How does Vitros protect my personal data and journal entries?
Your privacy is our top priority. Here's how we protect your data:
Encryption
All data is encrypted in transit using TLS 1.3
Data at rest is encrypted using industry-standard AES-256 encryption
Your journal entries are stored securely on AWS infrastructure
Data access
Your journal entries are private by default
Only you can access your personal journal data
Our team cannot read your entries unless you explicitly share them with support
We never sell your data to third parties
AI processing
When you use AI features (transcription, parsing, insights), your data is processed securely
We use trusted providers (OpenAI, Anthropic) with strict data processing agreements
AI providers cannot train on your personal data
Processing is done on-demand and not stored by AI providers
Authentication
We use OAuth 2.0 with Google and Apple for secure authentication
Sessions expire after 180 days of inactivity
You can revoke access anytime from your Google or Apple account settings
Compliance
We comply with GDPR (European Union)
We comply with CCPA (California)
We comply with data protection laws in all regions we operate
Data retention
Free accounts: 1 year of history
Plus accounts: 3 years of history
Pro accounts: Unlimited history
You can export or delete your data anytime.