Plume by Vigu Labs
Privacy Policy
Effective date: July 31, 2026. App package and bundle ID: app.plume.notes.
Short version
Notes live on the user's device. Vigu Labs does not operate a Plume account or notes server and does not receive note contents or in-app usage analytics. There are no ads, analytics SDKs, trackers, or Vigu Labs cloud sync in Plume. Features such as photos, doodles, recordings, reminders, widgets, share-to-Plume, PIN lock, and private recovery snapshots also stay inside the installation unless the user explicitly exports, shares, or authorizes an automatic-backup folder.
1. Information Vigu Labs receives
Vigu Labs does not operate a Plume account or notes server and does not receive note contents, attachments, reminders, PINs, or in-app usage analytics. Vigu Labs does not sell Plume user data.
Plume does not ask for a name, email address, phone number, precise location, contacts, or a Vigu Labs account. The app contains no advertising SDK and no analytics SDK.
2. Where notes are stored
Notes, checklists, photos, doodles, recordings, tags, colors, reminders, PIN lock settings, widget snapshots, and app settings are stored locally on the user's device in the app's private storage. They are not uploaded to Vigu Labs or to a third-party notes service.
If the user uninstalls Plume or clears app data, local information can be permanently removed from that device. Users should export a backup before clearing data or moving devices.
Separately, Android or iOS may include Plume app data in an operating-system-managed backup or device-to-device transfer according to the user's device and account settings. Those backups are controlled by Google or Apple and are not accessible to Vigu Labs.
3. Local backups, export, and import
Plume can create private local recovery snapshots so a restore prompt is possible if app storage becomes unavailable or corrupt. These snapshots stay inside the installation and do not replace a portable complete backup.
Complete backup creates a user-controlled .plumebackup archive containing notes and local attachments. The user can create a compatible plaintext v1 file or the recommended password-protected v2 file. The Plume note-lock PIN does not encrypt a backup. Plume does not store, transmit, or recover a v2 password; a forgotten password can make that encrypted file permanently inaccessible.
Restore reads a backup selected by the user, decrypts it locally when needed, and validates it before offering Replace or Merge. A wrong password, an invalid file, or a cancelled restore leaves the current library unchanged. Vigu Labs does not receive saved files, restored files, passwords, derived keys, note contents, or backup health information.
Optional Plume Pro automatic secure backup writes encrypted full backups to a folder the user authorizes. Plume stores the folder permission, an installation-local managed-file registry, schedule and health metadata, and a derived backup profile key protected by Android Keystore, iOS Keychain, or a non-exportable browser device key. The plaintext password is not retained. Removing setup clears this local configuration but leaves existing backup files in the selected folder.
Backups and exports leave private app storage only after the user chooses a destination, folder, or share action. A complete backup can include content from PIN-locked notes, and a plaintext backup can be read by anyone who has the file, so exported files should be stored somewhere the user trusts.
When a user chooses a device folder, cloud-drive folder, Share, or Export target, that operating system, app, or storage provider receives and may sync the selected content under its own privacy practices. Plume does not operate a backup cloud and cannot confirm or control a provider's remote upload.
4. Device permissions and system integrations
Camera and photo library access is used only when the user chooses to take, add, edit, or save an image for a note. Plume declares no camera permission and no media-storage permission; images are captured and selected through the system camera and file picker.
Microphone access is used only while the user records an audio attachment. Recordings are saved with the note in local app storage.
Notifications are used only for optional note reminders created by the user. Reminder content is scheduled locally on the device.
The home screen widget shows Plume content selected from local app data. Widget content may be visible on the device home screen according to the user's device settings.
Share to Plume lets the user send text from another app into Plume. Shared text is saved locally as Plume content only after the user chooses that action.
Files and sharing use the device's system picker or share sheet when the user imports, restores, exports, shares, or authorizes an automatic-backup folder. Automatic access is limited to the chosen folder and the permission granted by the operating system or browser.
Billing is used only if the user chooses the optional one-time Plume Pro purchase. Payment processing is handled by Google Play or the Apple App Store. Vigu Labs does not receive or store payment card details.
Plume does not request location, contacts, or account access.
5. Note lock
Plume includes an optional PIN note lock. This is a local view gate intended to reduce casual on-device access. It is not end-to-end encryption, is not a backup password, and does not send PIN data to Vigu Labs.
A complete backup can contain locked-note content so the note can be restored later. Password-protecting a backup is what keeps that content unreadable to others.
6. Purchases
Plume Pro is an optional, one-time in-app purchase. The purchase is processed by Google Play or the Apple App Store under the applicable store's terms and privacy policy. Plume stores only the entitlement state needed to unlock Pro features. Automatic secure backup is a Pro convenience; manual encrypted backup and restoring plaintext or encrypted files remain available without Pro.
7. Data sharing and third parties
Vigu Labs does not receive note contents or in-app usage analytics and therefore does not share them. Google Play or the Apple App Store may process information related to app installation, operating-system backups, updates, and optional purchases under their own policies. Apps and storage providers selected for sharing, export, or automatic backup process the selected content under their own policies.
8. User control
Users can export their Plume library to a backup file they control, restore a backup on another device, export selected notes in supported document formats, delete individual notes, clear trash, remove automatic-backup setup while keeping its files, or remove all app data by clearing storage or uninstalling the app.
9. Children's privacy
Plume does not knowingly collect personal information from anyone, including children.
10. Changes to this policy
If this policy changes, Vigu Labs will update this page and revise the effective date.
11. Contact
Questions about this policy can be sent to privacy@vigulabs.com.