Hyperfocus Privacy Policy
1. Overview
Hyperfocus is a desktop productivity app for managers and founders to plan work, stay focused, and reduce overwhelm.
This Privacy Policy explains how Dmitrii Tcepelev, an individual operator of Hyperfocus ("Hyperfocus," "we," "us," or "our"), collects, uses, shares, and protects information when you use Hyperfocus, our website, connected services, or support channels.
Contact us at [email protected].
2. Summary
Hyperfocus is designed as a local-first desktop app. Core productivity data, such as tasks, plans, goals, cycles, and settings, is stored on your device.
Hyperfocus does not require an account and does not process payments. Some information may leave your device when you use connected features, including product analytics, software update checks, complimentary AI access, AI features, website hosting, feedback, and support communication.
3. Information We Collect
Information stored locally on your device
Hyperfocus may store the following on your device:
- tasks, goals, plans, cycles, sessions, subtasks, completion status, and timing data;
- app settings, onboarding state, dismissed hints, and similar preferences;
- a generated app user ID used for product analytics;
- a hashed device fingerprint and entitlement data used to administer complimentary hosted AI access;
- an optional OpenRouter API key stored in macOS Keychain if you choose to use OpenRouter for AI features. The key is not sent to Hyperfocus servers;
- local app database files and configuration files.
Information sent to connected services
Depending on how you use Hyperfocus, we may process:
- product analytics about app installation and general use of planning and focus features, associated with a generated user ID. Product analytics does not include plan or task content, such as titles, descriptions, or notes;
- complimentary hosted AI access data, including the generated installation ID, hashed device fingerprint, access start and expiry dates, and entitlement status;
- AI request data, such as prompts, task or cycle context, goal details, conversation content, model settings, and AI responses;
- update data, such as app version, operating system metadata provided by the updater, update availability, and download progress;
- feedback submission data when you explicitly use the in-app feedback form, including your message, an optional reply email, the generated app user ID, the app version, and the macOS version;
- support information you send us, such as your email address, message content, diagnostics, screenshots, or logs.
The in-app feedback form sends feedback data to Hyperfocus support infrastructure only when you press Send. It does not automatically attach tasks, plans, journal content, local databases, logs, diagnostics, or files.
Website information
If you visit a Hyperfocus website, we or our hosting providers may process basic technical data, such as IP address, browser and device type, pages visited, referral URL, hostname, and timestamps. Hyperfocus uses PostHog in always-cookieless mode to measure marketing-site pageviews. PostHog estimates daily visitors using a server-computed, non-reversible hash derived from the PostHog project, a rotating daily salt, IP address, user agent, and hostname. The IP address is removed before downstream enrichment, so PostHog does not add GeoIP or bot-detection enrichment in this mode.
The website analytics configuration does not store analytics data in
cookies, localStorage, or
sessionStorage, and the website does not identify
visitors. It collects click and scroll interaction data for
heatmaps, clickmaps, and scrollmaps only on the homepage. Other
pages, including the privacy and terms pages, send pageviews but not
this interaction data.
4. How We Use Information
We use information to:
- provide, maintain, and improve Hyperfocus;
- save your local settings and app state;
- provide and administer the one-time 7-day complimentary hosted AI period;
- operate AI-assisted features;
- understand product usage and improve workflows;
- detect, debug, and fix problems;
- provide updates and security fixes;
- respond to support requests;
- comply with legal obligations and enforce our Terms.
5. AI Processing
Hyperfocus may use AI features for planning, prioritization, goal clarification, and related workflows.
During the complimentary hosted AI period, relevant request content is sent to Hyperfocus infrastructure operated through Cloudflare and then forwarded to Google Gemini for processing.
If you configure OpenRouter, Hyperfocus sends AI request content directly from your device to OpenRouter using the API key stored in macOS Keychain. OpenRouter forwards the request to the model provider selected by Hyperfocus. Your use of OpenRouter is also governed by OpenRouter's terms and privacy policy.
AI request content may include task titles, subtasks, goals, cycle context, conversation messages, and instructions needed to produce the requested output. Avoid entering sensitive personal data, regulated data, trade secrets, or confidential third-party information unless you are comfortable with that processing.
6. Analytics
Marketing-site analytics
Hyperfocus uses PostHog to understand aggregate website use. The marketing site uses always-cookieless analytics, does not call PostHog's visitor-identification function, and does not create a durable person-level link between website activity and the local installation identifier used by the app. Because the server hash changes with the daily salt, it is not used to recognize a visitor across days.
Pageviews are measured across the marketing site. Automated click capture, page-exit events, and heatmap, clickmap, and scrollmap data are limited to the homepage. Website session replay, surveys, feature flags, experiments, automatic exception capture, and performance monitoring are disabled.
App product analytics
The macOS app uses PostHog product analytics tied to a generated
local installation identifier rather than an account login. The
website and app send analytics to the same PostHog project, where
events are distinguished by the reserved
surface property; website visitors are not
identity-linked to the app installation identifier. We collect broad
usage information, such as whether planning and focus features are
used. App product analytics does not include task, plan, goal,
journal, or other local productivity content, such as titles,
descriptions, or notes.
7. Legal Bases for Processing
Where required by law, we rely on the following legal bases:
- contract: to provide Hyperfocus and connected features you request;
- legitimate interests: to administer complimentary hosted AI access, improve the app, maintain security, provide support, and understand product usage;
- consent: where required for optional analytics, marketing, cookies, or similar processing;
- legal obligation: to comply with applicable legal requirements.
8. How We Share Information
We may share information with:
- AI providers, including Google Gemini and OpenRouter;
- infrastructure providers, including Cloudflare for connected services and AWS for app downloads and updates;
- analytics providers, including PostHog;
- support and communication providers, including Cloudflare and Resend for in-app feedback;
- professional advisors, such as lawyers and accountants;
- authorities or third parties when required by law or necessary to protect rights, safety, or security.
We do not sell personal information or share it for targeted advertising.
9. Data Retention
Local app data remains on your device until you delete it, uninstall the app, remove the app database/configuration files, or use any deletion feature we provide.
Entitlement records are retained as needed to administer and prevent repeated use of complimentary hosted AI access. Analytics, feedback, support, and server logs are retained only as long as reasonably needed for the purposes described in this Policy, unless a longer period is required by law.
AI providers and infrastructure providers may retain request data according to their own policies and contracts.
10. Security
We use reasonable technical and organizational measures to protect information. No system is completely secure. You are responsible for protecting access to your device, backups, API keys, and local files.
11. Your Choices
Depending on your location and how you use Hyperfocus, you may have rights to access, correct, delete, export, object to, or restrict processing of personal information.
Because Hyperfocus is local-first and does not currently require an account, some information can be managed directly on your device by deleting local app data or uninstalling the app.
To make a privacy request, contact [email protected]. We may need enough information to verify and process your request.
You may also have the right to complain to the data protection authority where you live.
12. International Transfers
We and our service providers may process information in countries other than where you live. These countries may have data protection laws different from your jurisdiction.
Where required, we use appropriate safeguards for international transfers.
13. Children
Hyperfocus is not intended for anyone under 18. We do not knowingly collect personal information from children.
14. Changes
We may update this Privacy Policy from time to time. If we make material changes, we will take reasonable steps to notify you, such as updating the date above, publishing the revised Policy, or showing an in-app notice.
15. Contact
Operator and data controller: Dmitrii Tcepelev
Location: Georgia
Contact and data protection requests: [email protected]