Privacy Policy

Privacy Policy for BlinkNote

Last updated: March 29, 2026

This Privacy Policy explains how BlinkNote collects, uses, stores, and protects personal data when you use our website and note-sharing services.

1. Controller and contact

BlinkNote is the service operator and data controller for personal data processed through the service.

Privacy contact: hello@blinknote.me

2. Data we collect

Account data

  • name, email, authentication identifiers, and account settings.

Note data

  • note content, title/context, expiry settings, passcode flags, burn-after-read settings.

Usage metadata

  • creation time, status, view events, recipient activity, and link events.

Technical and security logs

  • IP/log metadata, device/browser signals, abuse-prevention and reliability logs.

3. How we use data

Service delivery

  • create, store, and serve notes and note links.

Security

  • detect abuse, prevent fraud, and protect accounts and infrastructure.

Support and operations

  • troubleshoot issues and respond to user requests.

Product improvement

  • aggregate analytics and service quality monitoring.

Legal compliance

  • meet legal obligations where applicable.

4. Legal bases (EEA/UK)

Contract performance

  • to provide requested service features.

Legitimate interests

  • security, abuse prevention, product reliability, and internal analytics.

Legal obligation

  • where processing is required by law.

Consent

  • where required by law (for example, specific cookie/marketing contexts).

5. Retention

  • Notes: retained according to your chosen expiry and feature logic (including burn-after-read when enabled).
  • Account data: retained while account is active and as needed for compliance/safety obligations.
  • Operational/security logs: retained for limited periods required for incident response, auditing, and abuse prevention.

6. Sharing and subprocessors

We may share data with trusted service providers (for example hosting, infrastructure, authentication, analytics, and transactional communications) strictly for operating BlinkNote.

We do not sell personal data.

7. International transfers

Where data is processed outside your country, BlinkNote uses appropriate safeguards required by applicable law (such as contractual safeguards) for cross-border transfers.

8. Security measures

BlinkNote uses technical and organizational safeguards including authentication controls, scoped access controls, encrypted transport, and security monitoring. No internet service can guarantee absolute security.

9. Your rights

Depending on your jurisdiction, you may have rights to:

  • Access your personal data.
  • Correct inaccurate data.
  • Delete data in certain circumstances.
  • Restrict or object to certain processing.
  • Port your data where applicable.
  • Lodge a complaint with your local supervisory authority (EEA/UK users).

10. Cookies and similar technologies

BlinkNote may use essential cookies and similar technologies to maintain sessions, security, and service functionality. Where legally required, non-essential technologies are used only with appropriate consent mechanisms.

11. Children

BlinkNote is not intended for children under 16, and we do not knowingly collect personal data from children under 16.

12. Changes to this policy

We may update this Privacy Policy periodically. The latest version is always available on this page with its update date.

13. Contact

For privacy requests, rights requests, or questions: hello@blinknote.me