← Back

Privacy Policy

Last updated July 23, 2026

Bloom is a personal ritual and journaling app. This page explains what we collect, why, where it goes, and what control you have over it — in plain language, not legal boilerplate.

What we collect

  • Account info— your email address, and either a password (stored as a one-way hash we can't reverse) or your Google account identifier if you sign in with Google.
  • Your entries — the desires, gratitudes, and things-you-love you write during the daily ritual, plus any AI-generated affirmations woven from them.
  • Timezone— your device's timezone (e.g. “Asia/Singapore”), so your ritual day lines up with your actual midnight. We don't collect precise location, GPS, or device identifiers.
  • Usage state — your streak, level, and progress, derived entirely from your own entries.
  • Time Capsules— if you use this feature, a frozen copy of that day's entries, sealed until the date you chose.

We do not use analytics trackers, ad identifiers, or third-party tracking scripts.

Your entries and AI

When you complete a ritual day, request the monthly Reveal, or view your Constellation, some of your entry text is sent to a third-party AI provider (currently Anthropic's Claude, accessed via OpenRouter) to generate your personal affirmation, name recurring themes, or suggest a next step. This happens automatically as part of using those features — there's no separate toggle for it today. That provider processes the text to generate a response and does not use it to train models on our plan. If this AI processing ever fails or is unavailable, the app falls back to something built directly from your own words instead.

The Vibe Wall

The Vibe Wall is optional and off by default. If you turn it on in Settings, your desire and gratitude entries (never “like” entries, which never appear on the wall) start joining an anonymous public feed from that point forward — anonymous by construction: the wall only ever displays the entry text and its category, nothing else. There is no name, timestamp, or account identifier attached, and no technical path from a wall entry back to your account. Entries you'd already written before turning it on are never backfilled onto the wall.

Turning the toggle off removes everything you've shared from the wall immediately.

How your data is stored and protected

  • Data is stored in a managed Postgres database (Neon), encrypted in transit and at rest by the infrastructure provider.
  • Passwords are hashed (bcrypt) and never stored or logged in plain text.
  • Access to the app requires signing in; every page and action is scoped to your own account.
  • Entry content itself is not end-to-end encrypted. This means Bloom's administrators technically have the ability to access account data directly (for example, to debug an issue you report, investigate abuse, or comply with a legal request). We do not otherwise read, browse, or use your entries, and we do not sell or share your data with third parties beyond the AI processing described above.

Your controls

  • Vibe Wall — on/off any time in Settings, as described above.
  • Access, export, or deletion— Bloom doesn't yet have self-service account deletion or data export built into the app. To request either, contact us at sncheong@live.com and we'll handle it directly.
  • Google sign-in— you can revoke Bloom's access at any time from your Google account's security settings.

Changes to this policy

If what we collect or how we handle it changes in a way that matters, we'll update this page and note the date above.

Contact

Questions about this policy or your data: sncheong@live.com.