Privacy Policy

Privacy Policy for Daily Disaffirmation

Last Updated: Nov/2025

Introduction

Welcome to Daily Disaffirmation ("we," "our," or "us"). We are committed to protecting your privacy and being transparent about how we collect, use, and share your information.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application Daily Disaffirmation (the "App"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the App.

Information We Collect

Information You Provide to Us

Account Information:

  • Email address (required for account creation)
  • Password (encrypted and securely stored)
  • Name (if provided during registration)

Subscription Information:

  • Subscription status (active, expired, cancelled)
  • Purchase history
  • Subscription plan type

Information Collected Automatically

Usage Data:

  • Daily quote views
  • App features used (share, settings access)
  • Error logs and crash reports
  • Device type and operating system version
  • App version

Technical Data:

  • IP address
  • Device identifiers
  • App performance metrics
  • Network connection type

How We Use Your Information

We use your information for the following purposes:

  1. Provide Services:

    • Create and manage your account
    • Deliver daily disaffirmation quotes
    • Process subscription payments
    • Enable quote sharing features
  2. Improve the App:

    • Analyze usage patterns
    • Fix bugs and technical issues
    • Develop new features
    • Optimize performance
  3. Communications:

    • Send password reset emails
    • Notify about subscription status
    • Respond to your inquiries
    • Send important service updates (we will NOT send marketing emails without your consent)
  4. Security:

    • Prevent fraud and abuse
    • Protect user accounts
    • Enforce our Terms of Service
  5. Compliance:

    • Meet legal obligations
    • Respond to legal requests

Third-Party Services We Use

We use the following third-party services that may collect and process your data:

Supabase (Authentication & Database)

  • Purpose: User authentication, account management, and data storage
  • Data Shared: Email address, encrypted password, account information
  • Privacy Policy: https://supabase.com/privacy

RevenueCat (Subscription Management)

  • Purpose: Process in-app subscriptions and purchases
  • Data Shared: Purchase history, subscription status, device identifiers
  • Privacy Policy: https://www.revenuecat.com/privacy

Apple App Store (Payment Processing)

  • Purpose: Process subscription payments
  • Data Shared: Apple ID, payment information (we do NOT have access to your credit card details)
  • Privacy Policy: https://www.apple.com/legal/privacy/

Admin API (Content Delivery)

  • Purpose: Deliver daily disaffirmation quotes and background images
  • Data Shared: User authentication token, quote viewing timestamps
  • Location: Hosted securely by us

Data Retention

  • Account Data: Retained while your account is active
  • Subscription Data: Retained for 7 years for tax and legal compliance
  • Usage Logs: Retained for 90 days
  • Cached Images: Stored locally on your device until you delete the app

When you delete your account:

  • We permanently delete your email, password, and profile information within 30 days
  • Subscription history is retained for legal compliance but anonymized
  • Cached content on your device is removed when you uninstall the app

Your Data Rights

You have the following rights regarding your personal data:

  1. Access: Request a copy of your data
  2. Correction: Update inaccurate information
  3. Deletion: Request account deletion
  4. Portability: Export your data
  5. Opt-out: Unsubscribe from communications (except essential service emails)
  6. Restriction: Limit how we use your data

To exercise these rights, contact us at: contact@dailydisaffirmation.com

Children's Privacy

Daily Disaffirmation is not intended for users under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately, and we will delete it.

Data Security

We implement industry-standard security measures:

  • Encryption: All data transmitted between the app and our servers uses HTTPS/TLS encryption
  • Password Security: Passwords are hashed and never stored in plain text
  • Access Controls: Limited employee access to user data
  • Regular Audits: Security reviews and updates
  • Secure Hosting: Data hosted on secure cloud infrastructure

However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of sale of personal information (Note: We do NOT sell your personal information)
  • Right to deletion
  • Right to non-discrimination

To exercise these rights, contact us at: contact@dailydisaffirmation.com

European Privacy Rights (GDPR)

If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):

  • Legal Basis for Processing: We process your data based on:

    • Contract performance (providing the service)
    • Consent (for certain features)
    • Legitimate interests (improving the service)
  • Data Controller: Kobraum LLC is the data controller

  • Data Protection Officer: contact@dailydisaffirmation.com

  • Right to Lodge a Complaint: You can complain to your local data protection authority

International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure adequate safeguards are in place for such transfers, including:

  • Standard contractual clauses approved by the European Commission
  • Compliance with applicable data protection laws

Cookies and Tracking

Daily Disaffirmation does NOT use cookies for tracking. We use local storage on your device for:

  • User authentication tokens
  • App preferences
  • Cached images for offline access

You can clear this data by deleting the app or clearing app data in your device settings.

Push Notifications

We do NOT currently send push notifications. If we add this feature in the future, you will be asked for permission, and you can opt-out at any time in your device settings.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by:

  • Updating the "Last Updated" date
  • Displaying a notice in the app
  • Sending an email (for material changes)

Your continued use of the App after changes constitutes acceptance of the updated policy.

Third-Party Links

The App may contain links to third-party websites or services (e.g., when sharing quotes). We are not responsible for the privacy practices of these third parties. Please review their privacy policies.

Do Not Track

We do not track users across third-party websites. The App does not respond to Do Not Track (DNT) signals because we do not track you in the first place.

Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your data:

Email: contact@dailydisaffirmation.com

Response Time: We aim to respond within 30 days

Data Breach Notification

In the unlikely event of a data breach that affects your personal information, we will:

  1. Notify affected users within 72 hours
  2. Describe the nature of the breach
  3. Explain steps we're taking to address it
  4. Provide recommendations to protect yourself
  5. Report to relevant authorities as required by law

Your Privacy Matters: We are committed to protecting your privacy and being transparent about our data practices. If you have any concerns, please don't hesitate to contact us.

Version: 1.0 Effective Date: Nov/2025