BE THE ONE
Back to Home

Privacy Policy

Effective Date: March 2, 2026

BE THE ONE ("we", "us", or "our") operates the BE THE ONE mobile application and the website at bethe.one. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services.

1. Information We Collect

Account Information: When you create an account, we collect your name, email address, and authentication credentials through Apple Sign-In or Google Sign-In. We store a unique user identifier provided by Firebase Authentication.

Profile Information: You may optionally provide a profile photo, display name, and personal preferences during onboarding.

Activity Data: We collect data about your use of the app, including ritual completions, session durations, experience points (XP), streak history, goals, affirmations, and journal entries you create.

Health Data: With your explicit permission, we access Apple HealthKit data (workout duration, active energy) to integrate with your rituals. Health data is stored locally on your device and is never transmitted to our servers or shared with third parties.

AI Conversations: When you use the Higher Self coaching feature, your messages are sent to our API server, which forwards them to Anthropic's Claude API for processing. Conversation history is stored locally on your device. We do not retain your conversation content on our servers beyond what is necessary to generate a response.

Social Features: If you use community features (feed, likes, comments), your display name, activity summaries, and interactions are visible to other users and stored in our database.

Device and Usage Data: We collect anonymized crash reports, performance metrics, and usage analytics to improve the app.

2. How We Use Your Information

  • To provide, maintain, and improve the app and its features
  • To personalize your experience (AI coaching, ritual suggestions, gamification)
  • To sync your progress across devices
  • To send push notifications you have opted into (reminders, streaks)
  • To analyze usage patterns and fix bugs (anonymized analytics)
  • To enforce our Terms of Service and moderate community content

3. Third-Party Services

We use the following third-party services that may process your data:

  • Firebase (Google) — Authentication, cloud database (Firestore), crash reporting (Crashlytics), analytics, and push notifications (Cloud Messaging). Firebase Privacy Policy
  • Mixpanel — Product analytics and session replay to understand how users interact with the app. We do not collect advertising identifiers (IDFA). Mixpanel Privacy Policy
  • Anthropic (Claude API) — AI language model for the Higher Self coaching feature. Messages are processed per Anthropic's usage policies. Anthropic Privacy Policy
  • Apple HealthKit — Health data integration, accessed only with your explicit permission and processed entirely on-device.

4. Data Storage and Security

Your primary data is stored locally on your device using Apple's SwiftData framework. Aggregated data (progress, social features, leaderboards) is synced to Google Cloud Firestore with encryption in transit and at rest. Authentication tokens are stored in the iOS Keychain with the kSecAttrAccessibleWhenUnlockedThisDeviceOnly protection class.

We implement Firebase App Check to prevent unauthorized API access and use HTTPS for all network communication.

5. Data Retention

We retain your data for as long as your account is active. When you delete your account through the app, we permanently remove your data from our authentication system and cloud database. Local data on your device is removed when you uninstall the app.

6. Your Rights

You have the right to:

  • Access your data — use the Export Data feature in Settings
  • Delete your account and all associated data — use Delete Account in Settings
  • Opt out of analytics — disable analytics in your device settings
  • Withdraw consent for HealthKit — revoke access in iOS Settings > Health
  • Withdraw consent for notifications — disable in iOS Settings

If you are a resident of the European Economic Area (EEA), you have additional rights under GDPR, including the right to data portability, rectification, and the right to lodge a complaint with a supervisory authority.

If you are a California resident, you have rights under the CCPA, including the right to know what personal information is collected, the right to delete, and the right to opt out of the sale of personal information. We do not sell your personal information.

7. Children's Privacy

Our services are not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected data from a child under 13, please contact us and we will promptly delete it.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the effective date. Your continued use of the app after changes constitutes acceptance of the updated policy.

9. Contact Us

If you have questions about this Privacy Policy or your data, contact us at:

Email: [email protected]

Website: bethe.one