Legal
Privacy Policy
Effective date: March 1, 2026. Last updated: March 1, 2026.
Innermind (“we”, “us”, or “our”) is committed to protecting your personal information. This Privacy Policy explains what data we collect when you use Innermind, how we use it, who we share it with, and what rights you have over your data. We comply with the General Data Protection Regulation (GDPR) and applicable data protection laws.
By creating an account or using our services, you acknowledge that you have read and understood this policy. If you do not agree with these practices, please do not use Innermind.
1. What data we collect
Account information
When you sign up, we collect your email address. We use magic-link authentication — we do not store passwords. You may optionally provide your name and timezone in your profile settings.
Assessment responses
Innermind collects your answers to psychological assessments (e.g., Big Five personality, values inventory, attachment style, Enneagram). These responses are the core data needed to generate your psychological profile and insights. This is sensitive personal data and is treated with the highest level of care.
Profile and journal data
We store your generated psychological profiles, AI-synthesised insights, journal entries, daily reflection responses, and any notes you write within the platform. This data is private to you unless you choose to share it.
Usage analytics
We collect anonymised usage data — pages visited, features used, session duration — to understand how people use Innermind and improve the product. This is collected via PostHog (see Section 3) and does not include your assessment content.
Payment information
If you subscribe to Innermind Pro or Teams, payment is processed by Stripe. We do not store your credit card number — only a Stripe customer ID and subscription status. Please refer to Stripe's privacy policy for how payment data is handled.
2. How we use your data
- ✦Profile generation. Your assessment responses are sent to Anthropic's Claude AI to generate a personalised psychological profile, narrative synthesis, and growth recommendations.
- ✦AI coaching. If you use the AI coach feature, your messages and profile context are sent to Anthropic to generate conversational responses.
- ✦Email communications. We send transactional emails (magic links, receipts) and, if you opt in, periodic digest emails summarising your insights. Emails are delivered via Resend.
- ✦Product improvement. Anonymised analytics help us understand usage patterns and improve features. Individual assessment data is never used for this purpose.
- ✦Billing and subscriptions. We use your account data to manage your subscription, process payments, and send billing-related communications.
We do not sell your personal data. We do not use your psychological profile data for advertising. We do not share individual-level data with employers, insurers, or any third party for commercial purposes.
3. Third-party services
Innermind uses the following third-party sub-processors to deliver our service. Each is bound by data processing agreements consistent with GDPR requirements.
| Service | Purpose | Data shared |
|---|---|---|
| Anthropic (Claude AI) | Profile generation, AI coach | Assessment responses, profile data |
| Resend | Transactional & digest emails | Email address, name |
| Stripe | Payment processing | Email address, billing info |
| PostHog | Product analytics | Anonymised usage events |
4. Data retention
We retain your account and assessment data for as long as your account is active. Psychological profiles, assessment responses, journal entries, and insights are stored indefinitely so that longitudinal tracking and historical comparisons remain available to you.
If you request deletion of your account (see Section 5), we will permanently delete all your personal data within 30 days, except where we are required by law to retain records (e.g., billing records, which are retained for 7 years for tax compliance purposes).
5. Your rights
Under GDPR and applicable data protection law, you have the following rights:
Right of access
You can request a full export of all personal data we hold about you, including assessment responses, profiles, and journal entries.
Right to deletion
You can request that we permanently delete your account and all associated data. Submit a deletion request to [email protected].
Right to portability
You can request your data in a machine-readable format (JSON). This includes your profiles, assessment results, and journal entries.
Right to rectification
If any data we hold about you is inaccurate, you can update it in your account settings or contact us.
Right to object
You can opt out of email digests at any time from your account settings. You can withdraw consent for AI processing by contacting us.
Right to restrict processing
You can request that we limit how we process your data while a complaint is being resolved.
To exercise any of these rights, email us at [email protected]. We will respond within 30 days. If you believe we have violated your rights, you have the right to lodge a complaint with your local data protection authority.
6. Cookies and tracking
Innermind uses essential cookies to maintain your session and authentication state. We use PostHog for product analytics, which may set cookies on your browser. You can disable non-essential cookies in your browser settings. We do not use advertising cookies or third-party tracking pixels.
7. Data security
We take the security of your psychological data seriously. All data is transmitted over TLS (HTTPS). Our database is encrypted at rest. We use short-lived authentication tokens and do not store passwords. Access to production data is restricted to authorised personnel only. In the event of a data breach, we will notify affected users within 72 hours as required by GDPR.
8. Changes to this policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or via an in-app notice at least 14 days before the changes take effect. The “last updated” date at the top of this page reflects the most recent revision.
Contact us
For any privacy-related questions, data requests, or complaints, contact our privacy team:
Email: [email protected]
Company: Innermind, Inc.