Secure Space Logo
Secure Space

An emotional regulation practice for secure attachment. Designed for privacy.

© 2026 SECURE SPACE

Privacy Policy

Last Updated: July 29, 2026

Our Core Commitment:

Your privacy is not a feature — it is the foundation of Secure Space. This policy explains what data exists, where it lives, and who can see it. Your personal content — everything you write, reflect on, or share within the app — stays only with you.

Secure Space does not collect, transmit, or store your personal content on any server. We have no backend. We cannot see your journal entries, your emotional responses, your patterns, or your reflections. Everything you write stays on your device. The only data that ever leaves your device is a small set of anonymous usage signals — containing nothing you have typed, selected, or reflected on — used solely to understand where the onboarding experience can be improved.

1. Our Core Commitment

Secure Space does not collect, transmit, or store your personal content on any server. We have no backend. We cannot see your journal entries, your emotional responses, your patterns, or your reflections. Everything you write stays on your device. The only data that ever leaves your device is a small set of anonymous usage signals — containing nothing you have typed, selected, or reflected on — used solely to understand where the onboarding experience can be improved.

2. Data You Create

When you use Secure Space, the following data is created and stored locally on your device only using Apple's Core Data framework:

  • Journal entries (trigger descriptions, emotions, story, facts, reframes, action plans)
  • Quick trigger check-ins
  • Assessment results (attachment style, sensitivity mode)
  • Behavioral pattern logs and pattern alert history
  • Reflection and progress data (Secure Path stage history, emotion summaries, recommendations)
  • Growth signal interpretations and trend data
  • Bloom mascot state and animation preferences
  • Grounding anchor and reframe usage
  • App preferences and settings (haptic feedback, app lock, notification preferences)

None of this data is ever transmitted to Secure Space or any third party. It exists only in your device's local storage.

Deleting the app permanently deletes all of this data. You may also reset assessment and profile data at any time via Settings → Data → Reset All Data.

3. On-Device Processing

All analysis in Secure Space — including behavioral signal detection, attachment scoring, growth signals, reflection generation, Bloom mascot state resolution, and reframe recommendations — runs entirely on your device using on-device algorithms. Your journal text is never sent to external AI services, cloud servers, or used to train any machine learning model. There are no external API calls for any analysis or content generation.

4. On-Device Intelligence (Apple Intelligence)

Secure Space uses Apple's on-device FoundationModels framework (Apple Intelligence) for two features available on iOS 26+:

  • Tone analysis in Secure Send — when you tap Check tone, the model analyzes your draft message for communication patterns. The draft never leaves your device.
  • Polish in Secure Send — when you tap Polish for me, the model rewrites your draft into a regulated version. The original draft and the polished version both stay on your device.
  • Situation matching in Check-In — when you describe what's happening in free text, the model interprets your situation to surface relevant emotional patterns and guide your reflection. Your input never leaves your device.

Apple's on-device models run entirely within iOS. Your text is not sent to Apple, to Secure Space, or to any third party. There is no remote API call. Older iOS versions (below 26) use deterministic on-device logic only — no model involved.

No content from Secure Send is stored, logged, or analyzed by Secure Space.

5. Face ID and Touch ID

If you enable App Lock, Secure Space uses Apple's LocalAuthentication framework to authenticate you via Face ID, Touch ID, or your device passcode. We never access, store, or transmit your biometric data. Authentication is handled entirely by iOS and your device's secure enclave — Secure Space only receives a yes/no result.

Your Face ID and Touch ID data never leaves your device.

6. Subscriptions — RevenueCat

Secure Space uses RevenueCat to manage Pro subscriptions. When you purchase or restore a subscription, RevenueCat processes limited transaction data including:

  • App Store transaction receipts
  • Subscription status (active, expired, trial)
  • Country/region (derived from App Store, not your location)
  • An anonymous app user ID (not linked to your name or email)

RevenueCat does not receive any journal content, assessment results, or personal reflections. Their privacy policy is available at revenuecat.com/privacy.

All payment processing is handled by Apple. Secure Space never sees your payment details.

7. Product Analytics — PostHog

Secure Space uses PostHog for limited product analytics — specifically to understand where users encounter friction during onboarding, so we can improve that experience over time. PostHog processes the following signals:

  • Which onboarding steps the user has completed
  • Progress through the initial assessment (by step position only — not the user's answers or results)

PostHog assigns a random identifier generated on your device to group activity from that device together for analysis. This identifier is not linked to your name, email, Apple ID, or any other personal information.

PostHog never receives anything you type or select, your assessment answers or results, any journal content, or any personally identifying information. There is no session recording or screen capture of any kind — only the limited signals listed above. Their privacy policy is available at posthog.com/privacy.

PostHog's infrastructure may log your device's IP address at the network level as a standard part of processing inbound requests — this is an inherent property of any outbound network connection, not data Secure Space intentionally transmits.

PostHog is certified under the EU-U.S. Data Privacy Framework and the Swiss-U.S. Data Privacy Framework. Analytics data is hosted on PostHog's US Cloud infrastructure. A signed Data Processing Agreement is available on request at privacy@posthog.com.

8. Notifications

If you grant notification permission, Secure Space schedules local notifications for follow-up reminders, reflection nudges, reflection-ready alerts (after every 5th completed Reset), and trial reminder notifications. These notifications are generated and delivered entirely on-device. No notification content is sent to a server.

You can manage or disable notifications at any time via Settings → Notifications in iOS.

9. Widgets

Secure Space includes home screen widgets (daily reframe, quick actions) and lock screen widgets that display your daily reframe and streak. This data is written to a shared App Group container on your device. It does not leave your device and is not accessible to Secure Space or anyone else remotely.

10. Analytics and Crash Reporting

Secure Space uses PostHog for limited onboarding analytics to improve the onboarding experience, as described in Section 7. No other third-party analytics or behavioral tracking SDKs are used (no Firebase, no Mixpanel, no Amplitude).

Xcode's optional crash reporting (via Apple's infrastructure) may collect anonymized crash logs if you have opted into sharing app analytics with developers in your iOS settings. This data is anonymized by Apple and only shows technical crash information — no journal content is ever included. You can control this in iOS Settings → Privacy & Security → Analytics & Improvements.

11. Children's Privacy

Secure Space is not intended for users under 17. We do not knowingly collect data from children under 17. Because all data is stored locally and we have no server-side data collection, there is no mechanism by which we would receive a child's data. If you believe a child under 17 is using the app, please contact us.

12. Your Rights

Because all your data lives on your device, you are always in full control:

  • Access: All your data is readable within the app
  • Delete: Use Settings → Data → Reset All Data to delete assessment data, or delete the app to remove everything
  • Export: You can screenshot or manually export entries at any time
  • Portability: Your data is not locked in any cloud — it is yours, on your device

If you are in the EU (GDPR) or California (CCPA), the above rights apply to you by default given our architecture. Since we hold no personal data on our servers, there is nothing for us to provide, correct, or delete on our end beyond what you can already do yourself. For requests related to PostHog's processing (Section 7), you may also contact privacy@posthog.com directly.

13. Data Retention

Data lives on your device for as long as you keep the app installed. Deleting the app removes all locally stored data permanently. Secure Space retains no copies.

PostHog retains analytics events in accordance with their data retention policy, available at posthog.com/privacy.

14. Third-Party Links

The app may contain links to external websites (such as this privacy policy page). We are not responsible for the privacy practices of those sites and encourage you to review their policies independently.

15. Changes to This Policy

If we make material changes to this policy, we will update the "Last Updated" date and notify you within the app. Continued use of Secure Space after changes are posted constitutes acceptance of the revised policy.

16. Contact

For privacy questions or concerns:

hello@securespace.app

© 2026 Secure Space. All rights reserved.