Opening your journal…

Privacy Policy

Last updated: July 20, 2026

OneLine is a private journaling app. This policy explains what data we collect, how we use it, how optional AI and voice features work, and how you can delete your account and associated data.

1. Contact

For privacy, access, or deletion questions, contact oneline.developerteam@gmail.com.

2. Data we collect

Account and profile data

  • Email address, authentication method, and account identifiers.
  • Profile details, onboarding state, settings, and consent preferences.
  • Push notification device tokens, if you enable reminders or notifications.

Journal and related content

  • Journal entries, dates, moods, streaks, summaries, reflections, exports, and related metadata.
  • Optional journal photos, feedback attachments, generated story covers, and feedback content you submit. Direct support chat does not accept attachments.
  • Coach conversations, support messages, and AI response reports you send from inside the app.

Audio and voice data

  • Audio you actively submit for transcription or dictation. Direct support chat does not accept audio messages.

Analytics and diagnostics

  • App interaction events, feature usage, diagnostics, and error reports.
  • Persistent pseudonymous identifiers such as anonymous IDs and session IDs.
  • Technical request metadata such as user agent, referrer, campaign parameters, and IP-derived security or attribution signals.

Data transmitted between your device and our services is encrypted in transit with TLS.

3. Permissions

  • Internet: required for sign-in, sync, exports, AI requests, and loading the hosted app experience.
  • Microphone: used only when you start voice journaling, coach dictation, or another voice feature.
  • Notifications: used if you enable reminders or notifications.

We do not request location or contacts access in the current app releases.

4. How we use data

  • To create and manage your account.
  • To store and sync your journal, settings, streaks, and account state.
  • To provide optional AI, summary, reflection, and voice features that you choose to use.
  • To monitor reliability, investigate abuse, prevent fraud, and improve product quality.

5. Encryption and AI processing

OneLine encrypts journal content before it is stored. Automatic Vault uses a protected key service so authenticated devices can recover access; this means OneLine's controlled backend can technically request the key. If you enable Private Vault, the key is instead protected by your passphrase and recovery key, and OneLine cannot recover it for you.

Optional AI features process only the content you choose to send. While AI features are enabled, OneLine retains journal-derived summaries, themes, and short supporting excerpts in your account so Signals can return without rereading every entry. Turning AI features off clears this retained Signals data. Our providers may also process the specific text, audio, or context needed to produce a result.

Automatic Vault can be recovered through your authenticated account. With Private Vault, losing both the passphrase and recovery key makes the encrypted journal unrecoverable.

Optional AI processing

Before OneLine sends personal data to an external AI service, it shows an in-app disclosure that identifies the data, possible recipients, purpose, and Settings withdrawal path, then asks for permission. No external AI request is allowed until that current disclosure has been accepted. The journal's core features — writing, saving, history, export, and account deletion — work when AI is off.

If you enable optional AI, the data sent is limited to what the feature needs: journal text or excerpts that you choose to analyse; Coach messages and selected journal context; audio that you actively submit for transcription; or a generated story and image prompt when you request story media. We use this data only to provide the reflection, Coach reply, transcription, story, or image you requested. We do not send your full journal merely because AI is enabled.

The possible recipients are Google services, including Gemini and Vertex AI; Groq; and Hugging Face only when you request an AI-generated story image. We do not sell this content or use it for advertising. We do not use submitted AI content to train OneLine models. Where a provider and endpoint support no-training or zero-data-retention controls, OneLine enables those controls for the relevant request.

OneLine retains derived Signals summaries, themes, and short supporting excerpts in your account only while AI features are enabled, so Signals can be shown without rereading every entry. Turning AI off in Settings clears that retained Signals data. We share data only with providers whose contractual terms and technical safeguards require privacy and security protections appropriate to the processing described here; their independent handling is also governed by their linked privacy policies below.

6. Legal bases

  • Contract: to provide the journaling service you requested.
  • Consent: for optional AI, reminder, or voice flows that you actively enable or trigger.
  • Legitimate interests: for essential diagnostics, service integrity, security, and abuse prevention. Optional product analytics rely on your consent.

7. Service providers

Each provider above is used only for the purpose listed, receives the minimum data required for that purpose, and is contractually and by its own published policy required to protect your data to a standard consistent with this Privacy Policy.

Supabase

Groq

Google services, including Gemini

Vercel

Hugging Face

Amazon Web Services

  • Optional infrastructure used to protect Automatic Vault key envelopes. Journal content is not sent to AWS KMS.
  • Privacy policy: aws.amazon.com/privacy

8. Retention and deletion

  • We keep account and app data while your account remains active.
  • You can request deletion from Settings -> Security -> Delete Account or through our account deletion page.
  • When deletion is requested, we aim to remove the account identity and associated app data from active systems as part of the deletion flow.
  • Limited backups, logs, or legally required records may persist for a short period before expiring, typically no longer than 30 days.

9. Your rights

  • Access, update, export, and delete your data.
  • Withdraw consent for optional features where controls are provided.
  • Contact us if you need help with privacy or deletion requests.

10. Children

OneLine is not intended for children under 16, and we do not knowingly collect personal data from children.

11. Updates

We may update this page from time to time. The date above changes when we make material updates.

Contact

Email: oneline.developerteam@gmail.com