Last updated: April 2026 · Your data is yours. Here's exactly what we do with it.
| Data | Why | Stored where |
|---|---|---|
| Email & password | Account authentication | Supabase (encrypted) |
| Birth date, time, location | Generate your HD chart & astrology | Supabase (your profile) |
| Full birth name | Numerology calculation | Supabase (your profile) |
| Enneagram & Big Five answers | Your personality blueprint | Supabase (your blueprint) |
| Conversations with Obi | Personalization, pattern detection | Supabase (your conversations) |
| Journal entries, goals, habits | Your personal operating system | Supabase (your data) |
| Mood, energy, sleep scores | Tracking & Obi's context | Supabase (your check-ins) |
| Payment information | Process subscriptions | Stripe (we never see card numbers) |
When you talk to Obi, your message is sent to Anthropic's Claude API along with your blueprint and recent conversation history. This is what makes Obi personalized. Anthropic does not retain your data for training purposes — it's processed and forgotten by their systems.
We store your conversation history in our database so Obi can reference past discussions, detect patterns, and build context over time. This is the core of what makes Mindscaped valuable.
We use a small number of services to run Mindscaped:
Each of these services has their own privacy policy. We've chosen them specifically for their security practices and data handling standards.
Mindscaped uses minimal cookies — only what's needed for authentication (keeping you logged in). We don't use analytics trackers, advertising pixels, or third-party cookies. We don't track your behavior across other websites.
Regardless of where you live, you have the right to:
We keep your data for as long as your account is active. If you delete your account, we permanently erase all your data within 30 days. There are no backup copies kept after deletion.
If your account is inactive for 12 months, we'll email you before taking any action. We won't delete your data without warning.
Your data is encrypted in transit (TLS/SSL) and at rest. Passwords are hashed using bcrypt. We use row-level security in our database, meaning users can only access their own data. Our infrastructure is hosted on enterprise-grade platforms (Supabase, Netlify, AWS).
Mindscaped is designed for users 16 and older. We don't knowingly collect data from anyone under 16. If you believe a child has created an account, contact us and we'll delete it immediately.
We'll notify you through the app if we make material changes to this policy. We'll never quietly change how we handle your data.
Questions about your data or this policy? Reach out: privacy@mindscaped.app