Privacy Policy for JournaI

Effective date: June 7, 2026  ·  Last updated: August 18, 2026

App: JournaI (Android package com.anonymous.jornaAI)
Operator: aifor.codes
Contact: 12097darshan@gmail.com
This page: https://journai-analytics.web.app/privacy

This Privacy Policy describes how JournaI (“the App,” “we,” “us,” or “our”) accesses, collects, uses, stores, and shares information when you use the App on Android (and iOS if offered).

JournaI is local-first. Journal entries and on-device companion chats stay on your phone unless you enable a feature that sends data elsewhere. We do not sell personal information. We do not operate servers that store your journal text, and the App does not create a JournaI cloud account.

Data retention policy (summary): We do not store or retain your journal entries or companion chat text on our servers. On-device data remains until you delete it, reset the App, or uninstall. Optional analytics and purchases follow the retention periods in section 12.

1. Who this policy applies to

The App is for users aged 13 and older. We do not knowingly provide the App to children under 13. See section 11.

2. Information stored on your device

The following stays in the App sandbox on your device unless you export, back up, share, or paste it into cloud chat:

DataPurpose
Journal entries (text, tags, mood, dates, times)Core journaling
Companion conversations and reflectionsChat and timeline replies
Settings (persona, theme, trial/subscription state, language)Personalization and unlock state
Optional personality summary from your entries“You” graph / companion context
Optional profile name and photo you chooseIdentity in the App
Date of birth you enter at the age gateAge check and lifeline start
Downloaded on-device AI model filesLocal companion replies
Optional local diagnostics logTroubleshooting if you enable it
API keys you paste for cloud AICalling the provider you chose

Storage: SQLite and files in the App sandbox. A key is kept in the Android Keystore / iOS Keychain. The database file is not SQLCipher-encrypted at rest in the current release.

Biometric lock: If you enable lock, the operating system authenticates you. We do not receive fingerprint, face, or passcode data.

Permissions: microphone (optional dictation), photos (optional profile picture), internet (model download, optional analytics, optional cloud AI, billing, optional Drive backup).

3. Information we do not collect on our servers

We do not run a JournaI backend that stores journal entries or chat text. There is no JournaI login that uploads your writing to us.

4. How we use information

5. Sharing with third parties

We share data only as described here, when you use the related feature, or as required by law. We do not sell personal information.

PartyWhenWhat
Google Firebase Analytics / Google Analytics 4If Share usage analytics is onUsage events (screens, taps, errors). Not journal or chat text. Google Privacy Policy
Google Play / Google Payments / RevenueCatTrial or purchasePurchase identifiers and subscription status. Not journal text. RevenueCat Privacy Policy
OpenRouter, OpenAI, Anthropic, or another AI provider you chooseIf you enable cloud companionChat messages and the context you send from the device. Journal is not uploaded as a backup.
Google Drive / Google APIsIf you enable Drive backupEncrypted backup file to your Drive
Apple or Google speech servicesIf you allow OS speech when on-device dictation is unavailableAudio to produce text; JournaI does not store recordings
Model-file hosts / CDNsIf you download an on-device modelDownload request metadata, not journal text

For OpenRouter, JournaI requests zero data retention (ZDR) and denies providers that may train on prompts. The provider’s own policy still applies to data they process.

6. Optional analytics

Native builds may send usage events to Firebase Analytics if Settings → More settings → Share usage analytics is enabled. Disable it anytime. Analytics does not include journal bodies, chat text, or API keys.

7. Optional cloud companion

If you connect your own key, chat in cloud mode is sent from your device to that provider to generate replies. Keys stay in the device keystore. Journal entries remain on device unless you paste them into chat.

8. Optional voice dictation

On-device recognition is preferred. If it is unavailable, JournaI asks before using the OS speech service, which may send audio over the network. Only the resulting text is saved in your journal.

9. Optional backups and import

10. Subscriptions and payments

Purchases use Google Play Billing (via RevenueCat). We do not receive your card number. We store trial/subscription state on device to unlock companion features. Google’s and RevenueCat’s policies apply to payment records.

11. Children

Not directed to children under 13. We do not knowingly collect personal information from children under 13. Contact 12097darshan@gmail.com if you believe a child has used the App.

12. Data retention policy

We do not store or retain your journal entries, companion chat text, photos, or profile content on our servers. JournaI has no cloud database for your writing. The table below states how long each type of information is kept:

Data typeWhere it is storedRetention period
Journal entries, companion chats, settings, profile photo, personality summaryOn your device only (App sandbox)Until you delete entries, reset the App in Settings, or uninstall. We do not keep server-side copies.
Journal or chat text on our serversNot stored by aifor.codesWe do not retain this data.
Optional usage analytics (Firebase / Google Analytics 4)Google, if Share usage analytics is onTypically up to 14 months per Google Analytics for Firebase default settings, or until you disable analytics. See Google’s data retention documentation.
Subscription / trial statusOn your device; purchase records at Google Play and RevenueCatOn-device state until reset or uninstall. Google Play and RevenueCat retain billing records per their policies.
Cloud AI messages you sendThe AI provider you choose (e.g. OpenRouter)Not retained by us. OpenRouter zero-retention (ZDR) routes request no provider retention; other providers follow their own policies.
Google Drive backup you enableYour Google Drive accountUntil you delete the backup file or revoke access. We do not host the file.
Voice dictation via OS speechApple or Google speech service, if you allow itNot stored by JournaI. The OS provider’s retention policy applies.
On-device AI model filesYour deviceUntil you delete the model in Settings or uninstall the App.

To remove on-device data, see section 13. To stop analytics collection, turn off Share usage analytics in Settings. For billing or analytics records held by Google or RevenueCat, email 12097darshan@gmail.com and we will help with requests to those providers where we can.

13. Deleting your data

JournaI does not create a cloud account. To delete App data:

14. Security

We use HTTPS for network calls, OS keystore for keys, and the App sandbox for journal files. No method is 100% secure. You can add biometric lock in Settings.

15. International processing

If you use Google, Apple, or a cloud AI provider, they may process data in other countries under their terms.

16. Your choices

GoalHow
Stop analyticsSettings → More settings → Share usage analytics off
Stay fully localUse on-device companion; do not connect cloud AI
Refuse network speechDecline the prompt; type instead; revoke mic in system Settings
Delete App dataSettings reset, or uninstall
Revoke DriveTurn off Drive backup; revoke access in your Google Account

17. Companion safety

Companions are not therapists or emergency services. If you are in crisis, contact local emergency services.

18. Changes

We may update this policy. The new version will be posted at https://journai-analytics.web.app/privacy with a new “Last updated” date.

19. Contact

aifor.codes
Email: 12097darshan@gmail.com

This policy is also linked in the App under Settings → Data & privacy → Privacy policy.