Inkwell ("the App") is a desktop writing tool for authors. The App stores the user's
manuscripts locally on the user's device and does not collect or transmit manuscripts or
account information to any server operated by the developer. This policy explains what
information the App accesses and processes, and for what purpose.
1. Information We Access
Google account authentication tokens — When a user signs in with their
Google account, the App receives access/refresh tokens used to call the Gemini API on the
user's behalf. These tokens are stored on the user's device using
operating-system-level encryption (e.g., Windows DPAPI) and are never transmitted
to the developer.
Manuscripts and written content — Documents created by the user are stored
locally in an encrypted database (SQLCipher) on the device. Only when the user actively uses
an AI feature, the text the user chooses to send is transmitted to the selected AI provider
(e.g., Google Gemini) for the purpose of generating a response.
2. Purpose of Use of Google User Data
The App requests the
https://www.googleapis.com/auth/generative-language.retriever scope through
Google account authentication. This is used solely to call the Gemini API
(generateContent) to provide the AI writing-assistance features the user requests.
The App does not use Google user data for advertising, sale, profiling, or any other purpose.
The data the App sends to the Gemini API is limited to the text the user chooses to
send when actively running an AI feature (e.g., document content, prompts). Google's
retention, processing, and use of this data is governed by the
Gemini API Additional Terms of Service
and the
Google Privacy Policy.
The developer does not store or relay this text through any separate server; transmission goes
directly from the user's device to the Google API.
Inkwell's use and transfer to any other app of information received from Google APIs will adhere to the
Google API Services User Data Policy, including the Limited Use requirements.
3. Third-Party Disclosure
The App does not sell user data. The App supports multiple AI providers, and the user chooses
which provider to use. When an AI feature is used, the text the user chooses to send is
delivered only to the provider the user selected, subject to that provider's
policy:
If a user does not use a particular provider, no data is sent to that provider. Each provider's
API key or login credentials are stored only on the user's device and are never transmitted to
the developer.
4. Not Used for Model Training
Under each provider's API terms, content sent via their API is not used to train their models.
OpenAI — Inputs and outputs sent via the API are not used to train models by default.
Anthropic (Claude) — Inputs and outputs sent via the API are not used to train models.
Google Gemini — When the paid Gemini API is used, the content sent is not used to train models. (Handling on the free tier may differ under Google's terms; please refer to the Gemini API Terms linked in §3.)
In all cases, the App's developer does not use your text for any training or analysis of their
own, and does not store it on any separate server.
5. Storage and Security
All manuscripts and authentication tokens are stored only on the user's device.
The database is encrypted with SQLCipher, and the encryption key is protected by the operating system's secure storage (safeStorage / DPAPI).
The developer operates no server that can access the user's manuscripts or Google account data.
6. Retention, Deletion, and User Rights
All data is retained on the user's device and is controlled directly by the user. Users may
exercise the following rights:
Access and correction — Manuscripts and written content can be viewed and edited directly within the App at any time.
Deletion — Deleting a document/project within the App removes that data from the device. Uninstalling the App removes all locally stored data.
Revoking authentication — Signing out within the App deletes the stored Google authentication tokens from the device. Each AI provider's API key can also be removed directly in the App settings.
Provider-side data — Deletion and retention of text already sent to an AI provider is governed by that provider's policy and account settings (see the links in §3).
Because the developer operates no server that retains user data, requests to access or delete
data are performed directly by the user on the device as described above. For further inquiries,
use the contact in §9.
7. Children's Privacy
The App is not directed to children under 14 and does not knowingly collect personal information from children.
8. Changes to This Policy
This policy may change. Any changes will be posted on this page along with an updated "Last updated" date.