Stint LLC Privacy Policy
Last Updated: July 15, 2026
This Privacy Policy explains how Stint LLC, a Virginia limited liability company ("Stint," "we," "us," or "our"), collects, uses, discloses, and otherwise processes personal information when you use our mobile applications (Stint and Candor), our website at stint.tech, and any related services (collectively, the "Service"). This Privacy Policy is incorporated into, and forms part of, our Terms of Service. Capitalized terms not defined here have the meanings given in the Terms of Service.
By creating an account or using the Service, you acknowledge that you have read this Privacy Policy. If you do not agree with it, do not use the Service.
Two apps, one policy
We build more than one product, and they work differently. This policy covers both. Where a practice applies to only one app, we say which one. Anything not marked as app-specific applies to both.
| Stint | Candor | |
|---|---|---|
| What it is | An AI coach that turns your goals into daily tasks and chats with you about your progress. | A private photo diary. It prompts you during the day, you photograph what you are actually doing, and it shows you how your days compare to the life you said you wanted. |
| The core content | Text, voice you dictate, and a "memory" profile the AI builds about you. | Photographs you take, the category you tag them with, and your own notes and answers. |
| Uses AI | Yes. Your content is sent to third-party AI providers to generate responses. | No. See Section 5.2. |
| Records your screen | Yes, session replay. You can turn it off. | No. Session replay is not enabled in Candor. |
| Status | Available on the App Store. | Not yet publicly released. |
Privacy at a glance
This summary is for convenience only and does not replace the full policy below.
| Topic | The short version |
|---|---|
| What we collect | Both apps: your account info (from Apple or Google, and for Stint an email code), your subscription status, and usage/diagnostic data. Stint: the goals and messages you share, voice you dictate (we keep the text, not the audio), a personalized "memory" profile, your tasks and progress, and an optional creator/referral code. Candor: the photographs you take, the categories you tag them with, and the answers and notes you write. |
| Where it goes | Both apps: our cloud database, plus providers for product analytics and crash reporting. Stint: your content is also sent to third-party AI model providers (currently OpenAI, Google, and Anthropic) to generate responses, and voice audio is transcribed as described in Section 5.1. Candor: your photos are stored in your private area of our cloud storage and are not sent to any AI model, any advertiser, or any other user. |
| Your photos (Candor) | Photos you take do leave your device: they upload to your private area of our storage so you do not lose them. They are encrypted in transit and at rest, restricted to your account, never made social, never published, never used in our marketing, never sold, and never analyzed by AI. We do not do face recognition. |
| Payments | Handled by Apple. We never receive or store your card number. |
| Selling data | We do not sell your personal information, and we do not use it for cross-context behavioral advertising targeting. We are not currently sharing any data with advertising partners. If and when we enable advertising measurement, we may share a limited set of subscription-conversion events with Meta, for adult users only (18+), under Limited Data Use, never for users under 18, and never involving your photos. See Section 6.6, and you can opt out anytime via Section 11. |
| Your controls | Delete your account, and everything in it, from in-app Settings. In Stint, view what the app remembers and wipe it, and turn analytics and session replay off. |
| Sensitive info | Please do not put Social Security numbers, payment cards, health records, passwords, or other secrets into the Service, and in Candor, do not photograph them. |
| Contact | legal@stint.tech (privacy & legal) · support@stint.tech (help) |
1. Who This Policy Covers and Your Acknowledgement
This Privacy Policy applies to all users of the Service. The Service is for individual personal use; it is not designed for, and you may not use it for, Enterprise Use, regulated enterprise deployment, clinical purposes, or other organizational high-stakes purposes (see the Terms of Service, Section 1.1, for the full definition of permitted individual personal use).
2. Eligibility and Children
The Service is intended for individuals at least thirteen (13) years of age. We do not knowingly collect personal information from anyone under 13. If we learn that we have collected personal information from a child under 13, we will delete it as soon as practicable. A parent or guardian who believes their child under 13 has provided personal information should contact us at legal@stint.tech.
COPPA (Children Under 13). In compliance with the Children's Online Privacy Protection Act ("COPPA"), 15 U.S.C. § 6501 et seq., we do not knowingly collect, use, disclose, or retain personal information from children under 13. The Service is not directed to children under 13. If we discover that a child under 13 has provided personal information, we will delete that information and terminate the associated account promptly.
EU/UK Users Ages 13–15. If you are located in the European Economic Area or the United Kingdom and are between the ages of 13 and 15, the processing of your personal information requires the consent of your parent or legal guardian under Article 8 of the General Data Protection Regulation ("GDPR") or the equivalent provision of the UK GDPR. By using the Service, you represent that a parent or legal guardian has reviewed and provided such consent. Parents or guardians may contact us at legal@stint.tech to request deletion of their child's account and associated data.
Age screen (Stint app). At account setup in the Stint app we present a neutral age screen that asks for your age solely to verify that you meet our minimum-age requirement. We do not ask for, or store, your full date of birth. We keep a server-side record of (i) confirmation that you met the age requirement, (ii) whether you confirmed you are 18 or older, and (iii) the date on which that confirmation occurred. The age you enter is also stored locally on your device and used as a personalization input, for example, to help tailor your plan to your life stage. Collecting a single age value rather than a full date of birth is a deliberate part of our data-minimization approach (see Section 12.4). If your response indicates that you do not meet the minimum age, we block account creation and access: no account is created and no personal information is collected from a self-identified under-age visitor.
The minimum-age requirement above applies to every part of the Service, including Candor, as a condition of use that you agree to in our Terms of Service, whether or not a given app presents an age screen.
3. Information We Collect
3.1 Information You Provide Directly
- Account Information (both apps). When you create an account using Sign in with Apple, Sign in with Google, or (in Stint) an email one-time passcode (OTP), we collect identifiers such as your email address, your name (where the authentication provider supplies it), and a unique account identifier. If you use Sign in with Apple's private email relay, we receive a relayed Apple email address rather than your personal email. An account is required to use Candor.
- Photographs and Camera Captures (Candor). Candor prompts you during the day to photograph what you are doing. When you take a photo, the app captures it with your device camera, resizes and re-encodes it as a JPEG, stores it on your device, and uploads a copy to your private area of our cloud storage (see Sections 3.3 and 6.1). If your camera is unavailable, Candor may instead let you choose an existing image from your photo library; anything you choose is handled the same way. Candor also stores what you record about each photo: the category you tag it with, the time it was taken, and any note you add. Candor does not take photographs on its own. Every capture is one you initiate, and you can dismiss any prompt or log a moment with no photo at all.
- Age Confirmation (Stint). At account setup in the Stint app we ask your age to confirm you meet our minimum age. We do not collect your full date of birth. See Section 2.
- Onboarding Inputs. Information you provide about your goals, ambitions, blockers, current situation, timelines, and self-described traits (collectively, your "Goal Inputs"), including any free-form "brain dump" you record or type during onboarding (Stint), and the answers you give to Candor's onboarding questions about the life you say you want.
- Chat and Coaching Messages (Stint). The text of messages you exchange with the Service (your prompts and the AI's responses) and associated metadata (timestamps, the conversation surface, the model used, and token counts).
- Voice Dictation and Transcripts (Stint). The Stint app uses voice input on two surfaces, each transcribed differently:
- Brain-dump dictation (the foundational voice input during onboarding and goal setup): your device's microphone records audio that is transmitted through our backend to a third-party speech-to-text provider (currently OpenAI) for high-accuracy transcription. The audio is not stored by us or retained by the provider under our agreement.
- In-app chat dictation ("Hold to Talk" in the coach chat): audio is transcribed by your device's platform speech-recognition service, server-side by default (with on-device fallback when offline), meaning your audio is sent to the platform provider (Apple) for transcription under that provider's terms.
- In both cases, we store only the resulting transcript text; we do not store the audio recording itself on our servers. See Section 5.
- Candor does not have voice features and does not request microphone access.
- Personalization and Memory Data (Stint). Facts and inferences the Service maintains about you over time (your identity, ambitions, working style, constraints, resources, recurring blockers, recent decisions, and the people and projects you discuss), kept as a structured "memory" profile and used to tailor AI Output. Candor does not build a memory profile.
- Tasks, Plans, Progress, and Logs (Stint). Tasks and milestones generated for you, your completion status, streaks, scheduling, and feedback you give on tasks.
- Subscription and Purchase Data. Whether you have an active subscription, your plan tier, and your payment/trial status. We do NOT receive or store your full payment-card number, bank-account number, or similar payment credentials; those are handled by Apple and StoreKit.
- Referral and Creator Codes (Stint). If you enter a creator or referral code during onboarding (an optional, skippable step), we store that code on your account so the creator who referred you receives attribution. If you later subscribe, we record the transaction so the referring creator can be credited a commission. The creator receives transaction metadata only (the fact that a subscription attributed to their code occurred, the product purchased, and the resulting commission amounts and timestamps) and does not receive your name, email address, account identifier, messages, goals, memory, photographs, or any other content. See Sections 4 and 6.1.
- Support and Feedback. Information you send us when you contact support, make a privacy request, or share suggestions, ideas, or feedback.
3.2 Information Collected Automatically
- Device and Technical Data. Device model, operating-system version, app version, language, time zone, coarse location inferred from IP address (country/region only, not precise GPS location), and diagnostic events.
- Usage and Interaction Data. Events tracked by our product-analytics provider, for example, which screens you view, which actions you take, when you complete onboarding steps, and when you capture or tag a moment. These events describe that you did something and carry small metadata such as a category name or a count; they never contain your photographs, your photo filenames, or your message content. In our analytics we identify you by a random account identifier (UUID). In the Stint app we also attach your email address and display name to your analytics profile so we can recognize your account and provide support; in Candor we attach only the random account identifier. We do not link this analytics profile to any advertising identifier, and we do not sell it.
- Session Replay (Stint only). In the Stint app we use session replay to record your on-device interactions for product improvement, debugging, support, and security. These recordings capture what is shown on your screen during a session (including screens, taps, and scrolls, and the on-screen content you view or enter, such as the messages you type, the AI's responses, and your memory, goals, tasks, and brain-dump text, together with on-screen images and identifiers such as your email and display name). Recordings are associated with your analytics profile. We do not capture your device passcode, payment-card details, or other inputs that the operating system shields from screen capture. You can turn off analytics and session recording at any time in the app under Settings → Privacy (or by emailing us; see Section 11). Session replay is not enabled in Candor. We do not record Candor's screens, and no screen-recording or screenshot-capture feature in Candor captures your photographs.
- Error and Performance Data. When an error occurs, our error-monitoring provider collects diagnostic information such as stack traces, breadcrumbs (recent interaction events), and failed-request metadata. In the Stint app we configure it to attach only your random account identifier (UUID); we disable the collection of your email and IP address and disable screenshot and view-hierarchy capture, and we strip authorization and cookie headers from captured requests. In Candor, error monitoring runs with the provider's default personal-information setting enabled, which means a crash or error report may include your IP address alongside the diagnostic data; Candor's error monitoring does not capture screenshots or your photographs.
- Subscription Telemetry. Our subscription-management provider and Apple StoreKit emit events describing paywall presentations, plan selections, purchase attempts, trial state, and subscription status. These events include purchase identifiers but not payment credentials. In Candor, we also pass this provider a small set of attributes drawn from your onboarding answers (such as your first name and the category you said matters most to you) so that what the paywall says can reflect what you told us. We never pass it your photographs.
- Authentication Provider Data. When you sign in via Apple or Google, we receive the identifiers and basic profile fields those providers return (e.g., a stable user ID, an email or relay email, and a display name on first sign-in).
- Push Notification Tokens. If you grant notification permission, the operating system provides a push-notification token, which we store to deliver notifications (in Stint, reminders and streak prompts; in Candor, the prompts that ask you to capture a moment) to your device.
3.3 What Happens to Your Photos (Candor)
Because photographs are the most personal thing the Service handles, this Section states plainly what we do with them.
- They leave your device. A copy of every photo you capture is uploaded to our cloud storage, into an area keyed to your account, so that your archive survives a lost or replaced phone. Uploading happens automatically once you are signed in; Candor does not currently offer a mode that keeps photos only on your device. We say this directly because it is the kind of thing people assume goes the other way.
- They are protected in transit and at rest. Photos are transmitted over encrypted connections (TLS) and stored encrypted at rest by our infrastructure provider, in storage configured so that only your account can read your own files.
- This is not end-to-end encryption. We hold the keys our infrastructure provider uses. That means we could technically access your files, and would if compelled by valid legal process (Section 6.2) or where strictly necessary to investigate abuse or a security incident. We do not browse your photos, and no automated system analyzes them. We are telling you the true shape of the protection rather than implying that nobody but you could ever open a file.
- They are never social and never public. Candor has no feed, no followers, no sharing between users, and no public profile. We never publish your photos, never show them to another user, never use them in our advertising or marketing, and never sell them. If you choose to share a Reveal or weekly card yourself using your phone's share sheet, that is your own action, to the app you pick, and it leaves our control.
- No AI ever sees them. See Section 5.2.
- We do not know where they were taken. Candor never requests location permission and does not use location services at all. We do not read, use, or retain any technical metadata embedded in your images, and we do not attempt to derive your location from a photo.
- They are deleted when you delete your account. See Section 8.
3.4 Information We Do NOT Collect
We do not embed third-party advertising or marketing SDKs or pixels inside our applications, and we do not collect or use the App Tracking Transparency (ATT) advertising identifier (IDFA). We are not currently transmitting any data to advertising partners. If and when we enable advertising measurement (as described in Section 6.6), we may transmit a limited set of subscription-conversion events to Meta from our server (under Limited Data Use), for adult users only: keyed to your random account identifier, not a device advertising ID, and never applied to users under 18.
We do not collect precise geolocation (neither app requests location permission), your contacts, your calendar, or your health data.
Biometrics. We do not collect or generate biometric identifiers. Specifically:
- Candor performs no image analysis of any kind. It does not run face detection, face recognition, facial geometry mapping, object or scene classification, or any other analysis of your photographs, not on our servers and not on your device. We do not create, derive, or store a faceprint or any other biometric template from your photos, including of you or of anyone who appears in them.
- Stint processes voice audio transiently for transcription (Section 5.1) but does not perform acoustic modeling, voice authentication, emotion analysis, or create or store biometric voiceprints.
If we add any feature that would collect or generate biometric information, we will update this Privacy Policy before doing so and obtain any explicit opt-in consent required by applicable biometric-privacy laws (such as the Illinois Biometric Information Privacy Act, "BIPA").
3.5 Creator Program Participants
If you apply to or participate in the Creator Program (separate from ordinary app use), we collect the information needed to administer that program and pay you: your contact and identity details, your social or content-platform handles, the tax information required to issue payments and required filings (such as a Form W-9 or W-8), the payout details you provide, your unique creator code(s), and the performance and attribution data associated with your code (referrals, conversions, and commissions). We process this information to operate the Program, calculate and remit compensation, meet tax and recordkeeping obligations, and prevent fraud and abuse, as further described in the Creator Program Terms. This data is used for the Program and is not combined with another user's personal content.
4. How We Use Information
We use the information described above to:
(a) provide, operate, personalize, and maintain the Service (including, in Stint, generating tasks, plans, summaries, and chat responses ("AI Output"), and, in Candor, storing your photographs and assembling the summaries and Reveals that compare your recorded days to the goals you stated); (b) build and update your personalized memory profile so the Stint app can tailor future AI Output to your goals, context, and preferences; (c) authenticate you, manage your account, and provide customer support; (d) process subscriptions, free trials, billing, renewals, cancellations, and refunds (in conjunction with Apple and our subscription-management provider), and, where you entered a creator or referral code, attribute the subscription to the referring creator and calculate their compensation; (e) send you transactional communications (account, billing, security, and service messages) and, where permitted, product updates; (f) deliver push notifications you have authorized, including Candor's capture prompts; (g) monitor, analyze, secure, debug, and improve the Service and develop new features (including via our product-analytics and error-monitoring providers); (h) improve the quality, safety, and performance of the Service and the AI features within the Stint app, including our prompts and configurations, as further described in Section 5; (i) detect, investigate, and prevent fraud, abuse, security incidents, and violations of our Terms; (j) comply with legal obligations and enforce our agreements; and (k) for any other purpose disclosed to you at the point of collection or to which you consent.
We do not use your Candor photographs for any purpose in this Section other than storing them for you, showing them back to you, and (where you have not opted out and only as described in Section 5.2) nothing else.
5. AI Processing, Memory, and Improvement
5.1 The Stint app
How AI works in Stint. The Stint app is built on generative AI. When you interact with it, your prompts, voice transcripts, relevant memory excerpts, Goal Inputs, active goal and tasks, and related conversation context are transmitted to third-party AI model providers: currently OpenAI, Google, and Anthropic, for inference (generating a response). We may select among these providers under their applicable API and business terms and may add, change, or remove providers at any time. An updated list of our material sub-processors is also available on request by emailing legal@stint.tech.
Speech. The Stint app uses two transcription paths depending on the surface:
- Brain-dump voice input (onboarding and goal setup): audio is transmitted through our backend to a third-party speech-to-text provider (currently OpenAI) for higher-accuracy transcription. The audio is sent transiently and is not retained by us or by the provider under our agreement.
- In-app chat dictation: audio is transcribed by your device's platform speech-recognition service, server-side by default (with on-device fallback when offline), meaning audio is sent to the platform provider (Apple) under that provider's terms.
In both cases, we receive and store only the transcript text, not the audio recording.
Memory. The Stint app builds and stores a personalized memory profile from your interactions to tailor future AI Output. In the app you can view what Stint remembers about you and wipe your entire memory (Settings → "What Stint remembers"). Wiping memory is prospective: AI Output already generated using earlier memory states cannot be retroactively unwound. Deleting your account deletes your memory (see Section 8).
Improvement and training. We may use your Stint content to operate, evaluate, debug, secure, and improve the Service and its AI features (for example, to refine our prompts and configurations and to diagnose poor responses). Under our Terms of Service you also grant us a broad license that permits, among other things, the future development and training of AI models and the creation of de-identified and aggregated datasets. Where we offer an opt-out from use of your content for AI model training or improvement, you may exercise it through any in-app control we provide or by emailing legal@stint.tech, which will prospectively stop such use; opting out does not undo processing that already occurred.
Human and automated review. You should assume that content you submit to the Stint app may be reviewed (by automated systems or, where necessary, by authorized personnel) for quality, safety, abuse detection, debugging, security, or improvement purposes.
Provider training. We access AI models through enterprise API products (not consumer-facing interfaces) whose standard terms are designed to prevent providers from using API customers' content to train their general-purpose foundation models. We make commercially reasonable efforts to use these APIs in that intended manner. We do not control these providers and cannot guarantee their practices. Once your content is transmitted to a provider, it is also governed by that provider's terms and privacy practices.
Please do not submit information you consider confidential, secret, privileged, or sensitive to the Service. See Section 7.5 of the Terms of Service.
5.2 Candor does not use AI
Candor does not send your photographs, or the records you keep about your days, to any artificial-intelligence model, and does not analyze them. Specifically:
- No photo is transmitted to any AI or vision provider, including OpenAI, Google, Anthropic, or any other. Your photos go to our storage and nowhere else.
- No photo is analyzed, on our servers or on your device. Candor runs no image recognition, no auto-tagging, no scene or object detection, and no face detection. When Candor guesses what a photo probably was, that guess is a simple count of the categories you have chosen before, computed on your phone.
- The Reveal is arithmetic, not a language model. The summaries, comparisons, and closing lines Candor shows you are computed on your device from the categories and times you recorded, and the words around them are written in advance by us, not generated about you.
- Your Candor content is not used to train any AI model, ours or anyone else's. The training license in Section 7.3 of the Terms of Service expressly excludes your photographs.
If this ever changes, we will update this Privacy Policy before the change takes effect, describe exactly what would be sent where, and obtain any consent required by law.
6. How We Share Information
We do not sell your personal information for money. We do not "share" your information for cross-context behavioral advertising targeting. We are not currently sharing your information with any advertising partner. If we enable advertising measurement in the future (described in Section 6.6), the only such sharing will be (for adult users only) a limited set of subscription-conversion events transmitted to Meta to measure the effectiveness of our own advertising. No part of any sharing described in this Section involves your Candor photographs. We disclose information only as described below, in each case under written agreements where required and only as needed.
6.1 Service Providers and Processors
| Category of provider | Role | What it processes |
|---|---|---|
| Enterprise AI model providers (Stint only): OpenAI (incl. voice transcription); Amazon Web Services (Amazon Bedrock: Anthropic Claude models); Google Cloud (Vertex AI: Gemini, currently inactive) | Generate AI Output (inference) | Prompts, conversation context, memory excerpts, Goal Inputs sent for inference. No Candor data. No photographs. |
| Speech-to-text provider (Stint only; currently OpenAI) | Transcribe brain-dump voice input | Brain-dump voice audio sent transiently for transcription (audio not retained by us or the provider under our agreement) |
| Cloud infrastructure, database & file-storage provider | Database, authentication, edge functions, and file storage | Your account and subscription status; in Stint, your messages, memory, goals, and tasks; in Candor, your photographs, your categories, days, and notes |
| Product-analytics provider | Product analytics, and (Stint only) session replay | Usage events. In Stint, also session recordings of your on-screen interactions and content, associated with your account UUID together with your email and display name. In Candor, events are associated with your account UUID only, and no session replay runs |
| Error- & performance-monitoring provider | Crash and error monitoring | Stack traces, breadcrumbs, failed-request metadata, account UUID; in Candor, also your IP address (see Section 3.2). No screenshots, no photographs |
| Subscription-management provider | Paywall presentation and subscription-state telemetry | Purchase and subscription events (no payment credentials); in Candor, also a small set of onboarding attributes such as your first name and stated priority. No photographs |
| Creator Program participants (if you used a creator/referral code) | Referral attribution and compensation | Transaction metadata for an attributed subscription (the fact of the sale, product, and commission amounts and timestamps), not your name, email, account identifier, or content |
| Apple Inc. | App Store, Sign in with Apple, the platform speech-recognition service (Stint chat dictation), push notifications, StoreKit/in-app purchases | Authentication identifiers, chat dictation audio for transcription (Stint), purchase processing |
| Google LLC (if you sign in with Google) | Authentication provider | Sign-in identifiers and basic profile |
A current list of our material sub-processors, including the specific entities within each category above, is available on request by emailing legal@stint.tech, and is provided to business customers under a data processing addendum where applicable. These providers process your information under their own terms of service, privacy practices, and (where applicable) data-processing terms. We seek to use established providers whose terms are designed to protect your information in a manner consistent with this Privacy Policy and applicable law, and to limit their use of your content to providing their services rather than their own independent purposes. We do not control these providers and are not responsible for their practices; once your data is transmitted to a provider, it is also governed by that provider's terms and privacy practices.
6.2 Legal, Safety, and Compliance
We may disclose information to law-enforcement agencies, regulators, courts, or other parties: (a) to comply with applicable law, legal process, or governmental requests; (b) to enforce our Terms; (c) to protect the rights, property, safety, or security of Stint, our users, or others; or (d) to investigate, prevent, or address fraud, security, or technical issues. This is the one circumstance in which your Candor photographs could be disclosed to someone outside our infrastructure providers, and we will resist requests we believe to be invalid, overbroad, or unlawful, and will notify you of a request affecting your account unless we are legally prohibited from doing so.
6.3 Business Transfers
If we are involved in a merger, acquisition, financing, reorganization, bankruptcy, receivership, sale of assets, or transition of the Service to another provider, your information may be transferred as part of that transaction, subject to applicable law. If a successor or acquiring entity intends to materially change how your personal information is used, shared, or processed in a way that conflicts with this Privacy Policy, it will provide notice and obtain any consent, authorization, or opt-out required by applicable law before those new practices take effect. You may delete your account and data before or after any such transaction, subject to the retention exceptions in Section 8.
6.4 With Your Consent or at Your Direction
We share information for other purposes when you direct us to or otherwise consent. In Candor, using your phone's share sheet to send a Reveal or weekly card to another app is an example: you are choosing to send it, and once it leaves, the app you sent it to governs what happens next.
6.5 Aggregated or De-Identified Data
We may create, use, and share aggregated, anonymized, or de-identified data that does not reasonably identify you, for any lawful purpose. This never includes your photographs.
6.6 Advertising Measurement (Adults Only): Planned, Not Currently Active
We are not currently performing advertising measurement, and no advertising-measurement data is being shared today. This Section describes a feature we may enable in the future; when we do, we will make sure it operates exactly as described here, and we will update this Section to confirm it is active.
If we enable it, to measure the effectiveness of our own advertising we would transmit a limited set of subscription-conversion events (for example, that a free trial started or a subscription was purchased, together with the product and a hashed account identifier) to Meta Platforms, Inc. ("Meta") through its server-to-server Conversions API. We would do this only for users who have confirmed they are 18 or older; we would never transmit the data of users under 18.
If enabled, this sharing would be limited in the following ways:
- It would be server-side measurement, not an in-app advertising SDK or pixel; we would not collect or transmit your device advertising identifier (IDFA), and we do not use ATT-based tracking identifiers.
- We would send it under Meta's Limited Data Use setting, which directs Meta to process these events for restricted measurement purposes rather than to build cross-context behavioral advertising profiles.
- We would share only conversion metadata and a hashed identifier, not your messages, goals, memory, voice transcripts, photographs, name, or email.
Depending on your jurisdiction, this activity (if enabled) may be considered "targeted advertising" or a "share" of personal information under certain state privacy laws (see Section 12). You may opt out at any time by emailing legal@stint.tech (subject "Opt Out: Advertising") or, on our website, via a Global Privacy Control (GPC) signal where required by law. Opting out is prospective. This Section 6.6 does not apply to, and we would not perform, any advertising sharing for users under 18.
7. Analytics, Session Replay, and Cookies
Our website at stint.tech may use cookies, local storage, and similar technologies to operate the site, remember preferences, and measure usage; you can manage these through your browser settings. Within our applications, we use device-level identifiers and SDK-managed local storage (managed by our analytics, error-monitoring, subscription-management, and backend providers) rather than browser cookies.
We use a third-party provider for product analytics and, in the Stint app only, session replay (which records your on-screen interactions and content, as described in Section 3.2, and which you can turn off in Settings → Privacy), and another for error monitoring (configured as described in Section 3.2). Because there is no common industry standard for "Do Not Track" (DNT) browser signals, we do not currently respond to them; however, we honor Global Privacy Control (GPC) signals on our website where required by applicable law. Other than the adults-only advertising-measurement described in Section 6.6 (which is not currently active and which you may opt out of), we do not engage in cross-context behavioral advertising.
In the Stint app you may opt out of analytics and session recording at any time under Settings → Privacy. For any part of the Service, you may opt out by emailing legal@stint.tech with the subject "Opt Out: Analytics."
8. Data Retention and Deletion
We retain personal information for as long as your account is active and as needed to provide the Service, comply with law, resolve disputes, prevent fraud and abuse, and enforce our agreements.
- While your account is active. Your account data and subscription status (and, in Stint, your messages, memory, goals, and tasks; in Candor, your photographs, categories, days, and notes) are stored in our backend for the life of your account. Candor keeps your archive for as long as you keep your account. It is meant to accumulate; that is the point of it.
- When you delete your account. You can delete your account at any time from in-app Settings. When you do:
- In Candor, we delete every photograph you have uploaded from our cloud storage, and we delete your account and the days, moments, and notes attached to it. The app also erases the photo files held on your device. This is not a soft delete or a flag; the files are removed. It cannot be undone, and we cannot recover your archive afterwards.
- In Stint, we permanently delete your profile, chats, messages, memory, goals, tasks, brain-dump transcripts, and push-notification tokens from our active systems. Before deletion, we copy your chat messages and AI-usage records into internal history records in de-identified form: your account identifier is replaced with a one-way salted hash, and we apply automated redaction to remove detected emails, phone numbers, and links from the free-text content. We retain these de-identified records for security, abuse-prevention, analytics, and service-improvement purposes, and for no longer than ninety (90) days, after which an automated process permanently deletes them. De-identified AI-usage records (which contain usage metadata such as model, token counts, and cost, but not message text) are retained no longer than three hundred sixty-five (365) days. Automated redaction is best-effort and does not remove every possible identifier (for example, names you typed), so we again ask that you not submit sensitive information to the Service. No equivalent de-identified copy is made of Candor photographs; they are deleted outright.
- Deleting less than everything. Candor does not currently offer a way to delete an individual photo or an individual day while keeping the rest of your account. Deleting your account deletes everything. If you want a specific item removed, email legal@stint.tech and we will remove it where we can identify it.
- Abuse-prevention identifier (Stint). To prevent abuse (such as repeatedly deleting and recreating accounts to evade usage limits or trial restrictions), we retain, after deletion, a one-way (irreversible) hashed identifier derived from your authentication-provider account. This identifier cannot be reversed to reveal your identity, is not linked to your content, and is used solely to enforce limits and deter abuse.
- Backups. Encrypted backups maintained by our infrastructure providers may persist for a limited additional period (typically up to thirty (30) days) before being overwritten in the ordinary course of backup rotation. This applies to photographs as it does to other data: deletion removes them from our active systems immediately, and they age out of backup rotation.
- Analytics and error data. Analytics events and error data are retained according to our providers' configured retention settings, after which they are deleted by the provider.
- Aggregated/anonymous data. Truly aggregated or anonymized data that cannot reasonably be re-linked to an individual may be retained indefinitely. This never includes photographs.
You may request deletion of specific data, to the extent we can identify it, by emailing legal@stint.tech.
9. Security
We use commercially reasonable administrative, technical, and physical safeguards designed to protect personal information, including encryption in transit (TLS) and at rest, role-based access controls, row-level security on our database, per-account access restrictions on stored files, and least-privilege credentials for AI providers. No method of transmission or storage is completely secure, and we cannot guarantee absolute security. You are responsible for safeguarding access to your account and device.
We do not offer end-to-end encryption, and we do not claim that your content is technically unreadable by us. See Section 3.3.
Breach Notification. If a security breach involving your personal information occurs, we will notify affected users and applicable regulators to the extent, and within the timeframes, required by applicable law.
10. International Data Transfers
We are based in the United States, and our infrastructure and AI providers operate in the United States and other jurisdictions. By using the Service, you understand that your personal information will be transferred to, stored in, and processed in the United States and other jurisdictions whose data-protection laws may differ from those of your country. Where required by law, we rely on appropriate transfer mechanisms (such as the Standard Contractual Clauses) for cross-border transfers.
11. Your Choices and Rights (All Users)
- Account settings. Update certain account information, manage notification preferences, and delete your account from within the app. In Stint, view and wipe your memory.
- Device permissions. Grant or revoke permissions at any time in iOS Settings: camera and photo-library access for Candor, and microphone, speech-recognition, and notification permissions for Stint. Revoking camera access disables Candor's capture prospectively; revoking microphone access disables Stint's voice features prospectively. Revoking a permission does not delete content already created.
- Analytics / session recording. Opt out as described in Section 7.
- AI improvement / training (Stint). Opt out where offered, as described in Section 5.1. Candor content is not used for AI training in the first place (Section 5.2).
- Marketing communications. If we send marketing emails, you may opt out using the unsubscribe link or by contacting legal@stint.tech. Transactional and service messages may continue.
- Access, correction, deletion, portability. Request a copy of, correction of, or deletion of your personal information, or a portable copy, by emailing legal@stint.tech. We will respond within the time required by applicable law and may need to verify your identity.
- Authorized agents. You may designate an authorized agent to submit a request on your behalf. We may require proof of authorization and may still ask you to verify your identity directly.
Appeals. If we decline to act on your privacy request, we will tell you why. Where applicable law provides a right to appeal, you may appeal our decision by replying to our response or by emailing legal@stint.tech with the subject "Privacy Appeal." We will review the appeal and respond within the time required by applicable law. If you remain unsatisfied, you may contact your state attorney general or applicable data-protection authority.
12. U.S. State Privacy Rights
12.1 Virginia (VCDPA)
To the extent the VCDPA applies to Stint, Virginia residents may have the right to: confirm whether we process your personal data and access it; correct inaccuracies; delete it; obtain a portable copy; and opt out of (i) targeted advertising, (ii) the sale of personal data, and (iii) profiling in furtherance of decisions producing legal or similarly significant effects. You may also appeal a decision on a rights request. Other than the limited, adults-only advertising-measurement described in Section 6.6 (which is not currently active, and which you may opt out of by emailing legal@stint.tech), we do not sell personal data or engage in profiling producing legal or similarly significant effects as defined by the VCDPA. If we enable that measurement and it constitutes "targeted advertising" under the VCDPA, you may opt out as described above; it would never apply to users under 18. To exercise these rights, email legal@stint.tech.
12.2 California (CCPA/CPRA)
To the extent the CCPA/CPRA applies to Stint, the following supplements this policy for California residents.
Categories collected (last 12 months): identifiers (name, email, account ID, IP address, device identifiers, Apple/Google provider IDs, and any creator/referral code you enter); customer records and commercial information (subscription/billing status: no card numbers; and, for Creator Program participants, payout and tax information); internet/network activity (usage and error events); visual information (the photographs you capture in Candor and the categories, times, and notes you attach to them); audio information (voice processed transiently for transcription in Stint) and the resulting transcripts; inferences (your Stint memory profile); and other information you provide (Goal Inputs, chat content). We collect this from you directly, automatically from your device and interactions, from your authentication provider, and from our service providers, for the business purposes in Section 4 and shared with the recipients in Section 6.
We do not knowingly collect "sensitive personal information" as defined under the CCPA/CPRA except to the extent you choose to include it in your messages, voice input, memory, or the photographs you choose to take; we ask that you not submit or photograph such information, and we do not use it for purposes that would trigger the right to limit. We do not use your photographs to infer characteristics about you, and we do not derive biometric information from them (Section 3.4).
No sale; limited measurement share is planned, not active. We do not "sell" personal information for monetary consideration. We do not "share" personal information for cross-context behavioral advertising. The only exception is the adults-only advertising-measurement described in Section 6.6, which is not currently active. If we enable it, to the extent that activity is a "share" under the CPRA you may opt out by emailing legal@stint.tech (subject "Do Not Share") or via a Global Privacy Control signal on our website. That sharing would never apply to users under 18 or involve photographs, and we have no actual knowledge of selling or sharing the personal information of consumers under 16.
Your rights (to the extent the CCPA/CPRA applies to us): these may include the right to know/access, delete, and correct your personal information; to opt out of sale/sharing (inapplicable, but we will honor requests); to limit use of sensitive personal information (inapplicable as above); and to non-discrimination for exercising your rights. To exercise rights, email legal@stint.tech with the subject "California Privacy Request." You may use an authorized agent with proof of authorization. We may verify your identity. Shine the Light: we do not disclose personal information to third parties for their own direct-marketing purposes. Financial incentives: we do not offer financial incentives, or charge different prices or provide a different level of service, in exchange for the collection, retention, sale, or sharing of personal information.
12.3 Other U.S. States
Residents of other states with comprehensive privacy laws (such as Colorado, Connecticut, Texas, Oregon, Montana, and others) may have rights similar to those above, including rights to access, correct, delete, and obtain a copy of their personal data and to opt out of targeted advertising, sale, and certain profiling. We extend these rights to residents of such states to the extent required by their laws. To exercise them, email legal@stint.tech.
12.4 California Age-Appropriate Design Code (CAADC)
Our applications may be accessed by users under 18. Consistent with the California Age-Appropriate Design Code (Cal. Bus. & Prof. Code § 22949.10 et seq.), we have completed a Data Protection Impact Assessment and have designed the Service with the following minor-protective defaults that apply to all users:
- No behavioral advertising or profiling of minors. We do not use the data of any user under 18 to serve or target advertising, and we do not share minors' data with advertising partners. The adults-only advertising-measurement described in Section 6.6 is not currently active; if enabled, it would be restricted to adults (18+) and never performed for users under 18.
- No sale of personal information; minors' data never shared for advertising. We do not sell personal information, and we do not share the personal information of users under 18 for cross-context behavioral advertising or advertising measurement.
- Data minimization. We collect only the personal information reasonably necessary to provide the Service. We do not collect contacts, precise geolocation, calendar data, or biometric identifiers. Candor collects the photographs you choose to take, because they are the product's entire function, and nothing is derived from them (Section 3.4).
- No analysis of images. We do not run face detection, face recognition, or any other image analysis on photographs, of minors or of anyone (Section 3.4).
- Analytics controls. Product analytics are associated with a random account UUID; in Stint, also with your email and display name, and you can turn analytics and session replay off at any time in Settings → Privacy. Session replay does not run in Candor.
- User control. All users can permanently delete their account and data from within the app at any time, and Stint users can view and wipe their memory profile.
- No dark patterns. We do not use manipulative design to encourage users to share more personal information than is necessary for the Service.
- Neutral age screen (Stint). At account setup in the Stint app we present a neutral age screen that asks for your age solely to confirm the minimum age. We do not collect a full date of birth.
We do not knowingly profile users under 13 for any purpose. Parents or guardians who have concerns about their child's use of the Service may contact us at legal@stint.tech, and we will delete the account and its contents, including any photographs, on request.
12.5 Minor User Protections (All Jurisdictions)
Regardless of where you are located, if you are under 18, the following protections apply:
- The Stint coach is informational and motivational only. It is not a licensed therapist, counselor, or medical professional. If you are in crisis, contact your local emergency services or, in the United States, the 988 Suicide & Crisis Lifeline (call or text 988).
- The Service is prohibited from being used for mental-health crisis intervention or as a substitute for licensed therapy (see Terms of Service Section 6).
- If you use Candor, remember that other people have not agreed to be in your diary. Do not photograph anyone without their permission, and never photograph anyone in a place where people expect privacy. See Terms of Service Section 8.
- You can delete your account and all associated data, including every photograph, at any time from in-app Settings.
- A parent or legal guardian may contact legal@stint.tech to request deletion of their minor child's account and data.
- We do not use your content for behavioral advertising or sell your personal information.
13. European Economic Area, United Kingdom, and Similar Jurisdictions
If you are located in the EEA, the UK, or a jurisdiction with similar protections, you have the rights to access, rectify, erase, restrict, and port your personal data, and to object to processing (including processing based on legitimate interests and direct marketing). You may withdraw consent at any time (without affecting prior processing) and lodge a complaint with your local data-protection authority.
Data Controller. Stint LLC is the controller responsible for the processing of your personal data described in this Privacy Policy. You can reach us at legal@stint.tech.
Legal bases. We process your personal data on the bases of: (a) performance of our contract with you (providing the Service); (b) your consent (e.g., for optional features and device permissions such as the camera); (c) compliance with legal obligations; and (d) our legitimate interests in operating, securing, improving, and developing the Service, where not overridden by your rights.
EU/UK Representatives (GDPR / UK GDPR Article 27). Stint LLC is established in the United States. Our applications are offered for download only in the App Store storefronts we have enabled, which do not include the EEA or the UK; we do not offer, market, or make the Service available to individuals in the EEA or UK. Before we begin offering or marketing the Service to individuals in the EEA or UK, we will appoint EU and UK representatives under Article 27 and publish their contact details here. In the interim, EEA/UK residents may contact us at legal@stint.tech for any data-protection inquiry.
To exercise these rights, contact legal@stint.tech. We may verify your identity.
14. Automated Decision-Making
The Stint app uses automated processing (including large language models and rule-based logic) to generate tasks, summaries, suggestions, and other AI Output. Candor uses automated processing only in the narrow sense that it adds up what you recorded and compares it to what you said you wanted (Section 5.2). Neither produces legal or similarly significant effects concerning you. You are responsible for all decisions and actions you take, whether or not informed by what the Service shows you.
15. Third-Party Links and Policies
The providers identified in Section 6, and any third-party sites or services we link to, maintain their own privacy policies. We encourage you to review them. We are not responsible for their practices except as set out in our agreements with them.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date above and, for material changes, provide additional notice by reasonable means (such as in-app notice, push notification, or email). Your continued use of the Service after the changes take effect constitutes acceptance of the revised policy.
17. Contact Us
Stint LLC 8401 Mayland Dr Ste A, Richmond, VA, 23294 Commonwealth of Virginia, United States
| Purpose | |
|---|---|
| Privacy questions, rights requests, and legal notices | legal@stint.tech |
| General support | support@stint.tech |
Do Not Sell or Share My Personal Information. We do not sell or share personal information as those terms are defined under applicable law. California and other residents who nonetheless wish to submit a request may email legal@stint.tech with the subject "Do Not Sell or Share," and we will process it.