VerbatermBetaVerbaterm is in beta. You may encounter bugs, incomplete features, or unexpected results while we improve reliability.

Privacy policy

Day One

Review these first

Score102.0
Reviewed
Policy typePrivacy policy
Concern findings2
Protections6
Source supportStrong

Source provenance

Verified official source
Retrieved
Last checked
PublishedAutomated refresh
Source URLhttps://dayoneapp.com/privacy/

Canonical URL: https://dayoneapp.com/privacy-policy/

What changedMaterial language shifts detected around personal data, privacy, share your, fee. 89 new line(s), 86 removed line(s).

Snapshot hash 885ce3fc5aaeb650b0c23b6e1aabbd38cccc3bd054860fc11ae50133a062c8c1

Snapshot of the source text at fetch time, not a live mirror of the policy page.

Plain-English summary

Day One may share your personal information with third-party vendors and other companies under common control. Your data may also be transferred to a new owner if the business undergoes changes like a merger or sale. Additionally, anonymous information that cannot identify you may be disclosed without restriction.

90% confidence

Ask Verbaterm

Follow up on findings with grounded answers from this review. Not legal advice.

Risk Flags

Not clearly stated

Critical issues and alerts that could significantly impact users.

Not clearly stated

No cited risk flags — wording is unclear

No high-severity risk flags were clearly stated in the provided text.

Data Use & Sharing

2 findings

How your personal information is collected, used, and shared with others.

Not clearly stated: No other data use or sharing concerns were clearly stated in the provided text.
medium95% confidence

Data Sharing with Third-Party Vendors

Information may be shared with third-party vendors, consultants, and advisors who assist in providing services or perform services for Day One, including payment providers, cloud storage, SMS services, marketing, analytics, and operational tools.

Why it matters: Your personal information may be shared with various third-party companies that help operate and market the service, which means these external parties will also have access to your data.

We may share information about you with third party vendors, consultants, and advisors who help us provide our Services or who otherwise perform services for us.

How We Share Information, paragraph 2 · Citation strength: strong

medium90% confidence

Data Sharing with Affiliates

Information about you may be disclosed to current or future parent companies, subsidiaries, joint ventures, or other commonly controlled companies (Affiliates), which are required to honor this Privacy Policy.

Why it matters: Your personal information might be shared with other companies under the same corporate control, meaning your data could be accessible across a broader group of entities.

We may disclose information about you to a current or future parent company, any subsidiaries, joint ventures, or other companies under a common control (collectively, “Affiliates”), in which case we will require our Affiliates to honor this Privacy Policy;

How We Share Information, paragraph 3 · Citation strength: strong

Cancellation & Renewal

Not clearly stated

Terms related to account cancellation, subscription renewal, and associated policies.

Not clearly stated

No cited billing terms — wording is unclear

No cancellation or renewal concerns were clearly stated in the provided text.

Gotchas

Not clearly stated

Potentially overlooked clauses that could be disadvantageous or surprising to users.

Not clearly stated

No cited gotchas — wording is unclear

No 'gotcha' concerns were clearly stated in the provided text.

Protections

6 findings

Provisions that protect user rights, privacy, or provide consumer benefits.

Not clearly stated: No other protections were clearly stated in the provided text.
Protection95% confidence

User Control Over Journal Information

Day One aims to make it simple for users to control what information in their journal is shared publicly (or kept private), indexed by search engines, and permanently deleted.

Why it helps: This commitment indicates that users have clear mechanisms to manage the visibility and retention of their journal entries, supporting their privacy preferences.

We aim to make it as simple as possible for you to control what information in your journal is shared publicly (or kept private), indexed by search engines, and permanently deleted.

Title: Privacy Policy, paragraph 4 · Citation strength: strong

Protection95% confidence

Journal Entries Are Private and Encrypted

Journal entries are private, not publicly viewable, not accessible to other users, and End-to-End Encryption is offered, which, if enabled, makes it impossible for employees to access journal data.

Why it helps: This ensures a high level of privacy and security for personal journal content, as entries are not shared by default and can be made inaccessible even to the company itself through encryption.

Your Journal Entries: The most important thing we collect from you are your journal entries. Your journal entries are private. This means that when you use Day One to create a journal, none of the entries in that journal are made publicly viewable on the Internet. Entries are not accessible to other Day One users. We also offer End to End Encryption on our journals. If that option is enabled, it is impossible for our employees to access your journal data.

Information You Provide Us, paragraph 2 · Citation strength: strong

Protection95% confidence

No Ad Use or Sale of Motion/Activity/Fitness Data

Motion, activity, or fitness data is never used for advertising or similar services, nor for use-based data mining, and is not disclosed to third parties for their own use or sold to advertising platforms, data brokers, or information resellers.

Why it helps: This provides strong assurance that sensitive health-related data will not be exploited for commercial purposes or shared with entities that might misuse it.

We never use your motion, activity, or fitness data for advertising and similar services or for use-based data mining. We don’t disclose this information to a third party for their own use or sell it to advertising platforms, data brokers, or information resellers.

Information We Collect from Other Sources, paragraph 3 · Citation strength: strong

Protection95% confidence

Account Data Deletion After 5-Day Recovery Window

When an account is closed, Day One waits for a 5-day recovery window and then permanently deletes all journal entries, attachments, and account data.

Why it helps: This specifies a clear process for data deletion upon account closure, providing users with confidence that their data will be removed after a short grace period.

As another example, when you close your account we wait for a 5-day recovery window and then permanently delete all of your journal entries, their attachments, and your account data.

How Long We Keep Information, paragraph 3 · Citation strength: strong

Protection95% confidence

End-to-End Encryption for Journal Entries

All new journal entries are end-to-end encrypted, making them inaccessible to anyone, including Day One, except the logged-in author. Users with older entries are encouraged to enable this manually.

Why it helps: This ensures that the content of journal entries is highly secure and private, as only the user can access them, protecting against unauthorized viewing.

To enhance the security of your account, all new journal entries are end-to-end encrypted. We encourage account holders of older journal entries to manually enable end-to-end encryption . Journal entries that use end-to-end encryption cannot be accessed by anyone, including us, other than the logged in author of the entry.

Security, paragraph 2 · Citation strength: strong

Protection95% confidence

No Collection of Personal Information from Children Under 13

Services are not directed to children, and Day One does not collect or maintain personal information from people known to be under 13 years of age. If a user is later found to be under 13, their information will be removed and they will be prevented from using the services.

Why it helps: This policy safeguards the privacy of children by explicitly stating that data from individuals under 13 is not knowingly collected and will be removed if discovered.

Our Services are not directed to children, and children are not eligible to use our Services. Protecting the privacy of children is very important to us. We do not collect or maintain personal information from people we actually know are under 13 years of age, and no part of our Services is designed to attract people under 13 years of age. If we later learn that a user is under 13 years of age, we will take steps to remove that user’s personal information from our databases and to prevent the user from utilizing the Services.

US Privacy Laws, paragraph 31 · Citation strength: strong

Report an issue

Flag a citation problem, stale policy text, or incorrect company match.

Verbaterm boundaries

This public review is informational only and is not legal advice. Verbaterm shows only findings tied to the cited source snapshot above.