Reflct keeps what it makes for you, not a permanent copy of your message history.
Last updated: August 21, 2026Reflct Sync analyzes your history locally on your Mac. Reflct saves the insights it creates for you and the specific excerpts it shows you, not a permanent copy of your conversations.
You point the app at your Messages folder using the standard macOS picker. macOS holds that grant, not us, and you can take it back at any time. Reflct does not use or require Full Disk Access. It only ever reads. Nothing in Messages is changed, moved, or deleted.
A read is the paid thing you ask for by name. Reflct borrows the messages that read needs from your Mac, builds the read, then deletes what it borrowed. A borrowed window cannot be stored without a deletion deadline, at most 24 hours out, and it is normally cleared within minutes of the read finishing. Every borrow is a line on your privacy page with the time it was deleted. Lines a read quotes stay inside that read until you delete it. What a read touches depends on which read you buy, and each one says so before you pay.
Pro is the one standing permission. The Mac app syncs recent message content so your daily pages have something to read while your Mac is asleep. It is not filed away in a permanent archive: by default what the server keeps is a rolling three-day window, and each day drops out once it ages past that.
What it made for you: counts, timing, insights, the specific excerpts it shows, and the Reads you bought. They stay in your account until you delete the item that owns them.
We do not sell your data, and there are no ads. We do not use your messages, content or metadata, to train AI models, and the AI providers we send work to do not train on them either.
Your privacy page shows processing text Reflct is holding and why it is there. Stored threads, the Pro rolling window, and temporary Read borrows are shown with their permissions and deletion state. Insights and excerpts stay with the page or Read that owns them. In Reflct Sync you can exclude a person; in Reflct you can delete created items or your account.
The receipts live on your privacy page, and the switches live in your account settings.
Reflct, operated by Reflct Inc ("we," "our," or "us"), is a personal cognitive tool that helps you capture, organize, and reflect on your thoughts. This policy explains what data we collect, how we use it, and the choices you have.
We built Reflct for ourselves first. We treat your data the way we'd want ours treated: with care, minimalism, and respect.
We do not use your messages (content or metadata) to train AI models, and the AI providers we rely on do not train on the data we send through their APIs. Anthropic, which powers Reflct's reading, does not train on API inputs and normally deletes API inputs and outputs within 30 days. Limited safety, legal, and contractual exceptions may apply.
On Free, Reflct Sync analyzes your history locally on your Mac. It sends the specific outputs Reflct uses: counts, timing, dates, contact names, relationship insights, and the specific excerpts selected for a Reflct surface. It does not upload or retain a permanent copy of your conversation history. Reflct keeps what it makes for you, not a permanent copy of your message history.
When you sign up, we collect your phone number or email address for authentication. We may also store a display name if you provide one.
Reflct's core experience involves voice capture. When you record, audio is streamed to a third-party transcription service (currently Deepgram) for real-time speech-to-text conversion. The resulting transcriptions are stored in your account.
We do not permanently store raw audio files on our servers. Audio is processed in real-time and discarded after transcription.
Text you enter, conversations with the Reflct agent, and any content generated from your inputs (summaries, insights, patterns) are stored in your account and associated with your user profile.
Reflct can sync data from third-party services you connect, with your explicit permission. Each connection is opt-in and can be revoked at any time from the Sources page in the app.
The Reflct Chrome extension stores your Reflct API key and sync state locally in your browser so it can connect to your account. It uses your existing browser sessions for Claude.ai, ChatGPT, and LinkedIn, but it does not collect or send your passwords or third-party session cookies to Reflct.
If you connect a bank or credit card account, Reflct uses Plaid to retrieve your transaction history (read-only). This includes merchant names, amounts, dates, categories, and account identifiers. Reflct does not access or store your online banking credentials. Plaid handles authentication directly with your financial institution and provides Reflct with a secure access token, which we encrypt at rest. Reflct cannot move money, initiate payments, or modify your accounts in any way. You can disconnect your accounts at any time from the Sources page, which immediately revokes Reflct's access.
We collect limited product analytics to understand whether Reflct works and is useful: app opens, active session duration, page or feature usage, notification permission and open status, app version, platform, and basic device information. Signed-in product events use a pseudonymous account identifier so we can measure retention and diagnose failures. We do not send message text, read content, contact names, email addresses, share links, invite tokens, notification contents, or financial data to analytics providers.
Plausible provides aggregate, cookie-free website traffic reporting. PostHog provides explicitly instrumented product events. Statsig provides feature flags, experiments, and limited page/performance analytics. Automatic click, form-value, copied-text, and DOM-text collection is disabled. Session replay, when enabled, is limited to a reviewed allowlist of static public pages with input and text masking; private, personalized, invite, and share-token routes are excluded.
In the iOS app, shaking your phone opens a problem-report form and captures the screen that was visible at that moment. Before sending, you can remove the screenshot and either type or dictate a note. We store the report, basic app and device details, and any attached screenshot with your account so we can investigate and respond.
Screenshots are kept in private file storage and are never posted to Discord. What goes to our private Discord channel to alert the Reflct team is the typed or transcribed note, the account it came from, and limited app, device, and screen context.
We rely on a small set of trusted infrastructure providers:
We do not sell your data to anyone. We do not share your personal content with third parties beyond what is necessary to operate the service as described above.
For Chrome Web Store data disclosures, the Reflct extension collects personally identifiable information, personal communications, and website content only to provide the sync features you enable. We do not use extension-collected data for advertising, creditworthiness, resale, or unrelated purposes.
Your data is stored in a PostgreSQL database hosted by Supabase on AWS infrastructure in the United States. All data is encrypted in transit (TLS) and at rest. Access to production data is restricted and requires multi-factor authentication.
Row-Level Security (RLS) policies ensure that you can only access your own data. No other user can read your conversations, transcriptions, financial transactions, or insights.
Sensitive third-party credentials, such as Plaid access tokens and OAuth refresh tokens for connected accounts, are additionally encrypted at the application layer using AES-256-GCM before being stored, with the encryption key held separately from the database.
A copy of our full security policy is available on request. Email support@reflct.ai.
You have the right to:
We retain your data for as long as your account is active. Deleting your account from your settings runs the removal immediately. Anything left to handle by hand, including a deletion you ask us for by email, we complete within 30 days, except where the law requires us to keep it.
Reflct's detailed product-event ledger is normally retained for 180 days and runtime performance details for a shorter operational window. Longer-lived performance rollups contain aggregate counts and timings without user identifiers. Plausible's aggregate reports and provider-side product analytics follow their configured retention periods. Account deletion removes attributable Reflct analytics; if a provider copy needs manual handling, we complete that deletion within 30 days.
Reflct is not intended for use by anyone under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
We may update this policy from time to time. If we make significant changes, we will notify you through the app or via email. Continued use of Reflct after changes constitutes acceptance of the updated policy.
Questions about this policy or your data? Reach out at support@reflct.ai.