Legal

Privacy Policy

Last updated: June 2026 · Effective immediately

The short version

1. Who we are

Nomima is a macOS application developed by the Nomima team. References to "we", "us", or "our" in this policy refer to Nomima and its developers. You can reach us at support@nomima.io.

2. What Nomima stores — and where

Nomima is a local-first application — it works fully offline, and your content stays on your Mac unless you choose a feature that reaches out (AI or publishing). All data it creates is stored on your Mac:

  • Your notes, blocks, tags, links, and attachments are stored in a SQLite database inside your vault folder (a directory you choose).
  • Embedded media files (audio, video, images) are stored in a media/ subfolder inside your vault.
  • AI provider keys (Anthropic, OpenAI, or Google) are stored in your macOS Keychain, not in any file we can access.
  • Application preferences (theme, sound settings, etc.) are stored in macOS UserDefaults.

None of this is transmitted to our servers in normal use. The only exceptions are features you explicitly trigger: using Summon sends note content to your chosen AI provider, and publishing a notebook sends its read-only page to read.nomima.io (see section 4).

3. Data we do not collect

We explicitly do not collect:

  • The content of your notes, tags, or any text you type.
  • Analytics, usage statistics, or feature telemetry.
  • Crash reports or error logs sent to our servers.
  • Your IP address or location.
  • Any device or hardware identifiers.

4. Network requests the app makes

Nomima only initiates outbound network requests in the following situations:

  • Update checks — the app periodically fetches a small version manifest to tell you when a newer release is available. This request contains no account or personal data.
  • Bookmark metadata — when you paste a URL into a Bookmark block, the app fetches the page's <meta> tags (title, description, image) from that URL. This is a direct request from your Mac to the target website — it does not pass through our servers.
  • RSS feeds — when you use the RSS Feed block, the app fetches the feed URL directly from your Mac. No proxy is involved.
  • AI providers (Summon) — if you use Summon, the relevant note content is sent directly from your Mac to the frontier model you chose (Anthropic, OpenAI, or Google). Nomima supports frontier models only — there is no local/self-hosted option — and it does not relay or log these requests.
  • Publishing — if you publish a notebook, its rendered, read-only page is sent to read.nomima.io so it can be viewed at a private link gated by a view-code. This only happens for notebooks you explicitly choose to publish; the raw note data and all other notebooks stay on your Mac.
  • MCP server — the built-in MCP server listens on local loopback (127.0.0.1) only and is not accessible from the internet.

5. Downloads and your email

Nomima is completely free — there is no paid tier, no payment processor, and no licence key.

  • To download the app from our website, you give us an email address. We use it to send you a download link and a welcome message, and occasionally to let you know about important updates.
  • Your email is stored in our own database on Cloudflare (which also hosts this website). The download link itself is delivered by Resend (resend.com/privacy), a transactional email service. We do not use a third-party mailing-list provider.
  • We never sell or share your email, and you can ask us to delete it at any time by emailing support@nomima.io.
  • The app itself never asks for or transmits your email — collecting it happens only on the website, only when you request a download.

6. Third-party AI providers

Summon (Nomima's AI) is bring-your-own-key and connects only to frontier models from Anthropic, OpenAI or Google — there is no local or self-hosted model option. You supply the API key; the app stores it in your macOS Keychain and sends requests directly to your chosen provider. We do not proxy, store, or inspect these requests.

Each provider has its own data processing terms:

Note content is only ever sent to a provider while you are actively using Summon — nothing is sent when AI is idle or unconfigured.

7. Website and contact form

This website (nomima.io) is hosted on Cloudflare and does not use cookies, tracking pixels, or analytics scripts. If you submit the contact form, your name, email address, chosen topic, and message are delivered to support@nomima.io via Formspree (formspree.io/privacy). We retain that information only as long as necessary to respond to your enquiry.

When you request a download, your email is stored in our own Cloudflare database and used only to send your download link and occasional product updates — see section 5. There is no separate mailing list or waiting list.

8. Children's privacy

Nomima is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has submitted information via our contact form, please email us and we will delete it promptly.

9. Changes to this policy

We may update this policy to reflect changes in the app's features or applicable law. Material changes will be noted in the app's release notes and at the top of this page with a revised "Last updated" date. Continued use of Nomima after a change constitutes acceptance of the updated policy.

10. Contact us

If you have any questions about this policy or how your data is handled, please get in touch:

Privacy enquiries

support@nomima.io