This Privacy Policy explains how data that you share with Stoic is processed and protected.
The terms “user” and “you” refer to a person that uses Stoic Application (“App” or “Stoic App”), visits Stoic website, interacts with Stoic social media (together as “Services”) or contact Stoic.
The terms “Stoic” and “we” refer to a company incorporated in the US which is responsible for processing personal data as described in this Privacy Policy:
Stoic App Inc.
2261 Market Street #4243
San Francisco, CA 94114
DATA WE PROCESS
1. Data from Stoic App
Stoic has no access to user’s account data, Apple ID or Google ID. We do not collect user’s name or contact details (unless user contacts us directly).
When you open Stoic App we automatically collect certain data about the App and how you engage with it, such as your device, the pages of the App that you open, time, type, frequency and duration of your activities in the App, your approximate location.
We collect this data solely to analyze patterns and enhance and personalize your experience.
We work with trusted third-party analytics providers to collect and process this data. We may use cookies and similar tracking technologies to help us understand how users engage with the App. This information is anonymized and aggregated, and is solely used for performance analysis, identifying trends, and improving functionality.
We do not use or share this data with third parties for marketing or advertising purposes, nor do we sell it.
You can manage your analytics preferences within the App settings.
We do not have access to any content you add in the App, for instance notes in the diary. We can also not see what questions are displayed to you in the App and what answers you give.
Example: we know that a user was meditating on 25th of March 2025 from 9am till 9.30am and then made a note, but we do not have access to that note.
In case of an error of the App we collect data and information (through third party products) on your phone called Log Data. This Log Data may include information such as your device Internet Protocol (“IP”) address, device name, operating system version, the configuration of the App when utilizing service, the time and date of your use of the service, and other statistics.
If you use AI features available in the App, the data we collect and how it is used are described in the Section 8 of this Privacy Policy. When AI is involved, we obtain your consent, provide options for customization, and respect your preferences.
Legal grounds:
Contract – the data we process are necessary to provide you with service which is delivering content and exercises that address your individual needs. It’s also necessary to fix technical problems that may occur while using the App
Legitimate interest – we process App usage data to develop our service and offer users more advanced product. You can object to the collection of data for this purpose at any time by switching off analytics within the App.
2. Apple HealthKit and Google Fit
Stoic App offers its users option to make a connection with their Apple HealthKit or Google Fit. With user’s explicit consent Stoic App communicates with the HealthKit or Google Fit to share data.
If you grant Stoic App access to HealthKit or Google Fit it can add information to certain sections of HealthKit or Google Fit, ie. adding the minutes of meditation that you were practicing.
We also collect certain non-sensitive information through HealthKit or Google Fit, ie. data related to “mindful minutes” or “activity” Sections in Stoic App that facilitate providing personalized experience.
We do not use information gained through the HealthKit or Google Fit for advertising or similar services.
You can any time stop Stoic App from accessing your data in HealthKit or Google Fit by changing the settings.
Legal grounds:
Consent.
3. Location data
Stoic App offers its users option to share their exact location.
If you grant Stoic App access to your location we can provide you with more personalized experience, ie. gives you suggestions how certain places may be connected to your wellbeing.
You can any time stop Stoic App from accessing your exact location data by changing the settings.
Legal grounds:
Consent.
4. Purchase and financial data
Stoic has no access to users’ Apple ID or Google ID and financial information they provide in the process of purchasing Stoic App subscription.
We do not collect and do not have access to your name, address, phone number, e-mail address, id number, credit card information, bank account details or anything else that can personally identify you while you make a purchase.
Purchases made through the Apple In-App purchase feature are subject solely to Apple’s terms and conditions and Apple’s Privacy Policy.
Purchases made through Google In-App are subject solely to Google Play’s Terms of Service and Google’s Privacy Policy.
Stoic is not liable for any in-app purchases. You can request a refund directly from the Apple App Store here or the Google Play Store here.
Revenuecat is a service provider that imposes the performance of the purchasing process.
The controllers for your financial data are the entities listed above.
If you request a refund we can send purchase information to Apple https://developer.apple.com/documentation/appstoreserverapi/consumptionrequest to handle refund.
5. Contact data
If user contacts we collect user’s data.
We collect data you share when you contact us either directly or fill in form on our website. When you contact us via email we collect your email address and may collect your name or other contact details (ie. telephone number) if you provide us with them. The contact form requires giving your name and email address.
We have access to detail of your social network profile if you contact us via Facebook, Instagram, LinkedIn, Twitter, Discord, or Mastodon.
Data we collect includes also content of the messages you send us.
We use this data to give you response and research your question or concerns properly.
If you express interest in our Services and send us your contact details we may occasionally send you message in connection with our Services we present information and offerings from Stoic. If you do not wish to receive any further information from us, you can object by clicking the link which you will find in email received from us or by sending us a message with your request.
Legal grounds:
Contract – address requests and get feedback regarding Services.
Legitimate interest – contact regarding new App features, update or useful information about Services etc.
6. Data from Stoic website
When user visits Stoic website limited analytical data such - the pages opened by the user, approximate location, time and duration of the visit is collected by analytical services we cooperate with.
For this purpose cookies may be installed on your device. Stoic does not use cookies for marketing, advertising, sold to third parties purposes. The only cookies Stoic website uses are those provided by analytical services we cooperate with to obtain information on website usage and traffic.
Legal grounds:
Consent – based on your cookie preferences.
7. Social media data
Stoic maintains social media profile pages on Facebook, Instagram, LinkedIn, Twitter, Discord, and Mastodon ("fan pages").
When you visit our fan pages, Stoic collects communications, content and other information that you provide us. If you have an account on Facebook, Instagram, LinkedIn, Twitter, Discord, or Mastodon, we automatically have access to your public information.
Whenever you interact with fan pages, Facebook, Instagram, LinkedIn, Twitter, Discord, or Mastodon uses cookies and similar technologies to track the usage behaviour of fan page visits. On this basis we receive only statistical, depersonalised (anonymised) information about visitors to our fan page. We do not have access to your personal information which is performed exclusively by Facebook, Instagram, LinkedIn, Pinterest, Twitter, Discord, Bluesky, or Mastodon.
Stoic and Meta are joint controllers for your personal data on our pages on Meta products. You can find the joint controller agreement here: link.
Similarly, Stoic and LinkedIn are joint controllers for your personal data on our pages on LinkedIn. You can find the joint controller agreement here: link.
If you wish to exercise your GDPR rights regarding Stoic on any of thes social media platforms, you may contact either us or the respective platform directly.
Legal basis:
Consent – you may adjust your preferences through your Facebook, LinkedIn, Twitter, Discord, or Mastodon settings.
8. AI Features
Stoic App offers an optional AI-powered feature available to users who purchase a subscription and agree to share their content for AI-driven insights and interactions.
We partner with trusted third-party AI service providers, such as OpenAI, to deliver these AI-powered features. These partners help generate personalized insights and interactions based on the content you choose to share.
When using AI features in the App, your content, such as journal entries or onboarding information, may be processed by third-party AI services. The majority of data processing is automatic and happens in real time via our secure servers and third-party AI services API. No manual review or human tagging of your content occurs.
By consenting to use AI features, you agree to share your historical journals with AI service providers to generate customized outputs. You can disable AI features based on your historical data at any time in the App settings. When disabled, the AI responses will be based solely on the information you input directly.
We may also provide additional options for you to customize the content used for AI features.
Examples of how AI is used:
- Generating prompts, summaries, or suggestions.
- Creating end-of-day/week reflections.
- Crafting push notification content tailored to your recent activity.
- Enabling mentor-like feedback from AI personas (e.g. thinkers, philosophers).
Data safety:
- We do not analyze your data manually or store full journal texts on our servers.
- We only store limited vector data and anonymized user context (e.g. “likes dogs,” “has kids,” “lives in Warsaw”) necessary to personalize your AI experience.
- All content shared with third-party AI service providers is subject to their privacy policies and security measures.
- We always apply, by default, the strongest possible security measures for your content in relation to third-party AI service providers. This includes, for example, limiting the data storage time to the minimum necessary and ensuring that your data is not used by the providers to train their models.
- We do not use your content to train AI models.
Legal grounds:
- Consent.
You may disable AI features at any time in the App settings. If disabled, your content will no longer be used in AI processing.
RETENTION PERIOD
We retain your personal data only for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
- App usage data: retained for up to 24 months, unless you opt-out earlier via the App settings. Aggregated and anonymized data may be retained longer.
- Error logs and diagnostic data: stored for up to 180 days to ensure technical stability and troubleshoot problems.
- Contact data: retained for up to 12 months after the last interaction or until your request is resolved, whichever is later.
- Marketing-related data: stored until you unsubscribe or object, after which it will be deleted within 30 days.
- Data from social media: retained as long as the related post, account, or interaction remains publicly available or until you delete it or request removal.
If you object to processing based on our legitimate interest, we will retain only the data necessary to fulfill contractual or legal obligations.
Once the applicable retention periods expire, personal data will be securely deleted or anonymized.
PARTNERS
We work with third-party service providers to provide website and application development, hosting, maintenance and backup. These Partners, when process your data, are data processors.
We share users’ data with analytical services that support us with data analyses.
Personal data related to subscriptions and payments are – as it was explained above – solely processed by relevant App Stores providers and do not lie within Stoic competence.
The updated list of the third-party service providers is available in the App and on our website.
When using Stoic App, you may agree that we will share some health-related information with third party devices and services, such as Apple HealthKit and Google Fit. We do not share your information without your permission.
For AI Features, we collaborate with reputable AI service providers. You are informed in the App about the specific AI service providers involved.
CHILDREN
Stoic App is not directed to individuals under the age of sixteen (16) and we do not knowingly collect personal data from children under age of 16. However, if law requires that you must be older in order for Stoic to lawfully process your personal data without parental’s consent then you must acquire this minimum age.
USER’S RIGHTS
General user’s rights
You can access, correct or change your personal information. You can change most of your information yourself in the Stoic App. For other cases please contact us.
If we rely on your consent in order to process certain personal data, you have right not to provide your consent or to withdraw your consent at any time. This does not affect the lawfulness of the processing based on consent before its withdrawal.
Stoic App provide you with ability to obtain your data and easily transfer them to other service provider.
You can anytime decide to delate your data – it will be done automatically when you remove Stoic App from your device.
If you do not wish to receive information from Stoic, you can any time object by clicking the link which you will find in an email received from us.
Additional user’s rights under GDPR
If GDPR applies to you can exercise additional rights such as:
- Right to object. In certain circumstances, you may have the right to object processing your personal data by Stoic (for example when legal basis for processing is Stoic’s legitimate interest and there are no legal grounds to refuse the request).
- Right of erasure. In certain circumstances, you may have the right to the erasure of personal data that we hold about you (for example if it is no longer necessary for the purposes for which it was originally collected).
- Right to restrict processing. When you contest the accuracy of your information, believe we process it unlawfully or want to object against the processing, you have the right to temporarily stop the processing of your information.
- If you believe that we violate your data rights, you have the right to file a complaint with relevant data protection authority. We would, however, appreciate the chance to deal with your concerns before you make a complaint so please contact us in the first instance.
Additional user’s rights under CCPA
If CCPA applies to you:
We hereby declare that we do not sale your personal information to a third party in exchange for monetary or other benefits or value; additionally to general user’s rights listed above you have:
• Right of deletion of your personal information that we hold. This is subject to certain exceptions.
• Right to know. You have right to require that we disclose the following information about you we hold:
- categories of personal information collected
- categories of sources of personal information
- categories of personal information we have disclosed or shared with a third party for a business purpose
- categories of third parties with whom we have shared your personal information
- the business purposes for collecting personal information
- a copy of the specific pieces of personal information we have collected about you.
• Right to non-discrimination: the right not to be subject to discriminatory treatment for exercising their rights under the CCPA.
Our European Union representative is:
Maciej Łobodziński
If you have questions or requests regarding your privacy please contact us at s@getstoic.com
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date.