Skip to main content
← Back to Home

Privacy Policy

Last Updated: August 28, 2026

We publish quarterly disclosures in our Transparency Report.

Your privacy matters deeply to us. This Privacy Policy explains how MyMindNook ("we", "our", "us") collects, uses, and protects your information.

1. Information We Collect

Depending on the features and choices you use, we process these categories of information:

a. Account Information

  • Email address
  • Basic login data
  • Adult eligibility, region, and policy acknowledgements

b. Reflections & Journals

  • Emotional check-ins
  • Journals, thoughts, entries

A Private Talk session is held only for the active session (up to two hours in service memory) and is not written as a durable transcript. A Saved session, journal, letter, approved memory, or thread is stored in your account until you delete it or an approved retention rule expires it.

c. Analytics (Non-personal)

  • App usage
  • Crash reports
  • Device type
  • Pseudonymous identifiers, policy versions, latency, and error codes

Optional voice input is processed by your device or operating-system speech service. MyMindNook sends the reviewed transcript—not raw microphone audio—to the text response service in the voice-note flow. Saved voice audio is collected only for a separately confirmed saved-audio feature.

2. How We Use Your Data

We use your information to:

  • Provide journaling & check-in features
  • Generate emotional insights
  • Improve app performance
  • Protect your account

We do not sell your personal information or writings.

3. Service Providers and AI Processing

We use service providers to operate MyMindNook. They process data for the purposes described below, subject to their contracts, applicable terms, and our safeguards.

  • Google Firebase and Google Cloud for authentication, storage, hosting, notifications, and infrastructure
  • AI model providers, including Google and OpenAI, to generate requested companion responses and insights
  • RevenueCat and the applicable app store or payment provider for subscriptions and purchase status
  • Crash reporting and product analytics services to diagnose failures and improve reliability
  • Resend and our support mailbox for messages you explicitly send to support

Journal or conversation content may be sent to an AI provider when you use an AI-powered feature. We do not send this content for advertising.

Providers may process data outside India. Firebase Authentication uses global/US infrastructure; RevenueCat stores customer data in US infrastructure; AI processing location depends on the approved provider configuration. We minimize transferred fields and do not map conversation, mood, journal, memory, or safety content into billing attributes.

4. Advertising and Emotional Data

MyMindNook does not include an advertising SDK, display ads in the listening room, sell personal information, or use conversation, journal, mood, memory, safety, or risk data to target advertising.

We use limited operational and product analytics to keep the service reliable and understand whether product flows work. Emotional content is not sent as an analytics or advertising parameter. Our release build includes an automated dependency and telemetry-policy check for this commitment.

5. Data Security

We use encryption in transit (TLS), encryption at rest via Google-managed AES-256, secure servers, and strict access controls.

End-to-end encryption is not currently enabled because server-side AI processing is required to generate responses.

6. Retention and Deletion

  • Private Talk transcript: active session only, with a maximum two-hour service-memory window and no durable transcript.
  • Saved content: until you delete it, delete your account, or an approved disclosed retention rule expires it.
  • Push tokens: until revocation, rotation, sign-out, or account deletion; provider backup removal may take longer.
  • Crashlytics crash data: up to 90 days; Firebase Performance data: generally 30 to 60 days.
  • Account deletion: app records are queued for cascading deletion; backups may take up to 30 days to expire and a content-free deletion tombstone may be retained for 90 days.
  • Billing and support records: retained only as required by the provider contract, dispute handling, or applicable law.

Deleting a MyMindNook account does not cancel a Paddle, Razorpay, App Store, or Play Store subscription. Cancel the subscription with the payment provider used to purchase it before deleting the account.

7. Quarterly Transparency

We publish quarterly updates covering authority data requests, deletion volume, security incidents, and significant data-processing changes.

8. Your Rights

You can request at any time:

  • Data deletion
  • Data export
  • Account closure

Contact: care@mymindnook.com

9. Adults Only — We Do Not Collect Children's Data

MyMindNook is for adults aged 18 and over. The Service is not directed to children or teens. People under 18, including ages 13–17, may not create an account or use the Service.

We do not offer parental-consent access, a teen version, or a 13–15 registration path. We do not collect date of birth. Adult eligibility is confirmed by attestation (18+) together with Terms acknowledgement; we retain the eligibility result, region, and policy version, not a birth date.

We do not knowingly collect personal information from anyone under 18. If we learn that an ineligible person created an account, we restrict access and begin the deletion process.

The product UI and safety experience are available only in English until each additional language completes native-language quality and safety review.

10. Changes to this Policy

We may update this policy. When a material change requires a new acknowledgement, the app will present the current version before continued signed-in use; optional consent choices remain separate and revocable.

Questions? Contact us at care@mymindnook.com