Legal
Privacy Policy
Effective September 5, 2026
Atomic Reflection is operated by an independent individual developer (“Atomic Reflection,” “we,” “us,” or “our”).
This Privacy Policy explains how information is collected, used, stored, and handled when you use Atomic Reflection at atomicreflection.com.
Atomic Reflection is a private reflection practice designed to help you record experiences and notice recurring patterns in how you think, choose, and react. Because what you write may be personal, we want to be clear about what happens to it.
Information you provide
When you create an account, we may process information such as your email address, account identifier, profile settings, authentication information, onboarding status, preferences, and related timestamps.
If you choose Google sign-in, Google and Supabase process the information needed to authenticate you.
Atomic Reflection does not store your raw account password in its application database.
Your reflections, Patterns, and Memories
Atomic Reflection stores the information you choose to create in the service, including:
- reflections and unfinished drafts;
- answers to reflection questions;
- dates and period labels;
- Patterns, Tags, and classifications;
- Memories;
- relationships between entries;
- revision history and related organizational information.
Memories are stored as undated reflection entries rather than in a separate memory database.
Some additional information is created by the application to organize your content, such as identifiers, normalized names, statuses, merge relationships, classification state, revision information, and timestamps.
Your Reflections, Patterns, and Memories are private by default. Atomic Reflection currently does not provide public reflection pages, public sharing links, or account-to-account sharing of this content.
AI processing
Atomic Reflection does not currently send your Reflections, Patterns, or Memories to OpenAI, Anthropic, Google AI, or another external large-language-model provider.
If this changes in the future, we will update this Privacy Policy before introducing that processing as part of the service.
How we use your information
We use information to provide and operate Atomic Reflection, including to authenticate your account, save and retrieve your reflections, maintain drafts and revisions, organize Patterns and Memories, manage access levels and subscriptions, provide account export and deletion, maintain security and reliability, diagnose technical problems, and respond to support requests.
We do not use your private reflection content for advertising.
Cookies and browser storage
Atomic Reflection uses authentication and session cookies that are necessary to keep you signed in and protect your account. A temporary verification cookie may also be used during OAuth sign-in.
To help prevent you from losing work, unfinished reflection drafts and related editing state may also be stored locally in your browser. This may include draft answers, your current reflection step, helper preferences, and draft Pattern or Tag information.
Because this information is stored on your device, people who can access your browser profile may also be able to access those local drafts.
Atomic Reflection also uses temporary browser storage for functional purposes such as continuing a checkout flow.
These technologies are used for product functionality rather than advertising.
Analytics and error monitoring
Atomic Reflection uses PostHog for optional product analytics. Analytics is disabled by default and is enabled only when a signed-in user turns on Allow privacy-safe analytics under Settings → Privacy. The same control can be turned off there at any time; this affects optional product analytics and does not disable services needed for authentication, security, billing, reliability, or error monitoring.
When enabled, PostHog may receive limited product-usage information such as feature or page usage, product interaction events, a pseudonymous internal account identifier, sanitized route/path information, and technical environment metadata. We do not intentionally send reflection text, Memories content, Pattern content, user email or name, passwords, authentication tokens, or raw form contents to PostHog. PostHog automatic capture, automatic form capture, automatic pageview capture, and Session Replay are not used.
Atomic Reflection uses Sentry for application error monitoring and operational reliability. Sentry is separate from the optional analytics setting. Sentry may process limited technical diagnostic information such as error details, stack traces, route/path information, browser or runtime metadata, timestamps, and deployment/environment metadata. We configure Sentry to minimize sensitive data and do not intentionally send reflection text, Memories content, Pattern content, user email or name, passwords, authentication credentials, or request bodies containing private user content. Sentry Session Replay, broad application log capture, and tracing are not enabled.
Payments
Paid subscriptions are processed by Creem, our Merchant of Record.
To create and manage a subscription, Atomic Reflection may provide Creem with information such as an internal account reference, your email address where applicable, the subscription interval, product information, and billing-related identifiers.
Atomic Reflection stores limited subscription information needed to determine whether your account has Full Access.
Atomic Reflection does not receive or store your full payment-card number.
Creem separately handles payment processing, invoices, taxes, refunds, disputes, and related transaction records under its own terms and privacy practices.
Service providers
Atomic Reflection currently relies on services including:
Supabase for authentication and database infrastructure.
Vercel for hosting and application delivery.
Creem for subscription transactions.
Google when you choose Google sign-in.
Atomic Reflection may also use PostHog for optional analytics and Sentry for error monitoring as described above.
PostHog's privacy information is available at https://posthog.com/privacy, and Sentry's privacy information is available at https://sentry.io/privacy/. These providers are used for the limited analytics and error-monitoring purposes described above, not for behavioral advertising or the sale of user data. They may process information in countries different from where you live under their own contractual and legal safeguards. Analytics and diagnostic information is retained only as reasonably necessary for the purposes described above, subject to our service-provider configuration and applicable legal requirements.
Communications sent to support@atomicreflection.com are handled using our email infrastructure.
These providers may maintain their own security logs, backups, fraud-prevention records, or other information under their own technical and legal requirements.
Free and Full Access
Moving from Full Access to Free does not delete your historical reflections.
Free access provides a limited view of recent dated reflection history. Older retained reflections remain stored but may no longer be visible through the Free interface.
Completed undated Memories are also unavailable while your account is on Free.
If Full Access is restored, retained historical content and Memories become available again.
Canceling a subscription and deleting your account are therefore two different actions.
Exporting your information
Authenticated users can export Atomic Reflection data in JSON or CSV-based formats.
Exports can include reflections and related organizational information. The exact contents differ by format.
Billing-provider information and authentication-provider metadata are not included in the standard export.
Exports are generated when requested and delivered using private, non-cached responses. Atomic Reflection does not keep a separate product copy of the generated export after delivery.
Deleting your account
When you successfully delete your account, Atomic Reflection deletes your main account and the Reflections, Patterns, Memories, Tags, classifications, and other application data associated with it.
Sensitive deletion requests may require recent authentication or reauthentication.
If an active subscription exists, Atomic Reflection first attempts to resolve the subscription safely before completing deletion.
Some limited records may remain where needed for billing, fraud prevention, security, backups, accounting, or legal obligations. Creem and infrastructure providers may also retain certain transaction or operational records according to their own requirements.
We therefore cannot promise that every copy held in provider backups or independent transaction systems disappears immediately.
We recommend exporting anything you want to keep before deleting your account.
Security
Atomic Reflection uses HTTPS to protect information while it travels between your browser and the service, together with account-level access controls intended to keep each user's information separate.
Atomic Reflection is not end-to-end encrypted. The service must be able to process your content on its servers in order to provide its current features.
No online service can guarantee absolute security, but we take reasonable steps to protect the information entrusted to us.
Tracking preferences
Atomic Reflection does not currently use advertising pixels or cross-site behavioral advertising.
The current service does not implement special behavior in response to browser Do Not Track (DNT) or Global Privacy Control (GPC) signals.
If our tracking practices materially change, we will update this Policy.
International processing
Atomic Reflection's service providers may process information in countries different from where you live.
Their processing is subject to their respective technical, contractual, and legal safeguards.
Children and age
Atomic Reflection is intended for adults. You must be at least 18 years old to use the service.
We do not currently ask users to provide their age during signup.
If you believe a minor is using Atomic Reflection in violation of our Terms, please contact support@atomicreflection.com.
Your choices
You can modify information through Atomic Reflection where controls are available, export your account data, delete your account, and decline optional analytics where consent is requested.
To disable optional product analytics, go to Settings → Privacy and turn off Allow privacy-safe analytics.
Depending on where you live, applicable law may give you additional rights relating to your personal information.
You can contact us to exercise applicable rights or ask privacy questions.
Changes to this Policy
We may update this Privacy Policy as Atomic Reflection evolves.
If we make material changes, we will update the effective date and provide additional notice where appropriate.
Contact
For privacy questions, account requests, or other inquiries:
support@atomicreflection.com
Atomic Reflection is operated by an independent individual developer.
