gate4.ai Terms

Privacy policy

What gate4.ai keeps, where it goes, and what you can do about it. Revision of 6 September 2026.

The important part, before you hand us a copy of your notes. There is no end-to-end encryption: the text of your notes sits in our database in the clear, and the service is technically able to read it. Why, in “We can read your notes” below.

We do not sell data, show advertising, hand your notes to other users, or use them to train models.

What the service does

gate4.ai receives a copy of your notes over WebDAV (the Remotely Save plugin in Obsidian), stores the files, builds a search index over them, and serves that index to an AI assistant over MCP. The point is that your notes are reachable from your phone and from a browser while your computer is off.

What we hold

We can read your notes

Plainly: the text of your notes and chunks sits in the database in the clear, the files sit in a bucket, and a person with access to the server can read them. This version of the service has no end-to-end encryption.

The reason is technical, and we would rather name it than promise encryption we do not have. Half of the search is full-text: it is built on a morphological index, and such an index cannot be built over ciphertext. Encrypting the content would cost exactly the thing the service exists for.

Instead of cryptography we give you what can be checked:

In ordinary operation we do not read your notes: access to the database is there to run the service. We may look at a particular note if you write to support with a question that cannot be answered otherwise — and only for that question.

Who else receives data

Nobody else. There are no advertising networks and no third-party analytics. Notes are not used to train models — ours or anybody's.

The files in Cloudflare R2 are encrypted by the provider. That encryption protects against a stolen disk, not against us: the keys are the provider's and the service's.

What a connected assistant can do

You grant the permissions on the consent page, and there are two:

Writing is limited to the folders you opened yourself, on the write rules page. Service paths — editor settings, Obsidian's own trash, the sync plugin's bookkeeping — are always closed and cannot be opened by an allow rule.

Before any overwrite the previous content of the note is kept, and deleting is soft: the note goes to a trash. Both are recoverable for 30 days. Every request an assistant makes lands in the journal, and access is revoked from the cabinet — at once, without us.

How long we keep it

Your rights

Who the operator is, and how to reach us

For anything in this policy: support@gate4.ai.

Honestly about what is not here: the legal entity the service operates under has not been registered yet, so we have nothing to put in place of an operator's details or a jurisdiction. gate4.ai runs as the author's private project at an early stage. When the entity exists, the details and the governing law will be written here and the revision date updated. We think leaving the space empty is better than filling it with a plausible invention.

Changes to this policy

The revision date is at the top of the page. If a change is material — a new recipient of data, say, or a different retention period — we will write to the account's address before it takes effect.