← Back to app

Privacy Policy

Last updated: 10 April 2026

PsyMind (`psymind.app`) is operated as the PsyMind application platform. This policy explains what data we collect, why we collect it, and how we protect it.

1. What data we collect

Data you provide:

Data collected automatically:

2. Why we collect it

We do not use your emotional entries for ad targeting. We do not send your personal reflections to advertising platforms.

2.1 Optional profile, public profile, and support access

Profile photo, social links, public bio, public profile visibility, and public profile slug are optional. Public profile visibility is off by default and can be enabled or disabled from Dashboard.

Support access is off by default. If you enable temporary support access, PsyMind support may review your account state only to solve a support issue, only while the permission is active, and only after recording a clear support reason in the audit log. You can disable support access from Dashboard.

2.2 Product improvement consent

You may separately allow PsyMind to use your content, anonymized where reasonably possible, to improve the platform. This is optional, off by default, and can be withdrawn from Dashboard. Pseudonymized data may still be personal data under GDPR; therefore, we treat it as protected data unless it has been effectively anonymized.

3. Who processes the data

ProviderPurposeData location
SupabaseAuthentication and databaseEU (Frankfurt)
StripePayment processingEU/US
VercelApplication hostingEU/US
ResendEmail deliveryUS
AnthropicAI processing (generation, evaluation). Personal identifiers — email, phone, IBAN, payment card, national ID, address, full name — are stripped server-side before requests are sent. If you have enabled "Use my first name in personalized meditations" in your profile (default ON, opt-out anytime), your first name only is included to personalize the script. No surname is ever sent.US
GoHighLevelCRM and communication workflows using non-sensitive contact and funnel data onlyUS
Lead/webhook tools, where configuredNon-sensitive lead routing only; no personal reflections or generated contentEU/US

Data processing agreements are maintained or finalized where required.

4. Your rights

Under GDPR you may request:

To exercise these rights, contact us at contact@psymind.app. We respond within 30 days.

5. Security

We use HTTPS on all connections. Authentication is handled through Supabase. Payment data is handled by Stripe. Database access is restricted through Row Level Security policies.

6. Retention

Account-related data is retained while the account remains active. Local browser data remains under the user's control and can be cleared at any time. After account deletion, relevant data is removed within 30 days unless retention is required by law.

You can delete your history anytime. You can delete your account anytime. Payment, invoice, tax, refund, chargeback, support, anti-fraud, security, dispute, and audit records may be retained where legally required.

7. International transfers

Some providers process data in the United States. Transfers rely on lawful transfer mechanisms such as standard contractual clauses where applicable.

8. Minors

PsyMind is intended for adults 18+ only. We do not knowingly collect data from users under 18. If you believe a person under 18 submitted personal data, contact us so it can be removed.

9. Changes

We may update this policy from time to time. Material changes may be communicated by email or in-app notice. The latest update date is displayed at the top of this page.


Cookie Policy

Last updated: 10 April 2026

What cookies are

Cookies are small files stored on your device by the browser. Similar technologies include localStorage and sessionStorage.

What we use

TechnologyName/PurposeTypeDuration
localStorageLanguage and theme preferencesStrictly necessaryPersistent
localStorageEvaluation history, scores, gamification progressFunctionalPersistent
localStorageAuthentication stateStrictly necessaryPersistent
localStorageLead data such as verified emailFunctionalPersistent
Supabase cookieAuthentication sessionStrictly necessarySession
Stripe cookiePayment processing during checkoutStrictly necessarySession

Third-party cookies

We do not use advertising or analytics cookies on `psymind.app`. External analytics SDKs are currently disabled.

We do not send personal reflections, emotional entries, generated text, risk flags, or session summaries to advertising platforms.

Your control

You can clear local browser storage from your browser settings. This may reset saved preferences, history, and local progress.

Strictly necessary cookies cannot be disabled without affecting app functionality.