Privacy Policy
Draft. Oracle has not launched yet, and this document is still being reviewed. It will be finalized before the app is available.
Human Things LLC (“Human Things,” “we”) makes Oracle. This policy explains what we collect when you use Oracle, why, who helps us process it, how long we keep it, and the choices you have. We do not sell your personal information, and we do not use it for advertising or to track you across other companies' apps and websites.
What we collect
Your account
- Email address, used to sign you in with a one-time code. If you sign in with Apple or Google, we receive the account identity those services share with us.
- Name, only if you choose to give one. It is what Oracle calls you, and you can change or remove it in Settings.
- An account identifier that links your data to your account.
What you write, and what Oracle writes for you
Oracle works by remembering. We store your answers, conversations, the readings Oracle writes, the memories it keeps (such as people, events, and what helped), its working understanding of you, and your corrections, ratings, and reports of what you tried. This is saved to your account automatically so it is there when you return. You can see and correct what Oracle remembers, delete conversations, export your data, or delete your account.
Purchases
If you subscribe, Apple or Google processes the payment. We receive your subscription status and purchase history, not your card details.
Usage and diagnostics, only if you turn them on
Usage statistics and crash diagnostics are off unless you switch them on in Settings. When on, they send fixed event names, coarse failure codes, the app version, and a random identifier. They never include what you write, what Oracle writes, your account, or your device identity. The services that receive them may infer an approximate location from your internet connection.
How we use it
- To provide Oracle: sign you in, write your readings and replies, and remember your history.
- To personalize what Oracle writes, using the context you have given it.
- To manage your membership.
- To keep Oracle safe, accurate, and working, including reviewing responses before you see them.
- To improve quality, as described under “Human review” below.
AI processing
To write a response, Oracle sends your message and the relevant parts of your history to an AI provider (currently OpenAI or Anthropic), both to generate the response and for a separate safety and accuracy review. We ask providers not to store this content where their services allow it, but we cannot promise that a provider retains nothing.
Human review
A small number of authorized people at Human Things may read conversations to improve quality or investigate a problem. Each review requires a written reason and is logged.
Who we share it with
We share data only with service providers that help us run Oracle:
- Supabase, which hosts our database, sign-in, and servers.
- OpenAI and Anthropic, which generate and review responses.
- Resend, which delivers sign-in emails.
- Apple, Google, and RevenueCat, which handle purchases and subscription status.
- PostHog and Sentry, which receive usage statistics and crash diagnostics, only if you turn them on.
We may also disclose information if the law requires it, to protect someone's safety, or as part of a merger or sale of the company, in which case this policy continues to apply.
How long we keep it
- Your account, conversations, and memories: until you delete them or your account.
- Records of requests to the service: up to 90 days.
- Content-free usage events (fixed codes and numbers, never your words): up to 180 days.
- Records of human reviews: up to 400 days, so that access can be audited.
Your choices and rights
- See and correct what Oracle remembers, and delete conversations, in the app.
- Export your data from Settings.
- Turn usage statistics and diagnostics on or off at any time.
- Delete your account in the app or by email. See how to delete your account.
Depending on where you live, you may have further rights, such as to access, correct, delete, or port your data, or to object to or restrict processing. To exercise them, email support@humanthings.io. We will respond within the time the law requires.
Security
Data is encrypted in transit, access to it is restricted to what each part of the service needs, and sign-in sessions are kept in your device's secure storage. No system is perfectly secure, but we work to protect your information.
Where it is processed
Human Things is based in the United States, and our providers may process data in the United States and other countries.
Children
Oracle is for adults 18 and over. We do not knowingly collect information from anyone younger. If you believe a minor has an account, contact us and we will delete it.
Changes
If we change this policy, we will update the date above, and for significant changes we will tell you in the app before they take effect.
Contact
Human Things LLC, Texas. Email support@humanthings.io.