Privacy Policy
Anchor - Mental Health & Wellness App
Your Journey to Healing, PLLC
Effective Date: February 12, 2026
Introduction
Welcome to Anchor ("App," "we," "us," or "our"). This Privacy Policy explains how Your Journey to Healing, PLLC collects, uses, discloses, and safeguards your information when you use our mobile application and related services.
We are committed to protecting your privacy and handling your personal information with care. Please read this policy carefully to understand our practices regarding your data.
HIPAA Commitment: For therapy clients, we maintain HIPAA-conscious practices to protect your protected health information (PHI) in accordance with applicable healthcare privacy regulations. This includes PHI redaction in audit logs, secure authentication, session timeouts, and access controls.
Information We Collect
Information You Provide
- Account Information: Name, email address, and password when you create an account
- Role Selection: Your chosen user role (Therapy Client, Wellness User, or Therapist)
- Profile Information: User preferences, profile settings, and for therapists: practice name, phone number, and license information
- Journal Entries & Mood Logs: Text entries for mood tracking and reflections used for AI-powered mood insights
- Wellness Data: Mood scores, emotion tracking, wellness check-in responses, and self-reported wellness information
- Communications: Messages exchanged with your assigned therapist (therapy clients only)
- Worksheet Submissions: CBT, DBT, and EMDR worksheet responses
- Community Posts: Forum posts (if applicable to your subscription tier)
- Payment Information: Subscription purchases processed securely through Apple In-App Purchases (we do not store payment card information)
- Support Tickets: Information submitted through the in-app support system
Information Collected Automatically
- Device Information: Device type, operating system, and device platform
- Session Data: Session tokens, login timestamps for security and session management
- Audit Logs: Actions taken within the app for compliance purposes (with PHI redaction)
Data We Do NOT Collect
Anchor does not collect:
- Location or GPS data
- Contacts or phone book information
- Photos or camera data
- Advertising identifiers or tracking data
- Payment card or banking information (all payments are processed by Apple)
- Crisis monitoring or emergency tracking data
How We Use Your Information
- Provide Services: Deliver the App's features including mood tracking, secure messaging, wellness resources, and worksheet assignments
- AI Mood Insights: Analyze journal entries using OpenAI to generate wellness scores, emotion distribution, and mood trends
- Therapist-Client Communication: Facilitate secure messaging between therapy clients and their assigned therapists
- Practice Management: Manage therapist-client assignments, practice seats, and team invitations
- Subscription Processing: Process and verify subscription purchases through Apple In-App Purchases
- Email Communications: Send therapist invitation and practice-related emails via Microsoft Outlook
- Compliance: Maintain audit logs with PHI redaction for regulatory compliance
- Security: Detect and prevent fraud, abuse, or security incidents through rate limiting and session management
- Improvement: Analyze usage patterns to enhance App functionality and user experience
- Legal Compliance: Meet legal obligations and respond to lawful requests
AI-Powered Features
Anchor uses OpenAI to provide mood insights and sentiment analysis of journal entries. This feature:
- Analyzes your journal text to identify emotional patterns and trends
- Provides a wellness score, emotion distribution, and mood trend visualization
- Sends journal text to OpenAI for processing without personally identifiable information attached
- OpenAI does not use your data for model training
- Does NOT provide medical diagnosis or treatment recommendations
- Does NOT replace professional mental health care
Important: AI insights are for informational and self-awareness purposes only and should not be considered medical advice. Always consult with a qualified healthcare provider for mental health concerns.
Data Sharing & Disclosure
We do not sell your personal information. We may share your data only in the following circumstances:
Service Providers
- Apple: Purchase receipts are sent to Apple servers for subscription verification and management
- OpenAI: Journal entry text is sent for sentiment analysis (no personally identifiable information is attached; OpenAI does not use this data for training)
- Microsoft Outlook: Email addresses are used when sending therapist invitation and practice-related emails
Therapist Access (Therapy Clients Only)
Your assigned therapist may access:
- Messages you send through the secure messaging feature
- Assigned worksheet submissions and progress data
Legal Requirements
We may disclose information when required by law, court order, or to protect the safety of individuals.
Data Security
We implement industry-standard security measures to protect your information:
- Encryption of data in transit (TLS/SSL)
- Secure token storage on device (expo-secure-store)
- Server-side session inactivity timeouts
- Rate limiting to prevent abuse
- Comprehensive audit logging with PHI redaction
- Limited access on a need-to-know basis
While we strive to protect your data, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
Data Retention
- Active Accounts: We retain your data while your account is active
- Therapy Records: Clinical records may be retained as required by healthcare regulations (typically 7 years after last service)
- Account Deletion: Upon request, we will delete your personal data within 30 days, except where retention is required by law
- Anonymized Data: We may retain anonymized, aggregated data for analytics purposes
Your Rights & Choices
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data
- Portability: Receive your data in a portable format
- Opt-Out: Disable push notifications and promotional communications
- Withdraw Consent: Where processing is based on consent, you may withdraw it at any time
To exercise these rights, contact us using the information provided below.
Children's Privacy
Anchor is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child, please contact us immediately.
Crisis Services Disclaimer
Anchor is NOT a crisis service. If you are experiencing a mental health emergency, suicidal thoughts, or need immediate assistance:
- Call 988 (Suicide & Crisis Lifeline)
- Call 911 for emergencies
- Go to your nearest emergency room
- Text HOME to 741741 (Crisis Text Line)
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the updated policy in the App
- Updating the "Effective Date" at the top of this policy
- Sending an email notification for significant changes
Your continued use of the App after changes constitutes acceptance of the updated policy.