Legal

Omnesis Mobile App Privacy Policy

Last updated: 2026-09-25

Summary

Omnesis is a local-first personal data indexer. The Omnesis mobile apps (iOS and Android) read data you explicitly grant on your phone and send it only to the Omnesis gateway you paired with the app. Ordinarily, that gateway runs on your own hardware — a machine you control. If another person or organization supplies the gateway, that gateway's operator receives and controls the data you send to it, so pair only with an operator and endpoint you trust. Distributing the app does not itself give Adrien Conrath, the developer of Omnesis, a copy of your data. Platform speech, assistant, geocoding, and notification services may process the limited data described below under Apple or Google's terms. Omnesis operates a small push relay that can wake an official mobile app, but it never receives notification titles, bodies, kinds, queries, indexed content, or an application-level gateway identifier. It receives the carrier token and public app identity described below. There is no Omnesis account, advertising SDK or advertising identifier, and nothing is reported to Omnesis. On Android, Google's ML Kit library sends Google its own limited diagnostic data, described below.

Cloud inference is off by default. If you or the operator of your paired gateway enables a cloud model or cloud AI agent for a configured role, Omnesis sends the inputs needed for that role to the selected provider. That provider's privacy and retention terms then apply.

If you are reading this to review a TestFlight, App Store, or Play Store submission: the short version is local-first, indexed content sent only to the paired gateway, notification content bypassing the relay, and no analytics or advertising SDK calls.

Who we are

Omnesis is developed and maintained by Adrien Conrath. There is no shared hosted data backend required for every user: users ordinarily run their own gateway on their own hardware, though a gateway can be supplied by another person or organization. That party is the operator of the gateway and controls the data sent to it. Omnesis operates the limited notification relay described below. In this policy, “we” refers to Adrien Conrath as the developer of Omnesis.

What the apps access, and how it is used

The apps access only what you grant, through your operating system's permission prompts or settings controls. Access is used to build a searchable index on your paired gateway or to provide a feature you invoke, such as voice input or QR pairing. Each permission or special access grant can be denied or revoked through the controls provided by the operating system.

Beyond what is listed above, the apps do not access your contacts, calendar, or reminders.

Where your data goes

The mobile apps send permitted data directly from your phone to the gateway paired with the app.

Cloud models are your choice

On a gateway, Omnesis can use AI models for tasks like turning documents into search vectors, transcription, OCR, and answering questions. If you operate the gateway, you choose where inference runs; otherwise its operator chooses:

Cloud inference is off by default. When you or the gateway operator enables it for a configured model role, Omnesis sends the inputs needed for that role to the selected provider. That provider's privacy and retention terms apply. Gateway operators should choose a provider and account plan that offers suitable retention for the API in use and disclose that choice to users. Omnesis does not verify or enforce a provider's retention policy.

What Omnesis does NOT do

Retention

Indexed content retention is controlled by the operator of the paired gateway. For the ordinary self-hosted setup, that operator is you; if another party supplies the gateway, consult that operator's retention terms. On the phone, the apps can store:

The Android app disables Android's cloud-backup mechanisms. On iOS, corpus-derived app storage such as pending notes, failed-upload batches, and the local photo index is marked to be excluded from device and iCloud backups. Other preferences and Keychain retention follow Apple's platform behavior; in particular, Keychain items can survive deleting and reinstalling an app. Unpair before deleting the iOS app if you want its pairing credentials removed from Keychain.

The notification relay retains limited operational metadata:

User control

Data already on your gateway

This policy covers the mobile apps. If you operate the paired gateway, data already pushed to it is under your direct control there — for example, via the Omnesis CLI. If another party supplies the gateway, use the deletion controls and contact process that operator provides; its terms govern data retained on that gateway.

❯ omnesis sql "DELETE FROM health_body WHERE ..."

❯ omnesis remove apple-health:local

Children

Omnesis is not intended for users under the age of 13 (or the minimum age of digital consent in your jurisdiction, whichever is higher).

Changes to this policy

When this policy changes, the Last updated date at the top of the page moves. Material changes will be reflected on this page.

Contact

Questions about this policy can be emailed to contact@omnesis.dev.