Last updated 24 September 2026
Lotli is a study app for iPhone, and lotli.app is its website. Both are run by Filip Kilter in Norway ("we"), who is the controller of the personal data described here. This page explains what the app and the website handle, who helps us process it, and how to have it deleted.
The short version: your courses, questions and progress live on your phone. The text of material you add is sent to our server so an AI model can write your questions. We use analytics to see how the app is used and an attribution service to see which ads work, and the attribution service only gets your advertising identifier if you allow tracking. We do not sell your data and we do not show ads.
Deleting the app deletes all of this.
Lotli writes study questions from your own course material. To do that, the text of what you add (read from a scan, a PDF, a photo, a link or text you paste) is sent over an encrypted connection to our server, which passes it to a third-party AI model to write questions and short explanations. Today that model is reached through OpenRouter, which routes each request to the provider running the model. We send the text needed to write the questions, your folder name and study language, and nothing that identifies you. We do not use your material to train models.
To avoid paying for the same work twice, the result for a given piece of text is cached on our server for up to 30 days, stored under a one-way hash of that text. To connect related ideas across your notes, short passages are also turned into embeddings (lists of numbers) by Cloudflare Workers AI and kept in Cloudflare Vectorize; the passages themselves are not stored there.
When you create a course, the course code or name, the university and the study language you type are sent to a web search provider (Exa) and to the AI model to find the course and write a first study guide. This is not linked to you, and the results are cached and shared between students taking the same course.
AI-written questions and guides can be wrong. Treat them as practice, not as your course's official information.
Everything above works without an account. If you sign in with Apple (to use feed.lotli.app from a computer, or to post on the ideas board), we store the account identifier Apple gives us, the email address Apple shares (which can be a private relay address), a session record, and the names and colours of your folders so the website can show them. Files and text you drop on feed.lotli.app are stored on our server until your phone has filed them, then removed.
To keep our AI service from being abused, the app proves to our server that it is a genuine copy of Lotli using Apple's App Attest. That creates a random install identifier, a device key and a daily usage count. The same random install identifier is used by the subscription, analytics and attribution services below, so they can be matched to each other without a name, an email address or an Apple ID.
Purchases are made and charged by Apple; we never see your payment details. We use RevenueCat to know whether your subscription is active. RevenueCat receives the random install identifier and your App Store purchase history for Lotli.
We use PostHog, hosted in the EU, to understand how the app is used: which screens are reached, whether a session is finished, whether a course gets material, and similar events, together with the app version, device model, iOS version, language and country, and how you found Lotli. It is tied to the random install identifier, not to your name or email. Screen recording is off. We do not send it the content of your material, questions or answers.
We advertise Lotli, and we use Singular to learn which ads lead to installs and subscriptions. Singular receives the install identifier, Apple's identifier for vendors, your IP address, device model, iOS version, language, and events such as the first finished session, a trial starting (reported two hours later, and not at all if you cancel within those two hours) and a purchase. It shares aggregated results with the ad networks we buy ads from.
Your advertising identifier (IDFA) is only collected if you tap Allow when iOS asks whether Lotli may track you. You can change that at any time in Settings, Privacy & Security, Tracking. Saying no changes nothing in the app. When you say no, ad results reach us only through Apple's own privacy-preserving attribution. In the opening screens we also ask where you heard about Lotli; your answer is stored with the analytics above.
Study reminders, focus timer alerts and notes from Lotli are scheduled on your phone; we do not run a push server. If you looked at the subscription and did not start it, the app may also remind you of an offer for a limited time. You can turn any of this off in iOS Settings, Notifications, Lotli.
If you post on the ideas board, we store the text you wrote, whether it is an idea or a bug report, the votes cast on it, any reports, and the app version it was sent from. Posting, voting, reporting and blocking are tied to your Sign in with Apple account on our server and shown to nobody. What is shown publicly is a handle made by hashing that account with a secret key. You can delete your own posts in the app.
If you join the waitlist, we store:
utm_source, utm_medium,
utm_campaign and utm_content values in the link you
followed, a coarse source such as instagram or direct derived
from the referring site, and a referral code if one was in the link.The address is used to tell you when Lotli launches. The website counts a few first-party events (page view, form focus, submit, signup) with the same attribution fields, with no identifier tying them to you, and sets no advertising or analytics cookies. If we connect an email delivery provider to send the launch email, we will name it here first.
Some of these providers process data outside the EEA, mainly in the United States. Where they do, the transfer relies on the EU Standard Contractual Clauses or the EU-US Data Privacy Framework.
You can ask for a copy of your data, have it corrected or deleted, object to processing based on our legitimate interests, and withdraw any consent. Write to fk.apps.customer@gmail.com and we will answer within 30 days. Deleting your account removes your account, sessions, folders, stored material and ideas board activity from our server. You also have the right to complain to the Norwegian Data Protection Authority (Datatilsynet) or the authority where you live.
Lotli is for students aged 13 and over and is not directed at children under 13. We do not knowingly collect personal data from a child under 13; if you believe we have, write to us and we will delete it.
If this policy changes in a way that matters, we will update this page and the date at the top, and tell you in the app before the change affects you.
Filip Kilter, Norway. fk.apps.customer@gmail.com