What Daylogue can and cannot read
No vague tiers. No marketing language. Here is a concrete, specific list of what stays encrypted and what we can see on our servers.
The full picture, item by item
Every piece of data you put into Daylogue falls into one of two buckets. No exceptions.
What we CANNOT read
Encrypted on your device. Your keys only.
Your journal entries
The actual words you wrote in your vault
Your check-in notes
What you typed or dictated during a check-in
Your chat messages with the AI companion
The full conversation, question by question
Your voice conversation transcripts
Everything you said out loud in a voice check-in
Your photos
When photo encryption is enabled in your settings
Your goal descriptions and habit notes
The personal details behind your focus areas
Your focus area observations
The reflections and notes you write about what you are noticing
This means: Even if someone broke into our servers, they would get unreadable ciphertext. Not your words. Not your thoughts.
What we CAN see
Stored server-side. Powers your features.
Your mood score
A number (1-10) or the emoji you selected
Your energy and stress levels
Numeric scores from 1-10
Your sleep hours
How many hours you reported sleeping
Your tags and themes
Labels like "work", "family", "stress", "gratitude"
AI-generated summaries
A condensed version of your entry, not your raw words
Your daily narrative
The story the AI writes about your day
Pattern insights
"Stress has been rising this week" or "Sleep improved over the last month"
Your chromascape color and soundtrack choices
The palette and song tied to each day
Weather data
The conditions at your location when you checked in
Check-in dates and times
When each check-in happened
Your account email and subscription status
So you can log in and we can manage billing
Why does Daylogue need to see that second column?
Your daily narrative is written by AI that needs to know your mood, tags, and summary to tell a coherent story about your week. If those were encrypted, we could not generate it.
Pattern detection needs to compare your stress levels across weeks to notice "stress has been elevated lately." Encrypted numbers cannot be compared.
Your chromascape maps mood and energy to color palettes. That mapping happens on our servers.
In short: everything in the right column exists because a specific feature you use depends on it. We do not collect data we do not use. We never sell it. We never share it with advertisers or third parties. We never use it to train AI models.
What each layer actually sees
Say you write this in a check-in:
Your encrypted entry
What Daylogue stores on our servers
This is all we have. Unreadable without your encryption key.
AI-generated summary
What powers your narrative and insights
Condensed by AI. No specific names, no exact quotes, no private details.
Structured metrics
The numbers and tags extracted from your check-in
Numbers and categories. No context about who, what, or why.
Notice the gap between what you wrote and what we can see. That gap is the point.
What happens if our database is breached?
We build for the worst case. Here is exactly what an attacker would get:
Your journal entries, check-in notes, chat messages, voice transcripts
Unreadable ciphertext. Useless without your encryption key, which never leaves your device.
Your AI summaries, mood scores, tags, pattern insights, narratives
Readable. An attacker could see that you had a "difficult family interaction" on Tuesday with a mood of 3 and stress of 8. They would not see the actual words you wrote.
Your email address and subscription status
Readable. Same as any other service you have an account with.
The bottom line: Your raw words stay protected even in the worst-case scenario. The AI summaries and metrics are exposed, but they contain a fraction of the detail and none of the specifics from your original entries. We never sell your data to third parties. We never share it with advertisers. We never use it to train AI models. Our only revenue is subscriptions.
You still own everything
Export your data anytime. Delete everything with a single request. Your data, your call.
Export anytime
Download all your data in JSON format with one click
Delete within 30 days
Request deletion and we remove everything
No shadow copies
When deleted, your data is gone from our systems
No surprises
We tell you exactly what we can see before you sign up
Your data lives here
Encrypted on your device, synced to our servers, controlled by you.