Privacy Policy
Zonon is built so the content of your meetings stays on the devices you own. This policy describes the limited data that does cross the network - only what we need to sign you in, register your devices, and answer your support tickets - and what we don't collect at all.
1. Who we are
Zonon is published by Akam Innovations Private Limited (referred to as "Akam Innovations," "we," "us," or "our"). For privacy questions or requests, write to hello@zonon.app.
2. The data-flow boundary
Zonon has two distinct surfaces, with different data rules:
- The app on your Mac or iPhone records audio, transcribes it, generates summaries, and stores everything in your account's local storage and (optionally) your personal iCloud. None of this content ever reaches Akam Innovations' servers.
- The Zonon backend (
admin.zonon.app) is a small Cloudflare Worker that handles only: sign-in, registering this device against your account, checking your entitlements (which features you have access to), and routing support tickets. It never receives audio, transcripts, or summaries.
3. What stays on your device
The following are stored only on your Mac, iPhone, iPad, and (if you've enabled iCloud sync) your personal iCloud account. Akam Innovations cannot see, read, or retrieve them:
- Audio recordings of your meetings.
- Full transcripts and any edits you've made to them.
- AI-generated summaries, decisions, action items, and Q&A pairs.
- Briefings drafted before upcoming meetings.
- Personal notes and bookmarks.
- Voice profiles you enroll, including the embedding vectors used to recognise speakers.
- Calendar event data, attendee names, and meeting metadata.
- Reminders mirrored from action items.
The on-device data is processed locally by Apple frameworks - Speech, SpeechAnalyzer, SoundAnalysis, Foundation Models, and Core ML. Where Apple's frameworks send any payload to Apple's servers (for example, certain non-on-device speech recognition modes), Zonon respects the framework's own privacy posture, and the Apple privacy policy applies to that path.
4. What does reach the Zonon backend
Only the items below are sent to admin.zonon.app. We list them so you can see the full surface
area.
4.1 Sign in with Apple
When you create an account, Sign in with Apple sends us:
- Your real or Apple-relayed email address (your choice at sign-in time).
- The given name and family name you choose to share, captured only on first sign-in.
- Your country, derived server-side from the IP address Apple's request arrived from. We use this only to set a default language for transcription; we don't store the IP itself.
- An Apple-issued identity token, used to verify the sign-in. We don't store the token after it expires.
4.2 Device registry
Each device you sign in on registers with the backend so you can see your active devices and revoke any of them. The device record contains a stable install identifier, the device model (e.g. "MacBookPro18,2"), the OS version, the Zonon version, and the time the device was last seen.
4.3 Entitlements
We store your Zonon entitlement — which features your account can use — and any plugin licenses, so the app knows which features to unlock.
4.4 Support tickets (only if you submit one)
When you open a support ticket from inside the app, you choose whether to include a sanitized diagnostic bundle. The bundle contains the app version, OS version, device model, a redacted log excerpt, and a snapshot of relevant non-content settings (e.g. preferred locale). Meeting content is never included. Tickets are retained while the conversation is active and for 12 months afterwards, then deleted.
5. What we don't collect
- Analytics on your meeting content, recording behaviour, or transcripts.
- Behavioural tracking, advertising identifiers, or cross-app fingerprinting.
- Your contacts, calendar contents, or reminder lists. Zonon reads them locally where you grant permission, but the data does not leave your device.
- Your microphone input outside of an active recording you started.
- Your location.
6. Cookies and similar technologies
The Zonon app does not use cookies. The marketing website (zonon.app) serves a single static
page and uses no analytics or tracking cookies. The admin webapp (admin.zonon.app) uses a
single first-party session cookie to keep you signed in after authentication; it expires when the session
ends and contains no profiling data.
7. Third-party services
We use the smallest possible set of third-party services to operate the backend:
- Cloudflare hosts the backend Workers, the database (D1), and the marketing site. The data described in §4 is stored there.
- Apple: Sign in with Apple verifies your identity; the App Store distributes the app. Apple's privacy policy applies to those interactions.
We do not sell your data, share it with advertising networks, or use it to train third-party AI models.
8. How long we keep your data
- Account data (email, name, country, device list, entitlements): kept while your account exists. Deleting your account purges these within 30 days.
- Support tickets: 12 months after the last reply, then deleted.
- Diagnostic bundles: deleted with the ticket they're attached to.
- Session tokens: rotated frequently; expired tokens are dropped from the cache within hours.
9. Your rights
Depending on where you live, you have rights over the personal data we hold about you. You can:
- Ask for a copy of the account data we hold.
- Ask us to correct anything inaccurate.
- Ask us to delete your account and everything tied to it.
- Object to processing or ask us to restrict it.
- Withdraw consent to processing where consent was the legal basis.
- Lodge a complaint with your local data protection authority.
To exercise any of these, write to hello@zonon.app from the email address tied to your account. We'll respond within 30 days.
10. Children
Zonon is not directed at children under 13 (or under 16 in jurisdictions that require it). We don't knowingly collect personal data from children. If you believe a child has signed in, please contact us and we'll delete the account.
11. Security
Account data is transmitted over HTTPS and stored encrypted at rest by Cloudflare. The app uses Apple's Keychain for credentials and the system sandbox for data isolation. On-device meeting content is protected by the same OS-level encryption Apple applies to your other documents (FileVault on macOS, Data Protection on iOS).
12. International transfers
Cloudflare's edge network distributes data globally; some of your account data may be processed in regions outside your home country. We rely on standard contractual clauses where required by law (e.g. for EEA-to-non-EEA transfers).
13. Changes to this policy
When we change this policy, we update the "Last updated" date at the top. Material changes will be announced in-app and on the marketing site, and - for active accounts - by email at least 30 days before they take effect.
14. Contact
Akam Innovations Private Limited
Privacy questions: hello@zonon.app
General support: hello@zonon.app