Safe Diary Privacy Policy

Last updated: 26 September 2026

This policy explains what information the Safe Diary mobile app (for Android and iOS) handles, where it goes and what choices you have. Safe Diary is made by HighTouch Innovation ("we", "us"). If you have any question about it, write to [email protected].

In short

  • Your diary pages stay on your device. We have no server that stores them and no user accounts, so we never see what you write.
  • Backups and sync are optional and go to your own Google Drive, Microsoft OneDrive or Dropbox account, encrypted with a password only you know.
  • The free version shows ads from Google AdMob, which collects some device information to show and measure ads. Buying PRO removes the ads.
  • When the app crashes, an anonymous technical report is sent to Sentry so that we can fix the problem. It never contains your diary pages.
  • We do not sell your data, and we do not build profiles of you.

1. Your diary pages

Everything you create in Safe Diary – text, checklists, photos, voice memos, tags, folders and settings – is saved in an encrypted database on your phone or tablet. It is not sent to us or to anyone else, and the app works without an internet connection. Because we never receive your diary pages, we cannot read them, and we cannot recover them for you if you lose your device or forget your PIN and your recovery options.

Your PIN, your secret word and your recovery email address are kept on your device, in the device's secure storage. Your PIN and secret word never leave it.

PIN recovery by email

If you add a recovery email address and then ask to reset a forgotten PIN, the app generates a one-time code and sends it to that address through our email delivery provider, MailerSend. For this, MailerSend receives your email address and the message with the code, and keeps delivery records as email providers do. We do not keep a copy, and the address is not used for anything else – no newsletters, no marketing. The code expires after 30 minutes.

2. Permissions the app asks for

The app only asks for a permission when you use the feature that needs it, and you can refuse or revoke it at any time in your device settings.

  • Camera – to take a photo to add to your diary pages. If you turn on "Intruder attempts", the front camera also takes a photo after several wrong PINs; that photo is kept only on your device.
  • Microphone – to record voice memos and to dictate text. Speech-to-text is performed by your device's speech recognition service (for example Google's on Android or Apple's on iOS), under that provider's privacy policy.
  • Fingerprint / face unlock – handled entirely by your device. The app only learns whether the check succeeded; it never receives your fingerprint or face data.
  • Approximate location – only when you ask to add where you are to a page. The position is turned into a place name by your device's geocoding service and saved with the page, on your device.
  • Notifications – only to show reminders you turn on, such as the daily reminder to write. They are scheduled on your device.
  • Internet – only for cloud backups and sync, PIN recovery emails, ads in the free version, crash reports and checking your purchase.

3. Backups, sync and your cloud storage

You can create backups, keep them on your device, share them, or upload them to your own Google Drive, Microsoft OneDrive or Dropbox account. You can also keep several of your devices in sync through that same account. Backups are protected with a password you choose, and sync data is encrypted on your device before it leaves it, so your storage provider cannot read it and neither can we. The files go directly from your device to your account: they do not pass through our servers.

To reach your cloud storage the app asks you to sign in with the provider and grant access. It only asks for access to its own app folder (on Google Drive, the hidden app data folder), not to your other files. The access token is kept in your device's secure storage. You can revoke access at any time from your Google account, Microsoft account or Dropbox account settings.

Google sign-in. For Google Drive, the sign-in page runs on our website (hightouchinnovation.com): Google hands the access token to our site, which passes it straight back to the app, together with the email address of the Google account so that the app can show which account is connected. Our site does not store the token or your email address. A cookie in your browser keeps the Google sign-in session, and our web host keeps standard technical request logs (such as IP address and time), as any website does.

Safe Diary's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Data from your Google Drive is only used to store and restore your own backups and sync data, is never transferred to us or to third parties, and is never used for advertising.

4. Advertising (Google AdMob)

The free version of Safe Diary shows ads served by Google AdMob. To show ads, limit how often you see them, measure them and prevent fraud, Google may collect information from your device such as the advertising ID, IP address, approximate location derived from it, device model and settings, and how you interact with ads. This information is collected by Google, not by us, under Google's Privacy Policy (see also how Google uses information from apps that use its services). Ads never have access to your diary pages.

Where the law requires it (for example in the European Economic Area, the UK and Switzerland) you are asked for your consent through Google's consent form before personalised ads are shown. On iOS, the app asks for permission to track through Apple's App Tracking Transparency prompt. You can also reset your advertising ID or opt out of personalised ads in your device settings. Buying the PRO version removes all ads.

5. Crash reports (Sentry)

To find and fix problems, Safe Diary uses Sentry. When the app crashes or hits an unexpected error, it sends a technical report containing the error and where in the code it happened, the device model, operating system and app version, a random identifier for the installation, and a list of recent technical events in the app (for example which screen was open). The app is configured not to send personal information: reports never contain your diary pages, your name, your email address or your PIN. The reports are stored by Sentry in the European Union and are deleted automatically after a limited period (normally 90 days). See Sentry's Privacy Policy.

6. Purchases

The PRO version is sold through Google Play (and the App Store on iOS). Payments are handled entirely by Google or Apple; we never receive your payment details. The app only checks with the store whether PRO has been bought.

7. What we do not do

  • We do not sell, rent or trade any information.
  • We do not use analytics to track how you use the app.
  • We do not ask you to create an account, and we have no database of users.
  • We do not use your recovery email address for anything but sending the PIN reset code you asked for.

8. Children

Safe Diary is not directed at children under 13 (or the minimum age required in your country), and we do not knowingly collect information from them. If you believe a child has provided us with personal information, contact us and we will delete it.

9. Your choices and rights

Because your diary pages never leave your device, you are always in control of them: you can edit or delete them in the app, and uninstalling the app deletes everything it stored on the device. Backups you uploaded remain in your cloud account until you delete them there.

Depending on where you live (for example under the GDPR in the EU and the UK), you have the right to access, correct, delete or object to the processing of your personal data. We do not hold personal data that identifies you, but if you have a request about the information handled by AdMob or Sentry, write to us and we will help, or contact Google or Sentry directly. You also have the right to complain to your local data protection authority.

10. Security

Your diary pages are stored in an encrypted database protected by your device's keystore, backups are encrypted with your password, and all network connections use HTTPS. No method of storage or transmission is 100% secure, but keeping your data on your device, and nowhere else by default, is the best protection we can offer.

11. Changes to this policy

If this policy changes, the new version will be published on this page with a new "Last updated" date. If the change is significant, we will also tell you in the app.

12. Contact

HighTouch Innovation – [email protected]

← Back to Safe Diary