Privacy Policy

Feel Fine Place

Effective date: 2026-09-24

This policy explains how this application handles information and how to contact us about privacy.

Information we process

Feel Fine Place stores the places, text addresses, rooms and zones you create, wellbeing ratings, environmental factors, habits, notes, entry dates, and photos you choose to attach. The app converts attached entry images to JPEG before saving and synchronizing them. The app also stores your optional profile name, optional profile avatar converted to a JPEG with its longest side limited to 512 pixels, language and theme preferences, and reminder settings on your device. The profile name and avatar stay on the device. Journal records and attached entry photos are saved on your device and sent to the Feel Fine Place server when synchronization is available. A random secret generated for this installation is held in the device Keychain; the server stores a hash of it to recognize this installation. The hosting service receives network requests and may process technical request metadata, including an IP address, request time and path, in its infrastructure logs. We do not ask you to create an account or provide an email address to use the app.

How we use information

We use journal data to display your places and room mood view, save and restore entries, synchronize this installation when online, and calculate your personal comfort patterns. Entry photos are used only with the entries to which you attach them. Your local profile name and avatar personalize the Settings view; local preferences and reminders personalize the app and schedule notifications you request. The installation secret hash authorizes access to your own server data and prevents other installations from reading it. Technical request data is processed to deliver and operate the service.

Service providers and sharing

The app sends synchronized journal records, attached entry photos and the installation secret over HTTPS to the Feel Fine Place service hosted by Railway. It does not send your profile name or avatar to the server. Railway and its infrastructure providers process the data needed to host the application, PostgreSQL database, entry photo storage in that database, and service logs. We do not provide your journal to other app users or add advertising, analytics, email delivery, or social sign-in services. Photos you select through Apple's system picker remain subject to Apple's device and photo-library controls before you attach them.

Data retention

Journal content and entry photos remain on the device and server until you delete them or delete this installation's data. When an entry, room or place is deleted, synchronization removes its content from the active server records and retains a record ID, change time and deletion marker to prevent an older offline edit from restoring it; photos associated with deleted entries are removed from the active server database. Deleting an installation removes its journal records, deletion markers and photo bytes from the active database and leaves only a hash-only revocation marker so the old secret cannot be reused. The local profile name, avatar and preferences remain on the device until you clear them with Delete All Data or remove the app. Railway may keep infrastructure logs and backups under its own operational retention schedules; we do not promise a specific log or backup deletion period, and deleted data may remain in any existing backup until that backup expires.

Deleting your information

You can delete individual entries, rooms and places in the app. Settings provides a confirmed option to delete all data for this installation. When the server confirms deletion, the app removes local journal data and photos, resets its installation secret, and clears the local profile name, avatar, preferences and pending reminders. The server revokes the old secret and deletes its records and photos from the active database. If deletion cannot reach the server, keep the app and its installation secret until the request succeeds, or contact us to discuss the available options. Removing the app alone does not send a server deletion request. Because there is no account or identity recovery, loss of the installation secret can prevent us from locating a specific installation's journal data.

Permissions and your choices

Camera access is requested only if you choose to take a photo for an entry. Photo-library access is used only when you choose an existing photo to attach; the system photo picker may let you select an image without granting broad library access. Notification permission is requested only if you enable local reminders. You can change camera, photo and notification permissions in iOS Settings, and you can turn reminders off in the app. The app does not request location access or display a geographic map; addresses are text you enter.

Your privacy rights

You can view, edit and delete your journal data in the app and request deletion of this installation's server data from Settings. For privacy questions or requests, contact ondine.everard@icloud.com. We may need the installation secret or another way to identify the specific data before acting on a request, because the service does not maintain user accounts or email identities. Applicable privacy rights depend on your location and may include access, correction and deletion.

Security

The app keeps its random installation secret in the iOS Keychain and sends it only to the Feel Fine Place API over HTTPS. The server stores a SHA-256 hash of the secret, checks it for every private request, and isolates journal records and photo access by installation. Database credentials stay in the server configuration and are not embedded in the iOS app. No online service can guarantee absolute security; please use your device's passcode and keep your device secure.

Children’s privacy

Feel Fine Place is designed for adults to reflect on their environment and wellbeing. It is not directed to children. If you believe a child has provided data through an installation, contact ondine.everard@icloud.com so we can discuss deletion of data that can be identified.

Changes to this policy

We may update this policy when app features, storage or service providers change. The updated policy will be published at this page with a new effective date. If a change materially affects how existing journal data is used, we will provide notice in the app where practical.