com/v1/licenses/ (paths activate, validate, and deactivate). The app uses a temporary network session for these calls, so it does not keep Lemon Squeezy cookies.

Activate sends:

That installation identifier is not your Mac’s serial number, hardware UUID, or computer name. Cuedora creates it locally and stores it in the Keychain. Lemon Squeezy replies with an activation instance id, which Cuedora then stores and uses later.

Validate and deactivate send:

Validation is not sent on every launch. After a successful online check, the app can work offline for 30 days. It tries to refresh that window when it is close to expiry, or when you choose Validate in Settings.

The trial itself does not contact Lemon Squeezy. A trial can run with no network and no account.

2. Software updates

Updates use Sparkle 2. The feed is https://cuedora.com/appcast.xml. If you install an update, the archive is fetched from under https://cuedora.com/releases/.

Automatic update checks are off unless you turn on “Check automatically” in Settings → Updates. Sparkle’s anonymous system profiling is disabled. A check is an HTTPS GET of the appcast. The host can see your IP address, when the check happened, and ordinary HTTP metadata, including a User-Agent that identifies the app name and version. Sparkle also uses macOS compatibility information so it can pick an update that will actually run. The request does not include license keys, capture content, filenames, or diagnostics.

You can also check once from Cuedora → Check for Updates… or from the menu bar.

3. Optional speech-model download

A small English model ships inside the app. Larger models download only if you ask, from Settings → Dictation. That download is an HTTPS GET of a model file from Hugging Face:

https://huggingface.co/ggerganov/whisper.cpp/resolve/…

Hugging Face can see your IP address, User-Agent, and which file you requested. Cuedora does not send audio or transcripts with that request. Hugging Face’s own privacy policy applies to their logs.

4. Apple’s on-device speech assets

If you select Apple Speech and its on-device assets are not installed yet, macOS may download them through Apple’s SpeechAnalyzer / AssetInventory APIs. That is an Apple endpoint, not a Cuedora one. Cuedora does not attach capture content to that download.

5. Pages you choose to open

If you click Buy Cuedora, or open a link to this website, macOS opens that address in your browser (or takes you to Lemon Squeezy’s checkout). That is a visit you initiated. It is not a background upload of captures.

6. Support requests you send from the app

Settings → App → Support has a form. If you fill it in and press Send, Cuedora posts what you typed to our database at supabase.co, hosted in the United States. This happens only when you press Send. Nothing is sent in the background, on launch, or later from a queue — if a send fails, it fails then and there and tells you, and nothing is saved to try again.

It sends exactly six things:

The app and macOS versions are shown to you in the form, next to your message, before you press Send. Nothing is sent that was not on screen.

What a support request never contains: audio, transcripts, screenshots, OCR text, explanations, Inbox items or their titles, Screenshot Shelf contents, filenames, the diagnostics log, your license key, or any device or installation identifier. If you want to send us a diagnostics file, you export it yourself and attach it to an email — the form cannot reach it.

We keep support requests so we can answer them and so a later message about the same problem still makes sense, and delete them within 24 months. Email [email protected] to have yours deleted sooner. You never have to use the form: the same address reaches the same person.

The local speech helper never talks to the public internet. It binds only to 127.0.0.1 on a port chosen for that launch, and it requires a per-launch secret before it will accept a request.

What Lemon Squeezy holds when you buy

Lemon Squeezy is the merchant of record. When you pay, you are buying from Lemon Squeezy, not sending a card number to Cuedora. Their checkout collects what they need to sell you a license — typically your name, email address, payment details, and country or address for tax. After payment they email you a license key.

That purchase relationship is between you and Lemon Squeezy. Read their privacy policy and buyer terms. If you ask us for a refund, we pass the request to them; they process the payment.

We do not receive your full payment card number. We may see, from Lemon Squeezy, enough to know that a given license key was issued, activated, validated, or deactivated, and on how many of the three allowed devices.

What Apple may see

This website

cuedora.com is a static marketing site hosted on Cloudflare Pages. Visiting it sends an ordinary web request (IP address, browser, pages requested) to that host so the page can be served. The site source does not load analytics scripts, advertising pixels, or social trackers. It sets no cookies, and there is no account to create and nothing to log in to.

The site does have two forms — a launch waitlist and a contact form. Those are the only places it collects anything from you, and they only ever collect what you type into them. The next section says exactly what that is.

If you toggle appearance on the homepage, that preference is stored in your browser’s localStorage under the key cuedora-theme. These legal pages follow your system light/dark setting and do not write that key.

Email to [email protected] is delivered to a mailbox we host with Apple iCloud. The contents of that email are then stored there so we can reply.

The site does not set advertising or analytics cookies. Cloudflare, as the host, may see ordinary request logs so the page can be served. There is no cookie banner because we do not use non-essential cookies.

What can leave the device, and why

Capture content does not leave your Mac. The only personal information that can reach someone else is listed here. We use each item only for the purpose next to it. We do not use it for advertising, an analytics product, or model training.

We share that information only with the provider named above, and with a professional adviser or a government authority if the law requires it. We do not sell personal information. We do not share it for cross-context behavioral advertising. If the company is sold or merged, a buyer would receive only what we actually hold — not your captures.

What the website forms collect

Two forms on cuedora.com send data to a database we run on Supabase, hosted in the United States. Supabase stores it for us; they do not use it for anything of their own.

The launch waitlist (the email field at the bottom of the homepage) stores:

It is used for one thing: to email you when Cuedora is released. You will not be added to a newsletter, and the list is not sold, rented, or shared.

The contact form stores:

It is used to answer you, and to keep enough of a record that a later message about the same problem makes sense.

What these forms deliberately do not store: your IP address, your browser or device type, the page you arrived from, or any cookie or tracking identifier. This is not a promise about how we behave — the database table has no columns for those values, so there is nowhere for them to go. The table is written by an insert-only key that cannot read anything back; the stored messages are readable only by us.

How long we keep it. Waitlist addresses are kept until you ask to be removed, or until the launch announcement has gone out and the list is retired — whichever comes first. Contact messages are kept for up to 24 months so a follow-up still has its context, then deleted.

Getting it removed. Email [email protected] and ask. We will delete the row and confirm. You do not have to explain why, and it will not affect a purchase, a licence, or your ability to get support.

If you would rather not use a form at all, [email protected] reaches the same person and the same mailbox.

What is stored locally, and where

On a shipping build, capture data lives under:

~/Library/Application Support/Cuedora/

That folder holds, among other files:

Temporary screen-capture files go under your system temporary directory and are not meant to outlive the capture. Audio for transcription is built in memory, not saved as a keepable recording.

Keychain (service com.chhayadigital.cuedora.licensing on the shipping app) holds the random installation identifier, the license key and Lemon Squeezy instance id if you have activated, the signed offline grant, and trial-start / “license ever activated” flags. Those Keychain items are marked for this Mac only; they are not meant to roam through iCloud Keychain.

A small trial-anchor file also lives outside the main data folder, at:

~/Library/Application Support/com.chhayadigital.cuedora.installstate/anchor.plist

It stores the trial start time and whether a license has ever been activated on this Mac. It exists so deleting the app or using “Remove All Local Data” cannot quietly restart the trial. It does not contain captures, transcripts, or your license key.

The Screenshot Shelf keeps recent screenshots for a retention window you can change (7 days by default, or while pinned, with a count cap). A delete you make yourself moves that file to the Finder Trash, so you can recover it from Trash. When the shelf expires an item on its own, it deletes the file permanently rather than filling Trash with housekeeping. “Delete all local data” also erases shelf files permanently.

How to export or delete everything

Open Settings with Cuedora → Settings… (⌘,), then the App group in the sidebar.

Export and deletion stay available after a trial ends or a license is refunded. A refund never deletes local data. See the Refund Policy.

To stop the app using a license seat on this Mac, use Settings → License → Deactivate this Mac…. That contacts Lemon Squeezy with the license key and instance id, then forgets the key on this Mac. Your captures stay put.

Uninstalling the app does not by itself erase Application Support or the trial anchor. If you want those gone, use Delete all local data first, then remove the remaining folders in Finder if you still see them, and delete the Keychain items for Cuedora if you want the license material gone too.

Security

Capture files live on your Mac, in your account’s Application Support folder. License material is stored in the Keychain and marked for this Mac only. The few network calls the app or this site make use HTTPS. We do not operate a capture server. No method of storage or transmission is perfectly safe, and we cannot guarantee that.

Where processing happens

Chhaya Digital LLC is in New Jersey, in the United States. Lemon Squeezy, Cloudflare, Hugging Face, Apple iCloud, and Supabase may process the information listed above in the United States or in other countries where they operate. Privacy law there may differ from the law where you live.

Children

Cuedora is a paid productivity app for macOS. It is not directed at children under 13, and we do not knowingly collect personal information from anyone under 13. You must be 18 to buy a license or to send us personal information. If you believe a child has submitted purchase information through Lemon Squeezy, email [email protected] and we will work with the merchant of record.

If you are in the EEA, UK, or California

Chhaya Digital LLC does not operate a cloud account or a capture database. We cannot hand you “your audio from our servers,” because we do not have it. We have not appointed a data-protection officer or an EU or UK representative.

For capture content, the practical rights of access, export, and deletion are the in-app controls above. You exercise them on your Mac.

For the purchase, Lemon Squeezy holds the personal data of the sale (name, email, payment, tax country). Ask them, or email us and we will point the request at them.

For license activation, Lemon Squeezy holds the license key, the instance name that includes the random installation identifier, and the instance id. Deactivating this Mac from Settings removes that seat. Deleting Keychain items on this Mac removes our local copy.

For website visits, we do not run a login or a customer database. Cloudflare, as the host, processes the connection metadata needed to serve the page.

For the website forms, we do hold what you typed: an address on the waitlist, or an address and a message from the contact form. You can ask us for a copy of it, ask us to correct it, or ask us to delete it, by emailing [email protected]. We aim to answer within 30 days. Where the law asks what our basis is: the waitlist runs on your consent, which you can withdraw at any time by asking us to remove you, and the contact form runs on our legitimate interest in replying to someone who wrote to us. There is no automated decision-making and no profiling.

If a privacy law where you live gives you a right of access, correction, deletion, portability, restriction, objection, or appeal, email [email protected] and say so in the subject line. We will do what we can with what we actually hold, and we will say so if there is nothing here to change. You may complain to a data-protection authority where you live. In the UK that is the Information Commissioner’s Office.

We do not sell your personal information, and we do not use it for cross-context behavioral advertising or for profiling that produces legal or similarly significant effects. Nevada residents may ask us not to sell certain covered information; we do not sell it, and you can email us if you want that request on record. We do not discriminate against you for exercising a privacy right.

Changes to this policy

If the app’s real data flows change, this page will change with them. We will update the effective date at the top. For a change that expands what leaves the device, we will treat that as a product decision that needs to be true in the software first, not just in this document. Using the website after a new effective date means you have seen the updated policy.

How to reach us

Chhaya Digital LLC
12 Dayton Dr., Apt. 63A
Edison, NJ 08820
United States
[email protected]

If you are writing about privacy, say so in the subject line. More on getting help is on the Support page.