Last updated: May 28, 2026

Privacy policy

This policy explains how Neurix (website and mobile app) collects, uses, stores, and protects your personal data, in accordance with the General Data Protection Regulation (GDPR) and app store requirements.

1. Data controller

The publisher of Neurix is the controller for the data described below.

Privacy contact: pmcides@gmail.com

Website: https://neurix.qrthecode2.com

2. Data we collect

Depending on how you use the service, we may process:

  • Account data: name, email address, password (hashed) or Google identifier (OAuth sign-in), avatar color, display preferences (language, density, etc.).
  • Content you create: notes, tasks, task comments, attachments (images, documents), meeting transcripts and summaries, messages exchanged with the AI assistant.
  • Collaboration data: team contacts added by email, task assignments, note sharing.
  • Technical data: session identifiers, push notification tokens (FCM) linked to your mobile device, platform type (e.g. Android), limited technical logs (errors, security).
  • Billing data (if you subscribe to Neurix Pro or buy AI credits): Stripe customer identifiers, subscription status; card numbers are processed directly by Stripe and are not stored on our servers.
  • Local data on your device (mobile app): light/dark theme preference, local AI chat history while signed out, WhatsApp number entered for reminders (local storage only).

Microphone and camera: the mobile app may request microphone access for meeting dictation and camera access to attach photos. These permissions are used only when you explicitly start the related feature.

3. Processing purposes

  • Create and manage your account, authenticate you, and sync your data.
  • Provide notes, tasks, planning, meetings, and collaboration features.
  • Send notifications (task assignment, comments, reminders, sharing).
  • Send email reminders when you enable that option on a note.
  • Provide the AI assistant and transcription structuring/correction.
  • Manage Pro subscriptions and AI credit purchases via Stripe.
  • Ensure security, prevent fraud, and improve the service.
  • Comply with legal obligations.

4. Legal bases (GDPR)

  • Contract performance: providing the Neurix service.
  • Consent: push notifications, Google sign-in, email reminders, microphone/camera access, messages to AI.
  • Legitimate interest: service security, support, technical improvement.
  • Legal obligation: retention of certain billing data.

5. Subprocessors and recipients

We use providers that may process your data on our behalf, including:

  • Google — OAuth sign-in (Google Sign-In) and push notifications (Firebase Cloud Messaging).
  • Stripe — payments and subscriptions.
  • Cloudinary — hosting of attached files (images, documents).
  • AI providers (e.g. OpenAI, Anthropic) — processing messages and transcripts you submit to the assistant or meeting tools.
  • Database host — secure storage of accounts and content (PostgreSQL).

These providers use your data only under our instructions and their own privacy policies. Some may be located outside the European Union; appropriate safeguards (standard contractual clauses, etc.) are implemented when required.

6. Retention period

  • Account data and content: kept while your account is active, then deleted or anonymized within a reasonable time after account deletion.
  • Push notification tokens: removed when you sign out or delete your account.
  • Billing data: kept according to applicable accounting and tax obligations.
  • Technical logs: kept for a limited period unless a legal obligation requires otherwise.

7. Your rights

Under the GDPR, you have the following rights:

  • Access, rectification, and erasure of your data.
  • Restriction of processing and objection, where provided by law.
  • Data portability (structured format, where applicable).
  • Withdrawal of consent at any time (without affecting prior lawful processing).
  • Lodge a complaint with your supervisory authority (e.g. CNIL in France).

Account deletion: you can request deletion of your account and associated data via our dedicated page: https://neurix.qrthecode2.com/delete-account.

To exercise your rights, contact us at pmcides@gmail.com. We may ask for proof of identity.

8. Security

We implement appropriate technical and organizational measures (password hashing, secure sessions, restricted access, backups) to protect your data against unauthorized access, loss, or disclosure.

9. Children under 13

Neurix is not intended for children under 13. We do not knowingly collect personal data from children under 13. If you are a parent or guardian and believe a child provided us data, contact us so we can delete it.

Use of the service by a minor must be with the consent of a parent or legal guardian, as required by applicable law.

10. Cookies and trackers (website)

The website uses cookies or similar technologies strictly necessary for operation (sign-in session) and, where applicable, third-party services (e.g. ads or analytics) depending on your configuration. You can manage cookies in your browser settings.

11. Changes

We may update this policy. The last updated date appears at the top of the page. For significant changes, we will notify you appropriately (in-app notification, email, or site banner).

12. Contact

For any question about this policy or your personal data: pmcides@gmail.com