“my draft notes on the queue redesign”
Draft: the retry queue redesign feels over-engineered — revisit after the Q3 load test before proposing it.
- Scope
- personal · follows you
- Visible to
- you, in every project and tool
Use cases / Private memory
Some of what you know is not the team's business. Zephr keeps one personal memory that follows you across every project and every connected tool — and can never surface in a teammate's search, because it is never written into the index team search reads. Not a privacy setting. A wall.
personal scope is never indexed for team search — the wall is at write time
Illustrative example — not live data
Team memory answers the team's questions — but the moment everything is shared, you stop saving the half-formed thing. The draft note you are not sure about, the observation about a flaky process, the personal shortcut that would look odd in a team index: these need memory that is unambiguously yours. Without it, they go back to sticky notes and lost buffers, which is the forgetting problem all over again.
Your own recall finds your note. The identical query run as the team finds nothing — because the note was never written into the index team search reads.
Draft: the retry queue redesign feels over-engineered — revisit after the Q3 load test before proposing it.
No results — and that is the point. Not access-denied, not redacted: not found, because the note never entered the index this search reads.
Illustrative example — not live data
Step through the rings. A memory's scope is chosen when it is written — and personal scope is never indexed for team search. Not filtered at read time; absent at write time. There is no permission to misconfigure.
The wall is structural. A personal memory is not hidden from team search — it was never written into the index team search reads. There is no permission to misconfigure.
illustrative — the rings mirror the shipped personal/project/team scope model
The loop is deliberately boring — the entire feature is that nothing surprising can happen between step one and step three.
Save it as yours
It follows you
The team cannot see it
Suggestions that a human never confirms do not enter the durable ledger and are not recalled as settled fact.
zephr packA draft thought, a preference, a shortcut — saved to your personal scope. It never enters any shared index, from the first byte.
Open a different project in a different tool tomorrow. Your notes are there, because they were never attached to a repository in the first place.
A teammate searching team memory gets nothing — not a redacted result, nothing. The record is not in the index their search runs against.
This is the furthest-along non-code story Zephr has, so the grid below is mostly green. The honest edges are trades, not gaps: local mode gives up sync for a stricter wall, and widening a record's scope is deliberately manual.
Preferences, shortcuts, and working notes save into a space keyed to you, not to a repository — switch projects or tools and it is already there.
personal scope · cloud-persistent
Team recall queries an index your personal records are never written into. There is no visibility flag to misconfigure — the wall is which index the record enters, decided at write time.
scoped indexes — demoed live on the landing page
Personal, project, team. A record names its scope when it is saved, and widening a scope is a deliberate re-save — never a side effect of recall.
scope on the record, not on the query
Want it never to leave the machine at all? Local mode is one file on disk, offline, no account — the same review flow and signatures, scaled to one device. No cross-device sync is the trade, stated plainly.
free · single machine
Your personal space exports as a signed file in a documented format with one command. Leaving is a workflow, not a ticket.
zephr pack
The cloud path syncs your personal space between machines. Local mode deliberately does not — pick the wall you want.
cloud path
Most tools implement privacy as a visibility flag checked at read time — one misconfiguration, one migration bug, one over-broad query away from a leak. Zephr decides at write time which index a record enters. Team search runs against the team index; your personal records were never in it. That is why the landing-page demo can let you try the leak — search a personal note as the team — and show you the refusal: the failure mode is not found rather than found but hidden.
The landing page has the live demo: save spaces, switch scopes, and try to read a personal note as the team. Then start free — your first personal memory takes about a minute.