Last updated: September 22, 2026

Privacy Policy

Your diary belongs to you. Journal content stays on your device. When you choose features that need Location or Health Connect, this page explains what happens — in plain language.

Introduction

Welcome to Dear Diary. This Privacy Policy explains how the Dear Diary mobile application ("App," "we," "us," or "our") handles information. Dear Diary is a private, offline-first journaling application for Android. Your journal entries, photos, audio, moods, notes, stories, and habits live in an encrypted database on your device. We do not operate servers that store or receive your journal content.

Our Privacy Promise

Dear Diary was built so your most personal thoughts never leave your phone unless you choose to export or share them. There is no Dear Diary cloud account. Unlocking the app (PIN, password, or biometrics) happens on the device. We do not show ads, sell personal data, or run analytics inside the journal that harvest what you write.

Some optional features use Location or Health Connect data on your phone. Those uses are described below. We do not claim that the App “collects nothing.”

Location

Dear Diary can collect precise and approximate location (GPS and network) on your phone when you choose features that need it.

Dear Diary collects location data to enable Story Mode Trace Path and habit place reminders even when the app is closed or not in use. Location is stored only on this phone, in your encrypted diary. It is not sent to any servers, not used for ads, and not shared with others. During an active Trace Path journey, the route can keep recording if you lock the phone. You can use Moments Only instead if you do not want to allow location access to Dear Diary.

What we use it for

  • Story Mode Trace Path. If you start a journey with Trace Path, Dear Diary records your route so the story can be drawn on a map and replayed later. While a Trace Path journey is active, location can keep updating even when the app is closed or not in use (for example if you lock the phone). Recording stops when you end the journey.
  • Habit place reminders (optional). If you turn on a location reminder for a habit, Dear Diary uses your current place so it can nudge you when you arrive. This is off unless you enable it.

What we do not do

  • Location is stored only on this phone, in your encrypted diary database.
  • It is not sent to any servers. We do not run a developer backend that receives your journal, photos, route, or habit places.
  • It is not used for advertising, not sold, and not shared with other companies.

How to use the app without Location

  • Start a story with Moments Only if you do not want to allow location access to Dear Diary (no route recording).
  • Deny or later revoke location permission in Android Settings.
  • Leave habit place reminders off, or turn them off in the habit editor.

You will see an in-app explanation before Android’s system permission dialog. Tapping away, going back, or choosing Moments Only / Not now is not treated as consent.

Health Connect (optional)

If you connect a Premium habit to Health Connect, Dear Diary may read (not write):

  • Steps
  • Sleep
  • Exercise / activity minutes
  • Related health-data history needed to show those reads

This is used only to help you check in on a habit (for example matching a walk or sleep goal). Health readings stay on this phone. They are not sent to any servers, not used for ads, and not shared. You can refuse Health Connect permission, disconnect it in Health Connect or Android settings, or leave the habit unlinked.

Journal content and storage

Local-only journal

Diary entries, photos, audio, video, moods, notes, stories, and habits live in an encrypted database on your device. The developer does not operate servers that store or receive your journal content.

  • Diary entries (text, images, videos, audio)
  • Mood check-ins and mood history
  • Quick notes and checklists
  • Story journeys and routes (when you use Trace Path)
  • Habits and related settings
  • App settings and preferences

Your content never leaves your device unless you explicitly choose to export, share, or create a backup.

Encryption and security

  • SQLCipher encrypted database: Journal content is stored in an encrypted SQLite database.
  • EncryptedSharedPreferences: Sensitive preferences are encrypted at rest.
  • Android Keystore: Encryption keys are managed with the Android Keystore where available.
  • Biometric or password unlock: Optional. Biometric data stays on your device’s secure hardware; Dear Diary does not transmit it.
  • Recovery phrase: If you forget your password, only your recovery phrase can restore access. We cannot recover your data for you.

Backups

Encrypted backups are optional and user-made. You choose a folder on the device or a location you control. We do not host those files for you. Cloud sync is not a current product.

Data deletion

  • You can delete individual entries, moods, notes, stories, or habits at any time in the App.
  • You can erase everything Dear Diary stores on this device in one place: open Settings → Backup & Restore and use Delete all data. This permanently removes your diary content, media, stories, glimpses, account unlock details, and app settings on that phone, then returns Dear Diary to a fresh install. Backups you already saved outside the app are not deleted. This cannot be undone without a backup you restore later.
  • Uninstalling Dear Diary permanently deletes App data on that device.

Permissions

Dear Diary may request the following permissions when you choose related features. Journal content from these features is stored on your device and is not uploaded to developer servers.

Location

Purpose: Story Mode Trace Path and optional habit place reminders, as described in the Location section above — including background updates during an active Trace Path journey.

Usage: Stored only on this phone in your encrypted diary. Not sent to our servers.

Health Connect

Purpose: Optional read-only access for linked Premium habits, as described in Health Connect.

Usage: Readings stay on the device. Not sent to our servers.

Camera

Purpose: Take photos or record videos for diary entries, notes, stories, or Daily Glimpse.

Usage: Stored locally and never uploaded to developer servers.

Microphone

Purpose: Record audio notes or voice memos for diary entries or stories.

Usage: Stored locally and remain private.

Notifications

Purpose: Habit reminders, optional Companion tips, and other alerts you enable.

File access / storage

Purpose: Attach media you select, save exports, or write backups to a folder you choose.

Usage: The App only accesses files you explicitly select or destinations you choose.

Biometric authentication

Purpose: Optional fingerprint or face unlock.

Usage: Processed by your device. Dear Diary does not store or transmit biometric information.

What Google may process (not our servers)

  • Google Play / Play Billing — installs, purchases, and one-time Premium status, under Google’s policies.
  • Crash and vitals reports — if enabled through Google Play, anonymous or device-level diagnostics per Google. These are not a copy of your diary.
  • Maps on device — Story Mode map tiles may be fetched from Google Maps on the phone when you use a map. That is Google’s service, not an upload of your journal.

Dear Diary does not display advertisements and does not sell personal data. We do not harvest what you write with developer analytics inside the journal.

User-controlled exports

You may export mood history, habit data (including CSV with Premium), reports, or story videos. Exports are generated on your device, saved where you choose, and under your control. If you share an export through email or another service, that service’s privacy terms apply.

Children's Privacy

Dear Diary is not intended for use by children under the age of 13. We do not knowingly solicit personal information from children. Journal content stays on the device; uninstalling the App removes local App data.

Data Safety (Google Play)

  • Journal content: Stored on-device in encrypted storage; not sent to developer servers.
  • Location: Collected only for Trace Path and optional habit place reminders; stored on-device; see Location.
  • Health Connect: Optional, read-only, on-device; see Health Connect.
  • Security: SQLCipher, EncryptedSharedPreferences, Android Keystore, and optional biometric lock.
  • Deletion: You can delete content in-app, use Delete all data in Settings → Backup & Restore, or uninstall to remove local App data.

Your rights and control

  • You own the content you create in Dear Diary.
  • You can view, edit, or delete entries, notes, moods, stories, and habits at any time.
  • You can deny or revoke Location and Health Connect permissions.
  • You can create encrypted backups to a folder you choose, use Delete all data in Settings → Backup & Restore, or uninstall to remove local data.

Changes to this Privacy Policy

We may update this Privacy Policy to reflect changes in the App or legal requirements. Changes will be posted on this page with an updated “Last updated” date. Continued use of Dear Diary after changes means you accept the updated policy.

Contact us

Questions about this Privacy Policy:

Email: support@mydeardiaryapp.com


Summary

Privacy by design — with clear exceptions you control:

  • ✓ Journal content stays on your device, encrypted
  • ✓ No developer servers for diary, photos, audio, moods, notes, stories, or habits
  • ✓ Location only for Trace Path and optional habit place reminders — on-device, not for ads
  • ✓ Health Connect optional, read-only, on-device
  • ✓ Optional encrypted backups you create; we do not host them
  • ✓ No ads; no sale of personal data; no analytics inside the journal
  • ✓ Google Play billing and crash/vitals follow Google’s policies

Your journal, your device, your privacy.