Privacy Policy

Meridian Privacy Policy

Effective date: July 21, 2026

Who We Are

Meridian is operated by Meridian Digital Labs, Inc. (“Meridian”, “we”, “us”).

If you have questions or want to exercise privacy rights, contact contact@journalmeridian.com.

What This Policy Covers

This policy describes how we handle information for (1) the Meridian iOS app and (2) the Meridian marketing website (including the waitlist form).

Information We Collect

In the iOS app — your journal

Journal entries are created by you and stored locally on your device. When you are signed in, they are also backed up to our servers so they survive deleting the app and restore on a new device. This backup is on by default. Your entries, photos, and folders are encrypted with a key unique to your account and are never kept or readable in plain text at rest. They are decrypted only transiently, and only to power AI features you separately turn on (see “Optional AI features” below). We never use your journal content to train models, and it is never shown to other users.

Handwriting photos (optional) may be captured by you to extract text. When this feature is used, optical character recognition (OCR) is performed on-device using Apple frameworks. Handwriting images are not sent to our servers for OCR.

Screen Time settings (optional) — if you enable app locking, you choose which apps to shield. Meridian uses Apple’s Family Controls APIs to apply shields based on your settings.

In the iOS app — account and cloud-synced data

If you create an account (email/password, Sign in with Apple, or Google), we collect authentication information through Supabase, our authentication and backend provider. This may include your email address and account identifiers.

When signed in, we sync certain account data to Supabase, including:

  • Your journal entries, photos, and folders — encrypted at rest with a per-account key, stored as ciphertext and never kept in plain text
  • Profile information (such as display name and timezone, if provided)
  • Stardust balance, streak count, and transaction ledger (reason strings only — not journal text)
  • Subscription tier and status (free or Pro)
  • Daily AI usage counters (feature call counts, not entry content)

Product analytics and error reporting

We collect product analytics and error/crash reports using third-party services. We send product analytics events to PostHog (hosted on their US cloud, at us.i.posthog.com) and crash reports to Sentry.

The data sent to these third-party processors includes event names, numeric or boolean properties, user ID, and email address for identification, and crash stack traces. Analytics event properties and crash reports never include journal entry text or search queries.

We also use PostHog's session replay feature, which records a visual reconstruction of on-screen activity (taps, scrolls, and on-screen content) to help us understand how people use Meridian and diagnose issues. Sign-in and password fields are masked before a recording is captured. Because session replay is a visual capture of the screen rather than a text export, it can include on-screen content from any part of the app open during a recording, including journal entry text.

Session recordings are anonymized. On-device activity captured for session replay is tagged with a separate, anonymous identifier that is never linked to your account, name, or email address — so when we watch a recording, we cannot tell which specific user it belongs to. This is separate from the account data described above (such as your email, streak, and subscription status), which stays associated with your account so we can operate it, and, if you've opted in, contact you.

On this website (waitlist)

If you join the waitlist, we collect first name, last name (optional), and email address so we can contact you about early access and product updates.

How We Use Information

  • Provide core app functionality (for example, saving journal entries on your device and displaying your Night Sky).
  • Operate your account (authentication, Stardust economy, subscription status, and feature limits).
  • Deliver optional AI features when you use them (reflection prompts, theme extraction, constellation creation).
  • Improve Meridian and resolve errors through product analytics and crash reports. We use anonymized usage data (such as anonymized session recordings and aggregate analytics) solely to make Meridian and the experience it provides better — for example, fixing bugs, refining flows, and understanding which features help people build a journaling habit. We do not use this data to sell or license it to advertisers, and we do notuse it to profile individual users' emotional state or vulnerability in order to influence pricing, upsells, or subscription offers.
  • Operate the waitlist and send early access communications to people who opt in.
  • Support and security (for example, responding to user requests and preventing abuse).

Sharing and Third Parties

We do not sell your personal information. We share information only as needed to operate Meridian and deliver the services you request.

Backend and authentication (Supabase)

Meridian uses Supabase for authentication, account data, economy sync, and the website waitlist. Supabase processes data according to its own privacy policy.

Product analytics (PostHog)

We use PostHog (hosted on their US cloud, at us.i.posthog.com) to collect product analytics events and session replay screen recordings, helping us understand how our services are used and diagnose issues. Session replay visually reconstructs on-screen activity; sign-in and password fields are masked, but other on-screen content — including journal entry text, if visible on screen during a recording — may be captured. Session recordings are anonymized and are not linked to your account, name, or email address. PostHog processes data according to its own privacy policy.

Error and crash reporting (Sentry)

We use Sentry to capture crash logs and performance exceptions to keep the app stable and fix errors. Sentry processes data according to its own privacy policy.

Optional AI features (OpenAI via Edge Functions)

If you use AI-powered features (for example, generating reflection prompts, extracting themes, creating constellations, or personal insights), relevant entry text is decrypted transiently on our secure backend and sent to an AI provider for one-time processing, then the result is returned to your device. Your entries remain stored only as per-account-encrypted ciphertext for backup (see “your journal” above); the AI provider is not permitted to retain your content or use it to train models. We track daily usage counts (not entry content) to enforce feature limits.

Note: AI providers may process data according to their terms and policies. We encourage you to review those policies before using AI features.

Apple services

Meridian uses Apple APIs (such as Screen Time / Family Controls) to help you lock selected apps based on your settings. If you purchase a Pro subscription, Apple processes payments through the App Store. Sign in with Apple is subject to Apple’s privacy policy.

Google Sign In

If you sign in with Google, Google processes your authentication according to Google’s privacy policy.

Tracking, Ads, and Analytics

Meridian does not run third-party advertising in the app and does not use ad networks. We do not sell your personal information.

We collect product analytics events, session replay screen recordings, and crash reports using PostHog and Sentry to understand feature usage and improve the app. Analytics event properties and crash reports never include journal entry text or search queries; however, because session replay visually captures on-screen activity, it can include on-screen content from any screen open during a recording (sign-in and password fields are masked). Session recordings are anonymized — they are tagged with a separate identifier that is not linked to your account, name, or email address, so a recording cannot be traced back to a specific user. We do not use third-party advertising or cross-app tracking SDKs.

Data Retention

  • Journal entries: stored locally on your device, and — when signed in — backed up as per-account-encrypted ciphertext on our servers. Deleting an entry removes it from both. Deleting your account permanently destroys your encryption key and everything stored under it.
  • Account and economy data: kept while your account is active, or until you request deletion.
  • Product analytics and error reports: retained as long as reasonably needed to operate and improve Meridian.
  • Waitlist information: kept as long as we reasonably need it to manage early access and communications, or until you request deletion.

Your Choices and Rights

Depending on where you live, you may have rights to access, correct, or delete your personal information.

  • Delete app data: you can delete journal entries within the app and/or delete the app to remove locally stored data.
  • Delete your account: use the account deletion option in app settings, or email us to request deletion of your account and associated cloud data.
  • Waitlist deletion request: email contact@journalmeridian.com and include the email address you used to sign up.

Children’s Privacy

Meridian is not directed to children under 13, and we do not knowingly collect personal information from children under 13.

Changes to This Policy

We may update this policy from time to time. If we make material changes, we will update the effective date above and, where appropriate, provide additional notice.