Privacy Policy
Isimo asks you to write down the things that matter most to you. That only works if you know exactly where it goes. This policy explains what we collect, why, who else can see it, and how to take it back.
This policy is written to be read, not survived. The full detail follows, but the substance of it is short:
Isimo is a goal-setting and personal-progress system operated by Isimo(“Isimo”, “we”, “us”). This policy covers the Isimo website at isimo.co, the signed-in product, and the emails we send you.
We are accountable for the personal information under our control under Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA) and, where it applies, provincial privacy legislation. Our privacy contact is privacy@isimo.app.
Where you are protected by privacy law outside Canada — the GDPR in the EU and UK, or state privacy laws in the United States — we extend the access, correction, deletion, and portability rights in section 12 to you regardless of where you live.
Accounts are handled by Firebase Authentication. Depending on how you sign up we receive:
Everything you create in the product is stored in Cloud Firestore under your own account and is readable only by you. That is enforced in our database rules, not merely in the interface. It includes:
Much of this is, by its nature, personal. People write about their health, their relationships, their finances, and their setbacks in Isimo. We treat all of it as sensitive and apply the protections in section 11 to it uniformly.
Images you place on a vision board, a Brainstorm board, or a journal thread are held in Cloud Storage under a path belonging to your account, and they share one quota. Uploads pass through our authenticated server so that quota can be reserved correctly; only image files are accepted, each file must be under 10 MB, and each account has 250 MB of space. Each image gets an unguessable download link, so anyone you deliberately give that link to can view the file.
Your messages to Mismo, its replies, and the status of any Isimo action you confirm or dismiss are saved privately to your account so you can reopen the conversation across devices. You can delete a conversation from Mismo history at any time. What is sent to our AI provider to produce each reply is set out in section 06.
Our hosting produces ordinary server logs: IP address, browser and device type, the pages and API routes requested, timestamps, and error traces. We use them to keep the service running, diagnose faults, and detect abuse.
We do not run advertising networks, third-party analytics, session recording, heatmaps, or tracking pixels. We do not buy personal information about you, we do not build advertising profiles, and we do not track you across other websites.
We use personal information only for the purposes we identify here:
We do not use what you write in Isimo to train AI models, our own or anyone else’s. We do not read your content to build marketing profiles. Staff access to member content is limited to what is necessary to investigate a fault or a support request you have raised, and is not routine.
You consent to the handling described here when you create an account and use Isimo. For anything beyond running the product — promotional email in particular — we ask separately and you are free to decline without losing any part of the service.
You can withdraw your consent at any time, subject to legal and contractual limits and to reasonable notice. Withdrawing consent for core processing means closing your account, because we cannot operate Isimo without storing what you write in it. Withdrawing consent for optional processing — promotional email, or use of Mismo — simply means turning that part off, and everything else keeps working.
Mismo is the one feature that sends your writing outside our own systems, so it deserves plain description rather than a general clause about “third-party technology”.
Who processes it. Mismo’s replies are generated by OpenAI, L.L.C.in the United States, using its API models. OpenAI is our processor: it receives the data to generate and return Mismo’s response.
What is sent. When you send a message, our server assembles a bounded context from your own saved data and sends it with your message. That context is capped and consists of:
What is not sent. Your documents, your vision and Brainstorm boards and their images, your habits and habit notes, your setbacks, your life-area ratings, your email address, and your name are not sent to OpenAI. We send a one-way hash of your Isimo account ID as a safety identifier; it does not contain your name, email address, or account ID.
What happens to it. Isimo stores the conversation in your private account history until you delete it or close your account. Our request still tells OpenAI not to retain it as reusable Responses API conversation state. OpenAI does not use API content to train its models unless we explicitly opt in. Its default abuse monitoring logs may retain submitted content for up to 30 days, and prompt caching may keep encrypted computational state for up to 24 hours. Replies are returned to your browser with browser and intermediary caching disabled.
How to avoid it entirely. Nothing is sent to OpenAI unless you open Mismo and send a message. If you never use Mismo, your writing never leaves our systems for this purpose.
Mismo is a thinking companion, not an authority. It can be wrong, and it is not a substitute for medical, psychological, financial, or legal advice. The judgment stays yours — see section 03 of our Terms of Service.
Isimo sends email through Resend, Inc., which receives your email address and the content of the message in order to deliver it. There are two kinds, and they are governed differently.
Service email — account confirmation, password reset, security alerts, billing receipts, and notices about changes to these documents. These are part of holding an account and are sent for as long as your account exists. They carry no marketing, and they are not something you can unsubscribe from without closing your account.
Product news and promotional email— new features, guides, and offers. Under Canada’s Anti-Spam Legislation (CASL) these are commercial electronic messages, so we send them only where you have given us express consent, we identify ourselves in every message, and every message carries a working unsubscribe link that we action within 10 business days. You can also withdraw consent at any time by writing to privacy@isimo.app. Unsubscribing from product news never affects your service email or your access to Isimo.
Our email provider records ordinary delivery information — whether a message was delivered, bounced, or was marked as spam. We use it to keep our sending healthy and to stop emailing addresses that no longer work.
If you send us a note through the contact form or by email, we keep that correspondence so we can answer you and handle any follow-up.
We use a small number of service providers to run Isimo. Each is bound by contract to protect the information, to use it only to provide the service to us, and to give it a level of protection comparable to our own.
| Provider | What it does | What it can see | Where |
|---|---|---|---|
| Google LLC / Google Cloud | Firebase Authentication, Cloud Firestore, Cloud Storage, and Firebase App Hosting — the accounts, the database, the uploaded images, and the servers that run Isimo. | Account identifiers, everything you write and upload in Isimo, and server request logs. | United States |
| OpenAI, L.L.C. | AI inference for Mismo. OpenAI's API models generate Mismo's replies. | Your messages to Mismo and the personal context assembled for that request. Nothing else, and nothing at all if you never open Mismo. | United States |
| Resend, Inc. | Delivery of account and service emails, and of product news where you have asked for it. | Your email address, your name where you have given one, and the content of the message sent to you. | United States |
Information held outside Canada. These providers store and process information in the United States. While it is there it is subject to the laws of that country, and foreign courts, law enforcement, and national security authorities may be able to compel access to it under their own legal processes. We tell you this plainly because PIPEDA requires that you know it before you decide to use Isimo.
We also disclose personal information where we are legally required to — a valid court order, subpoena, or lawful demand — and where it is necessary to protect the rights, safety, or property of Isimo, our members, or the public. If Isimo is ever involved in a merger, acquisition, or sale of assets, member information may transfer as part of that transaction; we will give notice before it becomes subject to a different privacy policy.
We do not sell, rent, or trade personal information, and we do not share it for cross-context behavioural advertising.
Isimo sets no advertising or analytics cookies.There is no consent banner on this site because there is nothing to consent to. What the product does use is your browser’s own storage, and only for these things:
If you sign in with Google, Google sets its own cookies on its own domains under its privacy policy. That is Google’s processing, not ours. A vision board or Brainstorm board that embeds a video loads that player from whoever hosts it — YouTube, Vimeo, Loom, Dailymotion, Streamable, Wistia, or Twitch — when the board is viewed, which lets that service see the request and set its own cookies under its own policy. Nothing is loaded from them until a board holding such a video is opened.
We keep what you write for as long as your account is open, because that is the point of it — a review from two years ago is evidence, not clutter. You control most of it directly: goals, documents, reflections, setbacks, reviews, habits, clarity sessions, Mismo conversations, and Brainstorm boards can each be deleted from within Isimo whenever you like. Deleting a Brainstorm board also releases the images only it was using, so the space comes back to your quota.
A few records are designed to be revised rather than individually deleted — your Clarity Board focus, your weekly reviews, your vision board, and your settings are overwritten as you change them, and keep no history of earlier versions. Closing your account removes all of them.
When you close your account, we delete your account record and the content stored against it, including uploaded images, within 30 days. Backups are purged on their own rotation, no later than 90 days. We retain what the law requires us to keep — billing and tax records for paid plans, typically six years — and anything needed to resolve a dispute or enforce our agreements.
Server logs are retained for a rolling period of up to 90 days.
Safeguards appropriate to the sensitivity of the information, which for a product people write their private ambitions into means a high bar:
No system is perfectly secure, and we will not pretend otherwise. If a breach creates a real risk of significant harm to you, we will notify you and the Office of the Privacy Commissioner of Canada as PIPEDA requires, and we keep records of breaches as required.
You may, at any time:
Write to privacy@isimo.app. We will respond within 30 days, at no cost, and will tell you in advance if a request is genuinely complex enough to need an extension. We may need to verify your identity before acting, and we may have to withhold information whose release would reveal another person’s personal information or is otherwise protected by law — if we refuse a request, we will tell you why and how to challenge it.
If our answer does not satisfy you, you may complain to the Office of the Privacy Commissioner of Canada at priv.gc.ca, or to the privacy regulator in your own province or country.
Isimo is not intended for children. You must be at least 16 to create an account. We do not knowingly collect personal information from anyone under 16, and if we learn we have, we will delete it. If you believe a child has given us information, write to privacy@isimo.app.
As Isimo grows, this policy will change. When it does, we update the date at the top of this page. If a change materially affects how we handle your personal information — a new category of data, a new purpose, or a new provider that can see your content — we will tell you by email or in the product before it takes effect, and where the law requires it, we will ask for your consent rather than assume it.
Privacy questions, requests, and complaints go to our privacy contact at privacy@isimo.app. Everything else reaches us at hello@isimo.app.
Your use of Isimo is also governed by our Terms of Service.
Questions
We would rather explain a clause than have you agree to something you do not understand. Write to privacy@isimo.app for anything about your data, or hello@isimo.app for everything else. A person answers.