Back to Lightly

Privacy Policy for Lightly

Last updated: May 30, 2026

1. Introduction

Hey there. Thanks for taking the time to read this.

Lightly is designed to be a private and supportive space for reflection, emotional check-ins, and personal insights. When you use Lightly, you may share personal thoughts, feelings, moods, and other sensitive information. We take that seriously.

This Privacy Policy explains how Lightly (“Lightly,” “we,” “our,” or “us”) collects, uses, stores, and protects your information when you use our mobile application, website, and related services (together, the “Service”).

Please read this Privacy Policy carefully. If you do not agree with it, please do not use Lightly.

2. Our Promise

Lightly is built around a simple idea:

Your reflections are personal. They should be treated with care.

Our privacy principles are:

  • Your data belongs to you.
  • We do not sell your personal data.
  • We do not use your conversations to train our own AI models.
  • We only use your data to provide, improve, secure, and personalize Lightly.
  • We aim to be transparent about what we collect and why.

Lightly is not a medical service, therapy service, crisis service, or replacement for professional mental health care. If you are in immediate danger or experiencing a crisis, please contact local emergency services or a crisis hotline.

3. Information We Collect

We collect information that you provide directly, information generated when you use the app, and limited technical information needed to operate and secure the Service.

3.1 Account Information

When you create or use a Lightly account, we may collect:

  • your email address;
  • your name, if provided by you or your sign-in provider;
  • your profile image, if provided by your sign-in provider;
  • your authentication provider, such as Apple, Google, or email login;
  • your user ID and account creation date.

We use this information to create your account, authenticate you, and keep your account secure.

3.2 Chat and Reflection Content

When you use Lightly, you may provide personal content, such as:

  • chat messages;
  • emotional check-ins;
  • thoughts, reflections, and journal-like entries;
  • information about your mood, stress, anxiety, hopes, or daily experiences;
  • responses generated from your conversations;
  • daily reflections and insights generated from your chat history.

This content is used to provide Lightly’s core features, including chat responses, emotion detection, mood history, daily reflections, and personal insights.

3.3 Emotion and Insight Data

Lightly may analyze your chat messages to create structured information such as:

  • primary emotion for a message or day;
  • emotion intensity;
  • mood calendar entries;
  • daily reflection summaries;
  • recurring themes or tags;
  • insight cards and emotional patterns.

This information is generated to help you better understand your own emotional patterns over time.

3.4 Device and Usage Information

We may collect limited technical and usage data, such as:

  • device type and operating system;
  • app version;
  • language and region settings;
  • approximate usage activity, such as when features are opened or used;
  • crash, error, and performance information;
  • IP address and connection information.

We use this information to operate the app, fix bugs, improve performance, prevent abuse, and keep the Service secure.

3.5 Payment Information

If Lightly offers paid features, subscriptions, or purchases in the future, payments may be processed by third-party payment providers such as Apple, Google, Stripe, RevenueCat, or similar services.

We do not store your full payment card details. Payment providers may collect and process payment information according to their own privacy policies.

4. How We Use Your Information

We use your information to:

  • provide and maintain Lightly;
  • create and manage your account;
  • authenticate you securely;
  • provide AI-powered chat responses;
  • generate mood, emotion, and reflection insights;
  • show your mood calendar and daily reflections;
  • personalize your experience;
  • save your chat history and app state;
  • improve app functionality and reliability;
  • debug errors and fix technical issues;
  • protect against fraud, abuse, unauthorized access, or security threats;
  • comply with legal obligations;
  • enforce our Terms of Service and other policies.

We do not sell your personal conversations or personal reflections.

5. AI Processing

Lightly uses third-party AI providers to power chat responses, emotion classification, and daily reflections.

Currently, Lightly may send relevant parts of your chat messages and related context to AI providers such as OpenAI in order to generate responses and insights.

The types of data that may be processed by AI providers include:

  • your chat message text;
  • recent conversation context;
  • emotion-related context;
  • daily reflection input;
  • generated insight prompts;
  • limited account or session context needed to provide the feature.

We do not send your data to AI providers for the purpose of training our own AI models.

AI providers process data according to their own terms, privacy policies, and data processing agreements. Where available, we use privacy-protective API settings and business/API products that do not use customer API data for model training by default.

6. Third-Party Services We Use

We use trusted third-party service providers to operate, secure, and improve Lightly. These providers process data on our behalf only as needed to provide their services.

Supabase

We use Supabase for authentication, database hosting, and backend infrastructure. Supabase may process account data, chat data, emotion data, reflection data, and technical information needed to provide the Service.

OpenAI

We use OpenAI to provide AI-powered chat responses, emotion classification, and daily reflection generation. Relevant user content may be sent to OpenAI for processing.

Apple and Google

We may use Apple and Google for sign-in and authentication. If you choose to sign in with Apple or Google, these providers may process your identity and authentication information according to their own privacy policies.

Vercel or Hosting Providers

We may use hosting providers such as Vercel or similar infrastructure providers to host our website, backend API, and server-side logic.

Analytics, Crash Reporting, and Monitoring

We may use analytics, crash reporting, or monitoring tools in the future to understand app performance and fix bugs.

If we use such tools, we aim to avoid sending sensitive chat messages, personal reflections, or emotional content to analytics providers. If our use of analytics changes materially, we will update this Privacy Policy.

7. Data Storage and Security

We use technical and organizational measures designed to protect your personal information.

These measures may include:

  • encrypted connections using HTTPS/TLS;
  • authentication and access controls;
  • database security rules and backend authorization checks;
  • restricted service-role access on the backend;
  • separation between client-side and server-side secrets;
  • monitoring for errors and abuse;
  • limiting access to personal data to what is necessary.

Your data may be encrypted in transit and at rest where supported by our infrastructure providers.

However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.

8. Important Note About End-to-End Encryption

Lightly does not currently claim to provide end-to-end encryption for chat messages or reflections.

Because Lightly uses server-side processing and AI providers to generate responses and insights, certain content must be processed by our backend and AI providers to provide the app’s features.

We still aim to protect your data carefully through secure infrastructure, access controls, and privacy-conscious processing.

9. Data Retention

We keep your personal information only for as long as necessary to provide Lightly, comply with legal obligations, resolve disputes, enforce agreements, and maintain security.

This may include:

  • keeping your account data while your account is active;
  • keeping your chat history and reflections so you can access past conversations and insights;
  • keeping logs for a limited period for security, debugging, and reliability;
  • keeping certain records if required by law.

You may request deletion of your account and personal data by contacting us.

10. Your Privacy Rights

Depending on where you live, you may have certain rights over your personal data.

If you are located in the European Union, United Kingdom, Switzerland, or another region with similar privacy laws, you may have rights such as:

  • the right to access your personal data;
  • the right to correct inaccurate data;
  • the right to request deletion of your data;
  • the right to restrict or object to certain processing;
  • the right to data portability;
  • the right to withdraw consent where processing is based on consent;
  • the right to lodge a complaint with a data protection authority.

If you are located in California or another U.S. state with privacy laws, you may have rights such as:

  • the right to know what personal information we collect;
  • the right to request deletion of personal information;
  • the right to correct inaccurate personal information;
  • the right to opt out of the sale or sharing of personal information, where applicable;
  • the right not to be discriminated against for exercising your rights.

We do not sell your personal conversations or reflections.

To exercise your rights, contact us using the details at the end of this Privacy Policy.

11. International Data Transfers

Your information may be processed and stored in countries other than your country of residence.

For example, our service providers may process data in the United States, the European Union, or other locations where they or their subprocessors operate.

Where required, we rely on appropriate safeguards for international data transfers, such as contractual protections and data processing agreements.

12. Children’s Privacy

Lightly is not intended for children under the age of 13.

We do not knowingly collect personal information from children under 13. If we learn that a child under 13 has provided personal information, we will take reasonable steps to delete it.

If you believe a child has provided us with personal information, please contact us.

13. Sensitive Information

Because Lightly is a reflection and emotional support app, you may choose to share sensitive information in your conversations.

Please be thoughtful about what you share. Do not share information that you do not want processed by Lightly, our backend, or our AI providers.

Lightly is not a medical provider and does not provide medical diagnosis, therapy, emergency support, or professional mental health treatment.

14. Legal and Safety Disclosures

We may disclose your information if we believe it is necessary to:

  • comply with applicable law, regulation, legal process, or governmental request;
  • enforce our Terms of Service;
  • investigate fraud, abuse, or security issues;
  • protect the rights, safety, and property of Lightly, our users, or others;
  • respond to emergencies or prevent harm, where legally permitted or required.

15. Business Transfers

If Lightly is involved in a merger, acquisition, financing, restructuring, sale of assets, or similar transaction, your information may be transferred as part of that transaction.

If this happens, we will take reasonable steps to ensure your information remains protected.

16. Cookies and Similar Technologies

Our website may use cookies or similar technologies for:

  • basic website functionality;
  • authentication and session management;
  • security;
  • analytics;
  • performance improvements;
  • marketing measurement, if used.

You can control cookies through your browser settings. Disabling cookies may affect how the website or Service works.

17. Changes to This Privacy Policy

We may update this Privacy Policy from time to time.

If we make changes, we will update the “Last updated” date at the top of this page. If changes are material, we may notify you through the app, by email, or by another appropriate method.

Your continued use of Lightly after changes become effective means you accept the updated Privacy Policy.

18. Contact Us

If you have questions about this Privacy Policy or want to exercise your privacy rights, please contact us:

Lightly

Operator: [Your legal name or company name]

Email: [support@lightly.care]

Address: [Your business address]

19. Final Note

Lightly is built to be a calm and supportive space for self-reflection.

We know that your thoughts, moods, and personal reflections are deeply private. Our goal is to earn your trust by being clear about how your data is used, careful with what we collect, and respectful of your right to control your own information.