Privacy and security

Built to keep your words yours.

A place this personal only earns a spot in your life if you can trust it without thinking about it. Here is exactly how that works, in plain terms you can hold us to.

The promises below aren't marketing. They're how the app is built, all the way down: the least we can possibly know about you, kept with the most care we can give it.
How it's held

How your words are kept.

Encrypted from the first word

Every journal entry, check-in, message, and safety plan is protected with field-level encryption before it is stored, so database records are unreadable without the separate encryption keys. Authorized service processes decrypt only what a feature needs in the moment, and AI features send the necessary data to providers under agreement; our privacy policy names exactly what goes where. Our build refuses to ship if any new personal field isn't encrypted.

Yours alone

Your entries open through your authenticated account. They aren't ours to browse. Access is limited to the service operations required to provide the app, and provider or other sensitive access is audit logged.

Yours to keep, yours to erase

Your history stays for as long as you want it, never cleared on a schedule you didn't choose. Delete an entry, a conversation, or your AI memory whenever you like, and it's gone for good across SimplyHere, not just hidden. Deleting your whole account works the same way, after a short recovery window (about 7 days) in case you change your mind. Anything already processed by our AI providers is then governed by their data terms.

Locked, even in your hand

The app rests behind Face ID when you set it down and signs out on its own after a long while away. A second lock for a private place.

What we refuse

What we don't do.

Most privacy pages list protections. The promises that matter in this category are refusals.

No training on your words

Your conversations and entries are never used to train AI models. Our AI processing agreements prohibit it contractually, and our architecture doesn't depend on it.

No selling, no sharing, no ads

There are no advertisers, no data brokers, no "trusted partners." The business is subscriptions and organizations paying for clinician tools. You are not the inventory.

No silent clinician pipeline

If a therapist invites you, you choose what they see, screen by screen, and you can withdraw it. Nothing is shared by default, and the app tells you what's shared at all times.

No pretending about emergencies

When a conversation shows real crisis, the app puts 988 and real resources in front of you and says plainly that a human is the right next step. Safety behavior is pinned by automated tests on every release.

Healthcare-grade when it needs to be

HIPAA-aligned controls throughout. Healthcare deployments launch only after the required BAAs are in place and the selected services are covered.

The full legal versions are short and readable. We wrote them to be read.
Read the privacy policy