sayless Privacy Policy
Effective date: 6 August 2026
This is the privacy policy for sayless, an app for getting through the days after a breakup without texting someone you're trying to stay away from. It explains what the app does and doesn't do with your information, in plain language.
The short version
This app does not have a server, does not require an account, and does not know who you are. Everything you write, record, or photograph in the app stays on your phone. The only thing that can ever leave your device is a small, optional backup of your streaks and settings — sent to your own private iCloud account, not to us, and only if you choose to turn it on. We have no ability to see it either way.
What sayless collects
Nothing that identifies you, by default. You can use every feature of sayless — tracking your streak, writing your reasons, recording voice or video messages to your future self, saving photos, drafting unsent texts — without creating an account, entering an email address, or signing in to anything.
If you choose to sign in with Apple, sayless uses it only to enable the optional iCloud backup described below. We do not receive your email address, name, or Apple ID from this — Sign in with Apple is handled by Apple's own framework, and sayless never operates a server that could log it even if it wanted to.
On-device analytics. sayless records basic, anonymous usage events (like "a Hold session was started") entirely on your device, to help understand which features are used. As of this writing, these events go nowhere — there is no analytics server, and no third-party analytics company is integrated into the app. The event system is built so that free-text content — your notes, your alias for your ex, anything you've written — cannot be included in an event; only fixed, pre-defined labels can be. You can turn analytics off entirely at any time in Settings, which also deletes anything currently buffered.
Diagnostic/crash data, if collected, is scrubbed to exclude your vault content before it would ever be reported.
What never leaves your device
Regardless of whether you sign in, the following stays on your phone only, encrypted, and is never transmitted anywhere by sayless:
- Everything in your Remember Why vault — written reasons, notes, photos, voice messages, and video messages
- Unsent message drafts
- Your personal alias for your ex, and any note describing what staying away from them costs you
- Any notes you attach to a contact-boundary event
There is no code path in the app that can send any of this off the device — the backup feature described below is built so it literally cannot read this data, not just configured not to.
What optional backup does (and does not) include
If you sign in with Apple and enable backup, sayless syncs a small set of non-sensitive data to your own private iCloud database — the same kind of storage Apple gives every app for a signed-in user, which we cannot access, sell, or view. This exists so that if you get a new phone, you don't lose your streak.
What backup includes: your streak type, start date, time zone, best day count, and whether it's active; your protected-period start date, time zone, and whether an "essential contact" exception is allowed; the dates and day-counts of past resets (no notes); your privacy mode, widget mode, and notification preferences; and whether you've completed onboarding. This data is further encrypted before it's stored, on top of Apple's own private-database encryption.
What backup never includes, under any circumstance: anything from the list in "What never leaves your device" above — your vault, your drafts, your alias, or any note you've written. The part of the app responsible for backup is not connected to the part of the app that stores your vault; it has no way to read it.
If you're signed out, or signed in without enabling backup, none of this syncs anywhere — the data referenced above simply stays local, exactly like your vault.
Encryption
Everything sensitive on your device is encrypted at rest with AES-256, using a unique encryption key generated the first time you use the app. That key is stored in your device's Keychain, set to be usable only while your device is unlocked, and is deliberately excluded from iCloud Keychain and from device backups — it never leaves this phone, by design. Your media files are also protected so that they're unreadable, even to the app itself, whenever your phone is locked, and the entire encrypted vault folder is excluded from iCloud/iTunes/Finder device backups as an extra precaution.
You can optionally require Face ID, Touch ID, or your device passcode before the app will open your vault. We don't store or see your biometric data — that check happens entirely within iOS, on your device.
Deletion
A "Delete All Data" button is built into the app. Using it:
- Permanently deletes your on-device encryption key — after this, nothing that was encrypted with it can ever be recovered, by you or by anyone else
- Erases all vault media (photos, voice, video), all written entries, and all drafts
- Clears your settings and app preferences
- Resets your anonymous analytics identifier
This cannot be undone. If you'd also enabled cloud backup, deleting your data on-device does not by itself delete the backup copy in your own iCloud account; you can remove that separately through your iCloud settings, or contact us for help.
Uninstalling the app removes everything else iOS stores for it — your app container and Keychain entries are deleted by the operating system.
You can also create a password-protected encrypted export of your data before deleting it. That export can only be opened by importing it back into sayless on the same device.
What we never do
- We never sell your data. There is no data broker relationship of any kind.
- We never show you ads, and there is no advertising SDK in this app.
- We never track you across other apps or websites — sayless has no advertising identifier (IDFA) usage, no tracking pixels, and nothing that behaves like one.
- We never use your relationship details, your written reasons, your voice, your photos, or anything else in your vault to train any model, ours or anyone else's.
- We never share your information with third parties for their own purposes, because we do not have your information to share in the first place.
Children
This app deals with adult themes — heartbreak, relationships, urges, and self-control — and is intended for users age 17 and older. It is not directed at children, and we do not knowingly collect information from children.
An important note on what this app is and isn't
This app is a self-control and journaling tool called sayless. It is not therapy, not a substitute for medical or mental health treatment, and not a crisis or emergency service. Nothing in the app is reviewed by a clinician, and it cannot monitor you or intervene if you're in danger. If you're in crisis or in danger, please contact local emergency services or a licensed professional — not this app.
Your rights
Because sayless stores almost nothing about you outside your own device, most data-rights requests (access, correction, deletion, portability) are things you can already do yourself, instantly, inside the app — through the vault's own editing tools, the encrypted export, and "Delete All Data." For anything you can't do yourself, or if you have questions about this policy, contact us and we'll help.
Changes to this policy
If this policy changes in a way that matters, we'll update the effective date above and, where required, notify you in the app.
Contact us
Questions, requests, or concerns about privacy: info@nestfullabs.com