MORNING PATH · INFORMATION
Privacy policy
1 October 2026 · Pre-launch draft. This text describes the reviewed app code and this website; it has not been approved by legal counsel. Operator details and some retention periods must be completed before launch.
Last reviewed: October 1, 2026
Where app data lives
Routines, habits, mood and energy entries, notes, gratitude, daily tasks, medication reminders, achievements, photos and voice recordings are stored in the app’s space on your device. The reviewed version has no cloud sync that uploads this journal to an account. Creating an account does not mean your journal is uploaded.
Local storage uses the app’s private space; additional app-level encryption has not been implemented. Device security and operating-system backup settings also matter. Small summaries such as streak and daily status are shared with widgets through an on-device app group.
Accounts and identity providers
Apple, Google and email sign-in code uses Supabase Auth. The email flow sends your email, password and display name to the identity service and includes confirmation-email and password-recovery flows. Apple or Google identity, name, email and any profile picture supplied by the provider may be associated with the Supabase account. Mobile session tokens are stored on the device through Expo SecureStore; the app no longer creates accounts using a local password derivative.
When the server is configured, account identity, display name, any profile-image URL and preferences such as language, appearance and reminders are processed in Supabase. These profile details are separate from the journal and media on your device. The Supabase project, provider/email settings, profile table and deletion function have not yet been set up for production; sign-in and deletion must be verified on real devices before the system is considered ready. supabase.com
Photos, microphone and notifications
Photo selection/capture and voice recording are requested for the feature you use. Selected files are copied into the app’s local space. Re-encoding a photo removes EXIF; if re-encoding is unavailable or fails, the original file may be copied with metadata intact.
If you add a place to a photo, its label and coordinates are saved with that local entry. Reminders use notifications scheduled on the device; no remote push server was found in the reviewed code.
Apple Health and Health Connect
With your permission, the iOS app can read sleep, steps, heart rate, heart rate variability and mindful minutes from Apple Health. The Android bridge can read sleep, steps, heart rate and variability from Health Connect. Summaries are stored on the device; iOS background refresh may also update this local summary.
If you enable writing in health integration settings, completed breathing or focus sessions can be saved as mindful sessions in Apple Health. The Android bridge writes them as exercise sessions. Revoke access in your operating system’s health settings. Deleting app data does not automatically remove the original records in Apple Health or Health Connect.
If you separately allow Pip AI replies, sleep duration, an available quality summary and approximate waking hour may be added to an AI request. Raw health samples, step counts and heart-rate data are not added to the reviewed AI summary.
Location and weather
With foreground location permission, last-known or current latitude/longitude is sent to Open-Meteo for weather. The condition summary is cached in app memory for about an hour. The request also exposes ordinary connection information such as IP address; no journal text or account ID is attached.
Adding a place to a photo sends coordinates to the operating system’s reverse-geocoding service; Apple services may be used on iOS. No background location permission or location tracking was found in the reviewed code.
Service information: open-meteo.com
Pip and optional AI replies
AI replies require your express permission. Without permission and configuration, Pip uses built-in flows on your device. When allowed, messages and recent conversation history may be sent through the app’s AI server to the Anthropic API; daily briefs can also produce AI requests.
Context may include recent mood/energy entries and feeling words, your description of today, routine step IDs and completion, streak, habit titles and status, usual bed/wake times, sleep summary, medication names and times, and whether a photo/note/gratitude entry exists. Photo files and note/gratitude text are not added while building this summary; anything you type into the conversation is sent.
The reviewed relay code does not write message content to a persistent database; it logs technical timing, status and token counts. Request IP addresses are temporarily processed in memory for rate limiting. Hosting log retention has not been verified, so no zero-retention guarantee is made.
Anthropic generally states that standard commercial API inputs and outputs are deleted within 30 days, with contractual, safety or legal exceptions. Production account settings must be verified before launch. privacy.anthropic.com
You can turn off AI permission in app settings. This stops new requests; it does not mean previously transmitted data is immediately removed from the service.
Purchases, diagnostics and updates
When configured, RevenueCat may process its generated app user ID, receipts/purchase tokens, purchase history and technical device information to verify subscription access. App Store or Google Play processes payment. The reviewed code does not link RevenueCat’s ID to the app’s email account or add journal content to RevenueCat requests. www.revenuecat.com
When configured in a release, Sentry may receive error and performance information, device/OS details, stack traces and error context. The code forwards general error context, so we cannot claim sensitive information is always removed; production scrubbing must be checked. sentry.io
Expo Updates may make update-check and download requests. The service may process technical information such as IP address, app version, platform and update information. expo.dev
Retention, export and deletion
Local journal records may remain until you remove them or app data is deleted. In the current version, signing out also runs local journal cleanup; export what you need before signing out. Pip ignores a prior-day conversation when it next loads; that is not a guarantee of secure disk deletion at the day boundary. Sleep-cache code cleans keys older than 60 days. A photo plan defines 30-day retention, but scheduled enforcement has not been verified, so deletion at 30 days is not promised.
Settings data export can share a JSON journal record or a CSV of moods, energy and notes. JSON does not package the photo/audio files themselves; it contains file records and local paths. You control any copies you export and save elsewhere.
Profile → Delete account code makes an authenticated server-deletion request for a signed-in account. The prepared server function deletes the Supabase account and its associated profile; an Apple account first requires fresh Apple authorization to attempt access revocation. After the server confirms deletion, the app attempts to clear journal stores, app photo/audio files, export files and widget data. Guest data is cleared locally; some device appearance and language preferences remain. The function is not yet deployed to production and actual deletion is unverified; no guarantee is made that all provider records or previously issued access tokens disappear immediately.
Contact emrekacan@gmail.com for support or data requests. The minimum information needed to verify ownership may be requested. Exact retention periods and legal exceptions for support emails, hosting logs, Sentry and purchase records are not yet established and must be completed before launch.
This website’s data
This product website does not receive your app journal. The site code has no analytics service, advertising pixel, tracking cookie, registration form or user account. Language selection uses the URL. No working advertising-click or store-conversion measurement integration is active.
This site is hosted on Vercel. Page and file requests may produce hosting/security logs containing IP address, requested URL, date, browser and similar technical connection information. Site-specific log retention has not been verified. vercel.com
An email link opens your own email app; a message reaches support only when you send it. Your address, message and attachments are processed to handle your request. If advertising measurement is added later, this notice and the necessary consent behavior must be updated together.
Contact and launch details
Morning Path support: emrekacan@gmail.com. Website: morningpath.app The operator’s legal name, service address, controller details, legal bases for processing and final retention schedule must be added before launch. The app is not presented as a children’s product; final age conditions must be set with store targeting.