wanote Privacy Policy
Last updated: 19 September 2026
Wingrow Studio (“we”) provides wanote, an app for keeping a dog's health records. This policy explains what the app collects, where it goes, and how to have it deleted.
1. What we collect
1-1. What you enter
- Account details: email address and password. If you sign in with Google or Apple, the email address and account identifier those services provide.
- Your pet: name, breed, date of birth, sex, whether neutered, weight, body measurements (neck girth, chest girth, back length).
- Health records: appetite, energy, stool condition and similar notes, free-text memos, photos.
- Weight records: date measured and weight.
- Toilet records: date and time, type, urine colour, urine amount, location, photos.
- Medical records: vet visits, medications, prevention programmes, and images of certificates such as vaccination records, together with the details read from them.
- AI consultations: the question you write.
1-2. What is collected automatically
- Usage: how many times you have used the AI features, and how many AI consultation tickets you have left. Held against your account, to manage the free allowance and your tickets.
- Aggregate AI figures: how many times a day the AI features were called and the total amount of processing (tokens) they used, recorded on our own server per day and per feature (consultation, report, reading a certificate). We keep them to understand how the service is used. They contain nothing but the daily totals: no account identifier, nothing you asked, nothing the AI answered, and nothing about your dog. Because they identify nobody, they are kept without a time limit.
- Purchases: purchase history and subscription status. Payment itself is handled by Apple or Google, and we never receive your card number.
- Referral and campaign codes you redeem: when you enter a code, the code itself and the time you entered it are recorded against your account. For a referral code we also record the account identifier of the person whose code it is — that is, the app records a relationship between two accounts: who referred whom. On that person's side we record how many times they have been rewarded. We also keep a record of each reward handed out (AI consultation tickets or a free period): why, how much, and when. Note that your own referral code is derived from the first part of your account identifier.
- Advertising identifier: used to show ads in the free version. On iOS, only if you allow it (see section 4).
- What Google (AdMob) collects when ads are served: besides the advertising identifier, your IP address (used to estimate a general area), in-app interactions (launches, taps, ad impressions and views) and diagnostics (launch time, hang rate, energy use). Google collects these for advertising, analytics and fraud prevention. We do not receive them.
- Error reports: when something in the app fails, it tells our own server which operation failed (saving a record, signing in, making a purchase, and so on) and what kind of error it was (network, permission, timeout, and so on), together with a short error code (lowercase letters, digits and hyphens only), which platform the app is running on, and your account identifier. The operation and the kind of error can only be chosen from a fixed vocabulary; there is no field anywhere that accepts free text. These reports are used only to find and fix faults, and they are deleted automatically after three days. They never include your dog's name, the contents of your records, photos, the text of an error message, or which screens you visited and for how long.
- Server logs: when something fails on our own server — an AI feature's daily ceiling being reached, a code that could not be applied, and the like — we record a line containing your account identifier and the code that was being handled at the time. It is used only to find and fix faults, and it is deleted automatically after three days, like the error reports above. It never contains the contents of your records, your photos, your dog's name, or anything you asked the AI.
1-3. What we do not collect
- Biometric data: fingerprint and face recognition are handled entirely on your device. Nothing is sent to us or to anyone else.
- Location: the app never asks for location permission and does not read your position from GPS or similar. As noted above, however, Google (AdMob) estimates a general area from your IP address when ads are served.
- Contacts, call history, or information about other apps: not collected.
- Analytics: we do not embed any analytics or crash-reporting SDK of our own. As noted above, Google (AdMob) does collect information for analytics when ads are served. We do not record or analyse which screens you look at, or for how long. For what we do receive when the app hits a fault, see Error reports in section 1-2; for the daily totals of how often the AI features were called, see Aggregate AI figures in the same section.
2. Why we use it
- To provide the app: storing, displaying and charting records, and reminding you about medication and prevention.
- To provide the AI features: health consultations, monthly reports, and reading certificates.
- To manage purchases and subscriptions.
- To show ads in the free version.
- To respond to your enquiries.
- To apply referral and campaign codes, and to prevent them being misused.
- To prevent misuse and understand how the app is used.
- To find and fix faults in the app (the error reports in section 1-2).
3. Service providers
We use the following services. They handle your information only as far as is needed for the purpose shown.
| Provider | What they receive | Purpose |
|---|---|---|
| Google (Firebase) | Account details, pet details, records, photos | Sign-in and data storage |
| Anthropic | See 3-1 below | AI features |
| RevenueCat | Account identifier, purchase details | Purchase management |
| Google (AdMob) | Advertising identifier, IP address, in-app interactions, diagnostics | Advertising, analytics, fraud prevention |
| Cloudflare | Relayed requests; error reports and server logs, both kept for three days | Backend processing and summarising what is sent; finding and fixing faults |
We do not sell or give your information to anyone else.
3-1. What is sent to the AI
Only the minimum is sent.
| Feature | What is sent | What is not sent |
|---|---|---|
| AI consultation | Your question, the kind, display name and tags of any records you chose to reference, your dog's age, breed, sex, whether they are neutered, and weight, and the names of any medicines your dog is taking at the moment (the exception below) | Your dog's name; the body of those records, apart from the name of a medicine; the dose, start date or prescriber of a medicine; photos |
| AI report | The period, and figures summarised over it: starting weight, ending weight, weight change, total toilet visits, daily average, how many times each health tag was logged, and the number of vet visits. Also your dog's age, breed, sex and whether they are neutered, and the names of any medicines your dog is taking at the moment (the exception below) | Individual records; day-by-day raw data; your dog's name; photos; the name of the clinic or anything it diagnosed |
| Feeding-amount advice | Weight, life stage, whether neutered, body condition, activity level, the calculated daily calories and food amount, and the amount currently fed | Your pet's name; individual records |
| Reading a certificate | The photo of the certificate | — |
The name of a medicine is the one exception. As a rule this app does not send the contents of your records to the AI, and the names of the medicines your dog is taking right now are the exception to that rule. We made it one because we compared the answers with and without them. Without the medicines, the same question came back as “keep an eye on things at home and review food and exercise”. With them, it came back as “the weight gain could be fluid retention related to the medication — please speak to your vet soon”. That difference bears directly on your dog's safety, so the names are sent for everyone, on the free plan, on tickets and on Premium alike.
Only the name is sent. The dose, the start date, the prescriber and your notes stay in your records and are never sent to the AI. For vet visits we send a count only, never the clinic or the diagnosis.
The AI's answers are for reference and are not a veterinary diagnosis.
4. Advertising
The free version shows ads. Subscribers to the premium plan see no ads.
On iOS you are asked for permission before any tracking. If you decline, every feature of the app still works — the ads you see are simply less relevant to you.
Please also see Google's advertising privacy policy for how they handle this information.
5. Retention and deletion
- When you delete a record, it is removed from storage.
- Error reports (section 1-2) are deleted automatically three days after they are recorded. They are not kept anywhere else.
- You can delete your account at any time from Settings → Delete account inside the app. You will be asked to re-enter your password first (or to sign in again, if you use Google or Apple), to confirm it is you.
- Deleting your account removes all of the following:
- Every pet profile, and all health, weight, toilet, vet visit, medication and prevention records
- Every photo and certificate image you uploaded
- Your AI consultation and report history
- Your record of referral and campaign codes (which code you used and when, who referred you, and any reward not yet handed out), and your own referral code
- The account itself
5-1. What remains outside our control after deletion
Stated plainly, for accuracy.
- What you sent to the AI features may remain with Anthropic for a period, under their retention policy. We cannot delete it.
- Purchase records held by the App Store or Google Play are under those stores' control and cannot be deleted by us.
- Error reports survive the deletion of your account for up to three days, after which they are deleted automatically. They carry your account identifier but none of the contents of your records.
- If other people redeemed your referral code, their accounts keep the code itself and your account identifier, as the record of who referred them. Both are needed to stop the same code being used twice and to answer a support question about where a reward came from. Because a referral code is derived from the first part of your account identifier, the code itself also carries part of it. The other direction is not affected: the record of your redeeming somebody else's code is deleted along with your account.
6. Your rights
You may ask us to disclose, correct, suspend the use of, or delete the information we hold about you. Contact us using the details in section 8.
Within the app, you can view, edit and delete your records yourself.
7. Security
- All communication is encrypted.
- Records and images are subject to per-account access control: no other user can read them.
- Passwords are held by Firebase Authentication. We never hold them in plain text.
- After a period of time, you are asked to authenticate again.
8. Contact
Wingrow Studio
Email: support@wanote.jp
The operator’s legal name and address are listed on our Specified Commercial Transactions Act page, and we will also provide them promptly on request.
9. Changes to this policy
If this policy changes, we will publish the new version on this page with an updated date. Significant changes are also announced inside the app.