The Breakup Architect · Last updated [DATE] · Version 1
[BRACKETED] details below. It must not be relied upon or published until that review is complete.The Breakup Architect ("we", "us", "the app") is a self-help and relationship-recovery web application. For the purposes of UK data protection law (the UK GDPR and the Data Protection Act 2018), the data controller is [YOUR LEGAL NAME OR COMPANY, e.g. "Jane Smith" or "The Breakup Architect Ltd, company no. 00000000"], contactable at [privacy@yourdomain.com][, registered address [ADDRESS] — required if you operate as a company].
If you have any question about this policy or your data, that email address is the fastest way to reach us.
This app exists to hold some of the most private thoughts a person has — about themselves, and sometimes about someone else in their life. We have built it so that we cannot see that content, even if we wanted to, and even if we were compelled to try.
When you write something in the app, it is encrypted in your browser (AES-GCM-256) before it is uploaded. The key that unlocks it is derived from your password and never leaves your device in a usable form. On our servers we store only encrypted data and wrapped (re-encrypted) keys that are useless without your password or your one-time recovery key.
The practical consequences, which we want to be completely honest about:
| Data | Why we hold it | Can we read it? |
|---|---|---|
| Email address | To create your account, log you in, and send password-reset and essential service emails | Yes |
| Password | To authenticate you. Stored only as a secure one-way hash by our provider | No — never stored in readable form |
| Your content (Reality Log, journals, check-ins, moods, trackers, plans — everything you write) | To provide the service to you across your devices | No — end-to-end encrypted |
| Subscription status, trial dates, consent record, last-active date | To manage billing, your free trial, and to comply with our legal obligations | Yes |
| Payment details (card number, etc.) | Handled entirely by Stripe — they never reach our servers | No — we never receive them |
We do not use analytics services, advertising trackers, or any third-party scripts beyond the two providers named in section 6. We do not build profiles of you, and we do not sell or share your data with anyone for marketing.
Because of what this app is for, the content you enter may reveal information about your health (including mental health) or your sex life. Under Article 9 of the UK GDPR this is "special category" data and receives extra protection.
Our lawful bases:
Data about other people. Tools such as the Reality Log may contain information about another person (for example, a partner). Your private, personal use of the app to record your own experience is generally covered by the "domestic purposes" exemption in data protection law. We minimise our own exposure to this data by encrypting it so we cannot read it, and we encourage you to use initials or a nickname rather than a full name where you can.
We use two carefully chosen service providers, each under a data processing agreement:
Under UK data protection law you have the right to:
Alongside the end-to-end encryption described above, we protect your data in transit with TLS, encrypt it at rest, and enforce database access rules so that each account can only ever reach its own data. If we ever became aware of a personal data breach that posed a risk to you, we would notify the ICO within 72 hours where required, and notify you where required.
We do not use advertising or tracking cookies. The app uses your browser's local storage only to keep you signed in and to hold your encryption key on your own device. No third party can read this.
The app is intended for adults and is not directed at anyone under 18. We do not knowingly collect data from children.
If we make a material change to how we handle your data, we will update this policy and, where appropriate, ask for your consent again before the change affects you.
For any privacy question or to exercise your rights: [privacy@yourdomain.com].