Our Privacy Commitment
Last updated: August 02, 2026
Deepen exists so you can capture the intimate, unfiltered details of your relationships without worrying about what happens to them afterward. Diary-style entries are some of the most sensitive data anyone can write down, so we hold ourselves to a clear, plain-language standard for how we treat yours.
We do not train AI models on your data
Your entries are never used to train, fine-tune, or improve any AI model — ours or anyone else's. When we send text to a language model provider to parse names, places, activities, or sentiment from an entry, or to OpenAI to generate a search embedding so you can find that entry again later, those requests are standard commercial API calls, not a data contribution. Under the commercial API terms for both providers we use, Anthropic and OpenAI do not train their models on API customer data by default, and we have not opted in to any program that would change that.
Other services that see limited data
Beyond the AI providers above, two other services touch narrow slices of your data. If you tag an entry with a location, the place name/address you enter is sent to Nominatim (OpenStreetMap's geocoding service) to resolve map coordinates — no other account data is included in that request. And if the app encounters an error, Sentry receives the error report for us to diagnose it; we don't intentionally send personally identifiable information to Sentry, but stack traces and request context can incidentally include fragments of what you were doing at the time.
Your most sensitive data is encrypted at rest
Entry text, contact names, phone numbers, email addresses, contact notes, saved place names and addresses, to-do descriptions, notes you leave on a person's connection to a place (like "regular at this bar"), and other identifying fields across most of what you write — recommendations, life events, key facts, organizations, and calendar events — are encrypted at rest using Active Record Encryption, in addition to encryption in transit (TLS). This isn't a policy promise layered on top of a plain-text database; it's how the data is actually stored. Two things stay in plain text on purpose: a place's map coordinates (latitude/longitude), because proximity search needs to run distance math directly in the database and that isn't possible on encrypted values; and the activity/notable-detail fields AI parses out of an interaction (as opposed to the interaction's own description, which is encrypted), which we haven't gotten to yet. Neither is shared, sold, or used for anything but running the app.
You own your data and can export it anytime
Nothing you write is locked in. From your account settings you can request a data export at any time, containing the data you've created in Deepen — entries, contacts (including labels like "dad" or "coworker", profession, status, and reconnection settings), interactions, relationships, locations, todos, recommendations, events, organizations, key facts, life events, contact groups, and birthdays/important dates — in a portable format. (Conversation-topic summaries and any original voice recordings aren't in the export yet; the transcribed entry text they produced is.) If you decide Deepen isn't for you, you can take that with you before you go.
Deletion today, and what's still in progress
When you delete an entry, a contact, or another record, it disappears from your account immediately and is excluded from every view, search, and export you run afterward. We keep it in a short, inaccessible recovery window (30 days) in case of an accidental deletion; a daily automated job then permanently deletes anything past that window, so nothing lingers in our database indefinitely.
Closing your account works the same way: it deactivates your account and blocks login immediately, and your entries, contacts, and other data are permanently deleted within 30 days of closure. We keep that same grace period so an accidental closure is still recoverable if you contact us in time. (Security/audit logs are the one exception — they're retained for compliance regardless of account status, and never contain your diary content.) If you want your data purged sooner than the automatic schedule, email us and we'll take care of it by hand.
The details, if you want them
This page is a plain-language summary. The full legal terms live in our Privacy Policy and Terms of Service. If anything here ever seems to contradict those documents, tell us — that's a bug in our policy, not a loophole.
Questions
Reach us at privacy@deeepen.com with any question about how your data is handled.