Privacy Policy
This policy explains what VoidCove collects and how it is used across VoidCove Notes, VoidCove Vault, and the VoidCove Vault browser extension, including how the extension handles website access for password-manager features.
What VoidCove Is
VoidCove provides privacy-focused tools. VoidCove Notes is the workspace app for notes, tasks, boards, and calendar.
This policy also covers VoidCove Vault and the VoidCove Vault browser extension. Vault is designed around zero-knowledge encryption: your sensitive vault contents are encrypted on your device before they are stored or synced.
Information We Collect
We collect the account information needed to operate the service: your email address, your name, authentication data, and account settings. Account settings include your theme, your profile picture, and — if you use the weather widget — the place you pick for it, stored as a place name and its coordinates so the widget follows you between devices.
VoidCove Notes stores the notes, folders, and tags you create, and the tasks, projects, and boards you create, along with the metadata that organizes them across the note, board, and calendar views. If you subscribe to an external calendar feed, we store the name and URL of that feed.
If you write to us through the contact form, we store the name, email address, and message you send. If you file a bug report from inside an app, we store your message together with technical context captured at the time: your username, the page you were on, the app version, the user-agent string your browser sends, and a timestamp.
VoidCove Vault stores encrypted vault records, such as saved login items, URLs, usernames, and related vault metadata. Vault passwords and sensitive vault fields are encrypted before they are sent to VoidCove.
The VoidCove Vault browser extension may read login forms on websites you visit so it can offer autofill and save prompts. This page information is used for password-manager features and is not sold.
How We Use Information
We use information to provide, secure, sync, and improve VoidCove services; authenticate users; help fill or save credentials when requested; prevent abuse; and respond to support or security issues.
We do not sell personal information. We do not use vault contents for advertising.
Encryption And Sensitive Data
In VoidCove Notes, note titles and note content are encrypted on your device before they are sent to VoidCove. Nothing else is. Folder names, tag names, note metadata such as dates, favorite and trash flags and board and list positions, task titles, descriptions, labels, checklist items, links and comments, project names, board column names, and calendar feed names and URLs are all stored unencrypted, so the service can sort, filter, and display them in the calendar and the board and list views.
Because of that, notes are the only place in the app where text is hidden from us. Anything you type into a folder or tag name, a task, a checklist, or a comment is readable on our servers.
VoidCove Vault is built so that sensitive vault data is encrypted client-side. Your master password is used locally to derive encryption keys and is not intended to leave your device.
Because of this design, VoidCove cannot read your decrypted vault passwords. If you lose both your master password and your recovery code, your encrypted data is permanently unrecoverable. There is no reset and no support process that can restore it, because we do not hold the means to decrypt it.
Recovery resets your master key rather than restoring the old one. Notes encrypted under the previous key cannot be decrypted afterwards, by you or by us, and neither can the vault items you own, which are sealed with that same key. The terms of service set out what that means in practice.
Browser Extension Permissions
The VoidCove Vault extension requests permissions needed to store extension session data, identify the active tab, detect login forms, fill credentials, and offer to save new credentials.
Host access is used so the extension can work across websites where users choose to use password autofill. The extension uses this access for password-manager functionality.
Sharing And Service Providers
We may use service providers to host, run, and secure VoidCove, such as infrastructure, deployment, database, and monitoring providers. These providers are used to operate the service and are not permitted by us to sell your personal information.
We may disclose information if required by law, to protect VoidCove or users, or in connection with a security, fraud, or abuse investigation.
Data Retention
We keep account and service data for as long as needed to provide VoidCove, comply with legal obligations, resolve disputes, and maintain security.
There is no self-service account deletion in the app. To have your account removed, ask through the contact form and we will delete the account record along with the notes, tasks, and vault items held against it.
Your Choices
You can choose whether to use the browser extension, whether to save credentials, and whether to remove saved vault items. You can also uninstall the extension at any time through your browser.
Children
VoidCove is not intended for children under 13, and we do not knowingly collect personal information from children under 13.
Changes
We may update this policy as VoidCove changes. If we make material changes, we will update the effective date and provide notice where appropriate.
Contact
Questions about this policy can be sent through the contact form at https://auth.voidcove.com/contact.