Privacy Policy
Last updated: January 17, 2026
Company: Mustica LLC
Data Controller: Mustica LLC
Registered Address: 30 N Gould St Ste N, Sheridan, WY, 82801, US
Contact: privacy@mustica.io · +1 (307) 207-6881
This Privacy Policy explains how Mustica (“we”, “our”, “us”) collects, uses, and protects your information when using our Services.
1. Information We Collect
1.1 Encrypted Journal Content
- Journals are encrypted locally on your device.
- When transmitted, they are encrypted using a temporary session key.
- We do not store unencrypted journal content.
1.2 Derived Data (Stored)
We may store:
- AI-generated summaries
- Habit patterns
- Emotional trend analysis
- Routine suggestions
- Behavioral metrics
These help personalize your experience.
1.3 Analytics & Logs
We collect:
- Device metadata
- App interaction logs
- Crash reports
- Button clicks (for debugging)
We do not log sensitive user content.
1.4 Web Analytics (Vercel)
We use Vercel Web Analytics integrated at the app level. It is cookie‑less and collects aggregated page views and route changes to help us understand usage and improve performance. It does not store personal journal content.
1.4 Account and Contact Information
- Email address and support communications
- Beta invite requests
2. Payment Information
Payments are handled by:
- Apple (App Store)
- Google (Google Play)
- Stripe
We do not receive or store your full payment card details.
3. Purposes & Legal Bases
- Provide and improve the Services (contract necessity)
- Diagnostics, analytics, and security (legitimate interests)
- Communications and support (consent/legitimate interests)
- Billing and fraud prevention (legal obligation/legitimate interests)
4. AI Data Processing
- Your data is only used to generate responses.
- Not used to train third-party models.
- Not shared with advertisers.
Details are in the AI Use Policy.
5. Cookies (Website)
The website may use cookies for:
- Authentication
- Analytics (note: our Vercel Web Analytics is cookie‑less)
- Performance
You may disable cookies in your browser.
6. Data Storage & Location
- All servers are located in the United States.
- Encrypted content is processed securely.
- No plain text journal entries are stored.
7. Data Retention
- Derived insights until you delete your account
- Crash logs up to 90 days
- Metadata required for billing (per App Store / Google Play requirements)
You may request deletion anytime.
8. Your Rights
Depending on your region, you may:
- Request export of your data
- Request deletion
- Request correction
- Withdraw consent
Contact us at privacy@mustica.io.
Do Not Sell
We do not sell personal information and do not share it with advertisers.
9. Children
The Service is not intended for individuals under 18 years old.
10. Security
We implement:
- End-to-end encryption for journals
- TLS for all communications
- Strict access controls
- No plaintext storage of sensitive data
However, no system is 100% secure.
11. Sharing & Processors
We may use trusted third-party processors for hosting, analytics, crash reporting, and email. These processors are bound by confidentiality and security obligations.
12. International Transfers
If data is transferred internationally, we use appropriate safeguards consistent with applicable law.
13. Contact Us
Email: privacy@mustica.io
Website: https://mustica.io
Address: 30 N Gould St Ste N, Sheridan, WY, 82801, US
Phone: +1 (307) 207-6881