Privacy Policy
Who we are
Auserene is a journaling and AI companion app for iOS. Auserene is operated by Himanshu Pathak, an individual developer based in India (“Auserene,” “we,” “us,” or “our”). This Privacy Policy explains what we collect, how we use it, who processes it on our behalf, and the choices and rights you have.
This app is intended for users 17 years of age or older. We do not knowingly collect information from anyone under 17.
If you have questions or want to exercise any privacy right, contact us at hpatsvnit@gmail.com. Our support page explains what to expect.
The short version
- Auserene is a private space to reflect. The journaling you do, your mood entries, and the conversations you have with the companion are the most personal things in the app, and we treat them that way.
- We encrypt your sensitive content at rest using per-user encryption keys.
- We do not use advertising or ad networks, we don’t track you across apps or websites, and we don’t collect advertising identifiers. We use one product-analytics tool that receives action events only(for example “a note was saved”), never what you wrote, and you can switch it off in Settings.
- To generate, transcribe, and voice your sessions, we send the minimum necessary data to a small set of AI providers who are contractually prohibited from training on your content. Your raw journal entries reach only our language and embedding providers — never our voice providers.
- Your content is never sold and never used for advertising or marketing.
- You can delete your account and all of your data from inside the app, permanently, at any time.
The rest of this policy is the detail behind those statements.
What we collect
Information you give us directly
- Account information: depending on how you sign in, your email address and a password (handled by our authentication provider), your phone number (for phone sign-in, verified by a one-time code), or the identifier that Apple or Google returns to us when you use Sign in with Apple or Google Sign-In. A display name if you provide one.
- Onboarding responses:your stated preferences for pace, directness, how you’d like to be addressed, and your free-text answer to what’s on your mind. These shape how the companion is present with you.
- Your journaling and conversations: the text of your sessions, conversations with the companion, and any journal entries, moods, reflections, or notes you record.
- Voice recordings: if you record a voice note, the audio is sent to a speech-to-text provider and converted to text. The audio is transient: it is used only for transcription and is not stored by us or by the provider afterwards (see How long we keep your data). The resulting text is treated like any other note.
- Preferences and settings: session length, preferred voice, preferred time, pronouns, and similar in-app choices.
- Optional uploads: a profile avatar image, if you add one.
Information created by the app as you use it
To make the companion feel like it remembers you, the app derives a private, evolving understanding of how to be present with you and the world as you’ve described it— for example, themes you return to, what tends to help you feel settled, and goals you’ve named. This is descriptive only. We do not create, store, or infer any medical, psychiatric, or clinical assessment, diagnosis, or condition label about you, anywhere. This derived understanding is visible to you inside the app, and you can edit, correct, or remove any part of it.
Information collected automatically
- A user identifier assigned at account creation, used to associate your data with your account and, in the services below, to tell your account apart from others without using your name or email.
- Basic operational data such as usage counts and timestamps, your device timezone (so sessions and reminders land at the right local time), and aggregate token/cost counters we use to run and budget the service. These do not contain the content of your journals or conversations.
- Subscription status and purchase history reported by the App Store: which plan you are on, when it started, when it renews or ends, and whether you are in a trial. We never see your payment card or Apple ID password.
- Product-analytics events: the fact that an action happened (a note was saved, a session started, a meditation was completed), with a timestamp and the app version. Never the content of a note or conversation. Optional; see Your choices.
- Device attributes for paywall display: device model, OS version, app version, locale, and screen size, used by our subscription service to show the right paywall in the right language and currency.
- We do not collect advertising identifiers (IDFA) or precise location, we do notuse Apple’s App Tracking Transparency tracking, and we do nottrack you across other companies’ apps or websites.
How we use your information
- To provide the core experience: your sessions, the companion’s responses, generated reflections, transcribed voice notes, and voiced meditations.
- To maintain continuity — so the companion can be present in a way that reflects what you’ve shared over time.
- To manage your subscription and unlock the features you have paid for.
- To understand, in aggregate, which parts of the app are used and where people get stuck, so we can improve it.
- To operate, secure, debug, and budget the service.
- To communicate with you about your account or material changes to the service.
We do not sell your personal information. We do not share it for cross-context behavioral advertising. We do not use your content to train our own models, and our AI providers are contractually prohibited from training on it (see below).
Your sensitive personal content
Your mood entries, journal text, voice notes, and conversations with the companion can reveal things about your emotional and mental well-being. We treat all of it as sensitive personal content. That means, plainly:
- It is encrypted at rest with a key unique to you.
- It is used only to provide the app to you— to generate your sessions and to give the companion continuity.
- It is never used for advertising or marketing, never used to build profiles for anyone else, and never sold, rented, or shared with data brokers, advertisers, insurers, employers, or anyone else.
- It is never sent to our analytics or subscription providers. They see only that an action happened, not what you wrote or said.
- It reaches only the AI providers named below, only to the extent needed to generate a response, and under terms that prohibit training on it.
AI providers: how your sessions are generated
Auserene uses third-party AI processors to generate, transcribe, and voice your sessions. We send each provider the minimum data it needs, and we choose providers for our most sensitive data based on their data-handling terms. All transmissions occur over encrypted connections; content is decrypted in our secure server environment only to build each request.
- Language-model and embedding providers — Anthropic, OpenAI, and Fireworks AI.These receive your journal entries and conversations to generate the companion’s responses, reflections, and the searchable memory that gives it continuity. All three are contractually prohibited from training on your content. Content sent to Fireworks AI for the conversational features is processed under zero-data-retention terms: it is used to generate the response and is not stored afterwards. Anthropic and OpenAI delete inputs on their standard short retention schedules (approximately 30 days or sooner).
- Speech-to-text providers — Groq and Together AI. When you record a voice note, the audio is sent to one of these providers for transcription and the text comes back. Both process it under zero-data-retention terms: the audio is not stored by them after the transcript is returned, and we do not store the audio either. They never receive your written journal or conversation history.
- Text-to-speech providers — ElevenLabs and Inworld AI. These receive only the short, generated meditation script to turn into audio. They never receive your raw journal text or conversations.
A full, current list of our subprocessors, including what each one receives, is available at www.auserene.com/subprocessors.
Other third parties that receive data
Besides the AI providers above, these companies process some of your data to run the app. None of them receives your journal entries, voice notes, mood entries, or conversations.
- PostHog(product analytics). Receives action events — that a note was saved, a session started, a meditation was completed — tied to your internal user identifier, plus app version and device type. Never note or chat content. No advertising identifier and no cross-app tracking. You can switch this off at any time in Settings → Share anonymous usage.
- Superwall (subscription and paywall service). Receives your internal user identifier, purchase and subscription events reported by the App Store (plan, start, renewal, expiry, trial), and device attributes used to display the paywall (device model, OS and app version, locale, screen size). Handles no notes or conversation content.
- Apple(App Store, StoreKit, and Sign in with Apple). Processes your purchases and subscriptions under Apple’s own terms and, if you choose Sign in with Apple, your sign-in. Apple sends us your subscription status; we never receive your payment details.
- Google (Google Sign-In). If you choose Google Sign-In, Google authenticates you and returns a sign-in identifier and the email address on your Google account.
- Google Firebase(a Google service) provides our authentication (including email, phone, Apple, and Google sign-in), database, file storage, and server functions. Your data is stored on Google’s infrastructure.
- Google Cloud KMS holds the master key used to protect your per-user encryption key.
These providers process data on our behalf under their respective terms.
How we protect your information
- Encryption at rest.Your sensitive content — including your journals, mood entries, conversations, derived understanding, your own quoted words, and onboarding free-text — is encrypted at rest using a unique encryption key generated for each user. Each user’s key is itself protected by a master key held in a managed key service.
- Encryption in transit. Data moves between the app, our servers, and our providers over encrypted (TLS) connections.
- Important limit — this is not end-to-end encryption. To generate your sessions, our servers and our AI providers must process your content in unencrypted form in memory at the moment of generation. Encryption protects your data as stored; it does not hide your content from our servers or from the AI providers listed above during processing.
- No advertising, attribution, session-replay, or crash-reporting SDKs. The only third-party analytics in the app is the PostHog event tracking described above, which never receives your content and which you can turn off.
No method of storage or transmission is perfectly secure, and we cannot guarantee absolute security.
How long we keep your data
- Your account and content are kept for as long as your account is active. You can delete them at any time (see below).
- Voice audio is not stored. It exists only while it is being transcribed; once the text comes back, the audio is discarded by us and by the transcription provider.
- Account deletion is immediate and irreversible. When you delete your account, we first destroy your per-user encryption key (so every encrypted record becomes permanently unreadable), then purge your account, journals, conversations, derived understanding, and stored files from our active systems. We cannot restore a deleted account.
- Backups. Encrypted copies of your data may remain in our routine database backups for up to 30 days after deletion before they are overwritten in the normal rotation. Because your encryption key has already been destroyed, that content cannot be read or restored, by us or anyone else.
- Operational recordsthat do not identify you, such as aggregate usage statistics, may be retained after deletion. Purchase records held by Apple are governed by Apple’s terms.
- AI providers delete the content we send them on their own schedules: immediately, for the zero-data-retention providers named above, and within approximately 30 days or sooner for the others.
Your choices and rights
Delete everything, yourself, from inside the app. Settings includes a Delete my account option. After a confirmation step, this permanently and irreversibly deletes your account, your journals and conversations, your derived understanding, your encryption key, and your stored files, as described above. You may also email hpatsvnit@gmail.com to request deletion.
Turn analytics off. Settings → Share anonymous usage switches product-analytics events off. Nothing in the app depends on it.
Permissions are optional. Notifications are only used for reminders you choose. The microphone is only used while you record a voice note. Declining either does not limit any paid feature; you can type instead of speaking, and you can use every part of Premium without notifications.
See and correct your derived understanding. The app shows you the understanding it has formed, in your own words, and lets you edit it, mark items as wrong, tell the companion not to bring something up, or delete it.
Access, correction, and portability. You may request a copy of your personal information or ask us to correct it by emailing hpatsvnit@gmail.com.
Manage your subscription.Subscriptions are managed through your Apple ID in the App Store settings on your device, not by us. Cancelling there stops future renewals; deleting your account does not by itself cancel a subscription, so cancel first if you don’t want to be charged again.
For United States users (including California): Depending on your state, you may have the right to know what personal information we collect, to access or delete it, to correct it, and to not be discriminated against for exercising these rights. California residents (under the CCPA/CPRA) have these rights. We do not sell or share your personal information for cross-context behavioral advertising, and we do not process sensitive personal information for purposes other than providing the service you requested. To exercise any right, contact hpatsvnit@gmail.com; we will not deny you service for doing so.
For users in the EU, EEA, and UK: You have the right to access, correct, delete, and receive a copy of your personal information, to ask us to restrict or stop certain processing, and to withdraw any consent you have given. You can use the in-app controls or email hpatsvnit@gmail.com. You also have the right to lodge a complaint with your local data protection authority.
For users in India:Under India’s Digital Personal Data Protection Act, 2023, you have the right to access and correct your personal data, to have it erased, and to grievance redressal. You can use the in-app controls or email hpatsvnit@gmail.com, which is also our contact for any grievance.
We honor these requests regardless of where you live.
Children
Auserene is for users 17 and older. We do not knowingly collect personal information from anyone under 17. If you believe a minor has provided us information, contact hpatsvnit@gmail.com and we will delete it.
International users and data location
Auserene is operated from India and is available to users in multiple countries. Your data is stored and processed on infrastructure operated by our providers, which may be located in the United States, India, and elsewhere. Wherever you use Auserene from, your information may be transferred to and processed in these locations. By using Auserene, you understand and agree to this processing.
Not a medical or crisis service
Auserene is a journaling and reflection app. It is not a medical device, not therapy, and not a substitute for professional care, and it does not provide medical or mental-health diagnosis or treatment. If you are in crisis or may be in danger, call your local emergency number or a crisis line immediately. Our crisis resources page lists free helplines by country.
Changes to this policy
We may update this policy. If we make a material change, we’ll update the date above and, where appropriate, notify you in the app. Continued use after an update means you accept the revised policy.
Contact
Himanshu Pathak, operating as Auserene
hpatsvnit@gmail.com
www.auserene.com/support