Projects: Saved as a .ploto file in a location the user chooses. The format is a standard SQLite database containing tasks, assignee names, schedules, to-dos, notes, whiteboards, settings and similar data. Templates, import sources and exported files such as Excel workbooks are also read and written in locations the user selects.
Working copy: While a project is open, a working copy of the entire project is created in the app's local data area managed by Windows. It is deleted when the project is closed normally, and a copy left behind by an abnormal termination is removed on the next startup where possible.
Lock file: While a project is being edited, a <name of the .ploto file>.lock file is created in the same location as the project. It records the Windows user name, computer name, process ID, start time and update time, and is deleted on normal exit. On a shared folder it can be read by any user or administrator with access to that location.
Local settings: UI preferences, the license key, notice display state, editor settings and similar values are stored in the app's local data area managed by Windows. Recently opened files are stored in %USERPROFILE%\.ploto\recent-files.json as up to 10 paths with their last access times. Some auxiliary settings files are stored in %USERPROFILE%\.ploto. A random identifier may be stored so that the app can tell which installation created a project. This value contains no OS device identifiers or personal information and is not transmitted externally.
AI integration: The AI integration consent status, trial usage count, AI Terminal license code and Store verification time are stored in ai-access.v1 in the app's local data area, protected with Windows DPAPI. Each time AI integration is enabled, the working folder for AI clients %USERPROFILE%\.ploto\ai (and also %USERPROFILE%\.ploto\ai-wsl when WSL is used) is rewritten with MCP connection settings (.mcp.json, opencode.json, .vscode/mcp.json, .cursor/mcp.json, .gemini/settings.json), instructions for AI (AGENTS.md, CLAUDE.md, GEMINI.md, PLOTO.md, references/) and connection scripts (ploto.ps1, ploto.cmd, ploto.sh). None of them contain credentials. See Section 7 for details.