Mellow Page

Privacy Policy

Updated: Mar 22, 2025

Mellow Page is built on a promise of simplicity, privacy, and peace of mind. This Privacy Policy explains how we collect, use, and protect your information when you use our website and services.

1. Information We Collect

We collect the minimum data necessary to operate Mellow Page:

  • Account Information
    • First name (only)
    • Email address
    • Encrypted password (hashed, never stored in plain text)
  • Journal Entries
    • Your journal entries are encrypted on your device before they are transmitted to our servers. We store only encrypted versions; we cannot view or access your journal contents.
  • Subscription/Billing Info
    • If you subscribe to a paid plan, your payment is processed securely via a third-party provider (e.g., Stripe). We do not store your full payment details.
  • Technical Information
    • IP address and basic device/browser information (used only for security and performance monitoring)

2. How We Use Your Information

We use your information only for the following purposes:

  • To create and maintain your account
  • To securely store and retrieve your encrypted journal entries
  • To process subscription payments
  • To provide support or troubleshoot technical issues
  • To protect the security and integrity of the platform

3. Data Sharing

We do not sell, rent, or share your personal data with advertisers or third parties.

The only third parties we work with are:

  • Stripe (for payment processing)
  • Our hosting providers (for secure infrastructure)

These services are contractually required to handle your data responsibly and securely.

3.1 AI Features (Insights, Tags, Titles)

Mellow Page includes AI-powered features designed to enhance your journaling experience, including:

  • Insights: Thoughtful reflections based on your entries
  • Auto-Tags: Contextual tags that help surface recurring themes
  • Auto-Titles: Suggested entry titles based on your writing

These features are powered by large language models provided by OpenAI.

To generate insights and metadata, your journal entry is temporarily decrypted in memory on your device and securely transmitted to our server over encrypted HTTPS. It is then immediately forwarded to OpenAI’s API for processing.

The unencrypted text is never stored or logged on our servers, and no one at Mellow Page can access your decrypted journal content. During this process, our servers function purely as a secure passthrough to OpenAI's API to support these features.

AI-generated outputs — such as tags, titles, or insights — are returned to your device and may be saved as standard metadata (such as tags and titles) alongside your journal entry to support search, filtering, and faster loading.

These AI features are part of Mellow Page’s core experience and are currently not optional.

Use of these features is also subject to OpenAI’s Business Terms. We do not send personal identifiers (like your name or email) to OpenAI. Inputs submitted to OpenAI’s API are not used to train or improve their models.

Important: AI-generated content is intended for self-reflection and personal insight. It may occasionally be inaccurate or misleading and is not a substitute for professional medical, legal, or therapeutic advice.

4. Encryption & Security

  • Before being saved / updated in our database, your journal entries are encrypted before leaving your device using strong client-side encryption. We only store encrypted data and cannot decrypt it on our servers.
  • All communication with our servers is secured via HTTPS.
  • We follow industry best practices for secure password storage and account protection.
  • In the event of a data breach, your journal entries would remain protected and unreadable to unauthorized parties.

5. Recovery & Responsibility

To ensure you can regain access to your encrypted journals if you forget your password, we provide an optional Backup Recovery Key. This key is generated once and securely presented to you. We do not retain a copy.

Important: If you lose access to both your password and Backup Recovery Key, we will not be able to recover your journal entries. Please store your backup key in a secure location.

6. Cookies & Tracking

Mellow Page uses minimal cookies required for session handling and account login.

We do not use ad networks or invasive analytics.

We may use privacy-respecting, cookie-free analytics to better understand how users interact with the app and improve the experience. No personal data is tracked or sold.

7. Access to Journal Data

We cannot read or access your journal entries. Journals are encrypted before they are stored on our servers, and only your device holds the key needed to decrypt them.

8. Data Retention

  • Your encrypted journal entries and account data are stored until you delete your account.
  • Upon deletion, your encrypted journal data is permanently removed from our systems after a short grace period.

9. Your Rights

Depending on your location, you may have the right to:

  • Access, correct, or delete your personal information
  • Withdraw consent or request account deletion
  • Ask questions about how we use your data

Contact us at hello@mellowpage.com to exercise any of these rights.

10. Children's Privacy

Mellow Page is not intended for children under 16 without parental consent. If we learn that a user under 16 has registered without permission, we will delete the account and associated data.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of material changes through the website or via email.

12. Contact

If you have questions about this policy, reach out to us at: hello@mellowpage.com