Privacy Policy
Last updated: July 18, 2026
1. Data Controller
Lamplit ("we", "us", "our") is the data controller responsible for your personal data collected through the Lamplit web and mobile applications. For privacy enquiries, contact us at privacy@lamplit.ai.
2. Personal Data We Collect
We collect and process the following categories of personal data:
- Account data: email address, display name, profile picture (optional), authentication tokens
- Sign-in provider data: when you sign in with Google or Apple, we receive your email address, display name, profile picture URL, and a provider-issued user ID. We do not request access to any other Google or Apple data (no Gmail, Drive, Calendar, Photos, iCloud, etc.)
- Journal data: daily reflections, mood selections, secondary feelings, life impact areas, and long-term vision statements
- Health data: workout logs (exercise type, duration, intensity), sleep tracking (hours, quality, bed/wake times), nutrition logs (meal type, description, calories, macro- and micronutrients), fasting records, supplement intake, meditation sessions, lab test results (biomarker values, units, and reference ranges), recipes, and shopping list items
- Menstrual-cycle data (special category): period and flow logging, cycle symptoms, personal notes, cycle settings (including hormonal-contraception and perimenopause-mode settings), and hormone-therapy intake — processed only with your explicit consent. Cycle predictions are computed on your device, and cycle entries can never be shared with other users
- Health profile: age range, optional date of birth, biological sex, height, weight, BMI, dietary approach, stress level, activity level, sleep patterns, energy patterns, health goals, and domain health scores
- Body metrics from wearables: if you connect Apple HealthKit or Health Connect, biomarkers such as heart-rate variability (HRV), VO₂ max, weight, BMI, body fat, and lean mass, alongside imported workouts, sleep, nutrition, and mindfulness sessions
- Location data: if you use the Skin & UV feature, your device's GPS position and the places you save for UV forecasts. Coordinates are sent to the weather service Open-Meteo (forecasts, place search) and OpenStreetMap Nominatim (reverse geocoding) to resolve forecasts and place names; they are not used for advertising
- Photos you submit for AI analysis: food photos, supplement labels, and lab-report photos (used to prefill entries), and an optional skin photo for skin-type estimation — the skin photo is analyzed in real time and never stored
- Community data: group memberships, chat messages, friend connections, online status
- Media: voice recordings (for transcription), images shared in chat
- Device data: push notification tokens, platform type, notification preferences
- Usage data: error logs and performance metrics collected for service reliability (see Section 8)
3. Legal Basis for Processing (GDPR)
We process your personal data under the following legal bases:
- Contract performance (Art. 6(1)(b)): processing necessary to provide the Lamplit service, including storing journal entries, health data, and syncing across devices
- Legitimate interest (Art. 6(1)(f)): error monitoring and performance analytics to maintain service reliability
- Explicit consent (Art. 6(1)(a) / Art. 9(2)(a)): processing health data (special category under Art. 9), including menstrual-cycle data, AI-powered analysis of your data, and push notifications. You may withdraw consent at any time
4. How We Use Your Data
- Provide and maintain the Lamplit service across web and mobile platforms
- Sync your data securely between devices when you are authenticated
- Generate AI-powered insights and advice when you explicitly request them
- Send push notifications based on your configured preferences
- Calculate streaks, badges, and analytics from your journal and health entries
- Monitor application errors and performance to improve reliability
5. AI-Powered Features and Third-Party Data Sharing
When you use AI-powered features (journal advice, analytics insights, health insights), your data is processed by our European AI provider, grounded with retrieval-augmented generation (RAG) on reliable medical literature and 1000+ peer-reviewed studies:
- Our AI provider — a European AI provider, processing exclusively within the EU. Processes journal entries, mood data, health metrics, and health profile data to generate personalized insights, and processes voice recordings for speech-to-text transcription
Your data is never used to train AI models, sold to third parties, or shared with advertisers. All AI processing occurs within the EU. AI features require explicit opt-in consent before first use. AI processing of menstrual-cycle data has its own dedicated consent switch, which is OFF by default — cycle data is only included in AI features if you explicitly enable it, and only as aggregates, never your notes or per-day entries. You can revoke AI consent at any time through the Settings page without affecting your use of other app features. Data sent to AI processors is not stored by them beyond the duration of the request.
6. Third-Party Processors
We use the following sub-processors to operate the service:
- Cloud infrastructure provider (EU-based) — database hosting, authentication, file storage, and serverless functions
- Web hosting provider — web application hosting and CDN
- Error tracking provider — error tracking and performance monitoring (see Section 8)
- AI provider — AI-powered advice, analytics, and voice transcription (opt-in only)
- Google — sign-in / identity provider (only when you choose “Continue with Google”)
- Apple — sign-in / identity provider (only when you choose “Continue with Apple”)
- Apple Push Notification Service (APNs) — iOS push notification delivery (separate from Apple sign-in)
- Web Push — browser push notifications
7. Third-Party Sign-In and Limited Use
Lamplit offers optional sign-in with Google and Apple. We request only basic profile scopes (openid, email, profile for Google; name, email for Apple). Lamplit's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We use Google and Apple user data solely to authenticate you, populate your Lamplit profile, and keep you signed in. We do not sell, rent, share for advertising, use for retargeting, transfer for credit-worthiness assessment, or transfer Google or Apple user data to any third party except as necessary to provide the service (for example, our authentication infrastructure provider).
8. Error Tracking and Session Replay
We use a third-party error tracking service for error monitoring and performance analytics. The service collects error reports, stack traces, and limited session replay data when errors occur. Text content is masked and media is blocked in session replays. We apply PII scrubbing to prevent personal data from being sent. Error tracking data is retained for 90 days. No journal content, mood data, or health metrics are intentionally sent to this service.
9. Data Storage and Security
Your data is stored as follows:
- Authenticated users: data is stored in our managed cloud database with row-level access controls ensuring only you can access your data. All data is encrypted in transit (TLS) and at rest (AES-256)
- Unauthenticated users: data is stored locally on your device using the platform's standard local storage. Local data is not encrypted at the application layer — we recommend creating an account for cloud-based encrypted storage
- Media files: profile pictures and chat media are stored in our managed object storage with access controls
- Data ownership: your data is never sold to third parties or used to train AI models. You retain full ownership and can export or permanently delete your data at any time through Settings
10. Data Retention
We retain your personal data for as long as your account is active. Notification logs are retained for 90 days. AI-generated insights are retained for 1 year. When you delete your account, all associated data is permanently deleted via cascading deletion across all tables. You may also request data deletion without deleting your account by contacting privacy@lamplit.ai.
11. Your Rights
Under GDPR, CCPA/CPRA, and applicable data protection laws, you have the following rights:
- Right of access: request a copy of all personal data we hold about you
- Right to rectification: correct inaccurate data through the app or by contacting us
- Right to erasure: delete your account and all associated data through Settings > Delete Account
- Right to data portability: export your data in JSON format through Settings > Export My Data
- Right to restrict processing: request limitation of data processing by contacting us
- Right to object: object to processing based on legitimate interest
- Right to withdraw consent: withdraw consent for AI features or notifications at any time through Settings
- Right to non-discrimination (CCPA): you will not receive different service quality based on exercising your rights
To exercise any of these rights, use the in-app Settings page or email privacy@lamplit.ai. We will respond within 30 days.
12. Cookies and Local Storage
Lamplit does not use tracking cookies. We use the browser's local storage to store authentication session tokens and offline journal data. On mobile, we use the platform's standard local storage for the same purposes. No third-party advertising or analytics cookies are used.
13. International Data Transfers
Your data is stored and processed in the European Union. All sub-processors are configured to use EU-based infrastructure. Our AI provider is a European company headquartered in France — all AI inference runs on EU infrastructure. No personal data is routinely transferred outside the EU.
14. Children's Privacy
Lamplit is not directed at children under 16. We do not knowingly collect personal data from children under 16. If you believe a child has provided us with personal data, please contact privacy@lamplit.ai.
15. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes through in-app notifications or email. Continued use of the service after changes constitutes acceptance of the updated policy.
16. Contact and Complaints
For privacy questions or to exercise your data rights, contact us at privacy@lamplit.ai. If you believe your data protection rights have been violated, you have the right to lodge a complaint with your local data protection supervisory authority.