Privacy
ProfileAI privacy policy
ProfileAI stores sensitive self-understanding data. This policy explains what the product collects, why it is used, and how users can control it.
Last updated: May 19, 2026.
1. Information We Collect
ProfileAI may collect account email, password hash, signup acceptance records, plan status, birth date, birth time, birth place, timezone, latitude, longitude, chart calculations, assessment responses, Core Pattern Mirror results, life events, emotional valence, intensity, tags, notes, chat messages, report jobs, audio jobs, email jobs, AI usage records, and service/system metadata.
2. Birth And Chart Data
Birth data is used to calculate chart placements, timing layers, relationship comparisons, Jyotish foundations, reports, and chat context. Because birth data can be personally identifying, users should treat it as sensitive.
3. Psychology, Life Events, And Chat Content
Assessments, life events, memories, and chats are used to personalize reflection, show correlations, generate reports, and maintain continuity across sessions. Do not enter information you are not comfortable storing in the app database.
4. AI Provider Processing
When live AI features are enabled, selected chart summaries, user prompts, report context, or transcript text may be sent to configured AI providers to generate responses, reports, or audio. Local/beta deployments may keep live AI disabled and use deterministic fallbacks instead.
5. Audio, Email, And Export Features
Report read-aloud may use browser speech locally or provider-backed server audio when configured. Email delivery may process recipient email, subject, message, report transcript, and delivery status when configured. Account export creates a machine-readable copy of account data.
6. How We Use Information
Information is used to operate accounts, calculate charts, personalize reports and chat, preserve saved work, measure usage, enforce access limits, troubleshoot errors, improve reliability, and maintain security.
7. How We Share Information
ProfileAI does not need to sell personal information to operate. Data may be processed by hosting, database, email, AI, text-to-speech, analytics, or security providers when those services are configured. Data may also be disclosed if required by law or to protect users, the service, or others.
Shareable Profile Cards: users may choose to share selected public teasers, such as a dominant influence, a general tension, or an invitation link. Shareable cards must omit raw answers, account email, birth data, private notes, saved history, and full paid-profile detail unless the user explicitly chooses a future expanded sharing mode.
8. Retention
ProfileAI keeps account and workspace data while the account exists unless deleted earlier by the user or administrator. Some logs, backups, or security records may persist for a limited period after deletion depending on deployment configuration.
9. User Controls
Users can export account data and request local account deletion from the Account page where available. Deletion removes the user account and associated app records from the active application database, subject to backup and legal-retention limitations.
10. California-Style Privacy Rights
Depending on applicable law and deployment status, users may request access, deletion, correction, portability, and information about categories of personal information collected, used, or disclosed. ProfileAI should provide a contact path before public commercial launch so users can exercise these rights.
11. Minors
ProfileAI is not directed to children under 13 and does not knowingly collect personal information from children under 13. Users ages 13 to 17 must have parent or guardian permission. If a child under 13 has provided information, contact the operator so it can be deleted.
12. Security
ProfileAI uses reasonable technical controls for the current product stage, including password hashing and authenticated account access. The production target is a state-of-the-art security posture for sensitive profile data: secure sessions, least-privilege access, encrypted transport, auditable AI/provider processing, backup and recovery planning, account export/deletion controls, and reliable authentication so users have secure, consistent access to their own data.
No system is perfectly secure, and users should avoid entering emergency, highly sensitive, or unnecessary third-party information.
13. Changes To This Policy
ProfileAI may update this policy as mobile, AI, audio, email, hosting, access management, and production infrastructure evolve. Material changes may require renewed acceptance.