Last updated: December 2024
Your cognitive data is deeply personal. We process all biometric data on-device. Your body state, movement patterns, heart rate—none of this ever leaves your phone or computer. This isn't just a policy—it's our core architecture.
When you create an account, we collect: email address, name, company, job title. This is stored encrypted and used only for account management and communication.
Your daily practice sessions—including emotional states, body awareness notes, and integration insights—are stored locally on your device. We never see this data unless you explicitly choose to share anonymized insights for research.
Body state analysis, movement patterns, heart rate variability—all processed on your device using on-device machine learning. This data never leaves your device. Ever.
If you opt-in to research participation, we collect anonymized, aggregated insights (e.g., "70% of executives report 25% improved decision-making after 28 days"). No individual data is ever exposed.
Account Management: Communicate about your account, beta access, and platform updates.
Service Delivery: Provide access to the platform, sync settings across devices (encrypted), deliver personalized practice recommendations.
Research (Opt-In): If you consent, anonymized aggregate insights help us improve the platform and contribute to cognitive science research.
• End-to-end encryption for all data in transit
• Encrypted storage for all account data
• On-device processing for all biometric data
• Regular security audits by third-party experts
• SOC 2 Type II compliance (target: Q2 2026)
• GDPR and CCPA compliant
Access: Request a copy of your data at any time
Deletion: Delete your account and all associated data
Portability: Export your practice data in standard formats
Opt-Out: Disable research participation at any time
Control: You own your data, always
We use minimal third-party services, all carefully vetted for security and privacy:
• Authentication: Industry-standard OAuth providers
• Analytics: Privacy-focused, anonymized usage metrics only
• Communication: Encrypted email service for account notifications
• Payment: PCI-compliant payment processor (data never touches our servers)
Questions about privacy? Contact our privacy team at [email protected]