MYSELF
Privacy Policy
IN SHORT
- This is a journal you keep for yourself. Every record you write stays on your own device by default — we hold no copy of it on our servers.
- There is no account and no sign-up. We do not collect your name, phone number, email address, location or contacts, and the app contains no third-party analytics, tracking or advertising SDK.
- Part of what you record is sent onward only when you use the AI — when you message an AI role, and when the app periodically distills those conversations and your recent records into the AI's memory. That is the AI feature doing its job. If you never talk to an AI role, nothing you write ever leaves your device.
1What we do not collect
To leave no room for doubt, here is what this app does not do:
- It requires no registration or sign-in; there is no user account on our side.
- It does not collect your name, phone number, email address, identity documents, contacts, calendar or location.
- It does not collect the advertising identifier (IDFA), serves no ads, and performs no cross-app or cross-site tracking.
- It integrates no third-party analytics, crash-reporting, marketing-push or advertising SDK — the app depends only on Apple's own system frameworks.
- We do not sell, rent, or trade your personal information with anyone for marketing purposes.
2iCloud sync (optional)
iCloud sync is a paid feature you can switch off at any time (Settings → iCloud 同步). When it is on, records sync through Apple's CloudKit into your own private iCloud database (container iCloud.name.wangchengfeng.talk-to-myself), so they reach your other devices and survive a lost phone.
3Microphone and speech recognition
The microphone is only ever live after an explicit action of yours. Holding the talk button records a voice record: it stops the moment you lift your finger, and the recording is stored on the device as a voice message (and syncs to your own iCloud if iCloud sync is on).
Turning speech into text uses Apple's speech recognition framework. When the device supports on-device recognition, the app requires recognition to happen locally. On a device that does not, live transcription is handled by Apple's system speech service — an Apple system behaviour, and even then the audio never touches our servers. Older voice records are transcribed later strictly on-device, or not at all.
The transcript is kept on the device alongside the recording as a machine note. The app does not display it; it exists only so the AI can understand voice records — see “What using the AI sends”. Voice records never leave the device as audio.
Voice dictation in an AI chat is the one deliberate exception. Tapping the microphone beside the AI chat's input field records while you speak; when you tap stop, the app sends that one recording to our server, which passes it directly to OpenAI's transcription model to turn into text. The words land in the input field for you to review, edit, send — or delete. Our server does not store the recording or its transcript; the audio passes through only for the moment of transcription. OpenAI's provider data practices apply. Nothing is recorded until you tap the microphone, and nothing is sent until you tap stop.
4Photos
You can send a photo from your library into a role's chat as a record. The app reads only the photos you pick yourself in the system picker; it does not scan your library or read anything else in it. Photos are stored in the record on your device (and sync to your own iCloud if iCloud sync is on). Apart from the AI feature described under “What using the AI sends”, they are not uploaded anywhere.
5What using the AI sends
When you use the AI, some of what you have recorded in the app is sent to the AI so that it can do its job. This is one of the app's features rather than a side effect: it is what lets the AI understand you and answer in a way that fits your life rather than in generalities.
Two kinds of requests leave the device. Chat: when you message an AI role, a bounded selection of your records and that role’s conversation is sent to generate the reply. Memory: from time to time — typically when the app moves to the background after enough new material has gathered — that role’s recent conversation and the records you have recently written in non-AI roles (as text), together with the memory built so far, are sent so the model can distill them into a short set of remembered facts and a summary of earlier conversation. Your records take part in this only after you have talked to an AI role at least once. The remembered facts are shared by all of your AI roles; raw AI conversations and earlier-conversation summaries remain separate for each role. What comes back is stored on your device, not on our servers, and shapes how the AI replies to you later. You can review, edit, pin or delete every remembered item, or clear them all, under Settings → AI Memory.
A voice record can be included as its transcribed text once the device has transcribed it (see “Microphone and speech recognition”). Photos you sent into an AI chat can accompany these requests; the memory request may carry a photo one last time so it can be described in a line of the summary. These requests never carry audio — the one case where audio leaves the device is the voice dictation you start yourself, described under “Microphone and speech recognition”.
What is sent is used solely to generate that one reply, or that one memory-and-summary update. We do not write it to a database, do not use it to train models, and do not use it for profiling or advertising of any kind. The memory the AI keeps about you lives on your device, where you can always see and change it.
6What our server stores
To verify subscriptions, prevent double billing, limit abuse and account for model cost, our database stores only the metadata below. None of it contains the content of your records or the model's replies.
| Item | Content | Purpose |
|---|---|---|
| Account token hash | The SHA-256 of a random UUID generated on your device (no Apple ID, and it cannot be reversed into an identity) | Ties subscription state and usage to one subscription without needing an account |
| Subscription details | App Store transaction IDs, product ID, sandbox/production environment, expiry, last verification time | Deciding whether the subscription is active |
| Request and usage metadata | For each AI request: the role's ID, the request kind (chat / memory), model name, status, token counts (including prompt-cache metering), timestamps, and an error code when one occurred — never the content | Request deduplication, rate limiting, troubleshooting and cost accounting |
| Free-allowance counter | How many free AI replies the account has used in the current calendar month | Metering the monthly free allowance |
7Data retention and deletion
On your device and in iCloud
- Settings → 清除所有数据 asks you to type a confirmation word, then permanently deletes every record, photo and recording on the device — and, if this device ever synced, the copy in your iCloud along with it. This cannot be undone. (Deleting the iCloud copy needs a network connection and a signed-in iCloud account; if it does not go through, the app says so.)
- Deleting the app removes its local data. The iCloud copy can also be removed at any time under Settings → Apple Account → iCloud → Manage Account Storage.
- You can export first: Settings → 导出记录 produces a PDF (for reading and printing) or JSON (a structured backup).
Metadata on our server
We keep this metadata only for as long as the purposes set out under “What our server stores” require, and delete it once it is no longer needed:
- Subscription details: kept until the subscription has ended and any refund, billing dispute or reconciliation arising from it has been settled.
- Request and usage metadata: kept until it is no longer needed for request deduplication, troubleshooting and cost accounting.
To have the records on our server that relate to your subscription deleted, contact us at the address at the foot of this page.
Because the content of your records is never written to our servers' storage — what an AI request sends only passes through server memory to produce the response — there is no journal content there to delete.
8Your rights and choices
- Access and export: everything lives on your device, and 导出记录 gives you a complete copy whenever you want one.
- Correction and deletion: records can be deleted one at a time, in batches, or all at once.
- Withdrawing consent: switch off iCloud sync, cancel the AI subscription, or revoke any permission in system Settings.
9Minors
This app is not designed for children under 14 and we do not knowingly collect their personal information. If you are a minor, please use it with the consent and guidance of a guardian; guardians who need something addressed can contact us at the address below.
10Changes to this policy
This policy is updated whenever the app's behaviour changes, and the date at the top of the page moves with it. If a change materially expands what we collect or how we use it, we will say so prominently in the app and, where required, ask for your consent again. Continuing to use the app means you accept the updated policy.
Contact us
For any privacy question, request or complaint, email wangchengfengx@gmail.com.