Skip to content

Privacy & data

What this browser remembers.

Tildi keeps a little state on the machine in front of you and almost none on its own servers, which is the whole design rather than an accident. Here is precisely what is held here, how long it lasts, and which control clears it.

01

On this browser

Your unfinished work and room preferences

These stay on this browser so the room can reopen the way you left it.

  • Unfinished draft. The words in the Rewrite draft. It does not sync to your account. Stored on this browser. Until you clear it, sign out, delete the account, or clear this browser.
  • Display name and paper choices. The name used in the greeting, light or dark paper, and pen choice. Stored on this browser. Until you change them, delete the account, or clear this browser.
  • Room layout. The brief page width and whether that page is folded away. Stored on this browser. Until you reset the layout, delete the account, or clear this browser.
02

Remembered here

Walkthroughs, reminders, and optional measurement

These remember choices without storing any message text.

  • Guided-tour progress. Whether this browser finished or skipped the room tour. Stored on this browser. Until the tour version changes or you clear this browser.
  • Writing-voice reminder history. How often the optional reminder appeared and whether you dismissed it. Stored on this browser. Until you dismiss it, delete the account, or clear this browser.
  • Writing-voice reminder for this visit. Whether the reminder already appeared in the current tab session. Stored for this tab session. Until the tab session ends or you clear this browser.
  • Optional analytics choice. Whether this browser may start consented, content-free product analytics. Stored on this browser. Only while account consent remains granted.
  • Optional survey cooldown. When the last voice-fit survey appeared, never how you answered it. Stored on this browser. For the 90-day survey cooldown or until you clear this browser.
03

This visit

Short-lived handoffs and safety support

These exist only long enough to carry one browser-session task safely.

  • Pending invitation. A scrubbed invite code and its claim outcome, without the referring URL. Stored for this tab session. Until it is applied, consumed, the tab session ends, or you clear this browser.
  • Checkout period. Monthly or annual, so the return page can confirm the checkout you chose. Stored for this tab session. Until checkout completes, the tab session ends, or you clear this browser.
  • Safety-support notice. A content-free support envelope for Rewrite, Second Read, or Prepare. No draft, matched term, or request ID is included. Stored for this tab session. For up to 30 minutes, until used, the tab session ends, or you clear this browser.
04

Service state

Sign-in and optional analytics identifiers

These are managed by the named service and controlled by sign-out or the analytics choice.

  • Firebase sign-in session. Keeps you signed in on this browser. Tildi does not use it as product analytics. Managed by the sign-in provider. Until you sign out, revoke the session, or delete the account.
  • PostHog analytics identifiers. Pseudonymous product-measurement state, created only after analytics consent. Stored on this browser. Only while optional analytics remains enabled.
  • PostHog analytics cookies. Pseudonymous product-measurement state, created only after analytics consent. Optional browser cookie. Only while optional analytics remains enabled.
05

In the browser extension

What the extension keeps, and what it does not

The browser extension for Chrome and Edge is in validation rather than in a store, but what it will hold is already settled. It keeps a little state of its own in the browser, and it keeps all of it away from the pages you write on.

  • Your settings, and the list of sites you turned it on for.
  • A cached list of intentions, and the connected account’s email, for display.
  • The connection handshake, only until the browser closes.
  • No drafts, and nothing from the pages you write on.
  • Signing out of the extension signs you out everywhere. Signing out of the room on its own leaves the extension connected; use Sign out everywhere to end both.
06

Clearing up

Making this browser forget

One control removes Tildi-owned local and session state and turns off optional analytics on this browser. It is careful about what it does not touch.

  • It removes your unfinished draft, room preferences, reminders, and short-lived handoffs.
  • It removes consented PostHog identifiers and cookies by turning optional analytics off.
  • It leaves you signed in. Use Sign out when you want to end the Firebase session too.
  • Saved words and your account are not affected.
  • It is not the same as signing out, and not the same as deleting your account.