Noteflix
Privacy policy

Privacy for the Noteflix ChatGPT plugin

This policy explains the note-only connector’s account boundary, approved-save data flow, retention, processors, and deletion options.

Effective: August 28, 2026

Data the plugin handles

Study workflows use text you supply in the current ChatGPT conversation. The plugin does not inspect uploads, retrieve prior chats, query model memory, or search your existing Noteflix library.

Only after explicit save intent, an exact payload preview, and separate confirmation, ChatGPT sends the approved title, Markdown body, optional approved summary and key points, a random request ID, and the identity bound to your OAuth grant. Noteflix also processes OAuth records, eligibility decisions, timestamps, request outcomes, and limited security and rate-limit metadata needed to operate and protect the service.

How the data is used

The connector cannot read or change existing notes, publish content, generate media, manage subscriptions, or return payment, email, plan, or raw entitlement details.

Retention

A private note remains in the connected Noteflix account until the user deletes that note or deletes the account. Production logs use bounded retention and are designed to exclude note bodies, OAuth tokens, passwords, challenge values, and reviewer credentials.

Sharing and processors

OpenAI processes conversation content and tool interactions under the user’s OpenAI settings and terms. Noteflix operates the OAuth service, MCP gateway, eligibility authority, and private-note backend. Google Cloud and Firebase provide hosting, identity, database, and storage infrastructure. The note-only path does not invoke media-generation or public-publication providers.

Your choices

Disconnect Noteflix in ChatGPT to stop future connector access. This does not delete previously saved notes. Use Noteflix product controls to delete notes or the account. For privacy and deletion requests that cannot be completed there, email support@noteflix.com.

Restricted data and age

Do not submit payment-card data, identifiable protected health information, government identifiers, passwords, API keys, authentication tokens, one-time passwords, or verification codes. The plugin is for general audiences age 13 and older and is not directed to children under 13.