Nixon
Privacy Policy
Effective 4 October 2026
Nixon is a meeting assistant for macOS, made by Gestalt Labs. It transcribes your calls, separates the speakers, and writes a summary shaped by the notes you type. This policy states what the app touches and where it goes.
Local-first processing
Your meeting audio, transcripts, notes and summaries are written to your own disk. Transcription and speaker identification always run on your Mac and are never sent anywhere. Summaries run on a model Nixon downloads to your Mac on first run, unless you choose an external provider — see below. You own this data; export or delete it at any time.
Calendar access
Local calendar — the default
Nixon reads your calendar through Apple's EventKit to remind you about meetings and offer one-click join and record. This has zero network egress. Nothing leaves the device.
Google Calendar — optional, opt-in
If you connect a Google account instead, Nixon requests these OAuth scopes, all read-only:
calendar.events.readonly— your events and their attendeescalendar.calendarlist.readonly— the list of calendars you havecloud-identity.groups.readonly— best-effort, to show the members of a distribution list invited to a meeting, where your organization permits itdirectory.readonly— best-effort, to show attendee profile photos from your organization's directory, where available
These requests download calendar metadata and nothing else. Nixon never uploads meeting audio, transcripts, notes, summaries or any other app-generated content to Google. Your refresh token is stored in the macOS Keychain only — never in Nixon's database or its logs — and access tokens are held in memory only. Disconnecting revokes the token, deletes it from the Keychain, and purges everything Nixon cached from your Google account. The app then returns to your local calendar with no further Google traffic.
Google's "unverified app" screen. Nixon's Google Calendar connection currently runs on an unverified OAuth consent screen. It is capped at 100 connections and shows Google's standard unverified-app warning the first time you connect; you can continue past it under "Advanced". We are working toward Google's verification for this integration. Until then, local calendar access is the default and Google Calendar is entirely optional.
External AI providers — optional, opt-in
Nixon generates summaries locally by default. You can instead point it at Anthropic Claude, OpenAI, Groq, OpenRouter or a custom OpenAI-compatible endpoint you configure. This is the only case in which any part of a meeting — the transcript and your notes — leaves your Mac, and it happens only for the provider you explicitly select. That provider's own privacy policy governs what they do with it.
Update checks
Nixon asks nixonapp.com whether a newer release exists, roughly every six hours, and downloads it in the background. On by default. The request carries the app version and platform in the URL, and no account, device or meeting information. Turn it off under Settings → General. Installing an update is always your click.
This website
nixonapp.com uses Cloudflare Web Analytics, which sets no cookies and records no personal identifiers. Downloads and update checks are counted without any identifier — each event is recorded with its type, app version and platform plus a timestamp, and the counts are aggregated when read. Nixon stores no IP address or user identifier. Cloudflare, as our host, processes request metadata under its own privacy policy.
What we do not do
- No accounts. No email address, phone number or sign-up to use the app.
- No advertising or ad-tracking SDKs, and no selling or sharing of your data.
- No analytics inside the app. The only measurement is the aggregate website and update-check counting described under “This website”.
- No servers of ours process your meeting content. Everything above either stays on your Mac or goes directly to a service you chose yourself.
Retention and deletion
Meeting data stays on your device until you delete it, through the app or by deleting the files. Disconnecting Google Calendar removes the stored token and all cached Google data immediately. Because Nixon runs no backend of ours, there is no server-side copy for us to delete on your behalf.
Children's privacy
Nixon is a tool for work meetings and is not directed at children. It collects no personal information from anyone, including children.
Changes
If this policy changes materially, the effective date above is updated and the change is noted in the release notes.
Contact
Questions or data requests: privacy@nixonapp.com. General questions: hello@nixonapp.com.