Privacy Policy
Last updated: 26 June 2026
simpl.day is built privacy-first and on-device. Your personal content stays on your phone by default. Nothing about your life is sent to us, sold, or shared with advertisers — ever. This page explains exactly what data exists, where it lives, and the few optional features that can send a bounded amount of data off your device only when you turn them on.
1. The short version
- On-device by default. Notes, tasks, goals, people, moods, photos, voice notes, locations and activity history are stored in app-private storage on your device and in a backup file on your device. They are not uploaded anywhere by default.
- No account needed to use the app.
- No ads, no advertising trackers, no sale of personal data.
- Optional online features are opt-in and clearly labeled (AI Companion, shared accountability, anonymous usage stats).
2. Data stored on your device
The core app keeps everything you create locally: lists, tasks, goals and progress, notes and thoughts, people/contacts you add, mood and reflection entries, photos you capture in-app, voice notes and their transcripts, and — if you enable location/activity features — location and physical-activity history used to provide context. This data is held in app-private storage and in a backup file in your device's Documents folder so you can restore it. Uninstalling the app removes the app-private data; the backup file remains on your device until you delete it.
3. AI Companion (optional)
By default the Companion runs in Rules-only mode and makes no network calls. If you choose an online provider (Anthropic, OpenAI or Google Gemini) you must enter your own API key, which is stored in your device's secure storage. When you opt in, a bounded, user-toggleable snapshot of your data may be included in a request to that provider so the Companion can be useful. We keep a metadata-only audit log on your device (provider, model, token counts, and a one-way digest) — never the content of your prompts or the responses. Data you send to a third-party AI provider is governed by that provider's privacy policy.
4. Shared accountability (optional, end-to-end encrypted)
If you connect an account and invite a partner, accountability messages sync through our backend (Supabase). This is end-to-end encrypted: the server stores only ciphertext, your identity public keys, and the membership links of who is in a circle with whom. We cannot read your accountability content. Your recovery key stays on your device and is never sent to the server. To use this feature you sign in with your email (used only to authenticate and to route invitations).
5. Anonymous usage statistics (optional, default OFF)
If you turn on usage statistics, the app sends anonymous, aggregate product-usage events tagged with a randomly derived, non-identifying install identifier. These contain no personal content. This is off unless you enable it.
6. Things you volunteer
If you join the waitlist, post to the public feature-request board, or use the chat on our website, we receive what you choose to submit (for example an email address or your message). These are used only to follow up with you and improve the product.
7. Permissions and why
- Location (including background) — optional place/context features and auto-tagging; off unless enabled.
- Camera — taking photos for notes, people and tracked items.
- Microphone — voice notes and on-device transcription.
- Physical activity — activity-context features.
- Storage / All files access — reading and writing your on-device backup file so your data survives reinstalls.
- Notifications & alarms — reminders you schedule.
Every permission backs a specific feature and can be revoked in your device settings.
8. Crisis support
Crisis/self-harm phrase matching happens on your device and returns hotline information locally. No data is sent off the device on a crisis interaction.
9. Children
simpl.day is not directed to children under 13 (or under 16 in regions where that is the threshold) and we do not knowingly collect their data.
10. Deleting your data
You can clear data inside the app, and uninstalling removes app-private data (delete the backup file to remove it too). If you signed in, you can delete your account from Settings inside the app — this removes your sign-in identity, your connections and keys, your encrypted cloud backup, your push registrations and your feature-board posts, while leaving everything on your phone untouched. Full details, and what to do if you can no longer sign in, are on Delete your account.
11. Contact
Questions or requests: clintonfernandes4u@gmail.com.
simpl.day · simpl.day