Privacy Policy
StillHere — Privacy Policy (On-Device, No Cloud)
Last updated: August 21, 2025
Our promise (TL;DR)
- Your data stays on your device. We do not run a cloud database for your content.
- We don’t collect, sell, or share your journal data. No ads, no third-party trackers.
- You’re in control. You decide if/when to export, back up, or share anything outside your phone.
What this policy covers
This Privacy Policy explains how the StillHere mobile application (the “App”) handles information. Because StillHere is designed for on-device privacy, much of this policy clarifies what we do not collect.
Definitions
- Unified Logs: The single, on-device timeline that holds all entries you create (e.g., simple/structured journals, ego check-ins, gratitude, habits, grounding, dreams, memories, etc.).
- Local storage: Data saved on your device (e.g., AsyncStorage, SecureStore).
Data we store locally on your device
- Unified Logs: all content you create in the App.
- Settings & preferences: theme, reminder time, flags.
- Local PIN: stored via SecureStore where supported by your OS.
- Notifications: locally scheduled reminders (no remote push from us).
Note on OS backups: If you enable device backups (iCloud / Google), your OS may include an encrypted copy of the App’s local storage in your device backup. Those backups are governed by Apple/Google. We do not control or access them.
What we do not collect
- We do not upload your Unified Logs to our servers (we don’t host your content).
- We do not use advertising SDKs, fingerprinting, or cross-app tracking.
- We do not collect device identifiers for analytics of your content.
What we might receive (only if you choose)
- Support messages (email/form) you explicitly send us (including any files you attach).
- Purchase/subscription status handled by Apple/Google; we don’t receive your full payment details.
Your choices & controls
- Export: export Unified Logs (e.g., JSONL). Once exported, it’s under your control.
- Delete: delete entries, clear app data, or uninstall; we have no server copy to delete.
- Backups: manage device backups in your OS settings.
- Notifications: enable/disable reminders anytime.
- PIN: set/change your local PIN for quick protection.
Security
- Your device OS provides sandboxing and, where available, encryption at rest.
- Sensitive items (like PIN) use SecureStore when supported.
- Important: AsyncStorage isn’t end-to-end encrypted; protect your device and handle exports carefully.
Permissions the App may request
- Notifications for local reminders.
- File access for export/import (only when you choose).
- Network to open external links you tap (we do not upload your content by default).
Children’s privacy
Not intended for children below your region’s applicable age (e.g., 13/16). We do not knowingly collect children’s data.
Region-specific rights (GDPR/CCPA and similar)
Because we don’t store your content on our servers, journal-data requests are handled on-device by you. For emails you sent us, write and we’ll delete them from our mailbox.
Changes to this policy
We may update this policy; we’ll update the date above and, for material changes, notify you in-app.