← Kurozu

Privacy Policy

Effective date: August 20, 2026
Last updated: September 7, 2026

This Privacy Policy describes how Kurozu ("we," "us," or "our") collects, uses, and shares information when you use the Kurozu mobile application for iOS (the "App").

By using the App, creating a cloud account, or using cloud-connected features, you acknowledge this Policy. The App is local-first: you can build and use timelines on your device without signing in.

Contact: support@kurozu.app


1. Summary


2. Scope

This Policy applies to the iOS App and the cloud services used by that App. It does not govern third-party websites you open, apps or services into which you paste exported text, or services we do not operate. Our use of service providers to operate the App is described in Section 7.

The App may be distributed under a display name configured at build time (for example, "Timeline" or "Kurozu"). References to "the App" mean the Kurozu iOS application regardless of icon label.


3. Information you provide

3.1 Timeline and fact content

You may create timelines and facts, including titles, descriptions, tags, time expressions, and fact-type labels.

Mode Where it is stored Transmitted to us
Local-only On your device (SQLite) No, unless you use cloud features or copy/export it elsewhere
Cloud-synced On your device (cache) and our servers Yes — when you create, edit, sync, or delete cloud timelines

You choose what to enter. Content may include health-related or other sensitive information if you type it.

3.2 Account and authentication

Cloud accounts use Google Sign-In, Sign in with Apple, or email and password. If you sign in, we process:

Sign in with Apple may provide a private-relay email address. That address may represent a separate Kurozu account from the same person using Google Sign-In.

3.3 AI and web-search features

After you affirmatively accept the AI disclosure during onboarding, the App may provide:

These features require a signed-in account, a cloud timeline, network access, an eligible Premium entitlement, and available AI allowance. AI features may process:

Who receives what:

Public-page reading: Where available, when you use Ask, the assistant may read text from public webpages using Tavily or Firecrawl. This can include URLs you supply and URLs discovered during research. We select the page-reading service as part of the AI feature; there is no separate in-app page-reading switch or permission prompt.

The page-reading service receives the webpage URL and extraction options, not your timeline or conversation context. A URL can itself reveal sensitive information. Do not submit private, account-specific or signed links. Extracted page text is included in the context sent to the AI provider used to answer your question. We do not create a stored archive of fetched page bodies: intermediate extracted text stays in the active server workflow's memory. Answers and source metadata, including extraction status and retrieval time, follow the assistant-history and temporary-workflow storage practices below. Page-reading providers may retain requests and content under their applicable service agreements, settings and legal obligations; we do not promise zero retention.

Assistant conversations are stored on your device. Bounded portions may be sent again when needed for a later AI turn. Temporary server workflow records may contain request and result data until acknowledged or until their configured expiry, currently approximately 12 hours.

We do not use AI inputs or outputs to train our own models. Under the business/API services selected for launch, OpenAI, Google Cloud Vertex AI, and Perplexity state that customer content is not used to train their models without customer authorization. We do not opt in to provider training. Providers may retain or process data for service delivery, abuse prevention, security, or legal compliance under their applicable agreements and configured settings.

Apple Health samples are not automatically included in AI requests. Health-related information you manually type into a cloud timeline, prompt, or conversation may be included.

3.4 Purchases, Premium, and AI usage

Purchases are processed by Apple through the App Store. We use RevenueCat to validate transaction information, associate an entitlement with your signed-in Kurozu account, and synchronize subscription status. We may process:

We do not receive your full payment-card number or Apple ID payment credentials.

3.4 Export

Export to AI builds plain text on your device and copies it to your clipboard. We do not receive export payloads on our servers.

If you choose to include selected Apple Health summaries in an export, the App shows an inline notice near that choice before copying. Once you paste exported text into another app, website, AI service, or message, that third party's terms and privacy practices apply.

3.6 Support and feedback

If you email us, we receive whatever you include in your message.


4. Information collected automatically

4.1 Crash and error reporting

We use Firebase Crashlytics to collect crash reports and technical errors, such as:

We configure crash reporting not to include timeline content, fact text, authentication tokens, email addresses, or Apple Health data in crash reports.

4.2 Product analytics

We use Google Firebase Analytics to understand how the App is used. Events may include, for example:

We do not send timeline titles, fact descriptions, health data, or email addresses to Firebase Analytics.

Firebase Analytics may collect standard device and app identifiers as described in Google's privacy documentation. We do not use the App for cross-app advertising or sell analytics data.

4.3 Network and session data

When you use cloud features, our API receives:

We configure application logs to exclude full timeline descriptions, AI prompts, answers, search results, authentication tokens, and export payloads. Temporary AI workflow storage described in Section 3.3 is not an application log and may contain request or result content until it expires or is deleted.

4.4 Local device data (not transmitted)

The App stores on your device:

We use connectivity checks locally to show online/offline state. We do not transmit a history of your network status.


5. Apple Health

On supported iPhones, the App includes a preview panel that can read Apple Health data only after you grant HealthKit permission. The App may request access to:

Health information you manually enter as a fact or AI prompt is user-provided content rather than a direct Apple Health read and may be cloud-synced or processed as described above.

This feature is not a medical device and is not intended to diagnose or treat any condition.


6. How we use information

We use information to:

We do not sell personal information, use it for cross-context behavioral advertising, or train our own AI models on your content.


7. How we disclose information

We use the following recipients and processors:

We may also disclose information:

We do not sell or share personal information for cross-context behavioral advertising. We require service providers to process data only for authorized purposes and to provide protections consistent with this Policy and applicable law.


8. Retention

We retain information according to its purpose and legal requirements:

Retention is based on the nature and sensitivity of the information, the reason it was collected, security and fraud needs, contractual requirements, limitation periods, and applicable tax, accounting, consumer, and privacy laws.


9. Account deletion

You may delete your cloud account from Settings in the App.

If an Apple subscription may still be active, the App warns you and provides access to Apple's subscription-management page. Deleting your Kurozu account does not cancel the subscription. You may continue with deletion after confirming that you understand this.

When deletion is confirmed:

  1. We delete cloud timelines, facts, fact types, temporary AI mailbox data, AI request logs, and active entitlements.
  2. We delete or disable the Supabase authentication user.
  3. We remove the email from the retained account tombstone and de-link retained usage records where feasible.
  4. The App purges cached cloud data and cloud-account assistant conversations from the device and signs you out.

We retain the limited billing, transaction, ledger, usage, fraud, tax, accounting, and security records described in Section 8. Apple and RevenueCat may retain purchase records under their own legal and contractual obligations.

Local-only timelines and local-only assistant threads are not deleted by cloud-account deletion. Delete them in the App or uninstall the App to remove them.

Because Premium recovery is tied to the original Kurozu account, deleting that account may prevent you from using the remaining subscription entitlement in Kurozu even if Apple continues billing until cancellation. Cancel the Apple subscription before deleting the account if you do not want it to renew.

Sign-out removes cached cloud data and cloud-account conversations from the device but does not delete server-side cloud data.

If deletion fails due to a technical error, contact support@kurozu.app.


10. Security

We use industry-standard measures including HTTPS for API traffic, authenticated access to cloud data, and separation of local and cloud account namespaces on device.

No method of transmission or storage is completely secure. You are responsible for securing access to your device.


11. Children

The App is not directed to children under 13. You must be at least 13, or the minimum age required where you live, to use the App. If you are under the age of majority, a parent or guardian must authorize your use and accept the Terms of Service. We do not knowingly collect personal information from a child in violation of applicable law.


12. International transfers

We and our service providers may process information in countries other than where you live. Those countries may have different data-protection laws. Where required, we rely on applicable safeguards, such as adequacy decisions, standard contractual clauses, provider data-processing terms, or other lawful transfer mechanisms.


13. Your choices and rights

Depending on where you live, you may have rights to access, correct, delete, or receive personal information, and to object to, restrict, or withdraw consent to certain processing.

To exercise a right or ask a question, contact support@kurozu.app. We may need to verify your identity.


14. Changes to this Policy

We may update this Policy. We will post the revised version at this URL and update the effective date. Material changes may be communicated in the App or by email where appropriate. Continued use after changes take effect constitutes acknowledgment.


15. Contact

Kurozu
Email: support@kurozu.app