Privacy
Last updated 29 August 2026
The short version: your journal is encrypted on your phone. This marketing website stores the email you give us for the waitlist and, only if you agree, anonymous audience analytics. The app sends an entry to our servers only when you ask for an AI reflection.
What this site collects
- Your email address, only if you submit the waitlist form, so we can send you a single invitation when a beta place opens.
- A signup timestamp. We use your network address in a short-lived, in-memory rate limit to prevent abuse, but do not retain it in the waitlist database.
- Anonymous audience analytics (Google Analytics) — but only if you choose “Accept” on the cookie notice. Decline, and nothing analytics-related loads or runs at all. We use it to see which pages resonate, never to identify you.
No advertising, no ad cookies, no profiling, and nothing is sold. Website analytics run only after you opt in. Optional app telemetry has its own separate, off-by-default consent.
How we store it
Waitlist emails are stored on our own server (not a third-party marketing platform) and are never sold, rented, or shared. We use them for one purpose: to invite you to the Nostia beta.
The app itself
Nostia is built around a zero-PII principle: the identity we hold for you is an opaque identifier, not a name or an address. Your journal entries are encrypted on your device under a key only you hold and are not stored as a cloud diary. If you request an AI reflection, the selected entry is sent anonymously for processing and passes through Nostia's safety checks. There is no name or email attached to reflections in our systems — just that identifier. The marketing site and the app are separate; joining the waitlist here does not create an app account — that happens on first launch, anonymously or through Google.
Signing in with Google
You can start Nostia with your Google account instead of a plain anonymous one. When you do, Google hands the app a signed token that identifies your Google account. The app sends that token to our server once; the server checks it with Google and derives an opaque identifier from it.
We do not store your email address. The identifier we keep cannot be turned back into your address, your name, or anything else about you. If Google supplies your name and picture, they stay on your phone and are used only to greet you.
The point of signing in is recovery: reinstall Nostia, or move to a new phone, sign in with the same Google account, and you get the same identity back without needing your backup key. Starting anonymously stays available, and nothing about the app works worse that way.
If you set a profile picture yourself, that picture is stored on our servers against your identifier, so it survives moving to a new phone. It is the only image we hold, and it goes when your account goes.
Google will record that you signed in to Nostia. That part is between you and Google, under their privacy policy — we receive nothing from it beyond the token.
Wellbeing, not clinical care
Nostia is not a medical device, not therapy, and not a diagnostic tool. It does not detect, diagnose, or treat any condition. If you are in crisis, contact your local emergency services or a qualified professional.
Your choices
You can ask us to remove your email from the waitlist at any time — email privacy@nostia.app and we'll delete it.
You can delete your app account, and everything attached to it, from Settings inside the app. How to delete your account explains both routes. Deletion is immediate: in one operation it wipes your profile and every record stored under your identifier — check-ins, entry metadata, sessions, aggregates.
Your entries are yours to take with you: Settings → data → Save a copy of your journal writes them out as a file. If you want the record held under your identifier on our side as well, ask at privacy@nostia.app and we will send it as JSON.
Contact
Questions about privacy? Write to privacy@nostia.app.