Privacy Policy
Last updated: August 15, 2026
To Myself is a journaling app. Your entries are personal. This policy explains what we collect, why, who we share it with, how long we keep it, and the rights you have over it. Plain English. No tricks.
1. Who we are
To Myself is operated by Mark Maples, registered in the State of California, USA. You can reach us at privacy@tomyself.app. For purposes of EU GDPR, we are the data controller of your personal data.
2. What we collect
Information you give us
- Email address — if you join the pre-launch waitlist, to tell you when To Myself is available; after launch, to create your account, authenticate you, and send account-related messages (e.g. a magic link to sign in).
- Journal entries — the text you write, the prompt you wrote to (if any), the passage you reflected on (if any), and any virtue tag you assigned.
Information collected automatically
- Account identifiers — a unique user ID, account creation timestamp, and the sign-in method you chose (Apple, Google, or magic link).
- Basic technical data — app version, operating system version, and crash/error reports. Used to fix bugs and stability issues. Never tied to entry content.
What we don't collect
- We don't collect your contacts, photos, location, microphone, or camera.
- We don't use third-party advertising or analytics SDKs that profile you.
- We don't track you across other apps or websites.
3. How we use what we collect
- To run the app: store your entries, sync them across your devices, sign you in.
- To improve reliability: diagnose crashes and fix bugs.
- To communicate with you: account, security, and (if you opt in) product updates.
- To comply with legal obligations and enforce our Terms.
We do not use your journal entries to train artificial intelligence models, sell to data brokers, or share with advertisers — full stop.
4. Who we share data with
We share data only with the service providers we need to run the product. Each one is bound by contract to protect your data and use it only for the purpose we hired them for.
- Cloud infrastructure providers — database, authentication, and storage. Your entries and account data are held here, encrypted at rest and in transit.
- Apple and Google — Sign in with Apple or Google, if you choose one of those, and payment processing for subscriptions.
- App delivery and website hosting providers — building and shipping the mobile app, and serving this site. Neither has access to entry content.
- Anthropic, PBC — powers the Stoic Tutor feature. When you use the Tutor, your recent journal entries are sent to Anthropic to generate responses. Anthropic does not train its models on this data.
5. Where data is stored
Data is stored on our cloud infrastructure providers, primarily in the United States. If you access the app from outside this region, your data is transferred and stored there. Transfers of personal data out of the European Economic Area or United Kingdom rely on Standard Contractual Clauses approved by the European Commission.
6. How long we keep your data
- Waitlist email — kept until we send the launch notice, you ask us to remove it, or 12 months after launch, whichever comes first.
- While your account is active — entries are kept until you delete them or your account.
- After you delete an entry — purged from our active database immediately and removed from backups within 30 days.
- After you delete your account — your sign-in identity, your profile, and every entry are removed immediately, in a single operation. Encrypted backups are rotated out within 30 days. The only exception is records we are required by law to keep, such as billing records for tax purposes.
- Backups — encrypted backups are retained for up to 30 days for disaster recovery, then rotated out.
7. Your rights
Regardless of where you live, you have the following rights:
- Access — get a copy of the personal data we hold about you.
- Portability — export your entries as a Markdown file from Settings.
- Correction — fix anything inaccurate.
- Deletion — delete entries or your entire account from Settings. We act on this immediately and complete it within 30 days.
- Restriction or objection — ask us to stop certain processing of your data.
- Withdraw consent — where processing relies on consent, you can withdraw it at any time.
- Complain — to your local data protection authority. In the EU, that's your national supervisory authority. In the UK, the Information Commissioner's Office (ico.org.uk).
To exercise any of these rights, email privacy@tomyself.app or use the controls inside the app. We will respond within 30 days.
8. California residents (CCPA / CPRA)
If you are a California resident, you have the rights listed above plus the right to know what categories of personal information we have collected, the sources, and the purposes. We do not sell or share your personal information for cross-context behavioral advertising. We do not use sensitive personal information for purposes that require an opt-out under the CPRA.
9. Children
To Myself is intended for users 13 years of age and older. We do not knowingly collect personal information from anyone under 13. If you believe a child under 13 has provided us personal information, contact privacy@tomyself.app and we will delete it promptly.
10. Security
Your data is encrypted in transit (TLS 1.2 or higher) and at rest. We use access controls, authentication on every request, and routine security review of our infrastructure. No system is perfectly secure, but we work to follow industry-standard practices. If we ever experience a data breach affecting your personal data, we will notify you and the appropriate authorities within the timeframes required by law.
11. Changes to this policy
We may update this policy as the product evolves or the law changes. If we make material changes — for example, adding a new category of data or a new processor — we will notify you in the app or by email before the changes take effect, and update the "last updated" date at the top.
12. Contact
Questions, requests, or complaints about this policy or how we handle your data:
privacy@tomyself.app
Mark Maples
1311 Park St #1304, Alameda, CA 94501