Back to Home

Privacy Policy

Last Updated: September 20, 2026

OhMyCalm is a journal for difficult moments, so what you write in it is among the most private things you own. This policy says exactly what we collect, why, who else touches it, how long it is kept, and what you can do about any of it. It covers the OhMyCalm mobile app and ohmycalm.com.

This policy is written in English, and the English text is the one that applies.

1. Who Is Responsible

The data controller is JUPROX LIMITED, a company registered in England and Wales (company number 17404304), 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom.

For anything about your data, write to support@ohmycalm.com. We answer privacy requests within one month.

2. What We Collect

  • Account: your name, email address, and a one-way hash of your password. If you sign in with Google or Apple, we receive your name, email address and an account identifier from them instead of a password.
  • Your journal: the thought records you write (the situation, your thoughts, the feelings you pick and how strong they are, your reframes), your feeling check-ins, the letters, pattern threads and small experiments generated from them, the spoken versions of your letters, and any feedback you give on a letter. This can reveal information about your mental health, which the law treats as a special category of data.
  • Device and settings: if you allow notifications, a push token for your device, together with its platform, app version, language and time zone; your notification, letter-voice and language preferences.
  • Purchases: if you subscribe to OhMyCalm Plus, the purchase token and subscription status that Google Play or the App Store give us. We never see your card or payment details.
  • Messages you send us: feedback sent from the app, and emails to support.
  • Usage and crash reports: which screens and features are used (for example "a thought record was completed" or "a letter was opened") and technical crash reports with your device model and operating system version. These never contain anything you wrote. You can turn them off, see section 5.
  • Technical data: our servers process your IP address to deliver the service and to limit abuse, and keep request logs.

What we do not collect: your voice. When you dictate, your phone's built-in speech recognition (Apple's on iPhone, Google's on Android) turns speech into text on its side, and only the text you choose to save reaches us. We do not use advertising identifiers, we show no ads, and we do not track you across other apps or websites. Your App Lock PIN is kept encrypted on your device and is never sent to us.

3. Why We Use It, and on What Legal Basis

  • To run your account and the journal (store and sync your entries, sign you in, send the emails you ask for such as verification and password-reset codes, provide Plus): this is necessary to perform our contract with you.
  • To read your entries and write back to you (find themes, write letters and their spoken versions, suggest experiments): because journal content can reveal health information, we do this on the basis of your explicit consent, which you give when you create your account and choose to write in the journal. You can withdraw it at any time by deleting your thoughts or your account in the app; that stops all further processing of them.
  • To send notifications you have switched on: your consent, which you can withdraw in the app or in your phone's settings.
  • To keep the service secure and working (rate limiting, abuse prevention, error diagnosis, request logs) and to understand how the app is used and fix crashes: our legitimate interests in running a safe, reliable app. You can object to usage and crash reports at any time with the switch described in section 5.
  • To meet legal obligations, such as tax records for purchases and answering lawful requests.

We never sell your data, never use it for advertising, and never use what you write to train AI models. No decision with legal or similarly significant effects is made about you automatically.

4. Who Else Processes Your Data

We use the following companies to run OhMyCalm. Each receives only what is listed, under a contract that limits them to acting on our instructions.

  • OVHcloud (hosting, Germany): runs our servers and database, so it stores all account and journal data.
  • Google Cloud Vertex AI (Gemini models): receives the text of your thought records to generate themes, letters and experiments, and the text of a letter to produce its spoken version. Google's terms forbid it from using this to train or fine-tune any model. Google does not store it, except for a short-lived in-memory cache (at most 24 hours) and, only if its automated safety checks flag a request as possible abuse, a log kept for up to 90 days for review.
  • Cloudflare R2 (file storage): stores the audio files of your spoken letters.
  • Brevo (email delivery): receives your email address, name and language, and the content of the emails we send you.
  • Google Firebase: Cloud Messaging receives your device's push token and the text of each notification (which never quotes your journal); Analytics and Crashlytics receive the usage and crash reports described above, unless you turn them off.
  • Langfuse (AI cost monitoring): receives an internal account identifier with the model name, token counts, timing and error messages of each AI request. It never receives your text or the generated text.
  • Google and Apple sign-in, if you use them: they learn that you signed in to OhMyCalm.
  • Google Play and the Apple App Store: handle your subscription payment as independent controllers under their own privacy policies, and confirm your purchase to us.

Beyond these we share data only if the law requires it, or with a successor if the business is transferred, in which case this policy continues to apply.

5. Turning Off Usage and Crash Reports

In the app, open the You tab, tap Account, then Usage and crash reports, and choose Turn off. This stops both Firebase Analytics and Firebase Crashlytics on that device immediately, deletes any report that was waiting to be sent, and stays off until you switch it back on.

6. Where Your Data Goes

Your account and journal are stored in the European Union (Germany). We are based in the United Kingdom, and some of the companies above process data in the United States or other countries. Where data leaves the UK or the European Economic Area, it is protected by an adequacy decision or by the standard contractual clauses approved for such transfers (including the UK addendum). You can ask us for a copy of the relevant safeguards.

7. How We Protect It

  • All traffic between the app and our servers is encrypted in transit (TLS/HTTPS).
  • Passwords are stored only as a one-way hash, and sessions use short-lived tokens that you can revoke by signing out or changing your password.
  • Your journal entries and letters are only ever returned to your signed-in account and are never shown in our internal admin tools.
  • You can add an App Lock (PIN, Face ID or fingerprint) so the journal stays closed even on an unlocked phone.

8. How Long We Keep It

  • Account and journal: for as long as your account exists.
  • Deleting your account: access is cut off immediately and everything is permanently erased from our database and file storage after a 30-day grace period. Signing back in during those 30 days cancels the deletion.
  • Deleting your thoughts: "Delete my thoughts" removes them from the app at once; you can restore them for 7 days, after which they are permanently erased. Letters and experiments that were already written from them are kept until you delete your account.
  • AI processing logs: technical records of each AI request, which can include an excerpt of generated text, are deleted after 30 days.
  • Server logs: kept for up to 30 days.
  • Backups: kept for up to 30 days, so erased data leaves our backups within 30 days of being erased.
  • Purchase records: kept as long as tax and accounting law requires.

9. Your Rights

Wherever you live, you can ask us to:

  • give you a copy of your data, in a common machine-readable format (access and portability) — which you can take yourself at any time, free, in the app: You → Manage account → Download my data saves one JSON file with every thought, check-in, letter and challenge, your feedback and your account details. It does not include the audio of letter voice notes (they are the letter's text read aloud); ask us if you want those files as well;
  • correct anything inaccurate;
  • erase your data, which you can also do yourself in the app (You → Account) or at ohmycalm.com/delete-account.html;
  • restrict or object to processing we base on legitimate interests, including usage and crash reports;
  • withdraw consent at any time, without affecting what was done before.

To use any of these, email support@ohmycalm.com from the address on your account. It is free, and we reply within one month. If you are unhappy with how we handle your data you can complain to the UK Information Commissioner's Office (ico.org.uk) or, in the EEA, to the data protection authority of the country where you live.

10. Children

OhMyCalm is not intended for children under 16, and we do not knowingly collect their data. If you believe a child has created an account, contact us and we will delete it.

11. Changes to This Policy

If we change this policy we will post the new version here and update the date above. If a change materially affects how we use your journal, we will email the address on your account before it takes effect.

12. Contact

JUPROX LIMITED, 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom

Email: support@ohmycalm.com