Effective Date: March 2, 2026
BE THE ONE ("we", "us", or "our") operates the BE THE ONE mobile application and the website at bethe.one. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services.
Account Information: When you create an account, we collect your name, email address, and authentication credentials through Apple Sign-In or Google Sign-In. We store a unique user identifier provided by Firebase Authentication.
Profile Information: You may optionally provide a profile photo, display name, and personal preferences during onboarding.
Activity Data: We collect data about your use of the app, including ritual completions, session durations, experience points (XP), streak history, goals, affirmations, and journal entries you create.
Health Data: With your explicit permission, we access Apple HealthKit data (workout duration, active energy) to integrate with your rituals. Health data is stored locally on your device and is never transmitted to our servers or shared with third parties.
AI Conversations: When you use the Higher Self coaching feature, your messages are sent to our API server, which forwards them to Anthropic's Claude API for processing. Conversation history is stored locally on your device. We do not retain your conversation content on our servers beyond what is necessary to generate a response.
Social Features: If you use community features (feed, likes, comments), your display name, activity summaries, and interactions are visible to other users and stored in our database.
Device and Usage Data: We collect anonymized crash reports, performance metrics, and usage analytics to improve the app.
We use the following third-party services that may process your data:
Your primary data is stored locally on your device using Apple's SwiftData framework. Aggregated data (progress, social features, leaderboards) is synced to Google Cloud Firestore with encryption in transit and at rest. Authentication tokens are stored in the iOS Keychain with the kSecAttrAccessibleWhenUnlockedThisDeviceOnly protection class.
We implement Firebase App Check to prevent unauthorized API access and use HTTPS for all network communication.
We retain your data for as long as your account is active. When you delete your account through the app, we permanently remove your data from our authentication system and cloud database. Local data on your device is removed when you uninstall the app.
You have the right to:
If you are a resident of the European Economic Area (EEA), you have additional rights under GDPR, including the right to data portability, rectification, and the right to lodge a complaint with a supervisory authority.
If you are a California resident, you have rights under the CCPA, including the right to know what personal information is collected, the right to delete, and the right to opt out of the sale of personal information. We do not sell your personal information.
Our services are not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected data from a child under 13, please contact us and we will promptly delete it.
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the effective date. Your continued use of the app after changes constitutes acceptance of the updated policy.
If you have questions about this Privacy Policy or your data, contact us at:
Email: [email protected]
Website: bethe.one