Privacy Policy — Little Me: Inner Child Journal
Last updated: August 11, 2026
Little Me: Inner Child Journal ("the App") is a private self-reflection journal and AI companion for adults (18+). This policy explains where your journal lives, what is sent to AI services and when, and what we store. The short version: your journal stays on your device, encrypted; nothing you write is stored on our servers.
1. Your journal stays on your device
- Journal entries, mood check-ins, saved reframes, and weekly summaries are stored only on your device.
- Entry content is encrypted at rest with AES-GCM; the encryption key is kept in your device's Keychain and never leaves your device.
- We operate no journal database. There is no server-side copy of your entries, and no way for us to read them.
- Entries flagged by the App's crisis-safety check are never persisted at all.
2. What is sent to AI, and when
- Only when you explicitly request an AI reflection or a weekly summary, the relevant entry text (plus your chosen tone preferences) is sent over an encrypted connection to Google's Gemini models via Firebase AI Logic, protected by Firebase App Check.
- If you choose to create a "Little Me" avatar from a childhood photo, the photo is cropped, downscaled, and stripped of metadata (EXIF, location) on your device before being sent once for image generation. The prepared photo is discarded after the avatar is created; the avatar itself is stored only on your device. You can also build an avatar by hand without any photo.
- We do not use your journal text or photos to train models, and we do not store them server-side. Google processes AI requests under its own terms — see Firebase AI Logic documentation.
Nothing is sent anywhere until you tap an action that clearly requests it. Reading, writing, browsing your history, mood check-ins, and the breathing/grounding tools all work fully offline.
3. What we store
- An anonymous account identifier (Firebase Authentication) — no name, email, or profile is attached to it.
- Subscription entitlement state (managed by RevenueCat and Apple), tied only to that anonymous identifier.
- Crash reports and basic app diagnostics, not linked to your identity. Journal content never appears in logs or crash reports.
4. What we do not do
- No ads, no behavioral analytics, no tracking. Firebase Analytics collection is explicitly disabled in the App.
- We do not sell your data.
- We cannot read your journal — it is encrypted on your device with a key we never receive.
5. Purchases
Payments are processed by Apple. We use RevenueCat to manage subscription entitlements. These processors receive only what is needed to operate purchases (an anonymous user ID and transaction state) — never your journal content or photos.
6. Age policy
The App is 18+. We do not knowingly collect data from anyone under 18.
7. Your choices and deletion
- Delete any entry, or all local data, at any time from the App (Settings → Delete All Local Data).
- Delete your avatar or replace it at any time from Settings.
- Delete Account removes your anonymous Firebase user. Purchase records remain with Apple/RevenueCat as required for accounting.
- Deleting the App from your device deletes your local journal permanently — we hold no backup.
8. International transfers
AI requests you explicitly trigger are processed by Google's infrastructure, which may operate in other jurisdictions under Google's safeguards. No other user content leaves your device.
9. Not therapy
Little Me is a self-reflection and emotional-wellness tool. It is not therapy, a medical service, diagnosis, treatment, or emergency support. If you are in crisis, contact local emergency services.
10. Changes
We may update this policy. Material changes will be reflected on this page with a new "last updated" date.
11. Contact
Privacy questions or deletion requests: eacompany947@gmail.com