Privacy policy

Effective October 6, 2026

The short version

Who we are

Upshot is a meeting-notes app for Mac, Windows and Linux, published by Website Formula. Website Formula decides how the data on this page is used (the "data controller" in GDPR terms). Upshot is based on Anarlog, an open-source app.

Contact: email adam@websiteformula.co.

What stays on your computer

These never leave your computer unless you send them somewhere yourself:

All of this lives in the anarlog folder: ~/Library/Application Support/anarlog/ on a Mac, %APPDATA%\anarlog\ on Windows, ~/.local/share/anarlog/ on Linux. Upshot has no cloud sync.

What leaves your computer, and who gets it

AI summaries and chat. When you generate a summary or send a chat message, Upshot sends the text the AI needs:

This goes through the Upshot AI proxy, a Cloudflare Worker we run. The proxy passes your request on and doesn't store or log what you send; Its logging is turned off. It checks that you're signed in, and uses your IP address and account ID only to limit how many requests one address or account can make per minute. From the proxy, the text goes to OpenRouter, which sends it to the company that runs the model: Anthropic for Auto, or Anthropic, OpenAI or Google (or a cloud provider that hosts their models) for a model a Pro user picks. They process it to write the answer, under their own privacy policies.

A locked note is never sent to chat, connected tools or webhooks until you unlock it.

Transcription. While you record, Upshot streams the meeting audio through the Upshot transcription proxy, a Cloudflare Worker we run, to Deepgram, which turns the audio into text and sends the transcript back. The proxy passes the audio on and doesn't store or log it. It checks that you're signed in, and uses your IP address and account ID only for the per-minute limits. Upshot asks Deepgram to opt the audio out of its model improvement program, so Deepgram keeps it only as long as it needs to process it. On an Apple Silicon Mac you can pick on-device transcription in Settings › Transcription; then audio never leaves your Mac.

Your account. When you sign in with Google or Microsoft:

Your calendar, if you connect it. When you click Connect Google Calendar or Connect Outlook calendar, Google or Microsoft gives Upshot read-only access to your calendars:

What you set up yourself. A webhook (Settings › Connectors › Webhooks) sends finished notes to the address you choose. The Glaido and MCP connection runs only on your computer.

Model list. Upshot downloads public model catalogs from models.dev and OpenRouter. It sends no data about you, just a normal web request.

Hosting. The proxy and this page run on Cloudflare, which handles the network traffic.

What we don't do

Why we use your data

How long we keep it

Your choices and rights

Depending on where you live (for example California, the EU or the UK), you may have the right to access, correct, delete or port your data, and to object to how it is used. Contact us to use these rights. We don't treat you differently for using them. In the EU or UK you can also complain to your data protection authority.

Do Not Track

Upshot doesn't track you across websites or apps, and lets no third party do so. Because there is no tracking to turn off, it works the same whether or not your browser sends a Do Not Track signal.

Where your data is processed

Cloudflare, OpenRouter, the model companies, Deepgram, Supabase and Stripe may process data in the United States and other countries.

Children

Upshot is not meant for children under 13, and we don't knowingly collect their information.

Changes to this policy

We post every change on this page and update the effective date at the top. If a change affects how we use data we already have, we say so at the top of this page and in the release notes for that version of Upshot before it takes effect.