Privacy policy

Last updated 9 August 2026

Summary

Moonfold stores your workspace locally on your Mac. It does not currently provide a Moonfold account, cloud workspace, advertising, or cross-device sync. Google Calendar is optional and uses access you approve through Google.

The public website currently has no contact form, account login, advertising tracker, or analytics script. Normal website delivery may still expose request information to the hosting provider.

Scope

This draft covers the Moonfold macOS application and moonfold.app. It does not cover third-party services such as Google, Apple, or a link you choose to open from Moonfold. Those services apply their own terms and privacy practices.

Data in the Moonfold app

The app stores the information you create or import so it can provide its features. This can include tasks, dates, recurrence details, projects, notes, links, images, PDFs, resource libraries, preferences, local activity history, entitlement state, and backups you create.

This content stays in Moonfold's local application workspace. The beta does not upload it to a Moonfold cloud account because that service does not exist today.

Google Calendar data

If you connect Google Calendar, Moonfold receives OAuth tokens and the calendar data needed for the access you approve. Read-only access may include calendar-list metadata and event details. If you separately enable event creation, Moonfold can create and update Google events linked to eligible timed Moonfold tasks.

OAuth tokens are stored locally through Electron's protected storage; on macOS the encryption key is protected by Keychain. Calendar events are cached locally so Agenda can open promptly and refresh while the app is running. Moonfold does not request your Google password.

Moonfold's use and transfer of information received from Google APIs is limited to providing and improving the user-facing Calendar integration described on this site. It is not used for advertising, sold, or used to train a general-purpose AI model.

Google Calendar data is not sent to the Moonfold website host or any Moonfold cloud service. There is no routine human access to that data. A person would see Calendar content through Moonfold only if you deliberately shared it for support, or when access was necessary for security or required by applicable law.

See Data & Calendar for exact permissions, sync behavior, and disconnection steps.

Website data

The public site is informational. It currently sets no analytics, advertising, account, or marketing cookies and collects no form submissions. The hosting provider may process basic request data such as IP address, browser information, requested URL, timing, and security signals to deliver and protect the site, and may set a strictly necessary security cookie for bot or abuse protection.

When data is shared

Moonfold does not sell personal data. Data may be processed by:

  • Google, when you choose to connect Calendar and Moonfold makes authorized API requests.
  • The website hosting provider, to serve and secure moonfold.app.
  • Apple and macOS, when the operating system provides app distribution, Keychain, file, or security services.
  • A service you choose, when you export, open, or share content outside Moonfold.

Information may also be disclosed when legally required or necessary to protect the security of Moonfold or its users, subject to applicable law.

Retention, disconnection, and deletion

Local workspace content remains on your Mac until you delete it. Local backups remain wherever you saved them. Moonfold cannot remotely delete or recover those files because there is no Moonfold cloud account.

Disconnecting Google Calendar attempts to revoke the OAuth token and clears the local token, temporary authorization state, and Google event cache. It does not delete Google events or your local Moonfold content. You may also revoke access from your Google Account.

Security

Moonfold uses operating-system protected token storage, limited OAuth scopes, a system-browser authorization flow, PKCE, validation of local backups, and local data boundaries. No method of storage or transmission is completely secure. Keep macOS updated, protect your device account, and store backups carefully.

Production signing, notarization, security review, and Google OAuth verification remain release gates for the external beta.

Changes and contact

This draft will be updated before it becomes effective and whenever Moonfold's data practices materially change. The effective version should identify its date and any newly active providers or contact paths.

For privacy or support questions, email support@moonfold.app.

Need the operational detail behind this policy?

Read the data guide