Privacy Policy for drop.
Effective date: September 6, 2026
drop. is designed as a private, local-first place to save links, notes, images, and ideas.
Data Stored by the App
drop. stores saved drops, collections, tags, notes, URLs, and preview images on your device using Apple local storage. The app does not require a drop. account.
If iCloud is available, drop. uses Apple's CloudKit service to sync your library through your Apple account and to support shared collections. Shared collection participants can access the collection data you choose to share with them.
Data Collection
drop. does not sell personal data and does not use advertising or tracking SDKs.
Optional features may send data to third-party, Apple, or drop.-operated services as described below.
When you use TestFlight, Apple may collect crash logs, diagnostics, and feedback according to Apple's TestFlight and App Store policies.
Network Access
For saved links, drop. may ask iOS to fetch link preview metadata, such as a page title or image, from the linked website. drop. may also fetch readable text from saved links so those drops can be searched and summarized on device. Those requests are made by the app on your device to the relevant website.
Local AI Search
drop. indexes saved drop titles, notes, tags, collections, URLs, link text when available, and text recognized from saved images. Local AI search uses this on-device index and, when available, Apple's on-device Foundation Models.
Voice Input
If you choose voice input in Chat, drop. uses the microphone and Apple's Speech framework to transcribe your speech into a draft message. Recognition runs on device when supported; otherwise Apple may process the audio according to its speech recognition policies. drop. does not save the recording.
Pro Chat
Pro Chat is available to active Pro subscribers. Before the first cloud message, drop. asks for your permission to share messages and relevant saved content with OpenRouter and its model providers through AIProxy. You can turn off this access in Settings; drop. will ask again before another cloud message is sent. Declining leaves your draft unsent.
When you allow Pro Chat, drop. sends your message and relevant conversation history through AIProxy to OpenRouter so a model provider can generate a response. When needed to answer your question, the assistant can request library metadata and selected drop snippets. Those snippets may include drop titles, source URLs or domains, collection names, tags, saved dates, summaries, notes, and excerpts from saved links or images.
Pro Chat sends the context needed for a request, rather than uploading your full library as a backup. You do not need your own API key.
We configure OpenRouter to route drop.'s inference requests only to endpoints covered by its zero-data-retention policy and to exclude providers that use request content for training. OpenRouter prompt and response logging is disabled for drop. These controls apply to model inference, not to the service metadata and error records described below. See OpenRouter's data policy and zero-data-retention documentation.
AIProxy processes a device identifier for rate limiting and abuse prevention. Under AIProxy's privacy policy, it retains the originating IP address, response status, request metadata such as token counts, and error-response bodies (HTTP status 400 or above) for 30 days. These records are available to us for service monitoring and troubleshooting. Successful response bodies are not stored by AIProxy. Error records may include information returned by an upstream provider; we do not promise that error records are free of user content.
Retention and Deletion
Drops remain on your device and, when iCloud sync is active, in your iCloud account until you delete them or disable or remove the relevant storage. Deleting a drop removes it from the app's local library and from synced CloudKit data as iCloud processes the change. Pro Chat requests are not a backup of your library.
Share Extension
The share extension saves pending drops through the app group container shared between the extension and the main app. That handoff stays on device.
Contact
For privacy questions, email [email protected].