Privacy Policy
Last updated: July 29, 2026
This policy explains how Still collects, uses, shares, stores, and deletes personal data when you use the app or website. Sleep diaries, safety answers, and guide conversations can be sensitive. We use them to provide the features you request, not to sell advertising. We do not sell personal data and there is no ad network in Still.
1. Data you provide
Account information
When you create or access an account, we process an account identifier, email address, account creation time, authentication-provider information, and an optional name. Passwords and sign-in tokens are handled by Supabase Auth and any sign-in provider you choose, such as Apple or Google. They are not stored in Still’s sleep-data tables.
Safety and onboarding answers
The safety screener asks about factors that can make a self-guided sleep window inappropriate, including age, pregnancy, shift work, safety-sensitive work, medication use, fall risk, and certain sleep, neurological, breathing, and mental-health concerns. We store your answers, the resulting safety flags, and whether the app can provide a sleep window. We also store onboarding progress, timezone, planned start date, and reminder preferences.
Sleep and program data
Depending on the features you use, we process:
- Morning diary entries, including time in and out of bed, estimated time to fall asleep, time awake during the night, wake timing, naps, rested bands, and optional caffeine, alcohol, exercise, or medication tags.
- Severity-check answers and derived bands. This check supports the program and is not a diagnosis or validated clinical assessment.
- Sleep windows, weekly calculations and adjustments, program phase, pauses, completion, and lesson progress.
- Guide messages, thought records, reframes, worry notes, tool sessions, and small-hours activity history that you choose to create.
The current version does not connect to a wearable or collect Apple Health or other device health-store data.
Purchases
Your app store processes payment. We may receive a product identifier, transaction identifier, verification information, localized product details, and entitlement status so the app can unlock or restore your purchase. We do not receive your full payment-card number. Your app store keeps its own purchase record under its policy.
Support and exports
If you contact support, we receive the email address, message, attachments, and technical details you provide. If you export your diary, the app creates a CSV file in temporary app storage and passes it to the app or person you select through your device’s share sheet.
2. Device, analytics, and diagnostic data
The app stores local preferences such as theme, sound, reminder settings, onboarding state, and purchase-entitlement information. Reminders are scheduled as local notifications on your device. Still does not use remote push notifications or collect a push token in the current version.
When product analytics is enabled, Mixpanel receives product-interaction events and an opaque account identifier after sign-in. Events can include screens viewed, lesson and tool use, diary completion timing, program week and status, rounded sleep-window or efficiency values, and purchase-screen interactions. These events do not include exact diary times, diary tags, or free-text guide and tool content. This usage data is linked to your account identifier and is not described as anonymous.
When production crash reporting is enabled, Sentry may receive errors, stack traces, app and device information, performance traces, and technical breadcrumbs needed to diagnose a problem. The static website does not use advertising trackers. Its hosting provider may process standard request information such as IP address, browser details, requested URL, and time of access for delivery and security.
3. How we use data
We use personal data to:
- Create and secure your account.
- Sync your data across supported devices.
- Calculate, display, and adjust your sleep window.
- Show your history, lessons, tools, reminders, and program progress.
- Generate guide responses when you ask for them.
- Process and restore purchases.
- Provide support, investigate problems, and improve reliability.
- Protect the service, prevent misuse, and comply with legal obligations.
We do not use your diary or messages for targeted advertising. We do not use automated decisions to determine eligibility for insurance, employment, credit, or another service outside Still.
4. Where data is stored
Still stores product data in a local SQLite database on your device and syncs account, screener, diary, program, lesson, guide, and tool data to Supabase Postgres. Supabase also provides account authentication and server functions. Access controls restrict synced rows to the signed-in account.
Some preferences, sync metadata, and purchase-entitlement records remain only on the device. Signing out clears local Still data but does not delete the account or synced server data. Uninstalling the app removes local app data but does not delete server data or an app-store purchase record.
5. AI guide processing
When you send a message to the guide, Still sends the current message, up to ten recent guide messages, and limited program context through an authenticated Supabase server function. The context can include summaries derived from recent diary entries, program phase, current sleep window, recent weekly adjustments, severity bands, and current lesson titles. The guide does not send your entire database with every request.
The server sends this information to OpenRouter for processing by a DeepSeek model, with OpenAI as a fallback provider. Certain messages involving crisis, medication, or diagnosis receive a fixed safety response instead of being sent to the language model. Still stores the guide conversation in your local and synced account data.
We do not train our own model on your guide messages. AI providers may process and retain request data under the settings, contracts, and policies that apply to their services. Do not include information in the guide that you do not want processed by these providers.
6. When we share data
We disclose data only as needed for the purposes above, including to:
- Supabase for authentication, database sync, and server functions.
- OpenRouter, DeepSeek, and OpenAI for guide responses when you use the guide.
- Mixpanel for product analytics when analytics is enabled.
- Sentry for crash and performance diagnostics when reporting is enabled.
- Apple and Google for sign-in or app-store services you choose.
- Vercel for hosting and delivering the website.
- A recipient or app you choose when sharing an exported diary file.
We may also disclose information when required by law, to protect users or the service, or as part of a merger, financing, acquisition, or sale of assets. We may use aggregated or de-identified information that does not reasonably identify you.
7. Retention and deletion
We generally retain account and product data while your account is active. Guide messages and program records do not automatically expire. Service logs, analytics, crash reports, backups, support emails, store records, and data processed by AI providers may follow separate retention periods controlled by the relevant provider or operational need.
You can permanently delete your account through Settings → Account → Delete account. This deletes the account and synced product tables from active Supabase systems, stops sync, and clears local app data and preferences. It does not erase your app-store purchase history, information already shared through an export, or records that another provider must retain under its own legal or operational requirements. Backups and logs may take additional time to expire.
If you cannot access the app, contact us from the email address associated with the account. We may need to verify your identity before acting on a request.
8. Your controls and rights
You can:
- View and update supported diary and reminder information in the app.
- Export your sleep diary as a CSV through Settings → “Your data, exported.”
- Turn reminder categories off or change notification permission in device settings.
- Avoid AI processing by not using the guide.
- Delete your account and synced product data in Settings.
Depending on where you live, law may also give you rights to access, correct, delete, restrict, object to, or receive a copy of certain personal data. Contact us to make such a request. Some rights have exceptions, and we may ask for information needed to verify the request.
9. Security
We use safeguards including authenticated access, per-account database access controls, server-held service credentials, and encrypted network connections to provider endpoints. No method of storage or transmission is completely secure, and we cannot guarantee absolute security. Keep your account credentials private and contact us if you suspect unauthorized access.
10. Children
The sleep-window program is intended for adults. The safety screener prevents the app from providing a sleep window when a user reports being under 18. Still is not designed for a child to use without involvement from a parent, guardian, or qualified clinician. Contact us if you believe a child’s data was provided inappropriately.
11. International processing
Our providers may process data in the United States and other countries where they operate. Those countries may have different data-protection rules from where you live. The app’s built-in crisis resources are currently specific to the United States.
12. Changes to this policy
We may update this policy as the service, vendors, or legal requirements change. If a change is material, we will provide notice through the app, by email, or another reasonable method when required. The date above shows the latest revision.
13. Contact
Questions or privacy requests can be sent to hello@still.dev.