Privacy Policy
Last updated: July 27, 2026
This Privacy Policy explains what personal data Confessio (“we”, “us”) processes, why, and the rights you have. It is written to meet the requirements of the EU/UK General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA/CPRA).
1. Who is responsible
Confessio is the data controller for the personal data described here. For any privacy question or request, contact hello@confessio.app.
2. What we collect
- Anonymous use: nothing is stored by us. Your conversation lives only in your browser session and is discarded when you close it, unless you sign in and choose to save it.
- Account data: if you create an account, your email address (and, if you use Google sign-in, basic profile information Google provides, such as your name).
- Content you choose to save: saved verses and any conversation you explicitly save while signed in.
- Technical data: essential cookies for sign-in and preferences (theme), and limited server logs used for security and reliability.
3. How your messages are processed by AI
To generate a reply, the messages you send are transmitted to our AI provider, Anthropic, which processes them to produce a response. For anonymous use, we do not store these messages. We do not use your conversations to train AI models.
4. Why we process data (legal bases)
- To provide the Service you request (performance of a contract): generating replies, showing the daily verse, saving your content.
- Consent: where you choose to create an account and save content.
- Legitimate interests: keeping the Service secure, reliable, and free from abuse.
5. Who we share data with
We share data only with service providers who help us run Confessio, under contracts that require them to protect it:
- hosting and delivery (Vercel);
- database (Neon);
- AI responses (Anthropic);
- email delivery for sign-in links (Resend);
- sign-in and maps (Google).
We do not sell your personal data, and we do not share it for advertising.
6. International transfers
Some providers process data outside your country, including in the United States. Where required, such transfers rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
7. How long we keep data
Anonymous conversations are not stored. Account data and content you save are kept until you delete them or delete your account, after which they are removed from our active systems.
8. Your rights
Under the GDPR you have the right to access, correct, delete, restrict, or object to the processing of your data, to data portability, and to withdraw consent at any time. Under the CCPA/CPRA you have the right to know what we collect, to delete it, to correct it, and not to be discriminated against for exercising your rights. Because we do not sell or share personal data for advertising, there is nothing to opt out of.
You can delete your account and saved data yourself from your account settings, or exercise any right by emailing hello@confessio.app. If you are in the EU/UK, you also have the right to complain to your data protection authority.
9. Cookies
We use only essential cookies: a sign-in session cookie when you log in, and a small preference for your chosen theme. We do not use advertising or third-party tracking cookies.
10. Children
Confessio is not directed to children under 16, and we do not knowingly collect their personal data. If you believe a child has provided us data, contact us and we will delete it.
11. Security
We use industry-standard measures, including encryption in transit, to protect your data. No method of transmission or storage is completely secure, but we work to keep your information safe.
12. Changes
We may update this policy; material changes will be reflected by the “Last updated” date above.
13. Contact
Questions or requests? Email hello@confessio.app.