Privacy Policy
Last updated: March 1, 2026
Your Data Belongs to You
At Shado, your privacy is fundamental to everything we build. Your journal entries, psychological profile, session transcripts, and personal data are yours. We will never sell, share, or use your data for advertising purposes.
What We Collect
We collect only what is necessary to provide and improve the service:
Account information — your name, email address, and authentication credentials to manage your account.
Journal entries — the text you write in your journal, stored encrypted in our database.
Intake responses — your answers to the deep intake questionnaire, used solely to generate your Shadow Profile.
Session transcripts — your guided session conversations, used to provide continuity and personalization.
Usage data — anonymous analytics to understand how the product is used and improve it.
How We Use Your Data
Your psychological data is processed by AI models to generate reflections, your Shadow Profile, and guided session responses. This processing happens in real-time and is not stored beyond what is necessary to provide the service.
Your journal entries and session content are processed by our AI providers to generate reflections, your Shadow Profile, and session responses. Semantic embeddings of your content are stored to enable personalized memory and context across interactions.
We do not use your personal data to train AI models. Your entries and profile are used exclusively within your own account to personalize your experience.
Data Security
All data is transmitted over HTTPS and stored in encrypted databases. We use Supabase for our infrastructure, which provides enterprise-grade security including row-level security policies, encrypted backups, and SOC 2 compliance.
Your Rights
You have the right to:
Export your data — download all your journal entries, profile, and session history at any time from Settings.
Delete your account — permanently delete all your data from our servers. This action is irreversible and can be done from Settings.
Access your data — view all information we have about you within the app.
Third-Party Services
We use the following third-party services to operate Shado:
Supabase — database hosting and authentication. OpenAI and Anthropic — AI model providers for reflections, profiles, and sessions. Stripe — payment processing (we never see or store your credit card details). Vercel — application hosting.
Cookies
We use essential cookies only for authentication and session management. We do not use advertising or tracking cookies.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through the app. Continued use of the Service after changes constitutes acceptance of the updated policy.
Contact
If you have questions about this Privacy Policy or your data, contact us at agent@shado.co.