Privacy policy
Privacy
Kujaku helps users search, review, and organize images in local folders they choose.
Effective: June 30, 2026 · Last updated: July 22, 2026
https://kujaku.app/privacy
- The developer, referred to in this policy as the Kujaku developer, operates Kujaku and the https://kujaku.app site. Contact [email protected] for privacy questions, or [email protected] for security reports.
- Kujaku stores image file paths and file info, PNG metadata, prompts, generation metadata, a search index (SQLite), a thumbnail cache, review state, and a security-scoped bookmark used to restore each registered folder — all locally.
- None of this, including the image files themselves, is uploaded during normal use.
- Kujaku does not offer cloud sync, online accounts, or NovelAI API integration. During normal use, images and metadata are never synced to the cloud, no account is required, and no prompt or image is sent to the NovelAI API.
- Kujaku does not introduce telemetry, automatic crash reporting, automatic diagnostic uploads, or account tracking. If telemetry or similar features are ever introduced, we'll explain the purpose, what's sent, where it goes, and how to turn it off before it happens.
- Kujaku supports NovelAI PNG metadata but is not an official or affiliated NovelAI app. The name NovelAI is used only to describe the metadata format it supports.
- To check for updates, the app may reach an appcast under the official website. The minimum information that can be sent is the app's version/build, information needed to confirm macOS compatibility, and the IP address and user agent that accompany any HTTP request. Image files, prompts, generation metadata, the search index, the thumbnail cache, and review state are never sent.
- The update check normally only talks to https://kujaku.app. If a different host is ever used, we'll explain why in the release notes and in this policy.
- Sparkle system profiling and analytics are off. If Sparkle system profiling or analytics is ever turned on, we'll explain what's collected, why, and how to opt in or out before it happens.
- Web server/CDN logs may contain IP address, user agent, download URL, and timestamp.
- The kujaku.app site does not use cookies or any analytics tools, such as Google Analytics.
- Diagnostic logs are shared only after explicit user action and prior explanation.
- We do not sell or share your personal data with third parties. The site is delivered via Cloudflare Pages as its CDN.
- Deleting the app and the local index/cache folder (~/Library/Application Support/Kujaku) removes everything Kujaku created locally. Image files themselves are not touched and remain in their original folder.
- If this policy is revised, we'll announce it here and in the release notes, and update the last-revised date at the top of this page.