EasyTech
HomeAppsGet in Touch

Privacy Policy - Soulboard: Vision Board & Manifestation

Last updated: May 18, 2026

1. Introduction

EasyTech Agency ("we," "our," or "us") operates the Soulboard mobile application (the "Service" or "App"). This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service.

Soulboard is built around a privacy-first principle: your vision boards, photos, journal entries, future-self letters, and affirmation history stay on your device. We use a small backend only to generate AI content on-demand; we do not retain your prompts or generated content on our servers.

2. Data We Collect

2.1 Locally Stored Data (never leaves your device)

The following data is stored on your device only and is not transmitted to any server we operate:

  • Onboarding answers (your name, selected dream categories, named intentions, aesthetic tone, blockers, practice level)
  • Your vision boards: template, slot layout, photos you upload, photo crop frames, text content, background styles
  • Generated and favorited affirmations
  • Future-self letters you have generated and saved
  • Shadow-work journal entries, prompts, and mood tags
  • Streak record, read counts, and favorite counts
  • Notification preferences and app settings

Photos imported into a vision board are stored in the App's sandbox storage on your device. They are never uploaded to our servers. You may explicitly export individual boards to your iOS Photos library or to share sheets at your discretion (in which case Apple's standard handling applies).

2.2 Anonymous Identifier

On first launch, Firebase Authentication assigns your installation an anonymous identifier (UID). This UID is used solely to authenticate requests to our AI-generation backend and to apply per-installation rate limits. It is not linked to your Apple ID, email, name, or any other personal identifier we can resolve back to you.

2.3 AI-Generation Requests (transient)

When you ask Soulboard to generate an affirmation, a future-self letter, or a journal question, the App sends the following data to our backend (hosted on Google Cloud Run / Firebase Cloud Functions):

  • Your anonymous Firebase UID
  • The first name you entered during onboarding (used to personalize generated text — you may leave this blank)
  • Your selected dream categories, intentions, tone, and (for journal questions) blockers and practice level
  • The recent generated texts to exclude (to avoid repetition)

These requests are forwarded to Google's Gemini API to produce the generated text, then returned to your device. We do not store prompts or generated text in any database on our side, beyond a short-lived rate-limit record (timestamps only, no content) used to prevent abuse.

2.4 Photo Library Access

The App requests permission to access your Photo Library only when you tap to add a photo to a vision-board slot. We use Apple's PhotosPicker so the App receives only the photos you explicitly select. We do not browse, index, or upload your library.

2.5 Notifications

Reminders for your daily affirmation are scheduled and delivered locally by your device using Apple's local-notification system. We do not operate any push-notification servers and we do not store your notification preferences off-device.

3. Subscriptions and Payments

In-app purchases and subscriptions are managed by RevenueCat, a third-party service. RevenueCat may collect:

  • An anonymous identifier to manage your subscription
  • Your in-app purchase history
  • No payment information (handled directly by Apple)

For more information, see the RevenueCat Privacy Policy.

4. Analytics

We use PostHog to collect anonymized usage analytics to improve the App. We capture only essential funnel events such as:

  • Onboarding step completion and overall completion
  • Dream categories and intention counts selected (counts and ids, not your personal context)
  • Paywall views, purchases, dismissals, and trial-expiry lockouts
  • Affirmation generations, board creations, journal entries created
  • Future-letter opens and shares

Analytics events are anonymous, are not linked to your identity, and cannot be used to identify you individually. The text content of affirmations, letters, and journal entries is never sent to analytics. For more information, see the PostHog Privacy Policy.

5. AI Provider (Google Gemini)

Generated text (affirmations, future-self letters, shadow-work questions) is produced by Google's Gemini large language model API. Generation prompts are sent to Google's API over an encrypted connection. Google's use of API content is governed by their terms — see the Google Gemini API Terms.

6. Advertising Attribution (App Tracking Transparency)

Soulboard uses the TikTok Business SDK to measure which advertising channels help people discover the App. This is a tracking SDK as defined by Apple, and it is governed by Apple's App Tracking Transparency framework.

  • On first launch, the App will ask you for permission to track. You may deny this prompt at any time, in which case no device identifier is shared with TikTok and ad-attribution events are not sent.
  • If you allow tracking, an Apple-issued advertising identifier may be shared with TikTok along with conversion events such as registration completion and subscription start.
  • You can change your decision at any time in iOS Settings → Privacy & Security → Tracking → Soulboard.

For more information, see the TikTok Privacy Policy.

7. Data Sharing

We do not sell, trade, or transfer your personal information to third parties, except in the following cases:

  • With your explicit consent
  • To comply with a legal obligation
  • To protect our rights or your safety
  • With service providers who assist in operating the App (Firebase, Google Gemini, RevenueCat, PostHog, TikTok Business SDK) — under strict data processing agreements and limited to the categories above

8. Data Security

We take data security seriously. Your boards, photos, journal entries, and letters are stored locally on your device and are protected by your device's built-in security features. Backend traffic uses TLS encryption. Subscription data is secured by Apple and RevenueCat.

9. Your Rights

You have the right to:

  • Access your personal data — all of it is on your device
  • Delete your data by uninstalling the App (this removes everything)
  • Withdraw your tracking consent at any time in iOS Settings
  • Object to data processing
  • Lodge a complaint with a supervisory authority (CNIL in France)

10. Children's Privacy

The App is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected data from a child under 13, please contact us immediately.

11. Changes to This Policy

We reserve the right to modify this Privacy Policy at any time. Changes will take effect upon publication. We encourage you to review this page periodically.

12. Contact

If you have any questions about this Privacy Policy, contact us at:
contact@easytech-agency.net

Back to Soulboard

© 2025 EasyTech. All rights reserved.

contact@easytech-agency.net