Privacy & Local-First
Vexlynk is local-first. Your workspaces and the cards in them are stored on your own machine, and the app works without a network connection for everything that does not inherently need one.
This page is about the exceptions: the specific moments something leaves your computer, and what protects it.
What stays local
Section titled “What stays local”- Your workspaces and cards — written to your own disk
- Files you link — the Files panel reads files where they already are. Nothing is uploaded or duplicated
- Your layout, history and settings
If you never connect a source, never ask the agent anything, and never turn on sync, nothing you create leaves the machine.
What leaves, and when
Section titled “What leaves, and when”Connecting a source talks to that service. Google Calendar reaches Google, Stripe reaches Stripe. That happens because you connected it, and it fetches — Vexlynk asks for read access and does not write back on its own.
Asking the agent sends the relevant context from your workspace to the hosted AI so it can answer. It goes when you send a message, not in the background. The same rule covers the newer reading abilities: a link card’s page is fetched by our server (never from your machine) and the useful part rides with your question; a document card is read locally on your device — and only if you enabled document reading in Settings → AI (off by default) — with only the relevant part travelling, like a note’s text. Background Vlynks never read document contents either way.
Cloud sync, if you turn it on, uploads your workspaces so other devices can pull them.
Sync is off unless you turn it on
Section titled “Sync is off unless you turn it on”Sync is opt-in on every plan and off by default. On the Free plan it cannot be switched on at all — it is a Plus and Pro feature.
Nothing leaves your machine because you forgot to check a box.
Your account
Section titled “Your account”Your session is stored encrypted on your machine, which is why the desktop app opens already signed in without keeping your password anywhere.
Two-factor authentication is available and can be enabled in Settings → Security. Some actions ask you to re-authenticate before they proceed.
API keys for sources that use them are stored encrypted and are never written into a workspace or a card.
Deleting your data
Section titled “Deleting your data”You can remove your data without deleting your account, or remove the account entirely. Both live in Settings → Data.
Deleting the account removes the account record and the data associated with it. If you only want to clear what is on this machine, the local option does that without touching the account.
What we do not do
Section titled “What we do not do”- Sources are read-only by default. Vexlynk brings data in; it does not write back to your Stripe account, your Notion workspace or your analytics. The only exceptions are actions you take yourself from a card — replying to a WhatsApp conversation, updating a Trello task, adding a calendar event — each one explicit, one at a time, and never taken by the agent on its own.
- The agent only sees the workspace you are in, the sources you have connected, and the Vlynks you have installed — see Using the AI Agent.
- Settings — where sync, security and data controls live
- Plans & Limits — which plans include sync
Was this page helpful?
Still have a question?
Ask it here. Questions shape what gets written next — if something is missing from this page, this is how it gets added.