Privacy Policy
Last updated 28 July 2026
The short version
Daylume does not collect anything. There are no accounts, no analytics, no advertising, and no servers holding your journal. Everything you write stays encrypted on your phone under a key we never see. If that is all you wanted to know, you can stop reading here.
Who this covers
This policy applies to the Daylume mobile app for Android and iOS, and to this website at daylume.io. Daylume is published by Pazres (contact details at the bottom).
What the app collects
Nothing. There is no sign-up, no email address, no device identifier, no usage analytics, and no crash reporting that leaves your phone. The app has no code for sending your journal anywhere, which is a stronger guarantee than a promise not to.
| Data type | Collected? |
|---|---|
| Name, email, or any account details | No |
| Journal entries (text) | No |
| Voice recordings | No |
| Location | No |
| Contacts, photos, calendar | No |
| Device or advertising identifiers | No |
| Analytics or usage statistics | No |
| Crash reports | No |
Where your journal lives
On your device, and only there. Entries are encrypted before they are written to storage, using a key derived from your recovery phrase and PIN. That key is held in memory only while the app is unlocked, and it is never transmitted.
Because we hold no copy and no key, there is nothing for us to read, sell, hand over in response to a legal demand, or lose in a breach. This is a property of how the app is built, not a policy we could quietly change later.
The trade-off you should understand: if you lose your 24-word recovery phrase and forget your PIN, we cannot restore your journal. No reset link exists, because no account exists. Write the phrase down and keep it somewhere safe.
Permissions the app asks for
Microphone
Used only when you choose to record a voice entry. Recordings are encrypted on your device. The app never streams or uploads audio.
Speech recognition
Used to turn a voice entry into text. Daylume requests on-device recognition, so transcription is handled by your phone rather than a server. You can confirm this by recording with the phone in airplane mode.
One honest caveat: the app asks the operating system for on-device recognition, and it depends on your phone honouring that request. If you want certainty, record in airplane mode. You can also delete the audio afterwards and keep only the text.
Biometrics
Optional, and used only to unlock the app. Your fingerprint or face data is handled entirely by the operating system. Daylume never receives it.
Voice recordings
Voice is sensitive in a way text is not, so it gets the same encryption and one extra control: any voice entry can be converted to a plain text note, which permanently deletes the recording and keeps the transcript. Deleting an entry deletes its audio with it.
Backups you create
You can export an encrypted backup file. It is encrypted with a key derived from your recovery phrase, so it is unreadable without those words, including by us. Where you store it is your decision. If you put it in a cloud drive, that provider's terms apply to the file, though its contents remain encrypted.
Payment
Daylume is a one-time purchase. Payment is handled entirely by Google Play or the Apple App Store, and we never see your card details. Those stores provide us with aggregate sales figures, which contain no information about individual buyers and are never linked to anything inside the app. There is no account tying a purchase to a journal, because there are no accounts.
This website
The site is served by Cloudflare Workers. If you enter your email to be told about the launch, we store that address for that one purpose, and we do not share, sell, or add it to a mailing list. Ask us and we will delete it. The site sets no advertising or tracking cookies and embeds no third-party scripts.
Children
Daylume is not directed at children under 13, and since the app collects nothing, no information about anyone is gathered through it.
Your rights
Laws such as the GDPR and CCPA give you rights to access, correct, export, and delete personal data a company holds about you. We hold none, so there is nothing to request. Your journal is already entirely under your control: you can export it or delete it from within the app, and uninstalling removes it from your device.
The one exception is a launch-notification email address, if you gave us one. Write to us and we will remove it.
Security
Entries are encrypted with XChaCha20-Poly1305. Keys are derived using Argon2id and a BIP39 recovery phrase. The app blocks screenshots, hides its contents in the app switcher, and is excluded from Android and iCloud backups.
The full cryptographic design is published so it can be checked rather than believed. It has not yet been independently audited, and we will say so on this page until it has been.
Changes
If this policy changes we will update the date at the top and note what changed. The app collecting nothing is a structural property rather than a setting, so any change significant enough to alter that would be announced clearly and before it took effect.
Contact
Questions about privacy, or a request to delete a launch-notification email: privacy@daylume.io