Privacy Policy
Welcome to the Privacy Policy of Exhale AI. This policy explains how we collect, use, protect, and disclose your personal information when you visit our website, exhale-ai.com or use our guided meditation app.
1. Data Collection and Usage
Our core principles for data handling:
- We collect personal information that you voluntarily provide to enhance your meditation experience
- Your data is only used to provide you with personalized meditation services
- We do not use your data to train AI models or for any purpose other than delivering your meditation experience
- Your information is never sold, rented, or shared with third parties
We may collect the following types of information:
- Personal Information: Such as your name, email address, survey data, and contact details when you register, contact us, or subscribe to our services.
- Usage Data: Information about how you interact with our app or website, such as your IP address, browser type, device information, and pages or features accessed.
- Journal and Meditation Data: If you use our journaling or meditation features, we may store the entries or preferences to offer personalized services.
- Cookies and Tracking Technologies: Data collected through cookies and similar technologies to enhance your experience and analyze usage.
2. Data Storage and Security
Your data is stored securely in three locations:
- Locally on your device: For immediate access and offline functionality
- Supabase secure cloud database: Protected by industry-standard encryption and security measures
- Temporary processing with Anthropic: For AI-powered features, with data anonymized and no retention
3. Data Transmission
All data transmission between your device and our servers is encrypted using HTTPS, ensuring your information remains private and secure during transfer.
4. Data Access
We maintain strict controls on data access:
- Only you can access your personal information through your authenticated account
- Our administrators have technical capability to access user data, but will:
- Only access data when necessary for support or troubleshooting
- Request your explicit permission before viewing any personal information
- Document any necessary data access
- Use the information solely for resolving your support needs
5. How We Use Your Information
We use your information to:
- Provide, personalize, and improve our services, including customizing guided meditations based on your preferences and usage.
- Communicate with you about updates, promotions, and other relevant information.
- Analyze app usage, optimize user experience, and enhance security.
- Ensure data security and prevent fraud or abuse of our services.
- Support cross-device access to your data (e.g., meditation preferences or journal entries) by securely storing data in the cloud.
6. Third-Party Services
We use various third-party services to improve our app's functionality, such as:
- Supabase: For data storage and user authentication, encrypted in transit and at rest.
- Anthropic: For AI processing, with sensitive data anonymized prior to use and no data retention policies enforced.
- Azure: For cloud infrastructure and hosting services, with enterprise-grade security and compliance standards.
- Heroku: For application hosting and deployment, with industry-standard security practices and encrypted data transmission.
7. Your Data Rights
You have comprehensive rights over your data:
- Access and update your personal information at any time
- Request deletion of your personal data
- Export your data in a portable format
- Control what information you share
- Opt-out of receiving marketing communications
- Manage cookie preferences and tracking technologies through your browser settings
To exercise these rights, please contact us at support@exhale-ai.com.
8. Security of Your Information
We implement technical and organizational measures to protect your personal information, including:
- Data encryption during transmission using HTTPS/SSL technology
- Row-level security in our database ensuring users can only access their own data through authenticated accounts
- Administrator access is limited to authorized personnel who:
- Will request your explicit permission before viewing your personal information
- Only access data for support and maintenance purposes
- Secure data storage through Supabase's enterprise-grade infrastructure
- Regular monitoring and security updates to protect against vulnerabilities
9. Changes to This Policy
We may update this Privacy Policy from time to time. We encourage you to review this policy periodically for any changes. If material changes are made, we will notify you via email or a prominent notice on our website and obtain consent where required.
10. Contact Us
If you have any questions or concerns about our Privacy Policy or how your data is handled, please contact us at support@exhale-ai.com.
Last Updated: November 21, 2024