# Privacy

OpenOnyx is local-first. Core writing works from files on your device, and the desktop does not include product telemetry.


## Why it exists

Knowledge work often includes unfinished ideas, personal context, and sensitive decisions. Privacy is a condition for honest thinking.

## When to use it

Read this page before enabling cloud sync, sharing a Space, installing plugins, or configuring an external AI provider.

## Workflow

Write locally → decide whether a feature needs a network → connect only the service you control → review the resulting sources and permissions.

## What stays local

| Surface | Default |
| --- | --- |
| Markdown vault | Local files |
| Core writing | Offline-capable |
| Local embeddings and Spaces retrieval | On device |
| Product telemetry | Not collected |
| Supabase sync | Optional, your project |

> **OpenOnyx tip**
> Treat API keys and sync credentials as part of your security boundary. Store and rotate them deliberately.

> **OpenOnyx common mistake**
> A plugin or external AI provider can have its own data practices. Read its permissions before enabling it.

## Continue learning

- [Sync](<Sync.md>)
- [Plugins](<Plugins.md>)
- [Vault Intelligence](<Vault Intelligence.md>)

