Legal

Privacy Policy

Last updated: May 9, 2026

This Privacy Policy describes how Rock Castle Solutions LLC (“we,” “us,” or “our”) handles information in connection with the Talk to Me Diary mobile application (the “App”), optional online features that support the App, and this website at talktomediary.com (together, the “Services”). By using the Services, you agree to this policy alongside our Terms of Service.

1. Summary

2. Information we collect

2.1 Account and authentication

If you sign in with Apple or another method we support, we and our authentication providers (such as Google Firebase Authentication) may process identifiers needed to create and secure your session (for example, a user ID and tokens). Apple may share limited information with us according to your choices during Sign in with Apple.

2.2 Diary content and app data on your device

Journal text, mood selections, guided conversation data you save, and metadata you generate in the App are stored on your device unless and until you use a feature that requires sending text for processing (see below). We do not intend to maintain a separate copy of your full diary on our servers solely because you typed it locally.

2.3 Optional AI and network-assisted features

When you use features that analyze or generate text (for example, suggested mood, reflections, or prompts delivered through our backend), the App may send the minimum text needed for that operation to servers we or our providers operate. Outputs are meant for personal wellness context and are not medical or professional advice. You may edit or dismiss suggestions.

2.4 Photos

The App may store references (such as Photos library identifiers) so entries can link to images that remain in your library. We do not describe this as storing your image files inside the diary database.

2.5 Website and support

When you visit this website, standard server and analytics records may include IP address, browser type, and approximate region. If you use the contact form on talktomediary.com, your name, email address, and message are transmitted to us through our form-delivery provider so we can respond; that provider may process technical metadata needed to deliver and protect against abuse.

3. How we use information

We use information to:

4. Legal bases (where applicable)

Depending on your region, we may rely on contract (providing the Services), legitimate interests (security and improvement), or consent (where required for certain processing). You may withdraw consent where processing is consent-based, subject to App functionality.

5. Sharing

We may share information with:

We do not sell your personal information as a traditional “sale” of data broker lists. If local law defines “sale” broadly (for example, certain California interpretations), we will honor applicable opt-out rights where required.

6. Retention

Device-stored diary data remains under your control on your iPhone until you delete it or remove the App (subject to your backups). Server-side records (such as authentication logs or support emails) are retained only as long as needed for the purposes above and applicable law.

7. Security

We use reasonable administrative, technical, and organizational measures designed to protect information. No method of transmission or storage is completely secure; we cannot guarantee absolute security.

8. Your choices and rights

Depending on where you live, you may have rights to access, correct, delete, or export certain personal information, or to object to or restrict certain processing. To exercise rights, contact us through the Contact page. You may also adjust permissions in iOS Settings for Photos and Sign in with Apple.

9. Children

The Services are not directed to children under 13 (or the minimum age required in your jurisdiction). If you believe we have collected information from a child inappropriately, contact us and we will take appropriate steps.

10. International users

If you use the Services from outside the United States, information may be processed in the United States or other countries where we or our providers operate. We take steps designed to comply with applicable cross-border transfer rules where required.

11. Changes

We may update this Privacy Policy from time to time. We will post the new version on this page and update the “Last updated” date. Continued use after changes means you accept the revised policy, except where law requires additional notice or consent.

12. Contact

For privacy-related requests or questions, use the contact form on our Contact page.