This policy describes what Noah collects, what it doesn't, and how the information is used. We try to keep it short and plain.
What Noah is
Noah is a desktop app that helps you fix problems on your computer. You describe what's wrong, Noah diagnoses, shows a plan, and fixes it after you click "Please fix it". The Noah desktop app uses a small backend at api.onnoah.app for authentication, billing, and routing your conversations to an AI provider that generates Noah's responses.
Your privacy in the Noah app
Noah looks at your system, not inside your files. To find what's wrong, it checks things like disk space, startup items, and settings. To find what's filling your disk, it also checks file and folder sizes — on a Mac, macOS asks your permission first. But it doesn't open your documents, photos, or messages to read what's in them: names and sizes, not contents.
Your conversations are sent to an AI provider to generate Noah's answers. We keep a record of them as your repair history, so we can support you and improve Noah's diagnoses.
We use Stripe to process payments.
We collect usage analytics to improve Noah — which features you use, and whether a fix worked. On this website we also record how visitors navigate the pages, with anything typed into a form masked. This is separate from your conversations, and it never includes your files.
Your account stays anonymous until you subscribe or sign in — only then is an email tied to it. Your conversations may still contain personal details: your computer's user name, where it appears in a file path, and anything you type into the chat.
You're in control. Noah shows every change before it runs, you approve it, and every change is logged.
An anonymous device ID generated locally on your Mac when you first launch Noah. This is how your usage and entitlement are tracked. We do not attach your name or email to it unless you pay.
Your email address, only if you pay (Stripe collects this at checkout) or use a magic-link sign-in to restore an existing account.
The conversation you have with Noah, which is forwarded to our AI provider to generate diagnostic plans and responses. We keep these conversations as your repair history — see Data retention below.
Usage counters: the number of fixes you've run, used to enforce fair-use limits.
Website analytics: the pages you view on onnoah.app, the elements you click, and a recording of how you moved through the site, with form values masked. Collected by PostHog.
Request records: IP address, timestamp and user agent, recorded when Noah or this site contacts our backend, for debugging and to prevent abuse.
Stripe payment data: handled by Stripe (stripe.com/privacy). We never see or store your card number.
What we don't collect
The contents of files on your Mac. Noah inspects your system to diagnose problems, but file contents are not uploaded.
Your name, address, or phone number. Stripe may collect a billing address for tax purposes; we don't see it.
Your browsing on other websites. We see how you use onnoah.app itself — see Cookies and analytics — not where else you go.
What you type into other applications, or into form fields on our website: session recording masks those values before they leave your browser.
How we use the information
To run the service: route your conversations to our AI provider, enforce your plan and entitlement state, charge your card via Stripe.
To improve Noah: we analyse usage in aggregate, and we review individual conversations to find where Noah gave a wrong or unhelpful answer and to test changes to its prompts and quality checks before we release them. We do not use your conversations to build a profile of you, and we do not sell them or share them for advertising.
To prevent abuse: detect repeated free-tier sign-ups from the same source, brute-force attempts, and similar.
To advertise: when you visit onnoah.app from a Meta (Facebook/Instagram) ad, we may use Meta's Conversions API to send signals like "started" or "purchased" back to Meta so the ad system can find more people like you. These are sent from our server and include your IP address and user agent, a Meta cookie identifier, and — if you have paid — your email address in hashed form. Meta's own pixel also loads on our pages, as described under Cookies and analytics.
Third parties
Our AI provider — receives your conversations to generate Noah's responses.
Stripe — processes payments and stores card data.
Resend — sends magic-link sign-in emails.
Fly.io — hosts Noah's backend.
Cloudflare — hosts this landing page, serves installer downloads, and stores our long-term archive of conversations and telemetry (Cloudflare R2).
PostHog — receives the usage analytics described above.
Meta — receives ad-conversion signals via Conversions API when you arrive from a Meta ad.
Cookies and analytics
On onnoah.app we use cookies and similar technologies:
Our own cookies: noah_v, an opaque visitor identifier, and noah_a, which records how you first arrived (ad click identifier, campaign tags, referring site). Both last 90 days and are set by us.
Analytics: PostHog, which records page views, clicks and a masked recording of your session.
Meta: Meta's pixel loads on every visit and sets its own cookies (_fbp, and _fbc if you arrived from an ad).
You can block or clear these in your browser. The Noah desktop app sets no cookies; it stores its analytics identifier locally on your machine.
Your choices
Delete your data: email [email protected]. We will delete the personal data we hold about you, or, where deletion is not possible — for example in backups and archives — anonymise it so that it no longer identifies you. Tell us the email tied to your account; if you never signed up, say so and we will explain what we need in order to find your records.
Manage billing: from inside Noah → Settings → Billing, or directly in Stripe.
Limit Meta tracking: our pages load Meta's pixel on every visit, which sets a Meta cookie. To prevent that, block connect.facebook.net in your browser or use content blocking. Arriving from a direct link rather than an ad also means we hold no ad-click identifier for you.
Depending on where you live, you may also have the right to access the personal data we hold about you and receive a copy of it, to have inaccurate data corrected, to object to or restrict how we use it, and to withdraw consent where we rely on it. Email [email protected] to exercise any of these. If you are in the UK, EU or Switzerland and you think we have handled your data wrongly, you may also complain to your national data protection authority.
Data retention
We keep each kind of data for as long as it is needed for the purposes described in this policy:
Your conversations and repair history — while we provide Noah to you, and for our continuing review of the quality of its answers. These are not deleted on a fixed schedule.
Your account and entitlement record — while your account is active, and for 90 days after cancellation for refund and dispute handling.
Request records and service telemetry — while they remain useful for debugging, reliability and preventing abuse.
You can ask us to delete your data at any time — see Your choices.
Security
We use appropriate technical and organisational measures to protect your data: traffic to and from Noah is encrypted in transit, administrative access is restricted and individually credentialed, and payment card details never reach our servers. No service can promise perfect security, and we do not.
Where your data is held
We are based in the United States and your data is stored and processed there, including by the providers listed under Third parties. If you use Noah from outside the United States, your data is transferred there. Data protection laws vary between countries, and US law may offer protections different from those where you live.
Links to other sites
Noah and this site link to pages we don't control. This policy doesn't cover them, and we aren't responsible for their privacy practices.
Children
Noah is not directed at children under 13 and we do not knowingly collect their data.
Changes
We may update this policy. Material changes will be announced on onnoah.app. Continued use after a change means you accept the updated policy.