Privacy policy
What Arcalis collects and why.
Last updated: July 30, 2026. This policy explains how Arcalis handles information in the app and on the public website.
Summary
Arcalis collects account information, letters and observations you choose to submit, product usage data, device information, and subscription information. We use it to prepare private replies, restore your account and purchases, deliver requested notifications, keep the service secure, and answer support requests. Arcalis does not sell personal information or use it for cross-app advertising.
Information we collect
Information you provide
- Email address, sign-in method, and account profile information shared through Apple, Google, or email sign-in.
- Letters, optional follow-up answers, assigned Object, selected detail and personal association when the Object is used, generated replies, framing responses or restatements, optional continuation updates, confirmed learning, and Memory entries you choose to create or save.
- Historical Object selections without an association, Next Step, Return, observation, Object name, or Object state records that were created under an earlier version of the app.
- Messages you send to support.
Information collected automatically
- Account identifier, app version, device family, locale, and basic product interaction events. Night Shop analytics use stage, category, boolean, and length-bucket properties rather than private letter, association, reply, or Memory text.
- Notification token and preferences when you enable notifications.
- IP address and operational request information when you use the service.
- Error and performance information supplied by platform and infrastructure providers.
Information from third parties
- Account information you choose to share through Sign in with Apple or Google Sign-In.
- Subscription status and transaction metadata from Apple and RevenueCat.
- Email delivery status from Resend when we send account emails.
How we use information
- Prepare a structured reply from your letter, optional answer, assigned Object story, selected detail and personal association when used, and enabled Memory context.
- Save correspondences, replies, optional continuation updates, and user-confirmed Memory across devices.
- Send a notification when a requested reply or continuation is ready.
- Keep historical Next Step and Return records readable without requiring them for a new correspondence.
- Authenticate your account and restore subscription access.
- Measure product interaction, debug failures, secure the service, and prevent abuse.
- Respond to support, privacy, and account requests.
AI processing
Arcalis asks for explicit permission before the first Night Shop AI request and again after that permission is reset. When allowed and you request a reply or continuation, the letter, optional follow-up answer, assigned Object story, selected detail and personal association when the Object is used, original reply context, update, and enabled Memory context needed for that request may be sent to Arcalis servers and contracted AI service providers. Polling an already authorized background Job does not request permission again. The service requests contextual reflection and decision support. Generated output can be incomplete or incorrect and should not replace qualified professional help. Arcalis does not send your content to advertising networks.
How we share information
We use service providers that help operate Arcalis, including Apple, Google, RevenueCat, Resend, hosting and infrastructure providers, product analytics providers, notification delivery providers, and contracted AI providers. They process information for the services described here. We may also disclose information when required by law or necessary to protect users and the service.
Data retention
- Account information is retained while your account is active.
- Saved correspondences, replies, optional continuations, historical Return records, and Memory remain until you delete the correspondence or your account.
- Account deletion removes active server records, device tokens, linked correspondence data, and device cache. Encrypted backup copies expire on the backup retention cycle unless law requires limited retention.
- Billing providers may retain transaction records under their legal and fraud-prevention obligations.
- Operational and security logs are retained for a limited troubleshooting and abuse-prevention period.
Your choices and rights
- Reset future AI-processing permission, or turn Memory, reply notifications, Return reminders for historical records, or haptics off in Settings.
- Save only the distinction, Heart passage, question, or learning you actively want in Memory; Arcalis does not silently add new Memory.
- Delete an individual correspondence and its dependent records.
- Delete your account inside the app. Account deletion does not cancel an App Store subscription.
- Manage subscription renewal or cancellation through Apple.
- Request applicable access, correction, or deletion help at [email protected]. The current Settings screen does not offer a self-service export button.
Security
Arcalis uses authenticated requests, owner-scoped records, protected local storage, and reasonable administrative and technical safeguards. No storage or transmission system is perfectly secure.
Safety and professional advice
Arcalis provides reflection and decision support. It does not diagnose users or provide medical, legal, financial, psychological, or other professional advice. Do not use it for emergencies, crisis response, or safety-critical decisions.
Children
Arcalis is not intended for children under 13.
Changes and contact
We may update this policy and will post material changes here with a new effective date. For privacy questions or requests, email [email protected].