# Nothing leaves your Mac.

Earlyn keeps everything it records on your Mac: the database is encrypted with SQLCipher, screen pictures are sealed with AES-GCM, the keys stay in your keychain, and the app makes no network request unless you start one.

## Encrypted at rest

Everything lives in ~/Library/Application Support/Earlyn. Backups are one file encrypted with a passphrase you choose.

| What | Where | Protection |
| --- | --- | --- |
| Text of every moment, transcripts, summaries | earlyn.sqlite | SQLCipher with a random 256-bit key |
| Screen pictures | segments/ | AES-GCM per five-minute file |
| Meeting audio (only if you keep it) | meetings/ | AES-GCM |
| The keys | Your Mac's keychain | Never written anywhere else |

## Never captured

- Apps you exclude, removed at the source.
- Private and incognito browser windows.
- Password fields, including masked web inputs.
- Moments that contain secrets such as API keys, tokens, private keys or card numbers.
- Window titles and websites you list.

## What can leave, and only when you ask

There are no analytics, no crash reporters and no update checks in the app.

| Request | When | What is sent |
| --- | --- | --- |
| Model download | You press Download | A plain request for the file; nothing about you |
| Cloud model | You chose Claude or OpenAI and saved your key | Your question and the memories retrieved for it |
| Connected app | An agent's destination, or you press Send | That agent's output or that answer |
| Apple's translation files | You press Download for a pair | macOS fetches the language files |

## You stay in control

- Recording is off until you turn it on, and pauses from the menu bar at any time.
- Delete the last hour, a single memory or everything; deleted means removed from disk.
- Export everything as plain files whenever you like.

The legal version is the [privacy policy](https://www.earlyn.app/privacy).

---
Canonical: https://www.earlyn.app/features/privacy · Updated 2026-10-02
