Snapshot of the source text at fetch time, not a live mirror of the policy page.
Plain-English summary
Your personal information may be shared with third parties under deemed consent, including for business transactions like sales or acquisitions (data_use-1). A wide range of your personal, technical, and usage information may be collected and analyzed, including browsing habits and direct identifiers, which can be used for internal business purposes and marketing recommendations (data_use-2).
80% confidence
Ask Verbaterm
Follow up on findings with grounded answers from this review. Not legal advice.
Risk Flags
Critical issues and red flags: These items are material, carry substantial risk, or can be difficult to reverse once they occur.
Not clearly stated: The document does not contain information about practices or clauses that would be considered "Risk Flags" according to the rubric's definitions, such as mandatory arbitration, class-action waivers, or termination without notice/refund.
Data Use
Practices concerning your data: collection, sharing, and control.
Not clearly stated: The document does not explicitly state all types of personal information collected beyond the examples provided, nor does it detail how third-party plugins and themes disclose their network usage.
medium85% confidence
Deemed consent to disclose personal information to third parties
You are considered to have given consent for your personal information to be disclosed for certain purposes, including to third-party service providers and in business transactions like sales or acquisitions.
Why it matters: Your personal information may be shared with third parties, such as service providers or in the event of a business sale, because the policy states you are deemed to consent to such disclosures.
You are deemed to consent to disclosure of your personal information for those purposes. If your personal information is shared with third parties, those third parties are bound by appropriate agreements with Dynalist to secure and protect the confidentiality of your personal information.
We limit disclosure and retention of your personal information, paragraph 3 · Citation strength: strong
medium75% confidence
Broad data collection for various purposes and browser-based tracking
The service collects various information, including IP address, login details, email, password, computer and connection information, URL clickstream, cookie numbers, products viewed, and potentially session information like page response times and clicks. This information is collected and analyzed for purposes such as communicating with you, processing purchases, fraud protection, providing services, recommending products, statistical analyses of user behavior, complying with legal requirements, and other reasonably apparent purposes.
Why it matters: A wide range of your personal, technical, and usage information may be collected and analyzed, including browsing habits and direct identifiers, which can be used for internal business purposes and marketing recommendations.
We may also use browser data such as cookies, Flash cookies (also known as Flash Local Shared Objects), or similar data on certain parts of our website for fraud prevention and other purposes. During some visits we may use software tools such as JavaScript to measure and collect session information, including page response times, download errors, length of visits to certain pages, page interaction information (such as scrolling, clicks, and mouse-overs), and methods used to browse away from the page.
We limit collection of your personal information, paragraph 7 · Citation strength: strong
Cancellation & Renewal
Terms related to ending your service or account, and automatic renewals.
Not clearly stated: The document does not contain information requiring special attention regarding account cancellation or automatic renewals beyond what is covered in protections.
Gotchas
Other common but important caveats and restrictions that may be a surprise.
Not clearly stated: The document does not contain information about other common but important caveats and restrictions that may be a surprise, based on the provided clauses.
Protections
Commitments and features that benefit you.
Not clearly stated: The document mentions that Discord's privacy policy should be referred to for details concerning Discord accounts, but does not state the specific protections offered within that policy related to user data control.
Protection90% confidence
Full control over your data
The service states it prioritizes user privacy by giving full control over your data.
Why it helps: This commitment indicates a company philosophy focused on user empowerment regarding their data.
We prioritize your privacy by giving you full control over your data.
Summary, paragraph 1 · Citation strength: strong
Protection95% confidence
Local data storage and no personal data or telemetry collection for core apps
For Obsidian apps, all data is saved locally on your device and is never sent to their servers. They state they do not collect any personal data or telemetry data.
Why it helps: This ensures that your information stays on your device, enhancing privacy and reducing the risk of server-side data breaches for core app usage.
* All data is saved locally on your device and is never sent to our servers. * We do not collect any personal data. * We do not collect any telemetry data.
Obsidian apps for desktop and mobile devices, paragraph 1 · Citation strength: strong
Protection90% confidence
Optional update checks and plugin/theme internet access
Obsidian may connect to the internet for updates, which can be disabled. It also connects for browsing and installing plugins/themes or accessing embedded websites.
Why it helps: Users have control over automatic update checks, and internet connections for core functionalities are explicitly stated.
* Obsidian may connect to the internet to check for updates, but you can disable this in Settings → About. * Obsidian connects to the internet when you browse and install plugins and themes or access embedded websites (e.g. iframes in notes).
Obsidian apps for desktop and mobile devices, paragraph 1 · Citation strength: strong
Protection85% confidence
Third-party plugin and theme developer policies restrict telemetry
Third-party plugins and themes in their directory must adhere to developer policies prohibiting client-side telemetry data capture and requiring clear disclosure of network usage.
Why it helps: This policy provides an extra layer of privacy protection by imposing restrictions on how third-party extensions handle user data.
* Third-party plugins and themes listed in our directory must adhere to [Developer policies](https://docs.obsidian.md/Developer+policies) which state that capturing client-side telemetry data is prohibited, and that network usage must be clearly disclosed.
Obsidian apps for desktop and mobile devices, paragraph 1 · Citation strength: strong
Protection95% confidence
End-to-end encryption for Sync data
With Obsidian Sync, your data, including file names, is end-to-end encrypted.
Why it helps: End-to-end encryption significantly enhances data privacy and security, as it ensures that only you can access your content.
* With Obsidian Sync, your data, including file names, is end-to-end encrypted. [Read more about Obsidian Sync privacy](https://obsidian.md/help/sync/security).
Obsidian Sync and Publish, paragraph 1 · Citation strength: strong
Protection90% confidence
Data deletion upon subscription cancellation/expiration
If Sync or Publish subscription expires, data remains for one month then is permanently deleted. If you cancel, data is deleted immediately.
Why it helps: This commitment provides a clear retention policy for your data after you stop using the service, empowering users by ensuring timely data deletion.
* If your Sync or Publish subscription expires, your data remains stored on our servers for one month, then deleted permanently. If you cancel the subscription yourself, your data is deleted immediately. Any local vaults on your devices are unaffected.
Obsidian Sync and Publish, paragraph 1 · Citation strength: strong
Protection95% confidence
Email not shared with third parties (except payment processors)
Your email address is not shared with third parties, except for necessary payment processors.
Why it helps: This limits the distribution of your email address, reducing the risk of unwanted communications from other companies.
* We don't share your email with third parties, except payment processors (Stripe, WeChat, Alipay, PayPal).
You can choose to delete your Obsidian account at any time using the account dashboard, which will permanently delete your account, licenses, and subscriptions.
Why it helps: This provides users with direct control over their account and associated data, allowing them to permanently remove their information from the service.
* You may choose to delete your Obsidian account at any time using the account dashboard, which will permanently delete your account, licenses, and subscriptions.
Commitment to not materially change policies to be less protective retroactively
The privacy notice will change, and the company may email reminders, but they commit to never materially change policies to be less protective of customer information collected in the past without customer consent.
Why it helps: This commitment provides assurance that past collected data will be protected under the terms agreed upon unless the customer explicitly consents to less protective terms.
Our business changes constantly, and this privacy notice will change also. We may e-mail periodic reminders of our notices and conditions, unless you have instructed us not to, but you should check our website frequently to see recent changes. We are, however, committed to protecting your information and will never materially change our policies and practices to make them less protective of customer information collected in the past without the consent of affected customers.
How to contact us, paragraph 2 · Citation strength: strong
Protection90% confidence
Right to access and amend personal information
You may request access to the personal information on record to review and amend it, and the company will respond in a timely manner.
Why it helps: This provides users with the ability to ensure the accuracy and completeness of their personal information and to correct any discrepancies.
You may request access to the personal information we have on record in order to review and amend the information, as appropriate.
We keep your personal information up to date and accurate, paragraph 2 · Citation strength: strong
Report an issue
Flag a citation problem, stale policy text, or incorrect company match.
Verbaterm boundaries
This public review is informational only and is not legal advice. Verbaterm shows only findings tied to the cited source snapshot above.