archii

the working record · legal 01

privacy, stated plainly.

effective august 11, 2026

Archii is a personal archive and AI-assisted reflection system. The app can hold intimate records, so this policy names what is collected, why it is used, where it goes, and how to leave.

1. who this policy covers

This policy applies to the Archii iOS app, Archii websites, and the services those products use. “Archii,” “we,” and “us” refer to the operator of those services. Archii is intended for adults and is not directed to anyone under 18.

Archii is not a medical provider, therapist, emergency service, or substitute for professional care.

2. information you provide

We do not receive an entire device library merely because you grant access. We process the records the feature requests or that you select, subject to the permission shown by iOS.

3. connected services and Google API data

Archii Connect lets you deliberately authorize external services and choose which source to add. For Google connections, Archii requests only the scopes needed for the source you select:

Archii uses this Google user data only to provide and secure prominent, user-facing Archii features: syncing and displaying the selected source, organizing and searching your private archive, and producing source-grounded memories or patterns for your own account. OAuth access and refresh tokens are encrypted server-side; the iOS app does not receive the provider secret. Archii stores the normalized records needed to operate the source you selected.

If you separately grant Archii's cloud-AI consent, relevant connected records may be processed by Archii's contracted infrastructure or model providers solely to provide personalized, user-facing features for your account. Archii does not use raw or derived Google Workspace API data to train or improve generalized or shared AI or machine-learning models.

Archii does not sell Google user data, use it for advertising, or transfer it to data brokers. Humans do not read Google user data except with your affirmative permission for a specific support request, when necessary for security, or when required by law. Service providers may process the minimum data needed to operate the feature under Archii's instructions.

You can disconnect a Google source inside Archii, revoke Archii from your Google Account, or delete your Archii account. Disconnecting stops future syncs and removes the provider credentials held for that connection. Account deletion removes ordinary user-scoped connected records under the retention terms below.

Google Limited Use. Archii's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

4. information created during use

AI inferences are probabilistic. They can be incomplete or wrong and should not be treated as clinical findings or objective facts about a person.

5. how we use information

We use personal data to authenticate you; store and retrieve your archive; provide chat, reflection, measurement, relationship, notification, export, and device-action features; secure and debug the service; respond to support; and comply with law.

We do not sell personal data. We do not use third-party advertising SDKs, and we do not track you across other companies’ apps or websites for advertising.

Research is separate. Ordinary product use does not by itself authorize a governed research study. A study requires its own information, consent, scope, and withdrawal terms. We do not quietly convert private product records into research participation.

6. AI processing and service providers

While you have granted cloud AI processing, relevant prompts, selected records, queued uploads, retrieved passages, and derived context may be processed in the foreground or background through Archii’s servers and contracted infrastructure or model providers so your archive and twin can operate. Current provider categories include:

We limit providers to the data needed for the service they perform and require contractual or platform safeguards. We do not authorize them to use Archii personal data for their own advertising.

7. health and other sensitive data

Health, psychological, relationship, diary, and archive content can be especially sensitive. We use HealthKit data only to provide user-facing health and reflection features. We do not use HealthKit data for advertising, data brokerage, or unrelated marketing.

You can change Apple permissions in iOS Settings. Revoking a device permission stops new access through that permission; it does not automatically erase information already saved to your Archii account.

8. sharing

We share personal data only with service providers acting for Archii, with another person when you deliberately use a consented sharing or relationship feature, when required by law, to protect the service or a person from fraud or abuse, or as part of a corporate transaction with appropriate notice and safeguards.

A relationship is a separate, consented record. Archii does not treat one person’s private perspective as automatically visible to another.

9. retention, export, and deletion

We retain account and archive data while your account is active and as needed to provide the service. Retention can also be required for security, dispute resolution, legal obligations, or a separately consented governed-research record.

You can initiate account deletion inside the iOS app. Deletion is intended to remove the consumer account and its ordinary user-scoped records and files. We may retain narrowly limited records when law or a separately signed research protocol requires it; if that applies, Archii will identify the retained category and the withdrawal or review path instead of representing the account as fully erased.

After an ordinary deletion, Archii keeps a one-way hash of the former authentication identifier so a stale sign-in token cannot silently recreate the deleted account. Deleted data may remain in access-restricted disaster-recovery backups until those backups expire, currently within 30 days. We do not restore deleted account data to the live service except as required for disaster recovery.

Deleting Archii removes the provider credentials stored by Archii, but it cannot revoke every authorization held by an external provider or erase a message or relationship record another person is independently entitled to retain. Revoke external connections in the provider’s own settings where applicable.

You may also request access, correction, a portable copy, or deletion assistance by emailing lauren@archii.ai. We may verify identity before acting.

10. security and international processing

Archii uses transport encryption, access controls, encrypted managed storage, backups, and operational safeguards. No service can promise absolute security. Providers may process information in the United States and other locations where they operate, subject to applicable safeguards.

11. your choices and rights

Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or obtain a portable copy of personal data, and to withdraw consent. You may appeal a denied privacy request by replying to our decision. You may also complain to your local data-protection authority.

Optional notifications and device permissions can be declined without losing unrelated features. Cloud AI processing can be declined or later withdrawn. In this iOS release, the signed-in archive and twin workspace stays closed while that permission is off; the privacy policy, support email, account deletion, and sign-out controls remain available.

12. changes and contact

We will update the effective date when this policy changes. Material changes will be surfaced in the product or by another appropriate notice before they take effect where required.

Privacy questions and requests: lauren@archii.ai.