Legal

Privacy Policy

How the Wisp app and this website handle personal data.

Last updated: 27 July 2026

This Privacy Policy explains how oglimmer.com / Oliver Zimpasser (“we”, “our”, “us”) processes personal data in connection with Wisp, a Markdown note editor for the desktop, and with this website. It applies to visitors of this site and to people who install and use the app.

The short version: Wisp runs on your own computer, and we operate no service behind it. Your notes, your folder and your reminders never reach us, because there is nowhere for them to be sent. The AI features are the one thing that leaves your machine, and they leave it through the Claude tool you installed and signed in to yourself — see section 2.

##1. Controller

Controller under Art. 4(7) GDPR:

Oliver Zimpasser, Berliner Str. 39a, 63110 Rodgau, Germany
Email: oglimmer@gmail.com

##2. The Wisp application

Wisp is a local desktop application. It has no user accounts, no login, no sync service and no backend operated by us.

  • Your notes stay on your disk. Wisp reads and writes files only inside the folder (“vault”) you select, and only through a restricted internal bridge with path-traversal guards.
  • Reminders stay on your disk. They are written as plain JSON to .wisp-reminders.json at the root of your vault.
  • Your settings stay on your disk. The path of your last vault is stored locally so the app can reopen it.
  • The AI features run through your own Claude installation. Filing a note, answering a question from your notes and describing an imported image are all performed by Anthropic’s claude command-line tool, which you install and sign in to yourself. When you use one of those features, Wisp hands the relevant note contents — or, for an image, that image file — to that tool on your own machine, and it sends them to Anthropic under your own account and Anthropic’s terms. We are not a party to that exchange and never receive the content. Install the tool or don’t: without it, nothing leaves your computer.
  • No telemetry and no analytics. The app does not collect usage statistics, crash reports or identifiers, and opens no connection of its own. The only outbound traffic is the claude tool above, when you ask for it.

Because we never receive this data, we cannot access, export or delete it for you. Deleting it is a matter of deleting the files in your vault.

##3. This website

When you visit this site, our hosting provider processes technical data that every web server necessarily receives:

  • IP address
  • Date and time of the request
  • The page or file requested
  • Browser and operating system information (user agent)
  • Referring page, where your browser sends one

Legal basis: Art. 6(1)(f) GDPR. Our legitimate interest is delivering the site reliably and protecting it from abuse. This site has no contact form, no newsletter and no account registration.

##4. Cookies and local storage

This website sets no cookies and writes nothing to local storage. There are no tracking pixels, no advertising tags and no analytics scripts, so there is no consent banner to dismiss.

##5. Third parties

  • Anthropic. Wisp’s AI features are carried out by the claude command-line tool on your own machine, using your own Anthropic account. What you send it is governed by Anthropic’s privacy policy and terms, not ours; we neither see nor store any of it.
  • Web fonts. The typefaces on this site are self-hosted and served from the same origin as the page. No font is fetched from Google Fonts or any other third party, so no request and no IP address of yours reaches one.
  • GitHub. The source code, releases and Homebrew tap are hosted on GitHub. Following a link there, or installing Wisp with Homebrew, means GitHub receives your request data under its own privacy policy. We receive only aggregate, non-personal download counts that GitHub makes available to repository owners.
  • Hosting. Our hosting provider processes the server data described in section 3 as a processor under Art. 28 GDPR, on our instructions only.

##6. Recipients and transfers

We do not sell your data and we do not share it for advertising. Beyond the providers named above, no data is passed on. Where a provider processes data outside the EU, that transfer relies on the safeguards that provider has put in place, such as EU standard contractual clauses.

##7. Retention

  • Server logs: retained for a short period, then deleted, unless a specific entry is needed to investigate a security incident.
  • Notes, reminders and settings: retained on your own computer for as long as you keep them. We hold no copy.

##8. Security

The app is built with context isolation enabled and Node integration disabled, and every file operation crosses a minimal, guarded bridge. The macOS build is signed and notarised. We apply appropriate technical and organisational measures to this website, though no online service can guarantee absolute security.

##9. Your rights (EU/EEA)

You have the rights of access, rectification, erasure, restriction, portability and objection under Art. 15–21 GDPR. Where processing rests on consent, you may withdraw it at any time with effect for the future. You may also lodge a complaint with a supervisory authority in Germany.

These rights cover data we hold. They cannot extend to the notes on your own computer, because we never receive them.

##10. Children

Wisp is not directed at children under 16, and we do not knowingly process their personal data.

##11. Changes to this policy

We may update this policy to reflect changes in the software, our practices or legal requirements. The “Last updated” date above marks the version in force.

##12. Contact

For privacy questions or requests, write to oglimmer@gmail.com.