Your Privacy Matters
At Know Your Ethos, we believe your thoughts and reflections are deeply personal. This privacy policy explains how Alexandria Solutions LLC ("we," "us," or "our") collects, uses, protects, and shares your information when you use our website at knowyourethos.com and the Know Your Ethos mobile application (collectively, the "Service").
By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this policy, please do not access or use the Service.
What We Collect
We collect the following categories of information to provide and improve the Service:
- Account information: your email address, name, and account preferences.
- Journal entries and reflections: the personal content you create within the app, including written entries and AI-generated insights.
- Mood and emotion data: mood and emotional patterns detected by AI from your entries.
- Voice recordings: audio captured for transcription purposes. Voice recordings are processed in real time and are not stored after transcription is complete.
- Usage analytics: pages visited, features used, session duration, and interaction patterns that help us improve the Service.
- Device information: operating system, app version, device type, and general device identifiers.
- Cookies and tracking data: we use cookies and similar technologies including Google Analytics (GA4), PostHog, and Meta Pixel. For full details, see our Cookie Policy.
- Payment information: subscriptions and payments are processed by Apple (App Store), Google (Google Play), and/or Stripe. We do not store your credit card numbers or full payment details. We receive only transaction confirmations and subscription status.
Legal Basis for Processing (GDPR)
If you are located in the European Union or European Economic Area, we process your personal data on the following legal bases:
- Consent: for setting non-essential cookies, sending marketing communications, and processing optional data such as voice recordings. You may withdraw consent at any time.
- Contract performance: processing necessary to provide the Service to you, including storing your journal entries, generating AI insights, and managing your account.
- Legitimate interests: analytics to improve our product, maintaining the security and integrity of the Service, and preventing fraud. We balance these interests against your rights and freedoms.
How We Use Your Data
We use the information we collect for the following purposes:
- Provide and improve the Service: storing your entries, delivering personalized features, and maintaining app functionality.
- AI-powered insights and reflections: analyzing your journal entries to provide meaningful patterns, reflections, and growth insights using artificial intelligence.
- Analytics and product improvement: understanding how users interact with the Service to improve features, fix issues, and guide product development.
- Marketing and advertising: with your consent, delivering relevant marketing communications and measuring advertising effectiveness.
- Security and fraud prevention: detecting and preventing unauthorized access, abuse, and fraudulent activity.
- Legal compliance: meeting our legal obligations, responding to lawful requests, and enforcing our terms of service.
Cookies and Tracking
Our website uses cookies and similar tracking technologies for analytics (Google Analytics / GA4 and PostHog) and marketing (Meta Pixel). We require your consent before setting any non-essential cookies. Essential cookies that are strictly necessary for the website to function do not require consent.
You can manage your cookie preferences at any time through our cookie consent banner or by visiting our Cookie Policy for full details on the cookies we use, their purposes, and their retention periods.
How We Protect Your Data
We take the security of your personal information seriously and implement appropriate technical and organizational measures:
- Encryption in transit and at rest: all data is encrypted using industry-standard protocols (TLS 1.2+) during transmission and AES-256 encryption at rest.
- No sharing of personal reflections: we never sell, share, or provide your journal entries or personal reflections to third parties for their own purposes.
- Secure AI analysis: AI processing of your content happens securely within our system and with trusted processors bound by strict data processing agreements.
- Regular security reviews: we conduct regular security assessments and maintain access controls to protect against unauthorized access to your data.
While no method of electronic storage or transmission is 100% secure, we strive to use commercially acceptable means to protect your personal data.
Third-Party Services
We use the following third-party services to operate and improve the Service. Each provider has its own privacy policy governing the use of your information:
- OpenAI: AI processing for structured data extraction (titles, mood, tags, entry type classification) and profile synthesis. Content sent to OpenAI is governed by their data usage policies and is not used to train their models.
- Anthropic: AI processing for Daimon responses on entries, reflection conversations, and onboarding. Content sent to Anthropic is governed by their data usage policies and is not used to train their models.
- Google Analytics (GA4): website analytics to understand traffic and usage patterns. Data is collected with your consent.
- PostHog: product analytics to understand feature usage and improve the user experience. Data is collected with your consent.
- Meta / Facebook: advertising measurement and audience targeting via Meta Pixel. Data is collected with your consent.
- Sentry: error monitoring and performance tracking to identify and resolve technical issues. Sentry receives limited technical data such as error details and device information.
- Apple App Store / Google Play Store: app distribution and in-app purchase processing. Payments are handled entirely by Apple or Google under their respective privacy policies.
- Stripe: payment processing for subscription services where applicable. Stripe processes payment data under their own privacy policy; we do not store your card details.
International Data Transfers
Your information may be transferred to and processed in the United States and other countries where our service providers operate. These countries may have data protection laws that differ from the laws of your country of residence.
Where we transfer personal data outside of the European Economic Area (EEA) or the United Kingdom, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) approved by the European Commission or other legally recognized transfer mechanisms. By using the Service, you acknowledge and consent to the transfer of your data as described in this policy.
Data Retention
We retain your personal data and journal entries for as long as your account is active or as needed to provide you with our services. Specifically:
- Account data (email, name, preferences) is retained for the duration of your account and deleted within 30 days of account deletion.
- Journal entries and reflections are retained for the duration of your account. You can delete individual entries at any time, and all entries are permanently deleted within 30 days of account deletion.
- Mood and emotion data is retained for the duration of your account and deleted within 30 days of account deletion.
- Usage analytics are retained in de-identified form for up to 24 months to help us improve the app experience.
- AI-generated insights are retained for the duration of your account and deleted within 30 days of account deletion.
- Cookies have specific retention periods depending on their purpose. See our Cookie Policy for details on individual cookie lifespans.
After account deletion, we may retain certain data for up to 90 days in encrypted backups as part of our disaster recovery process, after which it is permanently purged. We may also retain limited data as required by law or to resolve disputes.
Your Rights
All Users
You have complete control over your data. You can access, modify, export, or delete your information at any time through the app settings or by contacting us at privacy@knowyourethos.com.
GDPR Rights (EU/EEA Residents)
If you are located in the European Union or European Economic Area, you have the following additional rights under the General Data Protection Regulation:
- Right of access: obtain a copy of the personal data we hold about you.
- Right to rectification: request correction of inaccurate or incomplete data.
- Right to erasure: request deletion of your personal data where there is no compelling reason for continued processing.
- Right to restriction of processing: request that we limit how we use your data in certain circumstances.
- Right to data portability: receive your data in a structured, commonly used, machine-readable format.
- Right to object: object to processing based on legitimate interests, including profiling.
- Right to withdraw consent: withdraw consent at any time where processing is based on consent, without affecting the lawfulness of processing before withdrawal.
- Right to lodge a complaint: file a complaint with your local data protection supervisory authority if you believe your rights have been violated.
CCPA Rights (California Residents)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to know: request disclosure of the categories and specific pieces of personal information we have collected about you.
- Right to delete: request deletion of personal information we have collected from you, subject to certain exceptions.
- Right to opt-out of sale: we do not sell your personal information. See the "Do Not Sell My Personal Information" section below.
- Right to non-discrimination: we will not discriminate against you for exercising any of your CCPA rights.
How to Exercise Your Rights
To exercise any of the rights described above, you can use the data management features in the app settings or contact us at privacy@knowyourethos.com. We will respond to your request within 30 days (or within the timeframe required by applicable law). We may need to verify your identity before processing your request.
Children's Privacy
The Service is not directed to children under the age of 13 (or under 16 in the European Union). We do not knowingly collect personal information from children under these ages. If we become aware that we have inadvertently collected personal data from a child under the applicable age, we will take steps to delete that information as promptly as possible.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@knowyourethos.com so we can take appropriate action.
Do Not Sell My Personal Information
We do not sell your personal information to third parties, as defined under the California Consumer Privacy Act (CCPA) or any other applicable privacy law.
Tracking cookies used for advertising purposes (such as Meta Pixel) are only set with your explicit consent. If you have consented to advertising cookies and wish to opt out, you can update your cookie preferences at any time through our cookie consent banner or by visiting our Cookie Policy.
Changes to This Policy
We may update this privacy policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will update the "Last updated" date at the top of this page.
For material changes that significantly affect how we handle your personal data, we will provide prominent notice, such as a notification within the app or an email to the address associated with your account, prior to the changes taking effect. We encourage you to review this policy periodically.
Contact Us
If you have any questions, concerns, or requests regarding this privacy policy or how we handle your data, please contact us: