Privacy policy
Effective 2026-08-07
The short version
Your journal entries stay on your device — they are stored locally (MMKV) and never sent to our servers. Your account and the things you set up — profile, daily wins and tasks, onboarding answers, and points — sync to our database so they follow you across devices. We use privacy-respecting analytics and crash reporting to keep the app working. We do not sell your data, and we do not use it to track you across other apps.
What we collect
- Account data: your email address (via Apple or Google sign-in; Apple private relay is supported), plus a display name and avatar if you add them.
- Your content that syncs: daily wins and tasks, onboarding answers, preferences, and points / streak stats. Stored in our database (Supabase, EU region) and linked to your account.
- Usage analytics: which screens and features you use, via Google Firebase Analytics. Used to improve the app, not to track you across other apps.
- Crash diagnostics: crash and error reports via Google Firebase Crashlytics.
- Notifications: a device push token, if you turn on reminders.
- Purchase records: subscription status via RevenueCat and Apple / Google. We never see or store card numbers.
- AI features: a small language model runs on your phone, and your journal is never part of what it reads. The first-run onboarding conversation is the exception: it runs on our server. Full detail in the AI section below.
What stays on your device
- Journal entries — stored locally on your phone, never uploaded to our servers.
- The on-device AI model and the weekly recap it writes: both live in the app's own storage and are never uploaded.
We never sell your data, run third-party advertising, or use your data to track you across other apps.
AI features and your data
Morrow Self runs a small language model, Phi-3-mini, on your phone. The app downloads it into its own storage and runs it there, and that is what writes your weekly recap, your daily reflection question, and the starting plan built from the setup answers you give. Not all of it runs on your phone, though: the first-run onboarding is a conversation that runs on our server, and it is described below. There is no OpenAI key and no Gemini key in the app.
The weekly recap is written from two numbers and a weekday label: how many wins you completed that week, and which day was your best. The daily reflection question comes from a fixed instruction that contains nothing you wrote. Neither one reads your journal. The recap text is kept on your phone and is not uploaded.
No journal text is sent to any model, ours or anyone else's. Your entries go from the editor to storage on your phone and back to your own screen, and that is the whole path. Our database does have a journal_entries table, and the account export reads from it, but the app has no code that writes to it. Not a disabled feature, not a flag sitting off. There is just no call site, so no copy or summary of your writing reaches our servers.
Morrow Self does not detect, infer or label how you feel. There is no mood classifier and no emotion score anywhere in the app. If you pick an option like "by how I feel" while setting up, that is you telling us, not the app guessing.
Two things you type go to our Wire AI server, and neither one is journal content:
- the answers you give during the first-run onboarding conversation
- the feedback you write if you rate the app below five stars
Your first run can be a short conversation you type into. It runs through Wire AI, our activation service, on the server, so you are talking to an AI system there and not to a person. If that service is not switched on for your build, the app shows a fixed questionnaire instead, and nothing you type into it goes to our Wire AI server. Those answers still sync to our database with the rest of your account data, as listed above.
Where data lives
On your device: local MMKV storage in the app sandbox — your journal entries live only here. On our servers: Supabase Postgres in the EU region, row-level security, encrypted at rest. Google Firebase receives usage analytics and crash reports. RevenueCat receives purchase events. The on-device model runs inside the app on your phone, and running it makes no network call of its own. Some of what it reads, like the setup answers you give, is sent elsewhere by other parts of the app, as described above. The onboarding conversation and any review feedback you write go to our Wire AI server.
Your rights (GDPR)
To have your account and the data we hold about you deleted, email malik@aimobilelauncher.com from the address on your account, and it will be deleted for you. Access, correction and export requests go to the same address. Journal entries are stored only on your device, so they are removed when you delete them in the app or uninstall it.
Children
Morrow Self is not directed at children under 13 (or under 16 where local law requires). We do not knowingly collect data from children.
Changes to this policy
Material changes are announced in-app and via email if you have an account. The effective date above is the last revision date.
Contact
Privacy questions: malik@aimobilelauncher.com. Operator: Malik Chohra, Berlin, Germany.