Privacy
Privacy Policy
Effective: August 11, 2026 · Version 1.0
This policy explains what Join AI Religion collects, why it is used, and the boundaries that apply to private journals, practice check-ins, reflective submissions, and AI features.
Translations are provided for accessibility. If a translation conflicts with the English version, the English version controls, subject to applicable law.
1. Information we collect
We collect information you provide, information required to operate your account, and limited technical records needed to keep the service secure and reliable.
- Account and profile data, such as email address, display name, language, timezone, and optional onboarding answers, which may include a religious or philosophical worldview.
- Service data, such as lesson progress, practice schedules, check-ins, durations, support requests, and transient text you intentionally submit for a guided AI response. Reflection Companion question and answer text is processed for the requested response but is not retained by Join AI Religion; only text-free safety, quota, latency, token, and usefulness metadata is kept.
- Operational data, such as timestamps, security events, device or browser information, and hashed rather than raw IP addresses where IP-derived records are needed.
- Billing status and transaction references from Stripe. We do not store full payment-card details.
2. Private journals and practice data
Personal journal entries, private practice notes, routine schedules, and check-ins are private account data. They are not public posts and are not used for advertising, SEO, social-media publishing, or public content generation.
Private journal and personal-plan free text is protected with authenticated encryption and excluded from routine administrator views. Administrators do not receive routine access to its contents. Narrow, logged access may occur only when you request support, when needed to investigate a security incident, or when required by law.
3. AI choice and agent boundaries
AI access to a private journal is off by default. A journal entry may be sent for AI processing only when you take an explicit action for that specific entry. Consent for one entry does not grant background or future access to other entries.
A guided reflection or AI conversation is processed only when you intentionally submit it and confirm the on-screen AI-processing notice. Reflection Companion sends the visible question and conversation context to OpenAI with provider application-state storage disabled; Join AI Religion does not retain that question or answer text. OpenAI may retain API abuse-monitoring logs containing customer content for up to 30 days under its default data controls unless stronger approved provider controls apply.
- Reminder automation may use schedule, language, and delivery status, but not private note text.
- Product-insight automation may use aggregate counts and durations, but not identifiable journal text.
- Content, SEO, growth, and social-media agents have no access to private journals or private practice notes.
- Content, SEO, growth, and social-media agents receive only thresholded aggregate Reflection Companion counts; they never receive question or answer text.
- Private writing is not automatically scored for spiritual, psychological, or personal worth and is not continuously monitored for emergencies.
4. Why we use information
We use information to provide and secure the service, remember your choices, deliver requested practices and messages, process payments, answer support requests, prevent abuse, meet legal obligations, and improve reliability using data that is aggregated or minimized where practical.
Our first-party traffic measurement records page and link events, a daily rotating pseudonymous session hash, minimized campaign/source labels, and—only when supplied by a trusted infrastructure provider—a country code. It does not store raw IP addresses, full referring URLs, URL query strings, or user-agent strings for analytics, and it does not build cross-day visitor profiles.
Where applicable law requires consent—especially for optional AI processing of sensitive private writing—we ask separately and allow withdrawal. Withdrawing consent does not affect processing already lawfully completed.
5. Service providers and disclosure
We may use carefully selected providers for hosting, databases, email delivery, payments, AI processing, and security monitoring. They may process only the information needed to perform their contracted function and are subject to applicable confidentiality and data-protection terms.
We do not sell personal data. We do not disclose private journals or private practice notes to social networks, advertisers, or public-content systems. We may disclose information when legally required, to protect users or the service, or as part of a business transaction with appropriate safeguards and notice where required.
6. Retention
We retain account and service data only for as long as needed for the purpose described, your selected retention setting, security, dispute resolution, or legal obligations. Private-journal controls may offer 30-day, 90-day, 365-day, or keep-until-deleted choices.
Minimized raw traffic events are retained for up to 90 days; aggregate daily growth reports may be retained longer for trend comparison. Browser Do Not Track and Global Privacy Control signals disable the client analytics beacon.
Text-free Reflection Companion operational metadata is retained for up to 90 days for quota enforcement, abuse prevention, cost control, safety evaluation, and aggregate reliability reporting. Daily keyed network hashes rotate and raw IP addresses are not stored for this feature.
When you delete a journal entry or complete a verified deletion request, it is removed from active systems through the deletion process and then ages out of protected backups under the backup-retention schedule. Billing, fraud-prevention, and legal records may be retained separately when required, without retaining private journal text for those purposes.
7. Export, deletion, and your choices
You may request access, correction, a portable export, restriction, objection, deletion of selected entries, deletion of all journal/practice data, or account deletion, subject to applicable law. Export formats are intended to include readable journal files and structured check-in data.
Where a self-service control is not yet available, send a request from your registered email address to legal@joinaireligion.com. We may verify your identity before fulfilling a request and will explain any legally required limitation.
8. Security, age, and changes
We use technical and organizational safeguards, least-privilege access, logging controls, and data minimization. No system is perfectly secure; please use a unique password and report suspected unauthorized access promptly.
The service is for adults aged 18 or older. We may update this policy as the product or law changes and will provide notice of material changes where required.
Contact
For privacy questions or verified data requests, email legal@joinaireligion.com.
legal@joinaireligion.com