Effective date: September 23, 2026
Emberday is a personal mood journal. This policy covers the Emberday app, emberday.alkinum.com and our support service. ‘We’ means Liao YuanPeng, an individual operating Emberday under the Alkinum brand, based in China. Contact us at support@emberday.alkinum.com or through our support form about this policy or your information.
Operator: Liao YuanPeng (individual). Country: China. Contact address: GongYe 9th Road, Nanshan District, ShenZhen, China.
Your records
The app stores your check-in answers and mood scores, the question asked, record times, time-zone information, and notes on your device. It also stores preferences and the identifiers and change metadata needed to manage records and synchronization. Time-zone information assigns records to a day. Automatic places and health estimates are separate optional features, both off by default.
The automatic hand preference uses touch movement and available device-motion signals to adjust the control layout. Normal release builds do not upload these signals to a developer-operated service.
iCloud sync
iCloud sync is enabled by default. When iCloud is available, Emberday uses your private CloudKit database to synchronize records and notes between your devices. You can turn it off in Settings. Local recording works without iCloud, and turning sync off does not erase your local records or an existing cloud copy.
Emberday does not send your journal to a developer-operated server. iCloud is provided by Apple and is subject to Apple's terms, privacy practices, account settings, and service availability. Private CloudKit storage should not be interpreted as a promise of end-to-end encryption by Emberday.
Optional places and maps
Only after you choose and authorize automatic places does Emberday request a single location when saving a current check-in, to attach a place or match your own labels. There is no background tracking. Past check-ins can use manually selected places; manual selection does not require device location permission. Map display and place searches use Apple Maps, which processes search and map requests. The app does not read your Apple Maps favorites or system Significant Locations.
Place labels, coordinates and attached places use a separate protected local file excluded from device backup, and never enter journal CloudKit sync. Turning off automatic places stops future capture. Existing attachments can be removed in record details; Optional features > Delete all place data removes labels and attached places together.
Optional health access and stress estimates
You choose whether to share HRV, heart rate, sleep, workouts and mindfulness from Apple Health. These support personal relative estimates and measurement-context filtering; system permissions are separate for each type. No readable data means no estimate, without affecting mood check-ins.
Emberday only reads and never writes to Apple Health. Samples and derived results are held in memory and cleared when the feature is disabled or the app enters the background. They do not enter the mood database, CloudKit sync, backups, advertising or analytics. Subjective mood scores remain separate. Turning the feature off neither deletes original Apple Health records nor revokes system permissions; manage these in Apple Health.
Estimates and suggestions have no medical use or medical reference value. They cannot diagnose, treat, prevent or rule out disease or replace professional medical advice. Scores do not establish health. Seek medical care promptly for noticeable, persistent or worsening discomfort; never delay care because of a low score.
App lock
The optional app lock is off by default. Authentication is handled by the operating system using the methods your device supports, such as Face ID. Emberday receives an authentication result, not your biometric images or templates. The lock controls access to app content; it is not an additional encryption layer for your records.
Advertising and diagnostics
The app has no ads or third-party tracking or analytics SDKs. It does not sell your journal or use it for advertising. Operational logs use Apple's system logging. Apple may provide crash or diagnostic information according to your device and platform sharing settings; this app does not operate a separate remote analytics service.
Deleting information
You can delete individual notes and check-ins from their detail screen. Settings > Data offers Delete all data and, when sync is enabled, Delete iCloud copy.
Delete all data first disables optional features and clears local place data and in-memory health results, then removes the cloud zone and local journal records. If cloud access is unavailable, the operation may fail or wait for access to be restored; the app reports errors and can retry or resume. Delete iCloud copy keeps local records. If sync remains enabled, future changes may sync again. Turning sync off or removing the app does not by itself delete a previous iCloud copy. Some local app preferences remain after deleting journal data.
Support requests
When you use the website form, we receive your email address, request category, preferred language, subject and message. App version, iOS or iPadOS version and device model are optional fields; the form does not read these from your device. If you email support, we also receive your email headers and any attachments you choose to send. The website form does not accept attachments and never uploads your journal or HealthKit data automatically.
Requests are stored in our OnFire support system so authorized support staff can investigate, respond, maintain a conversation history and handle privacy requests. An email-based support identity and ticket reference may be created for this purpose; this does not create an app account or give us access to your private iCloud database. Cloudflare processes website and mail traffic and provides infrastructure for the support service. Replying to a support message may add your reply to the same ticket.
Send only information needed to explain the issue. Do not send diary entries, health records, passwords, Apple ID credentials or verification codes. If a screenshot is necessary in an email, remove private content first. We do not sell support correspondence or use it for advertising. Emberday support currently uses human review; automatic AI analysis, translation and replies are disabled for this product.
This website and security checks
Cloudflare hosts this website and processes request information such as IP address, browser and device characteristics, request time and URL to deliver the site, operate rate limits and prevent abuse. The support form uses Cloudflare Turnstile to distinguish legitimate requests from automated abuse. Turnstile processes browser and network signals and may use technical storage necessary for verification. See Cloudflare's Privacy Policy.
Our website has no advertising or analytics SDK. Your light/dark appearance preference may be stored in your browser. Reading the site does not upload app records. The security widget loads on the support page; submitting a request requires JavaScript and a successful security check. Your email and message are sent to our server only when you submit the form.
Why we process information and who receives it
We use support information to provide the help you request, troubleshoot problems, protect the service and meet applicable legal obligations. Where a legal basis is required, we rely on providing the requested service, our legitimate interests in operating and securing it, or compliance with law, as applicable. Optional device permissions are controlled by your choices and Apple's permission settings.
Apple handles iCloud, Apple Maps, App Store distribution and platform diagnostics under its own terms and privacy policy. Cloudflare handles hosting, email transport and security. Authorized staff and service providers receive only the information needed for their roles. Information may also be disclosed where required by law or necessary to protect legal rights and security. We do not sell personal information or share it for cross-context behavioral advertising.
Services may process information in countries other than where you live. When applicable data-protection law requires safeguards for an international transfer, the relevant service arrangements must provide those safeguards. No particular data-residency location is promised by Emberday.
Retention, security and your choices
Local journal records remain until you delete them or remove the local app data. Apple controls the storage and deletion lifecycle of iCloud data under its service settings; follow the deletion instructions above. Support correspondence is kept only as long as reasonably needed to resolve and follow up on the request, protect the service or meet applicable legal obligations. Retention depends on the request and applicable duties. Deletion may not immediately remove retained backups or security records; retained copies remain restricted until their normal expiry or deletion.
We use HTTPS, server-side credentials and access controls to protect support information. No service can guarantee absolute security. App lock is not a substitute for protecting your device, Apple account or backups. Support staff cannot restore a journal from a developer-operated journal server because Emberday does not operate one.
Depending on where you live, you may have rights to access, correct, delete or receive a copy of personal information we hold, restrict or object to processing, withdraw consent where processing relies on it, or complain to your local data-protection authority. Use the support form's Privacy request category or email the contact above. We may ask for proportionate information to verify control of the relevant email address before disclosing or changing support records; do not send identity documents unless specifically necessary and requested. We cannot retrieve your local journal or private Apple data on your behalf. You can stop future optional access in Emberday settings and revoke permissions in system settings.
Children
Emberday is not directed to children who cannot independently consent to the service under applicable law. A parent or guardian should supervise use where required. Do not send a child's personal or health information to support unnecessarily. A parent or guardian who believes a child has submitted personal information can contact us to request appropriate action.
About this tool
Emberday supports personal reflection. It does not provide medical advice, diagnosis, treatment, or emergency services.
Changes
We may update this policy when our services, data practices or legal obligations change. We will update the effective date and provide additional notice where required. Our Terms of Use explain the conditions for using Emberday.