Last updated 2026-08-04
Privacy Policy
This policy explains what Life Orchestrator collects, why, how long it is kept, and how to get it all back or have it deleted.
The short version
- You control what goes in. Nearly all of the data in your account is data you entered or explicitly connected.
- We do not sell your personal data, and we do not share it with advertisers.
- You can export your entire account and you can delete it. Both are built into the product.
- Optional data uses, such as product analytics, are opt-in and separate from the Terms of Service. None of them is required to use the product.
- This marketing site sets no cookies and stores no analytics identifier before you create an account.
Who this covers
This policy covers Life Orchestrator at lifeorchestrator.app, the web application at app.lifeorchestrator.app, the Life Orchestrator mobile apps for iOS and Android, and the API at api.lifeorchestrator.app.
The companion apps in the Life Orchestrator family store their data on your device and each has its own policy. They arelisted at the end of this page.
What we collect
Account information
Your email address, display name, and a password hash. We never store your password itself. If you sign in with a third-party provider we store the identifier that provider gives us, not your credentials with them.
Content you create
The substance of the product. Depending on which modules you use this may include transactions and budgets, workouts and biometrics, meals and shopping lists, projects and tasks, courses and assignments, habits and streaks, journal entries and mood tags, chores, household membership, and your conversations with the creature companion.
This content is yours. We process it to provide the features you are using and to generate the summaries, trends, and insights those features exist to produce.
Connected services
If you connect an external service, for example a wearable or a banking data provider, we store the data that service returns and the tokens needed to keep the connection alive. You can disconnect at any time from Settings, which revokes the token and removes the imported records for that connection.
Technical information
Standard server logs: IP address, user agent, request path, timestamp, and a request identifier. These are used for security, abuse prevention, and debugging. We also record application errors so faults can be diagnosed.
Payment information
Paid subscriptions are processed by Stripe. Card details go to Stripe directly and never reach our servers. We store your subscription tier, its status, and the identifiers Stripe gives us to reconcile the two.
What we do not do
- We do not sell personal data.
- We do not share your content with advertisers or data brokers.
- We do not use your content to train third-party AI models without a specific, separate, opt-in permission from you.
- We do not track you across other websites.
Optional data use choices
At signup, and at any time afterwards in Settings, you are offered a set of optional data-use choices. They are unbundled, default to off, are never pre-ticked, and none of them is required to register or to use the product. Declining them costs you nothing beyond the specific feature each one enables.
Product analytics is one of these choices. Until you grant it, we do not build an identified analytics profile for you. On this marketing site, before you have an account at all, analytics runs without cookies and without a persistent identifier, which is why you are not being asked to accept a cookie banner.
AI features
Some features send the relevant part of your content to a language model in order to produce a result: categorisation suggestions, weekly insight summaries, and the companion chat. Only the content needed for that specific request is sent. This processing is to deliver the feature you asked for. It is separate from, and does not imply, permission to use your content as training data.
Where your data lives and how long we keep it
Your data is stored in a managed PostgreSQL database and served from our application infrastructure. Data is encrypted in transit with TLS and encrypted at rest by the hosting platform.
We keep your content for as long as your account is open. When you delete your account, the content associated with it is deleted. Backups roll off on the hosting platform's own retention cycle, after which the data is gone from those too. Records we are legally required to retain, such as billing records for tax purposes, are kept for the period the law requires and nothing longer.
Your rights
Wherever you live, you can:
- Access and export. Export your whole account from Settings, in a machine-readable format.
- Correct. Edit anything you entered, directly in the product.
- Delete. Delete your account from Settings. This is a real deletion, not a deactivation.
- Withdraw consent. Turn any optional data use back off at any time, in Settings.
- Object or restrict. Contact us and we will act on it.
If you are in the UK or the EU, these rights come from the UK GDPR and the GDPR respectively. If you are in California, you have the rights granted by the CCPA, including the right to know and the right to delete. We do not sell personal information as the CCPA defines it.
You do not need to email anyone to exercise the main ones. Export and delete are buttons in Settings. For anything else, write toprivacy@lifeorchestrator.app.
Children
Life Orchestrator is not directed at children under 13, and we do not knowingly collect data from them. If you believe a child has created an account, contact us and we will remove it.
Service providers
We use a small number of processors to run the service: a cloud hosting provider, a managed database provider, a CDN and DNS provider, Stripe for payments, and a language model provider for the AI features. Each receives only what it needs to do its job, under a data processing agreement.
Security
Data is encrypted in transit and at rest. Access to production data is restricted. Every record in the system is scoped to the account that owns it, and that scoping is enforced at the data layer rather than left to individual queries. No system is perfect. If you find a security issue, please report it toprivacy@lifeorchestrator.app and we will respond.
Changes to this policy
If this policy changes we will update the date at the top of this page and, where the change is material, notify you in the product before it takes effect.
Contact
- Email: privacy@lifeorchestrator.app
- Support: lifeorchestrator.app/support
Companion app policies
Each of these apps works on its own, stores its data on your device, and is covered by its own policy.