← Back to Mindscaped

Privacy Policy

Last updated: April 2026 · Your data is yours. Here's exactly what we do with it.

The short version: We collect what we need to make the product work. We never sell your data. We never share it with advertisers. You can export or delete everything at any time. Your conversations with Obi are private.

What we collect and why

DataWhyStored where
Email & passwordAccount authenticationSupabase (encrypted)
Birth date, time, locationGenerate your HD chart & astrologySupabase (your profile)
Full birth nameNumerology calculationSupabase (your profile)
Enneagram & Big Five answersYour personality blueprintSupabase (your blueprint)
Conversations with ObiPersonalization, pattern detectionSupabase (your conversations)
Journal entries, goals, habitsYour personal operating systemSupabase (your data)
Mood, energy, sleep scoresTracking & Obi's contextSupabase (your check-ins)
Payment informationProcess subscriptionsStripe (we never see card numbers)

How your conversations are processed

When you talk to Obi, your message is sent to Anthropic's Claude API along with your blueprint and recent conversation history. This is what makes Obi personalized. Anthropic does not retain your data for training purposes — it's processed and forgotten by their systems.

We store your conversation history in our database so Obi can reference past discussions, detect patterns, and build context over time. This is the core of what makes Mindscaped valuable.

What we never do

Third-party services

We use a small number of services to run Mindscaped:

Each of these services has their own privacy policy. We've chosen them specifically for their security practices and data handling standards.

Cookies and tracking

Mindscaped uses minimal cookies — only what's needed for authentication (keeping you logged in). We don't use analytics trackers, advertising pixels, or third-party cookies. We don't track your behavior across other websites.

Your rights

Regardless of where you live, you have the right to:

Data retention

We keep your data for as long as your account is active. If you delete your account, we permanently erase all your data within 30 days. There are no backup copies kept after deletion.

If your account is inactive for 12 months, we'll email you before taking any action. We won't delete your data without warning.

Security

Your data is encrypted in transit (TLS/SSL) and at rest. Passwords are hashed using bcrypt. We use row-level security in our database, meaning users can only access their own data. Our infrastructure is hosted on enterprise-grade platforms (Supabase, Netlify, AWS).

Children

Mindscaped is designed for users 16 and older. We don't knowingly collect data from anyone under 16. If you believe a child has created an account, contact us and we'll delete it immediately.

Changes to this policy

We'll notify you through the app if we make material changes to this policy. We'll never quietly change how we handle your data.

Contact

Questions about your data or this policy? Reach out: privacy@mindscaped.app