Chronoglyph BETA
Privacy Policy
Last Updated: November 29, 2025
1. Introduction
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. Please read this policy carefully to understand our practices regarding your data.
2. Information We Collect
2.1 Personal Information You Provide
When you create an account, we collect:
- Email Address: Used for account creation, login, and important service notifications
- Username: Your chosen identifier within the Service
- Password: Securely hashed using bcrypt (we never store plaintext passwords)
- Optional Profile Information: Name, birthdate, location (if you choose to provide it)
2.2 Content You Create
All journal entries, notes, and content you create within Chronoglyph, including:
- Text entries across all banks (SANCTUM, NOETICA, DREAMS, etc.)
- Timestamps and event dates associated with entries
- Chat conversations with the AI system
- Layer access settings and passcodes
Important: This content belongs to you and is stored securely in our database.
2.3 Usage Data
We automatically collect certain information when you use the Service:
- AI message usage (for tier limit enforcement)
- Login timestamps and session activity
- Feature usage patterns (which layers/banks you interact with)
- Error logs and diagnostic information
2.4 Technical Data
- IP address (temporarily logged for security purposes)
- Browser type and version
- Device information and operating system
- Session cookies (for authentication)
3. How We Use Your Information
We use the collected information for:
- Service Provision: To provide and maintain the journaling and AI features
- Authentication: To verify your identity and manage your account
- AI Processing: To categorize your entries into appropriate banks using AI
- Tier Management: To track and enforce subscription tier limits
- Communication: To send important service updates and account notifications
- Improvement: To analyze usage patterns and improve the Service
- Security: To detect and prevent fraud, abuse, and security issues
4. Data Storage and Security
4.1 Where We Store Your Data
Your data is stored in secure databases located in the European Union (Greece). We comply with GDPR requirements for data protection.
4.2 Security Measures
We implement industry-standard security measures including:
- Encryption: All data transmission is encrypted using HTTPS/TLS
- Password Protection: Passwords are hashed using bcrypt with salt
- Access Controls: Multi-layer access system (VEIL, ABYSS, DREAMS) with passcode protection
- Session Management: Secure session cookies with HttpOnly and SameSite flags
- Regular Backups: Daily automated backups to prevent data loss
- Database Security: SQLite with file-level permissions and encryption at rest
4.3 Data Retention
We retain your personal data for as long as your account is active. Journal entries and content are preserved indefinitely unless you explicitly delete them or close your account.
5. Data Sharing and Disclosure
5.1 Third-Party Services
We use the following third-party services:
- OpenAI API: For AI-powered content categorization and chat responses. Only the necessary content is sent to OpenAI's API, and they do not retain your data for training purposes (per our agreement)
- Patreon (Optional): If you subscribe via Patreon, we verify your subscription status. We only receive your Patreon ID and pledge level
5.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court orders, subpoenas).
6. Your Privacy Rights (GDPR/CCPA)
Under GDPR (European Union) and CCPA (California), you have the following rights:
6.1 Right to Access
You can access all your personal data at any time through the Settings page and export functionality.
6.2 Right to Rectification
You can edit your profile information and journal entries at any time.
6.3 Right to Erasure ("Right to be Forgotten")
You can request deletion of your account and all associated data. Contact us at privacy@chronoglyph.com to initiate this process.
6.4 Right to Data Portability
You can export all your data in JSON format using the export functionality in Settings → Export Data.
6.5 Right to Object
You can object to certain data processing activities. Contact us at privacy@chronoglyph.com to exercise this right.
6.6 Right to Withdraw Consent
You can withdraw consent for optional data processing at any time by closing your account.
7. Cookies and Tracking
We use cookies for essential functionality only:
- Session Cookies: To maintain your login session (required for the Service to function)
- Preference Cookies: To remember your theme and UI preferences (stored locally in your browser)
8. AI and Data Processing
Chronoglyph uses AI (OpenAI's GPT models) to:
- Categorize your journal entries into appropriate banks (SANCTUM for facts, NOETICA for feelings)
- Provide contextual chat responses based on your conversation history
- Extract temporal information from your entries
AI Data Usage: When you use AI features, your entry content is sent to OpenAI's API for processing. OpenAI does not use your data for model training under our enterprise agreement. The AI cannot access entries in your protected layers (ABYSS, DREAMS) unless you explicitly interact with those layers.
9. Children's Privacy
Chronoglyph is not intended for use by children under the age of 13 (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, please contact us immediately at privacy@chronoglyph.com.
10. International Data Transfers
Your data is primarily stored in the European Union (Greece) and processed in compliance with GDPR. If you access the Service from outside the EU, please be aware that your information may be transferred to, stored, and processed in the EU where our servers are located.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Updating the "Last Updated" date at the top of this page
- Sending an email notification to your registered email address
- Displaying a prominent notice on the Service
Your continued use of the Service after any changes constitutes acceptance of the updated Privacy Policy.
12. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:
Privacy Officer Email: privacy@chronoglyph.com
General Support: support@chronoglyph.com
Website: https://chronoglyph.com
Mailing Address: Chronoglyph, Athens, Greece
GDPR Data Protection Officer: For EU-specific data protection inquiries, contact dpo@chronoglyph.com