moonpool ← Back to home

Privacy Policy

Effective date: July 18, 2026  ·  Provided by: Brad Hill  ·  Contact: brad.hill@noctis.net

Moonpool ("the app," "we," "us") is a personal wellness journaling app for mood check-ins, journaling, gratitude notes, breathing exercises, movement logging, custom habit tracking, and optional AI-assisted reflections. This policy explains what we collect, why, where it goes, and the choices you have.

The essentials:

We use two third-party SDKs — TelemetryDeck (anonymous product analytics) and Sentry (crash and error diagnostics) — described below. Neither receives your name, email, wellness content, or a stable identifier that could be used to track you. We do not use advertising SDKs, we do not track you across other apps or websites, and we do not use the Advertising Identifier (IDFA) or App Tracking Transparency tracking.

What we collect and why

Your wellness content. Mood check-ins (including any emotion words you tag), journal entries, gratitude notes, breathing sessions, movement entries, and any custom habits you create. Your entries are saved on your device, and if you sign in they sync to your private account on our backend so your devices stay in step. If you don't sign in, nothing is synced; entries are sent off your device only for AI requests you make or exports you create.

Account information (only if you sign in). Signing in is optional. If you sign in with Sign in with Apple or an emailed one-time code, we receive your email address and an account identifier so we can create your account and sync your data across your devices. Sign in with Apple lets you choose to hide your email, in which case we receive Apple's private relay address.

A device-scoped identifier. To run optional AI features and verify premium status without an account, the app generates a random per-install identifier and uses Apple's App Attest to confirm requests come from a genuine, unmodified copy of the app (anti-fraud). This is not used to track you and is not the IDFA.

Subscription status. Premium subscriptions are processed by Apple and managed through RevenueCat. We receive whether you have an active subscription (keyed to the identifiers above, never your email); we do not receive or store your payment card details.

Anonymous usage and diagnostics. To understand which features are used and to find and fix crashes, the app sends anonymous product-analytics events (via TelemetryDeck) and crash/error diagnostics (via Sentry). These carry no wellness content, no email, no name, and no advertising or cross-app identifier — only bounded event names, counts, and technical crash information. Analytics run only in released builds.

We collect this data to provide the app's features (saving and showing your entries, syncing them to your account, generating AI responses you request, and unlocking premium). We do not sell your data, and we do not use your health, fitness, or wellness data for advertising, marketing, or data mining.

Where your data is stored and who processes it

Each of these processors is required to protect your data consistent with this policy. We do not store personal health information in iCloud.

Reminders are local notifications scheduled entirely on your device — we run no push-notification servers. The Apple Watch app talks only to your iPhone over Apple's device-to-device connection; it makes no network connections of its own.

AI features and your consent

AI features are optional. Before the first time you use one, the app shows a disclosure and asks you to continue; nothing is sent for AI processing until you agree, and content is sent only for the requests you make. You can stop using AI features at any time.

Not medical care

Moonpool is a companion for reflection — not therapy, medical care, or a substitute for professional help. The app and its AI companion do not diagnose, treat, or give medical advice. If you are in crisis or thinking about harming yourself, please reach out to a person: someone you trust, or a free, confidential helpline near you via findahelpline.com (also linked in the app under Settings → About → Crisis resources).

Your choices and rights

Depending on where you live, you may have additional rights (access, correction, deletion, portability). Contact us at the address above to exercise them.

Data retention

Data stored on your device is kept until you delete it or remove the app. Synced data is kept in your account until you delete the relevant entries or delete your account, at which point it is removed from our backend. Content sent for AI processing is not retained by our backend after your response is generated. Subscription-status records are kept while needed to operate the service.

Security

Data in transit is protected with TLS. Synced data is isolated per account with row-level access rules and encrypted at rest by our infrastructure provider, requests are verified with App Attest, and sessions use standard token-based authentication with credentials kept in your device's Keychain.

Children

The app is not directed to children under 13, and we do not knowingly collect personal information from them.

Changes to this policy

We may update this policy as the app changes. Material changes will be reflected here with a new effective date.

Contact

Questions or requests: brad.hill@noctis.net.